blob: 5450218db8a2fa4d6e4cd49622f3e48f9429d0df (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
|
# Alpine Docker image for YaCy
# build with
# docker build -t yacy/yacy_search_server:alpine -f Dockerfile.alpine ../
# run with
# docker run -d --name yacy -p 8090:8090 -p 8443:8443 -v yacy_data:/opt/yacy_search_server/DATA --log-opt max-size=200m --log-opt max-file=2 yacy/yacy_search_server:alpine
## builder image
FROM eclipse-temurin:21-jdk-alpine-3.21 AS builder
# Install needed packages not in base image
RUN apk add --no-cache curl git apache-ant
# set current working dir & copy sources
WORKDIR /opt
COPY . /opt/yacy_search_server/
# .git dir deleted here because .git is needed during the build to deterime the version,
# but isn't required at runtime
RUN ant compile -f /opt/yacy_search_server/build.xml \
&& rm -fr /opt/yacy_search_server/.git
# Set initial admin password: "yacy" (encoded with custom yacy md5 function net.yacy.cora.order.Digest.encodeMD5Hex())
RUN sed -i "/adminAccountBase64MD5=/c\adminAccountBase64MD5=MD5:8cffbc0d66567a0987a4aba1ec46d63c" /opt/yacy_search_server/defaults/yacy.init && \
sed -i "/adminAccountForLocalhost=/c\adminAccountForLocalhost=false" /opt/yacy_search_server/defaults/yacy.init && \
sed -i "/server.https=false/c\server.https=true" /opt/yacy_search_server/defaults/yacy.init
## build final image
FROM eclipse-temurin:21-jre-alpine-3.21 AS app
RUN apk add --no-cache \
libssl3 \
ca-certificates \
fontconfig \
freetype \
ttf-dejavu \
# fontconfig, freetype and a single font are required for server-side
# AWT/Graphics2D text rendering (e.g. NetworkGraph.drawPeerLoadPicture);
# the Alpine JRE ships none of these by default.
&& fc-cache -f
# copy YaCy to app image
RUN addgroup yacy && adduser -S -G yacy -H -D yacy
WORKDIR /opt
COPY --chown=yacy:yacy --from=builder /opt/yacy_search_server /opt/yacy_search_server
# Expose HTTP and HTTPS default ports
EXPOSE 8090 8443
# Set data volume: yacy data and configuration will persist even after container stop or destruction
VOLUME ["/opt/yacy_search_server/DATA"]
# Next commands run as yacy as non-root user for improved security
USER yacy
# Start yacy as a foreground process (-f) to display console logs and to wait for yacy process
CMD ["/bin/sh","/opt/yacy_search_server/startYACY.sh","-f"]
|