blob: f1bf24960f6a966ab119e76df718b71ac49e95e1 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
|
# ============LICENSE_START=======================================================
# Copyright (C) 2019 Tieto. All rights reserved.
# Modifications Copyright (C) 2020, 2021 AT&T Intellectual Property. All rights reserved.
# Modifications Copyright (C) 2020, 2022-2023 Nordix Foundation.
# ================================================================================
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
#
# SPDX-License-Identifier: Apache-2.0
# ============LICENSE_END=========================================================
FROM alpine:3.17
LABEL maintainer="Policy Team"
LABEL org.opencontainers.image.title="Policy JRE Alpine"
LABEL org.opencontainers.image.description="Policy Java 11 JRE image based on Alpine"
LABEL org.opencontainers.image.url="https://github.com/onap/policy-docker"
LABEL org.opencontainers.image.vendor="ONAP Policy Team"
LABEL org.opencontainers.image.licenses="Apache-2.0"
LABEL org.opencontainers.image.created="${git.build.time}"
LABEL org.opencontainers.image.version="${git.build.version}"
LABEL org.opencontainers.image.revision="${git.commit.id.abbrev}"
ENV JAVA_HOME /usr/lib/jvm/default-jvm
ENV JAVA_OPTS="-Xms256m -Xmx1g"
ENV JAVA_SEC_OPTS=""
ENV POLICY_HOME=/opt/app/policy
ENV PATH $JAVA_HOME/bin:$PATH
ARG user=onap
ARG group=onap
# Default to UTF-8 file.encoding
ENV LANG='en_US.UTF-8' LANGUAGE='en_US:en' LC_ALL='en_US.UTF-8'
# Generic additions
RUN apk add --no-cache \
libretls \
musl-locales \
musl-locales-lang \
openjdk11-jre \
openssl \
ca-certificates && \
rm -rf /var/cache/apk/* && \
# ONAP additions
addgroup -S $group && \
adduser -G $group -D $user && \
mkdir /var/log/$user && \
mkdir /app && \
chown -R $user:$group /var/log/$user && \
chown -R $user:$group /app && \
# Policy Framework additions
apk update && \
apk add --no-cache \
busybox-extras \
curl \
jq \
procps \
unzip \
zip && \
rm -rf /var/cache/apk/* && \
addgroup -S policy && \
adduser -S --shell /bin/sh -G policy policy && \
mkdir -p ${POLICY_HOME}/ && \
chown policy:policy ${POLICY_HOME} && \
mkdir -p /usr/lib/jvm/ && \
ln -s /opt/java/openjdk /usr/lib/jvm/default-jvm
# Tell docker that all future commands should be run as the onap user
USER $user
WORKDIR /app
ENTRYPOINT exec java $JAVA_SEC_OPTS $JAVA_OPTS -jar /app/app.jar
|