-
Notifications
You must be signed in to change notification settings - Fork 1
/
Copy pathDockerfile
72 lines (61 loc) · 2.77 KB
/
Dockerfile
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
FROM alpine:3.8
LABEL maintainer "v.la@live.cn"
ENV SERVICE_NAME=redis \
SERVICE_USER=redis \
SERVICE_GROUP=redis \
SERVICE_UID=1000 \
SERVICE_GID=1000 \
SERVICE_CONF=/etc/redis/redis.conf \
REDIS_VERSION=5.0.2 \
REDIS_DATA_DIR=/var/lib/redis \
REDIS_LOG_DIR=/var/log/redis
LABEL description="redis built from source" \
redis="redis ${SERVICE_VERSION}" \
maintainer="JohnWu <v.la@live.cn>"
ARG REDIS_DOWNLOAD_URL=http://download.redis.io/releases/redis-$REDIS_VERSION.tar.gz
ARG REDIS_DOWNLOAD_SHA=937dde6164001c083e87316aa20dad2f8542af089dfcb1cbb64f9c8300cd00ed
#china mirrors repos
RUN echo "https://mirrors.ustc.edu.cn/alpine/latest-stable/main" > /etc/apk/repositories \
&& echo "https://mirrors.ustc.edu.cn/alpine/latest-stable/community" >> /etc/apk/repositories
RUN apk -U upgrade && apk add --update --no-cache su-exec>=0.2 tzdata \
&& apk add --no-cache --virtual .build-deps \
gcc \
jemalloc-dev \
coreutils \
linux-headers \
make \
musl-dev \
curl \
&& wget -cq ${REDIS_DOWNLOAD_URL} -O /tmp/redis-${REDIS_VERSION}.tar.gz \
&& echo "$REDIS_DOWNLOAD_SHA /tmp/redis-${REDIS_VERSION}.tar.gz" | sha256sum -c - \
&& mkdir -p /tmp/redis \
&& tar -zxf /tmp/redis-${REDIS_VERSION}.tar.gz --strip-components=1 -C /tmp/redis \
&& grep -q '^#define CONFIG_DEFAULT_PROTECTED_MODE 1$' /tmp/redis/src/server.h \
&& sed -ri 's!^(#define CONFIG_DEFAULT_PROTECTED_MODE) 1$!\1 0!' /tmp/redis/src/server.h \
&& grep -q '^#define CONFIG_DEFAULT_PROTECTED_MODE 0$' /tmp/redis/src/server.h \
&& cd /tmp/redis \
&& make -j $(getconf _NPROCESSORS_ONLN) && make install \
&& runDeps="$( \
scanelf --needed --nobanner --format '%n#p' --recursive /usr/local \
| tr ',' '\n' \
| sort -u \
| awk 'system("[ -e /usr/local/lib/" $1 " ]") == 0 { next } { print "so:" $1 }' \
)" \
&& mkdir -p /etc/redis/ && cp redis.conf ${SERVICE_CONF} \
&& sed 's/^# unixsocket \/tmp\/redis.sock/unixsocket \/run\/redis\/redis.sock/' -i ${SERVICE_CONF} \
&& sed 's/^# unixsocketperm 700/unixsocketperm 777/' -i ${SERVICE_CONF} \
&& addgroup -g ${SERVICE_GID} ${SERVICE_GROUP} \
&& adduser -g "${SERVICE_NAME} user" -D -h ${REDIS_DATA_DIR} -G ${SERVICE_GROUP} -s /sbin/nologin -u ${SERVICE_UID} ${SERVICE_USER} \
&& apk del .build-deps \
&& rm -rf \
/tmp/* \
/var/cache/apk/*
RUN mkdir -p /run/redis ${REDIS_LOG_DIR} ${REDIS_DATA_DIR} && chmod -R 0755 ${REDIS_LOG_DIR} /run/redis \
&& chown -R ${SERVICE_USER}:${SERVICE_GROUP} ${REDIS_DATA_DIR} ${REDIS_LOG_DIR} ${SERVICE_CONF} /run/redis /etc/redis/
COPY entrypoint.sh /sbin/entrypoint.sh
RUN chmod 755 /sbin/entrypoint.sh
EXPOSE 6379/tcp
VOLUME ["${REDIS_DATA_DIR}"]
WORKDIR ${REDIS_DATA_DIR}
ENTRYPOINT ["/sbin/entrypoint.sh"]
CMD ["redis-server"]