-
Notifications
You must be signed in to change notification settings - Fork 217
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Update README.md files and add generated 16/Dockerfile.rhel10
Signed-off-by: Petr "Stone" Hracek <[email protected]>
- Loading branch information
Showing
6 changed files
with
97 additions
and
4 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,92 @@ | ||
FROM ubi10/s2i-core | ||
|
||
# PostgreSQL image for OpenShift. | ||
# Volumes: | ||
# * /var/lib/pgsql/data - Database cluster for PostgreSQL | ||
# Environment: | ||
# * $POSTGRESQL_USER - Database user name | ||
# * $POSTGRESQL_PASSWORD - User's password | ||
# * $POSTGRESQL_DATABASE - Name of the database to create | ||
# * $POSTGRESQL_ADMIN_PASSWORD (Optional) - Password for the 'postgres' | ||
# PostgreSQL administrative account | ||
|
||
ENV POSTGRESQL_VERSION=16 \ | ||
POSTGRESQL_PREV_VERSION=15 \ | ||
HOME=/var/lib/pgsql \ | ||
PGUSER=postgres \ | ||
APP_DATA=/opt/app-root | ||
|
||
ENV SUMMARY="PostgreSQL is an advanced Object-Relational database management system" \ | ||
DESCRIPTION="PostgreSQL is an advanced Object-Relational database management system (DBMS). \ | ||
The image contains the client and server programs that you'll need to \ | ||
create, run, maintain and access a PostgreSQL DBMS server." | ||
|
||
LABEL summary="$SUMMARY" \ | ||
description="$DESCRIPTION" \ | ||
io.k8s.description="$DESCRIPTION" \ | ||
io.k8s.display-name="PostgreSQL 16" \ | ||
io.openshift.expose-services="5432:postgresql" \ | ||
io.openshift.tags="database,postgresql,postgresql16,postgresql-16" \ | ||
io.openshift.s2i.assemble-user="26" \ | ||
name="rhel10/postgresql-16" \ | ||
com.redhat.component="postgresql-16-container" \ | ||
version="1" \ | ||
com.redhat.license_terms="https://www.redhat.com/en/about/red-hat-end-user-license-agreements#rhel" \ | ||
usage="podman run -d --name postgresql_database -e POSTGRESQL_USER=user -e POSTGRESQL_PASSWORD=pass -e POSTGRESQL_DATABASE=db -p 5432:5432 rhel10/postgresql-16" \ | ||
maintainer="SoftwareCollections.org <[email protected]>" | ||
|
||
EXPOSE 5432 | ||
|
||
COPY root/usr/libexec/fix-permissions /usr/libexec/fix-permissions | ||
|
||
# This image must forever use UID 26 for postgres user so our volumes are | ||
# safe in the future. This should *never* change, the last test is there | ||
# to make sure of that. | ||
RUN INSTALL_PKGS="rsync tar gettext-envsubst bind-utils nss_wrapper-libs glibc-locale-source xz" && \ | ||
PSQL_PKGS="postgresql16-server postgresql16-contrib" && \ | ||
INSTALL_PKGS="$INSTALL_PKGS pgaudit" && \ | ||
INSTALL_PKGS="$INSTALL_PKGS procps-ng util-linux postgresql-upgrade" && \ | ||
yum -y --setopt=tsflags=nodocs install $INSTALL_PKGS $PSQL_PKGS && \ | ||
rpm -V $INSTALL_PKGS && \ | ||
postgres -V | grep -qe "$POSTGRESQL_VERSION\." && echo "Found VERSION $POSTGRESQL_VERSION" && \ | ||
yum -y clean all --enablerepo='*' && \ | ||
localedef -f UTF-8 -i en_US en_US.UTF-8 && \ | ||
test "$(id postgres)" = "uid=26(postgres) gid=26(postgres) groups=26(postgres)" && \ | ||
mkdir -p /var/lib/pgsql/data && \ | ||
mkdir -p /run/postgresql && \ | ||
/usr/libexec/fix-permissions /var/lib/pgsql /run/postgresql | ||
|
||
# Get prefix path and path to scripts rather than hard-code them in scripts | ||
ENV CONTAINER_SCRIPTS_PATH=/usr/share/container-scripts/postgresql \ | ||
ENABLED_COLLECTIONS= | ||
|
||
COPY root / | ||
COPY ./s2i/bin/ $STI_SCRIPTS_PATH | ||
|
||
# Hard links are not supported in Testing Farm approach during sync to guest | ||
# operation system. Therefore tests are failing on error | ||
# /usr/libexec/s2i/run no such file or directory | ||
RUN ln -s /usr/bin/run-postgresql $STI_SCRIPTS_PATH/run | ||
|
||
# Not using VOLUME statement since it's not working in OpenShift Online: | ||
# https://github.com/sclorg/httpd-container/issues/30 | ||
# VOLUME ["/var/lib/pgsql/data"] | ||
|
||
# S2I permission fixes | ||
# -------------------- | ||
# 1. unless specified otherwise (or - equivalently - we are in OpenShift), s2i | ||
# build process would be executed as 'uid=26(postgres) gid=26(postgres)'. | ||
# Such process wouldn't be able to execute the default 'assemble' script | ||
# correctly (it transitively executes 'fix-permissions' script). So let's | ||
# add the 'postgres' user into 'root' group here | ||
# | ||
# 2. we call fix-permissions on $APP_DATA here directly (UID=0 during build | ||
# anyways) to assure that s2i process is actually able to _read_ the | ||
# user-specified scripting. | ||
RUN usermod -a -G root postgres && \ | ||
/usr/libexec/fix-permissions --read-only "$APP_DATA" | ||
|
||
USER 26 | ||
|
||
ENTRYPOINT ["container-entrypoint"] | ||
CMD ["run-postgresql"] |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters