Compare commits
5 commits
8436b99f18
...
4e83bf9761
| Author | SHA1 | Date | |
|---|---|---|---|
| 4e83bf9761 | |||
| 6c242c2a75 | |||
| 7643d4f14a | |||
| f1105d9ccb | |||
| a3696b88fc |
2 changed files with 18 additions and 12 deletions
3
.github/workflows/build.yml
vendored
3
.github/workflows/build.yml
vendored
|
|
@ -5,6 +5,7 @@ on:
|
|||
push:
|
||||
branches:
|
||||
- main
|
||||
- "*"
|
||||
|
||||
jobs:
|
||||
buildAndPush:
|
||||
|
|
@ -16,7 +17,7 @@ jobs:
|
|||
steps:
|
||||
- uses: actions/checkout@v4
|
||||
- name: Nix build
|
||||
run: nix build --extra-experimental-features "flakes nix-command" .${{matrix.containers}}
|
||||
run: nix build --extra-experimental-features "flakes nix-command" .#${{matrix.containers}}
|
||||
- name: Setup skopeo
|
||||
run: curl -o /etc/containers/policy.json --create-dirs https://raw.githubusercontent.com/containers/skopeo/refs/heads/main/default-policy.json
|
||||
- name: Push Image
|
||||
|
|
|
|||
27
flake.nix
27
flake.nix
|
|
@ -8,7 +8,7 @@
|
|||
inputs.nixpkgs.follows = "nixpkgs";
|
||||
};
|
||||
};
|
||||
outputs = { nixpkgs, nix, self, ... }@inputs:
|
||||
outputs = { nixpkgs, ... }@inputs:
|
||||
let
|
||||
system = "x86_64-linux";
|
||||
pkgs = import nixpkgs { inherit system; };
|
||||
|
|
@ -17,8 +17,9 @@
|
|||
{
|
||||
packages.${system} = rec {
|
||||
default = nix-with-tools;
|
||||
nix = nix-with-tools;
|
||||
|
||||
minimal-nix = import (nix + "/docker.nix") {
|
||||
minimal-nix = import (inputs.nix + "/docker.nix") {
|
||||
inherit pkgs;
|
||||
extraPkgs = [ pkgs.nodejs pkgs.busybox ];
|
||||
|
||||
|
|
@ -30,7 +31,7 @@
|
|||
"org.opencontainers.image.description" = "Nix container image with nodejs";
|
||||
};
|
||||
};
|
||||
nix-with-tools = import (nix + "/docker.nix") {
|
||||
nix-with-tools = import (inputs.nix + "/docker.nix") {
|
||||
inherit pkgs;
|
||||
extraPkgs = [
|
||||
pkgs.nodejs
|
||||
|
|
@ -63,25 +64,29 @@
|
|||
tag = "latest";
|
||||
|
||||
runAsRoot = ''
|
||||
${dockerTools.shadowSetup}
|
||||
useradd -m -s /run/current-system/sw/bin/bash docker-ci
|
||||
mkdir /etc
|
||||
# ${pkgs.shadow}/bin/useradd -m -s /run/current-system/sw/bin/bash docker-ci
|
||||
|
||||
chmod 777 /tmp
|
||||
mkdir -p /var/tmp
|
||||
chmod 777 /var/tmp
|
||||
'';
|
||||
|
||||
# volumes to mount
|
||||
# -v /nix:/nix:ro
|
||||
# -v /run/current-system:/run/current-system
|
||||
# -v /var/cache/docker-ci:/.cache
|
||||
# -v ${pkgs.buildEnv ... }:/run/container-env
|
||||
config = {
|
||||
Entrypoint = [ "/run/current-system/sw/bin/bash" ];
|
||||
User = "1000:1000";
|
||||
# User = "1000:1000";
|
||||
Env = [
|
||||
"NIX_REMOTE=daemon"
|
||||
"PATH=${lib.concatStringsSep ":" [
|
||||
"/run/current-system/sw/bin"
|
||||
"/run/current-system/sw/sbin"
|
||||
"/run/container-env/bin"
|
||||
# "/run/container-env/sbin" # This might not be needed
|
||||
]}"
|
||||
"/run/container-env/bin"
|
||||
"/run/current-system/sw/bin"
|
||||
"/run/current-system/sw/sbin"
|
||||
]}"
|
||||
|
||||
"SSL_CERT_FILE=/run/current-system/etc/ssl/certs/ca-bundle.crt"
|
||||
"GIT_SSL_CAINFO=/run/current-system/etc/ssl/certs/ca-bundle.crt"
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue