12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667 |
- FROM asonix/masto-deps:amd64 as build-dep
-
- # Use bash for the shell
- SHELL ["bash", "-c"]
-
- COPY Gemfile* package.json yarn.lock /opt/mastodon/
-
- RUN cd /opt/mastodon && \
- bundle install -j$(nproc) --deployment --without development test && \
- yarn install --pure-lockfile
-
- FROM amd64/ubuntu:18.04
-
- # Copy over all the langs needed for runtime
- COPY --from=build-dep /opt/node /opt/node
- COPY --from=build-dep /opt/ruby /opt/ruby
- COPY --from=build-dep /opt/jemalloc /opt/jemalloc
- COPY --from=build-dep /tini /tini
-
- RUN chmod +rx /tini
-
- # Add more PATHs to the PATH
- ENV PATH="${PATH}:/opt/ruby/bin:/opt/node/bin:/opt/mastodon/bin"
-
- # Create the mastodon user
- ARG UID=991
- ARG GID=991
- RUN apt update && \
- echo "Etc/UTC" > /etc/localtime && \
- ln -s /opt/jemalloc/lib/* /usr/lib/ && \
- apt install -y whois wget && \
- addgroup --gid $GID mastodon && \
- useradd -m -u $UID -g $GID -d /opt/mastodon mastodon && \
- echo "mastodon:`head /dev/urandom | tr -dc A-Za-z0-9 | head -c 24 | mkpasswd -s -m sha-256`" | chpasswd
-
- # Install mastodon runtime deps
- RUN apt -y --no-install-recommends install \
- libssl1.1 libpq5 imagemagick ffmpeg \
- libicu60 libprotobuf10 libidn11 libyaml-0-2 \
- file ca-certificates tzdata libreadline7 && \
- apt -y install gcc && \
- ln -s /opt/mastodon /mastodon && \
- gem install bundler
-
- # Copy over mastodon source, and dependencies from building, and set permissions
- COPY --chown=mastodon:mastodon . /opt/mastodon
- COPY --from=build-dep --chown=mastodon:mastodon /opt/mastodon /opt/mastodon
-
- # Run mastodon services in prod mode
- ENV RAILS_ENV="production"
- ENV NODE_ENV="production"
-
- # Tell rails to serve static files
- ENV RAILS_SERVE_STATIC_FILES="true"
- ENV BIND="0.0.0.0"
-
- # Set the run user
- USER mastodon
-
- # Precompile assets
- RUN cd ~ && \
- OTP_SECRET=precompile_placeholder SECRET_KEY_BASE=precompile_placeholder rails assets:precompile && \
- yarn cache clean
-
- # Set the work dir and the container entry point
- WORKDIR /opt/mastodon
- ENTRYPOINT ["/tini", "--"]
|