-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathDockerfile
More file actions
57 lines (44 loc) · 1.53 KB
/
Dockerfile
File metadata and controls
57 lines (44 loc) · 1.53 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
FROM node:21-alpine as builder
# Passed in workflow via docker_build_args
ARG NEXTAUTH_URL
ARG NEXTAUTH_SECRET
ARG SENTRY_ENVIRONMENT
ARG NEXT_PUBLIC_SENTRY_ENVIRONMENT
ARG SENTRY_AUTH_TOKEN
ARG SENTRY_ORG
ARG SENTRY_PROJECT
ARG API_AUTH_TOKEN
# Change args to env so build can use them properly...
ENV NEXTAUTH_URL=$NEXTAUTH_URL
ENV NEXTAUTH_SECRET=$NEXTAUTH_SECRET
ENV SENTRY_ENVIRONMENT=$SENTRY_ENVIRONMENT
ENV NEXT_PUBLIC_SENTRY_ENVIRONMENT=$NEXT_PUBLIC_SENTRY_ENVIRONMENT
ENV SENTRY_AUTH_TOKEN=$SENTRY_AUTH_TOKEN
ENV SENTRY_ORG=$SENTRY_ORG
ENV SENTRY_PROJECT=$SENTRY_PROJECT
ENV HOST_URL=$HOST_URL
ENV SLACK_BOT_TOKEN=$SLACK_BOT_TOKEN
ENV API_AUTH_TOKEN=$API_AUTH_TOKEN
# Add required static envs for build
ENV HUSKY 0
ENV NEXT_TELEMETRY_DISABLED 1
WORKDIR /app
COPY . .
# Why libc6: https://github.com/nodejs/docker-node/tree/ce9bfa282b62ece538fef25b954ade4401a7c8c7#nodealpine
RUN apk add --no-cache libc6-compat && \
npm ci && \
npm run build
FROM node:21-alpine as runner
ENV NODE_ENV production
ENV NEXT_TELEMETRY_DISABLED 1
# Add nodejs group and nextjs user as non root
RUN addgroup --system --gid 1001 nodejs && \
adduser --system --uid 1001 nextjs
WORKDIR /app
COPY --from=builder --chown=nextjs:nodejs /app/node_modules ./node_modules
COPY --from=builder --chown=nextjs:nodejs /app/.next ./.next
COPY --from=builder --chown=nextjs:nodejs /app/package*.json ./
COPY --from=builder --chown=nextjs:nodejs /app/prisma ./prisma
COPY --from=builder --chown=nextjs:nodejs /app/public ./public
USER nextjs
CMD ["npm", "run", "start:migrate"]