blob: 3731795d03e40b2b67cbb0aecff3d26cc56f0a18 [file] [log] [blame]
Carlos Sanchez64c7ca32016-08-15 13:36:55 +02001FROM openjdk:8-jdk
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +01002
Jakub Pavlika067c492016-09-01 15:18:03 +02003RUN apt-get update && apt-get install -y git gettext-base curl zip apt-transport-https ca-certificates && rm -rf /var/lib/apt/lists/*
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +01004
5ENV JENKINS_HOME /var/jenkins_home
jeichelaebb8b22015-08-10 12:38:20 -04006ENV JENKINS_SLAVE_AGENT_PORT 50000
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +01007
Stig Bakken854a6042016-03-14 17:04:27 +01008ARG user=jenkins
9ARG group=jenkins
10ARG uid=1000
11ARG gid=1000
12
Scott Newson39046ee2015-10-25 03:16:16 -060013# Jenkins is run with user `jenkins`, uid = 1000
14# If you bind mount a volume from the host or a data container,
15# ensure you use the same uid
Stig Bakken854a6042016-03-14 17:04:27 +010016RUN groupadd -g ${gid} ${group} \
17 && useradd -d "$JENKINS_HOME" -u ${uid} -g ${gid} -m -s /bin/bash ${user}
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +010018
Scott Newson39046ee2015-10-25 03:16:16 -060019# Jenkins home directory is a volume, so configuration and build history
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +010020# can be persisted and survive image upgrades
21VOLUME /var/jenkins_home
22
23# `/usr/share/jenkins/ref/` contains all reference configuration we want
24# to set on a fresh new installation. Use it to bundle additional plugins
25# or config file with your custom jenkins Docker image.
Filip Pytloune9e6f562016-08-31 16:30:33 +020026RUN mkdir -p /usr/share/jenkins/ref/init.groovy.d; chown ${uid}:${gid} /usr/share/jenkins/ref/init.groovy.d
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +010027
pli017c03a372016-06-15 21:36:58 +000028ENV TINI_VERSION 0.9.0
29ENV TINI_SHA fa23d1e20732501c3bb8eeeca423c89ac80ed452
Dionysis Grigoropoulosb5b788c2015-08-12 03:07:53 +030030
Nicolas De Loofd5aea672015-07-15 21:53:48 +020031# Use tini as subreaper in Docker container to adopt zombie processes
pli017c03a372016-06-15 21:36:58 +000032RUN curl -fsSL https://github.com/krallin/tini/releases/download/v${TINI_VERSION}/tini-static -o /bin/tini && chmod +x /bin/tini \
Carlos Sanchezeecaeb22016-04-13 12:10:39 +020033 && echo "$TINI_SHA /bin/tini" | sha1sum -c -
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +010034
Jesse Glickfc9e7102015-04-28 09:37:28 -040035COPY init.groovy /usr/share/jenkins/ref/init.groovy.d/tcp-slave-agent-port.groovy
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +010036
Nicolas De loof31bc79c2016-08-04 14:25:22 +020037# jenkins version being bundled in this docker image
Yoanis Gil8fbb91f2016-03-15 21:45:19 -040038ARG JENKINS_VERSION
Mark Waitea24d3e42016-08-05 00:47:00 -060039ENV JENKINS_VERSION ${JENKINS_VERSION:-2.7.2}
jpthiery3eb0f832015-11-12 13:47:35 +010040
Nicolas De loof31bc79c2016-08-04 14:25:22 +020041# jenkins.war checksum, download will be validated using it
Mark Waitea24d3e42016-08-05 00:47:00 -060042ARG JENKINS_SHA=4c05175677825a0c311ef3001bbb0a767dad0e8d
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +010043
Nicolas De loof31bc79c2016-08-04 14:25:22 +020044# Can be used to customize where jenkins.war get downloaded from
45ARG JENKINS_URL=http://repo.jenkins-ci.org/public/org/jenkins-ci/main/jenkins-war/${JENKINS_VERSION}/jenkins-war-${JENKINS_VERSION}.war
46
47# could use ADD but this one does not check Last-Modified header neither does it allow to control checksum
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +010048# see https://github.com/docker/docker/issues/8331
Nicolas De loof31bc79c2016-08-04 14:25:22 +020049RUN curl -fsSL ${JENKINS_URL} -o /usr/share/jenkins/jenkins.war \
50 && echo "${JENKINS_SHA} /usr/share/jenkins/jenkins.war" | sha1sum -c -
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +010051
jamesHsiaoAcquiaaa665612016-04-21 10:55:00 -040052ENV JENKINS_UC https://updates.jenkins.io
Stig Bakken854a6042016-03-14 17:04:27 +010053RUN chown -R ${user} "$JENKINS_HOME" /usr/share/jenkins/ref
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +010054
55# for main web interface:
56EXPOSE 8080
57
58# will be used by attached slave agents:
59EXPOSE 50000
60
Carlos Sanchezc8c95d12015-07-02 12:36:13 +020061ENV COPY_REFERENCE_FILE_LOG $JENKINS_HOME/copy_reference_file.log
Jesse Glick8cdfb1f2015-04-28 09:32:11 -040062
Filip Pytloun74ce0b02016-08-31 16:02:16 +020063# Setup docker binary
64RUN apt-key adv --keyserver hkp://p80.pool.sks-keyservers.net:80 --recv-keys 58118E89F3A912897C070ADBF76221572C52609D &&\
65 echo "deb https://apt.dockerproject.org/repo debian-jessie main" >/etc/apt/sources.list.d/docker.list && \
66 apt-get update && \
67 apt-get install --no-install-recommends -y docker-engine && \
68 apt-get clean && rm -rf /var/lib/apt/lists/*
Filip Pytloun1bb486d2016-09-01 13:45:22 +020069RUN adduser jenkins docker
Filip Pytloun74ce0b02016-08-31 16:02:16 +020070
Jakub Pavlika067c492016-09-01 15:18:03 +020071COPY SimpleThemeDecorator.xml /tmp/org.codefirst.SimpleThemeDecorator.xml
72RUN chown ${user} /tmp/org.codefirst.SimpleThemeDecorator.xml
73
Stig Bakken854a6042016-03-14 17:04:27 +010074USER ${user}
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +010075
Vincent Latombec14af952016-07-18 10:20:12 +020076COPY jenkins-support /usr/local/bin/jenkins-support
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +010077COPY jenkins.sh /usr/local/bin/jenkins.sh
Nicolas De Loofd5aea672015-07-15 21:53:48 +020078ENTRYPOINT ["/bin/tini", "--", "/usr/local/bin/jenkins.sh"]
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +010079
Scott Newson39046ee2015-10-25 03:16:16 -060080# from a derived Dockerfile, can use `RUN plugins.sh active.txt` to setup /usr/share/jenkins/ref/plugins from a support bundle
Nicolas De Loofb75dc1a2015-03-17 11:24:05 +010081COPY plugins.sh /usr/local/bin/plugins.sh
Nicolas De Loofdfe81a32016-05-28 17:26:01 +020082COPY install-plugins.sh /usr/local/bin/install-plugins.sh
Filip Pytloun74ce0b02016-08-31 16:02:16 +020083
Jakub Pavlika5c270e2016-09-19 13:11:44 +020084RUN /usr/local/bin/install-plugins.sh docker-workflow workflow-remote-loader workflow-scm-step simple-theme-plugin artifactory permissive-script-security gerrit-trigger