-
-
Notifications
You must be signed in to change notification settings - Fork 64
/
Copy pathDockerfile
99 lines (83 loc) · 2.8 KB
/
Dockerfile
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
ARG ALPINE_VERSION=3.20.3
FROM alpine:$ALPINE_VERSION AS build
ARG S3FS_VERSION=v1.91
RUN apk --no-cache add \
ca-certificates \
build-base \
git \
alpine-sdk \
libcurl \
automake \
autoconf \
libxml2-dev \
mailcap \
fuse-dev \
curl-dev && \
git clone https://github.com/s3fs-fuse/s3fs-fuse.git && \
cd s3fs-fuse && \
git checkout tags/${S3FS_VERSION} && \
./autogen.sh && \
./configure --prefix=/usr && \
make -j && \
make install
FROM alpine:$ALPINE_VERSION
# Metadata
LABEL [email protected]
LABEL org.opencontainers.image.title="efrecon/s3fs"
LABEL org.opencontainers.image.description="Mount S3 buckets from within a container and expose them to host/containers"
LABEL org.opencontainers.image.authors="Emmanuel Frécon <[email protected]>"
LABEL org.opencontainers.image.url="https://github.com/efrecon/docker-s3fs-client"
LABEL org.opencontainers.image.documentation="https://github.com/efrecon/docker-s3fs-client/README.md"
LABEL org.opencontainers.image.source="https://github.com/efrecon/docker-s3fs-client/Dockerfile"
COPY --from=build /usr/bin/s3fs /usr/bin/s3fs
# Specify URL and secrets. When using AWS_S3_SECRET_ACCESS_KEY_FILE, the secret
# key will be read from that file itself, which helps passing further passwords
# using Docker secrets. You can either specify the path to an authorisation
# file, set environment variables with the key and the secret.
ENV AWS_S3_URL=https://s3.amazonaws.com
ENV AWS_S3_ACCESS_KEY_ID=
ENV AWS_S3_ACCESS_KEY_ID_FILE=
ENV AWS_S3_SECRET_ACCESS_KEY=
ENV AWS_S3_SECRET_ACCESS_KEY_FILE=
ENV AWS_S3_AUTHFILE=
ENV AWS_S3_BUCKET=
# User and group ID of S3 mount owner
ENV RUN_AS=
ENV UID=0
ENV GID=0
# Location of directory where to mount the drive into the container.
ENV AWS_S3_MOUNT=/opt/s3fs/bucket
# s3fs tuning
ENV S3FS_DEBUG=0
ENV S3FS_ARGS=
RUN mkdir /opt/s3fs && \
apk --no-cache add \
ca-certificates \
mailcap \
fuse \
libxml2 \
libcurl \
libgcc \
libstdc++ \
tini && \
deluser xfs && \
s3fs --version
# allow access to volume by different user to enable UIDs other than root when
# using volumes
RUN echo user_allow_other >> /etc/fuse.conf
COPY *.sh /usr/local/bin/
WORKDIR /opt/s3fs
# Following should match the AWS_S3_MOUNT environment variable.
VOLUME [ "/opt/s3fs/bucket" ]
HEALTHCHECK \
--interval=15s \
--timeout=5s \
--start-period=15s \
--retries=2 \
CMD [ "/usr/local/bin/healthcheck.sh" ]
# The default is to perform all system-level mounting as part of the entrypoint
# to then have a command that will keep listing the files under the main share.
# Listing the files will keep the share active and avoid that the remote server
# closes the connection.
ENTRYPOINT [ "tini", "-g", "--", "docker-entrypoint.sh" ]
CMD [ "empty.sh" ]