docker-compose.yaml 1.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445
  1. {% set tpl = ix_lib.base.render.Render(values) %}
  2. {% set c1 = tpl.add_container(values.consts.code_server_container_name, "image") %}
  3. {% set perm_container = tpl.deps.perms(values.consts.perms_container_name) %}
  4. {% set perms_config = {"uid": values.run_as.user, "gid": values.run_as.group, "mode": "check"} %}
  5. {% do c1.set_user(values.run_as.user, values.run_as.group) %}
  6. {% do c1.remove_security_opt("no-new-privileges") %}
  7. {% do c1.add_caps(["DAC_OVERRIDE", "CHOWN"]) %}
  8. {% do c1.healthcheck.set_test("curl", {"port": values.network.web_port.port_number, "path": "/healthz"}) %}
  9. {% do c1.environment.add_env("DOCKER_USER", values.run_as.user) %}
  10. {% do c1.environment.add_user_envs(values.code_server.additional_envs) %}
  11. {% do c1.set_entrypoint([
  12. "/usr/bin/entrypoint.sh",
  13. "--bind-addr", "0.0.0.0:%d" | format(values.network.web_port.port_number),
  14. ".",
  15. ]) %}
  16. {% do c1.add_port(values.network.web_port) %}
  17. {% do c1.add_storage("/home/coder/.local", values.storage.local) %}
  18. {% do perm_container.add_or_skip_action("local", values.storage.local, perms_config) %}
  19. {% do c1.add_storage("/home/coder/.config", values.storage.config) %}
  20. {% do perm_container.add_or_skip_action("config", values.storage.config, perms_config) %}
  21. {% do c1.add_storage("/home/coder/project", values.storage.project) %}
  22. {% do perm_container.add_or_skip_action("project", values.storage.project, perms_config) %}
  23. {% for store in values.storage.additional_storage %}
  24. {% do c1.add_storage(store.mount_path, store) %}
  25. {% do perm_container.add_or_skip_action(store.mount_path, store, perms_config) %}
  26. {% endfor %}
  27. {% if perm_container.has_actions() %}
  28. {% do perm_container.activate() %}
  29. {% do c1.depends.add_dependency(values.consts.perms_container_name, "service_completed_successfully") %}
  30. {% endif %}
  31. {% do tpl.portals.add(values.network.web_port) %}
  32. {{ tpl.render() | tojson }}