fix: improve dockerfile
This commit is contained in:
parent
a1bae33e06
commit
0c0b446c07
2 changed files with 85 additions and 25 deletions
88
Dockerfile
88
Dockerfile
|
@ -1,33 +1,71 @@
|
||||||
FROM alpine:3.15
|
FROM python:3.13-alpine AS builder
|
||||||
|
|
||||||
#Base settings
|
# Set working directory
|
||||||
ENV HOME /root
|
WORKDIR /app
|
||||||
|
|
||||||
COPY requirements.txt /root/requirements.txt
|
# Copy requirements
|
||||||
|
COPY requirements.txt .
|
||||||
|
|
||||||
#Install ZeroNet
|
# Install build dependencies
|
||||||
RUN apk --update --no-cache --no-progress add python3 python3-dev py3-pip gcc g++ autoconf automake libtool libffi-dev musl-dev make tor openssl \
|
RUN apk --no-cache add \
|
||||||
&& pip3 install -r /root/requirements.txt \
|
build-base \
|
||||||
&& apk del python3-dev gcc g++ autoconf automake libtool libffi-dev musl-dev make \
|
git \
|
||||||
&& echo "ControlPort 9051" >> /etc/tor/torrc \
|
autoconf automake libtool \
|
||||||
&& echo "CookieAuthentication 1" >> /etc/tor/torrc
|
libffi-dev openssl-dev \
|
||||||
|
musl-dev
|
||||||
RUN python3 -V \
|
|
||||||
&& python3 -m pip list \
|
|
||||||
&& tor --version \
|
|
||||||
&& openssl version
|
|
||||||
|
|
||||||
#Add Zeronet source
|
# Install Python deps
|
||||||
COPY . /root
|
RUN python -m venv /app/venv && \
|
||||||
VOLUME /root/data
|
. /app/venv/bin/activate && \
|
||||||
|
pip install --upgrade pip && \
|
||||||
|
pip install -r requirements.txt
|
||||||
|
|
||||||
#Control if Tor proxy is started
|
# -----------------------------
|
||||||
ENV ENABLE_TOR true
|
# Runtime image
|
||||||
|
FROM python:3.13-alpine
|
||||||
|
|
||||||
WORKDIR /root
|
# Create app directory
|
||||||
|
WORKDIR /app
|
||||||
|
|
||||||
#Set upstart command
|
# Add non-root user
|
||||||
CMD (! ${ENABLE_TOR} || tor&) && python3 zeronet.py --ui_ip 0.0.0.0 --fileserver_port 26117
|
RUN addgroup -S zeronet && adduser -S -G zeronet zeronet
|
||||||
|
|
||||||
#Expose ports
|
# Install runtime dependencies
|
||||||
EXPOSE 43110 26117
|
RUN apk --no-cache add \
|
||||||
|
tor tini openssl wget
|
||||||
|
|
||||||
|
# Configure tor
|
||||||
|
RUN echo "ControlPort 9051" >> /etc/tor/torrc && \
|
||||||
|
echo "CookieAuthentication 1" >> /etc/tor/torrc
|
||||||
|
|
||||||
|
# Copy from builder
|
||||||
|
COPY --from=builder /app/venv /app/venv
|
||||||
|
|
||||||
|
# Copy application code
|
||||||
|
COPY --chown=zeronet:zeronet . /app
|
||||||
|
|
||||||
|
# Prepare directories
|
||||||
|
RUN mkdir -p /app/data /app/log && \
|
||||||
|
chown -R zeronet:zeronet /app/data /app/log && \
|
||||||
|
chmod 750 /app/data /app/log
|
||||||
|
|
||||||
|
# Set environment
|
||||||
|
ENV PATH="/app/venv/bin:$PATH" \
|
||||||
|
VIRTUAL_ENV="/app/venv" \
|
||||||
|
ENABLE_TOR=true \
|
||||||
|
UI_IP=0.0.0.0 \
|
||||||
|
UI_PORT=43110 \
|
||||||
|
FILESERVER_PORT=26117 \
|
||||||
|
ADDITIONAL_ARGS=""
|
||||||
|
|
||||||
|
# Switch to non-root user
|
||||||
|
USER zeronet
|
||||||
|
|
||||||
|
# Use Tini as init to handle signals gracefully
|
||||||
|
ENTRYPOINT ["/sbin/tini", "--"]
|
||||||
|
|
||||||
|
# The command the container runs with
|
||||||
|
CMD ["sh", "-c", "echo \"Python: $(python -V), Tor: $(tor --version | head -n1)\" && (! ${ENABLE_TOR} || tor&) && python zeronet.py --ui_ip ${UI_IP} --ui_port ${UI_PORT} --fileserver_port ${FILESERVER_PORT} ${ADDITIONAL_ARGS}"]
|
||||||
|
|
||||||
|
# Expose ports - using the environment variables
|
||||||
|
EXPOSE ${UI_PORT} ${FILESERVER_PORT}
|
||||||
|
|
22
docker-compose.yml
Normal file
22
docker-compose.yml
Normal file
|
@ -0,0 +1,22 @@
|
||||||
|
services:
|
||||||
|
zeronet:
|
||||||
|
build: .
|
||||||
|
user: zeronet:zeronet
|
||||||
|
volumes:
|
||||||
|
- ./data:/app/data
|
||||||
|
- ./log:/app/log
|
||||||
|
ports:
|
||||||
|
- "${UI_PORT:-43110}:${UI_PORT:-43110}"
|
||||||
|
- "${FILESERVER_PORT:-26117}:${FILESERVER_PORT:-26117}"
|
||||||
|
environment:
|
||||||
|
- ENABLE_TOR=true
|
||||||
|
- UI_IP=0.0.0.0
|
||||||
|
- UI_PORT=43110
|
||||||
|
- FILESERVER_PORT=26117
|
||||||
|
- ADDITIONAL_ARGS=
|
||||||
|
healthcheck:
|
||||||
|
test: ["CMD", "wget", "-q", "--spider", "http://localhost:${UI_PORT:-43110}/ZeroNet-Internal/Stats", "||", "exit", "1"]
|
||||||
|
interval: 1m
|
||||||
|
timeout: 10s
|
||||||
|
retries: 3
|
||||||
|
start_period: 30s
|
Loading…
Reference in a new issue