feat: nix-host updates
All checks were successful
Build and Push docker image / buildAndPush (nix) (push) Successful in 2m24s
Build and Push docker image / buildAndPush (nix-host) (push) Successful in 11s

- set up minimal fhs
- use root, things work with it
- add cache note
- correct ordering of `PATH`
This commit is contained in:
Tamipes 2026-08-22 20:25:22 +02:00
parent 6c242c2a75
commit 4e83bf9761

View file

@ -64,25 +64,29 @@
tag = "latest";
runAsRoot = ''
${dockerTools.shadowSetup}
useradd -m -s /run/current-system/sw/bin/bash docker-ci
mkdir /etc
# ${pkgs.shadow}/bin/useradd -m -s /run/current-system/sw/bin/bash docker-ci
chmod 777 /tmp
mkdir -p /var/tmp
chmod 777 /var/tmp
'';
# volumes to mount
# -v /nix:/nix:ro
# -v /run/current-system:/run/current-system
# -v /var/cache/docker-ci:/.cache
# -v ${pkgs.buildEnv ... }:/run/container-env
config = {
Entrypoint = [ "/run/current-system/sw/bin/bash" ];
User = "1000:1000";
# User = "1000:1000";
Env = [
"NIX_REMOTE=daemon"
"PATH=${lib.concatStringsSep ":" [
"/run/current-system/sw/bin"
"/run/current-system/sw/sbin"
"/run/container-env/bin"
# "/run/container-env/sbin" # This might not be needed
]}"
"/run/container-env/bin"
"/run/current-system/sw/bin"
"/run/current-system/sw/sbin"
]}"
"SSL_CERT_FILE=/run/current-system/etc/ssl/certs/ca-bundle.crt"
"GIT_SSL_CAINFO=/run/current-system/etc/ssl/certs/ca-bundle.crt"