149 lines
6.3 KiB
Docker
149 lines
6.3 KiB
Docker
# Ver: 1.10 by Endial Fang (endial@126.com)
|
||
#
|
||
|
||
# 系统默认变量 ====================================================================
|
||
# 该部分变量为系统根据编译命令默认设置
|
||
# `TARGETPLATFORM`:构建后的目标平台信息。如 `linux/amd64`,`linux/arm/v7`,`windows/amd64`
|
||
# `TARGETOS`:目标平台信息(TARGETPLATFORM)中的操作系统部分,如:`linux`、`windows`
|
||
# `TARGETARCH`:目标平台信息(TARGETPLATFORM)中的平台架构部分,如:`amd64`、`arm`
|
||
# `TARGETVARIANT`:目标平台信息(TARGETPLATFORM)中的版本变体部分,如:`v7`
|
||
# `BUILDPLATFORM`:用于构建的节点平台信息
|
||
# `BUILDOS`:用于构建的节点平台信息(BUILDPLATFORM)中的操作系统部分
|
||
# `BUILDARCH`用于构建的节点平台信息(BUILDPLATFORM)中的平台架构部分
|
||
# `BUILDVARIANT`用于构建的节点平台信息(BUILDPLATFORM)中的版本变体部分
|
||
|
||
# 可变参数 ========================================================================
|
||
# 该部分变量,在编译命令中通过 `--build-arg` 传入;如果未设置,则使用下面对应的默认值
|
||
|
||
ARG APP_NAME=redis # 设置当前应用名称
|
||
ARG APP_VER=7.0.12 # 设置当前应用版本
|
||
ARG REGISTRY_URL="docker.colovu.com/" # 设置默认仓库地址,默认为本地仓库;定义时需要包含末尾的`/`
|
||
ARG APT_SOURCE=aliyun # 设置 apt-get 源:default / ustc / aliyun
|
||
ARG LOCAL_URL="http://local.colovu.com/dist" # 编译镜像时指定用于加速的本地软件包存储服务器地址
|
||
|
||
# 0. 预处理 ======================================================================
|
||
FROM --platform=${TARGETPLATFORM:-linux/amd64} ${REGISTRY_URL}colovu/dbuilder:12 as builder
|
||
|
||
# 声明需要使用的全局可变参数
|
||
ARG APP_NAME
|
||
ARG APP_VER
|
||
ARG APT_SOURCE
|
||
ARG LOCAL_URL
|
||
|
||
# 选择软件包源,加速后续软件包安装
|
||
RUN select_source ${APT_SOURCE};
|
||
|
||
# 下载并解压软件包
|
||
RUN set -eux; \
|
||
appName="${APP_NAME}-${APP_VER}.tar.gz"; \
|
||
sha256="9dd83d5b278bb2bf0e39bfeb75c3e8170024edbaf11ba13b7037b2945cf48ab7"; \
|
||
[ -n ${LOCAL_URL} ] && localURL=${LOCAL_URL}/${APP_NAME}; \
|
||
appUrls="${localURL:-} \
|
||
http://download.redis.io/releases \
|
||
"; \
|
||
download_pkg unpack ${appName} "${appUrls}" -s "${sha256}";
|
||
|
||
# 源码编译: 编译后将配置文件模板拷贝至 /usr/local/${APP_NAME}/share/${APP_NAME} 中
|
||
RUN set -eux; \
|
||
APP_ARCH=`arch` \
|
||
APP_SRC="/tmp/${APP_NAME}-${APP_VER}"; \
|
||
cd ${APP_SRC}; \
|
||
# 禁用安全保护模式,在 Docker 中运行时不需要
|
||
grep -E '^ *createBoolConfig[(]"protected-mode",.*, *1 *,.*[)],$' ./src/config.c; \
|
||
sed -ri 's!^( *createBoolConfig[(]"protected-mode",.*, *)1( *,.*[)],)$!\10\2!' ./src/config.c; \
|
||
grep -E '^ *createBoolConfig[(]"protected-mode",.*, *0 *,.*[)],$' ./src/config.c; \
|
||
make MALLOC=libc BUILD_TLS=yes \
|
||
-j "$(nproc)" all; \
|
||
make PREFIX=/usr/local/${APP_NAME} install; \
|
||
# 将配置文件模板拷贝至应用安装目录的 etc/${APP_NAME} 目录下
|
||
mkdir -p /usr/local/${APP_NAME}/etc/${APP_NAME}; \
|
||
cp /tmp/${APP_NAME}-${APP_VER}/*.conf /usr/local/${APP_NAME}/etc/${APP_NAME}/; \
|
||
# 删除重复的应用程序,并生成对应的连接
|
||
serverMd5="$(md5sum /usr/local/redis/bin/redis-server | cut -d' ' -f1)"; export serverMd5; \
|
||
find /usr/local/redis/bin/redis* -maxdepth 0 \
|
||
-type f -not -name redis-server \
|
||
-exec sh -eux -c ' \
|
||
md5="$(md5sum "$1" | cut -d" " -f1)"; \
|
||
test "$md5" = "$serverMd5"; \
|
||
' -- '{}' ';' \
|
||
-exec ln -svfT 'redis-server' '{}' ';' ;
|
||
|
||
# 删除编译生成的多余文件
|
||
RUN set -eux; \
|
||
find /usr/local -name '*.a' -delete; \
|
||
rm -rf /usr/local/${APP_NAME}/include;
|
||
|
||
# 检测并生成依赖文件记录
|
||
RUN set -eux; \
|
||
find /usr/local/${APP_NAME} -type f -executable -exec ldd '{}' ';' | \
|
||
awk '/=>/ { print $(NF-1) }' | xargs -r basename -a | sort -u | \
|
||
xargs -r dpkg-query --search 2>/dev/null | cut -d: -f1 | sort -u \
|
||
>>/usr/local/${APP_NAME}/runDeps;
|
||
|
||
# 1. 生成镜像 =====================================================================
|
||
FROM --platform=${TARGETPLATFORM:-linux/amd64} ${REGISTRY_URL}colovu/debian:12
|
||
|
||
# 声明需要使用的全局可变参数(ARG声明的变量仅编译打包阶段有效)
|
||
ARG APP_NAME
|
||
ARG APP_VER
|
||
ARG APT_SOURCE
|
||
|
||
# 定义应用的基础信息变量(ENV声明的变量实例化后容器内有效)
|
||
ENV APP_NAME=${APP_NAME} \
|
||
APP_VER=${APP_VER} \
|
||
APP_EXEC=redis-server \
|
||
APP_USER=${APP_NAME} \
|
||
LD_LIBRARY_PATH="/usr/local/${APP_NAME}/lib" \
|
||
PATH="${PATH}:/usr/local/${APP_NAME}/sbin:/usr/local/${APP_NAME}/bin"
|
||
|
||
LABEL \
|
||
"Version"="v${APP_VER}" \
|
||
"Description"="Docker image for ${APP_NAME}." \
|
||
"Github"="https://github.com/colovu/docker-${APP_NAME}" \
|
||
"Vendor"="Endial Fang (endial@126.com)"
|
||
|
||
# 配置容器的数据卷、工作目录及服务端口(必须保证端口在1024之上)
|
||
VOLUME ["/srv/${APP_NAME}"]
|
||
WORKDIR /srv/${APP_NAME}
|
||
EXPOSE 6379
|
||
|
||
# 拷贝多阶段构建结果输出及客制化脚本
|
||
COPY --from=builder /usr/local/${APP_NAME} /usr/local/${APP_NAME}
|
||
COPY customer /
|
||
|
||
RUN set -eux; \
|
||
\
|
||
# 创建对应的用户及数据存储目录
|
||
useradd -U -u 996 -d /srv/${APP_NAME} -s /usr/sbin/nologin -r ${APP_USER}; \
|
||
mkdir -p /var/log/${APP_NAME} /var/run/${APP_NAME} /var/cache/${APP_NAME}; \
|
||
mkdir -p /srv/${APP_NAME}/conf /srv/${APP_NAME}/data /srv/${APP_NAME}/cert /srv/${APP_NAME}/log; \
|
||
chown -R ${APP_USER}:${APP_USER} /var/log/${APP_NAME} /var/run/${APP_NAME} /var/cache/${APP_NAME}; \
|
||
chown -R ${APP_USER}:${APP_USER} /usr/local/${APP_NAME} /srv/${APP_NAME}; \
|
||
\
|
||
/bin/bash -c "ln -sf /usr/local/${APP_NAME}/etc/${APP_NAME} /etc/"; \
|
||
\
|
||
# 选择软件包源,以加速后续软件包安装
|
||
select_source ${APT_SOURCE}; \
|
||
\
|
||
# 安装应用依赖的软件包及库
|
||
install_pkg ncat; \
|
||
install_pkg `cat /usr/local/${APP_NAME}/runDeps`; \
|
||
\
|
||
# 执行后处理脚本
|
||
overrideShell="/usr/local/overrides/overrides-${APP_VER}.sh"; \
|
||
[ -e "${overrideShell}" ] && /bin/bash "${overrideShell}"; \
|
||
\
|
||
# 验证安装的应用
|
||
redis-cli --version; \
|
||
${APP_EXEC} --version;
|
||
|
||
#HEALTHCHECK NONE
|
||
#HEALTHCHECK --interval=30s --timeout=30s --retries=3 CMD curl -fs http://localhost:8080/ || exit 1
|
||
HEALTHCHECK --interval=10s --timeout=10s --retries=3 CMD netstat -ltun | grep 6379
|
||
|
||
# 使用 dumb-init 启动入口 Shell,确保容器可以接收控制信号;并使用前台方式启动应用程序
|
||
ENTRYPOINT ["dumb-init", "entry.sh"]
|
||
CMD ["run.sh"]
|
||
|
||
|