35 lines
1.0 KiB
Plaintext
35 lines
1.0 KiB
Plaintext
FROM alpine AS builder
|
|
|
|
ENV QEMU_URL https://github.com/balena-io/qemu/releases/download/v4.0.0%2Bbalena2/qemu-4.0.0.balena2-aarch64.tar.gz
|
|
RUN apk add curl && curl -L ${QEMU_URL} | tar zxvf - -C . --strip-components 1
|
|
|
|
FROM arm64v8/nginx:stable-alpine
|
|
|
|
COPY --from=builder qemu-aarch64-static /usr/bin
|
|
|
|
COPY nginx-keys/ /tmp/nginx-keys
|
|
COPY compile.sh /tmp/compile.sh
|
|
RUN chmod +x /tmp/compile.sh && \
|
|
/tmp/compile.sh && \
|
|
rm -rf /tmp/*
|
|
|
|
COPY entrypoint.sh /opt/entrypoint.sh
|
|
COPY confs/ /opt/confs
|
|
COPY scripts/ /opt/scripts
|
|
COPY fail2ban/ /opt/fail2ban
|
|
COPY logs/ /opt/logs
|
|
COPY lua/ /opt/lua
|
|
|
|
RUN apk --no-cache add php7-fpm certbot libstdc++ libmaxminddb geoip pcre yajl fail2ban clamav apache2-utils rsyslog openssl lua libgd && \
|
|
chmod +x /opt/entrypoint.sh /opt/scripts/* && \
|
|
mkdir /opt/entrypoint.d && \
|
|
rm -f /var/log/nginx/* && \
|
|
chown root:nginx /var/log/nginx && \
|
|
chmod 770 /var/log/nginx
|
|
|
|
VOLUME /www /http-confs /server-confs /modsec-confs /modsec-crs-confs
|
|
|
|
EXPOSE 8080/tcp 8443/tcp
|
|
|
|
ENTRYPOINT ["/opt/entrypoint.sh"]
|