Dockerfile.aarch64
66d24c2b
 # This file describes the standard way to build Docker on aarch64, using docker
 #
 # Usage:
 #
 # # Assemble the full dev environment. This is slow the first time.
 # docker build -t docker -f Dockerfile.aarch64 .
 #
 # # Mount your source in an interactive container for quick testing:
 # docker run -v `pwd`:/go/src/github.com/docker/docker --privileged -i -t docker bash
 #
 # # Run the test suite:
11280665
 # docker run --privileged docker hack/make.sh test-unit test-integration-cli test-docker-py
66d24c2b
 #
 # Note: AppArmor used to mess with privileged mode, but this is no longer
 # the case. Therefore, you don't have to disable it anymore.
 #
 
cdf17e69
 FROM aarch64/ubuntu:xenial
66d24c2b
 
 # Packaged dependencies
 RUN apt-get update && apt-get install -y \
 	apparmor \
 	aufs-tools \
 	automake \
 	bash-completion \
 	btrfs-tools \
 	build-essential \
d58b4762
 	cmake \
66d24c2b
 	createrepo \
 	curl \
 	dpkg-sig \
 	g++ \
 	gcc \
 	git \
 	iptables \
 	jq \
 	libapparmor-dev \
 	libc6-dev \
 	libcap-dev \
d37a7394
 	libltdl-dev \
7d80d64c
 	libsystemd-dev \
cdf17e69
 	libyaml-dev \
66d24c2b
 	mercurial \
f27b5dda
 	net-tools \
66d24c2b
 	parallel \
 	pkg-config \
 	python-dev \
 	python-mock \
 	python-pip \
47d887b3
 	python-setuptools \
66d24c2b
 	python-websocket \
47d887b3
 	golang-go \
276e234c
 	iproute2 \
 	iputils-ping \
d58b4762
 	vim-common \
66d24c2b
 	--no-install-recommends
 
 # Get lvm2 source for compiling statically
 ENV LVM2_VERSION 2.02.103
 RUN mkdir -p /usr/local/lvm2 \
 	&& curl -fsSL "https://mirrors.kernel.org/sourceware/lvm2/LVM2.${LVM2_VERSION}.tgz" \
 		| tar -xzC /usr/local/lvm2 --strip-components=1
bd31b243
 # See https://git.fedorahosted.org/cgit/lvm2.git/refs/tags for release tags
66d24c2b
 
bd31b243
 # Fix platform enablement in lvm2 to support aarch64 properly
66d24c2b
 RUN set -e \
 	&& for f in config.guess config.sub; do \
 		curl -fsSL -o "/usr/local/lvm2/autoconf/$f" "http://git.savannah.gnu.org/gitweb/?p=config.git;a=blob_plain;f=$f;hb=HEAD"; \
 	done
 # "arch.c:78:2: error: #error the arch code needs to know about your machine type"
 
 # Compile and install lvm2
 RUN cd /usr/local/lvm2 \
 	&& ./configure \
 		--build="$(gcc -print-multiarch)" \
 		--enable-static_link \
 	&& make device-mapper \
 	&& make install_device-mapper
bd31b243
 # See https://git.fedorahosted.org/cgit/lvm2.git/tree/INSTALL
66d24c2b
 
9067ef0e
 # Install seccomp: the version shipped upstream is too old
 ENV SECCOMP_VERSION 2.3.2
d8d47f42
 RUN set -x \
 	&& export SECCOMP_PATH="$(mktemp -d)" \
 	&& curl -fsSL "https://github.com/seccomp/libseccomp/releases/download/v${SECCOMP_VERSION}/libseccomp-${SECCOMP_VERSION}.tar.gz" \
 		| tar -xzC "$SECCOMP_PATH" --strip-components=1 \
 	&& ( \
 		cd "$SECCOMP_PATH" \
 		&& ./configure --prefix=/usr/local \
 		&& make \
 		&& make install \
 		&& ldconfig \
 	) \
 	&& rm -rf "$SECCOMP_PATH"
 
66d24c2b
 # Install Go
47d887b3
 # We don't have official binary golang 1.7.5 tarballs for ARM64, eigher for Go or
 # bootstrap, so we use golang-go (1.6) as bootstrap to build Go from source code.
19970810
 # We don't use the official ARMv6 released binaries as a GOROOT_BOOTSTRAP, because
 # not all ARM64 platforms support 32-bit mode. 32-bit mode is optional for ARMv8.
b6e27032
 ENV GO_VERSION 1.7.5
732d1035
 RUN mkdir /usr/src/go && curl -fsSL https://golang.org/dl/go${GO_VERSION}.src.tar.gz | tar -v -C /usr/src/go -xz --strip-components=1 \
66d24c2b
 	&& cd /usr/src/go/src \
7d80d64c
 	&& GOOS=linux GOARCH=arm64 GOROOT_BOOTSTRAP="$(go env GOROOT)" ./make.bash
 
cdf17e69
 ENV PATH /go/bin:/usr/src/go/bin:$PATH
f2614f21
 ENV GOPATH /go
66d24c2b
 
cdf17e69
 # Dependency for golint
 ENV GO_TOOLS_COMMIT 823804e1ae08dbb14eb807afc7db9993bc9e3cc3
 RUN git clone https://github.com/golang/tools.git /go/src/golang.org/x/tools \
 	&& (cd /go/src/golang.org/x/tools && git checkout -q $GO_TOOLS_COMMIT)
 
 # Grab Go's lint tool
 ENV GO_LINT_COMMIT 32a87160691b3c96046c0c678fe57c5bef761456
 RUN git clone https://github.com/golang/lint.git /go/src/github.com/golang/lint \
 	&& (cd /go/src/github.com/golang/lint && git checkout -q $GO_LINT_COMMIT) \
 	&& go install -v github.com/golang/lint/golint
 
d8d47f42
 # Only install one version of the registry, because old version which support
 # schema1 manifests is not working on ARM64, we should skip integration-cli
 # tests for schema1 manifests on ARM64.
 ENV REGISTRY_COMMIT 47a064d4195a9b56133891bbb13620c3ac83a827
66d24c2b
 RUN set -x \
 	&& export GOPATH="$(mktemp -d)" \
 	&& git clone https://github.com/docker/distribution.git "$GOPATH/src/github.com/docker/distribution" \
 	&& (cd "$GOPATH/src/github.com/docker/distribution" && git checkout -q "$REGISTRY_COMMIT") \
 	&& GOPATH="$GOPATH/src/github.com/docker/distribution/Godeps/_workspace:$GOPATH" \
 		go build -o /usr/local/bin/registry-v2 github.com/docker/distribution/cmd/registry \
 	&& rm -rf "$GOPATH"
 
6e4c87c0
 # Install notary and notary-server
175792a6
 ENV NOTARY_VERSION v0.5.0
66d24c2b
 RUN set -x \
 	&& export GOPATH="$(mktemp -d)" \
 	&& git clone https://github.com/docker/notary.git "$GOPATH/src/github.com/docker/notary" \
589c8a87
 	&& (cd "$GOPATH/src/github.com/docker/notary" && git checkout -q "$NOTARY_VERSION") \
3e0bd74a
 	&& GOPATH="$GOPATH/src/github.com/docker/notary/vendor:$GOPATH" \
66d24c2b
 		go build -o /usr/local/bin/notary-server github.com/docker/notary/cmd/notary-server \
3e0bd74a
 	&& GOPATH="$GOPATH/src/github.com/docker/notary/vendor:$GOPATH" \
d8d47f42
 		go build -o /usr/local/bin/notary github.com/docker/notary/cmd/notary \
66d24c2b
 	&& rm -rf "$GOPATH"
 
 # Get the "docker-py" source so we can run their integration tests
0ec8f56a
 ENV DOCKER_PY_COMMIT 4a08d04aef0595322e1b5ac7c52f28a931da85a5
66d24c2b
 RUN git clone https://github.com/docker/docker-py.git /docker-py \
 	&& cd /docker-py \
 	&& git checkout -q $DOCKER_PY_COMMIT \
47d887b3
 	&& pip install wheel \
0ec8f56a
 	# Before running the integration tests conftest.py is
 	# loaded which results in loads auth.py that
 	# imports the docker-pycreds module.
 	&& pip install docker-pycreds==0.2.1 \
66d24c2b
 	&& pip install -r test-requirements.txt
 
cdf17e69
 # Install yamllint for validating swagger.yaml
 RUN pip install yamllint==1.5.0
 
 # Install go-swagger for validating swagger.yaml
 ENV GO_SWAGGER_COMMIT c28258affb0b6251755d92489ef685af8d4ff3eb
 RUN git clone https://github.com/go-swagger/go-swagger.git /go/src/github.com/go-swagger/go-swagger \
 	&& (cd /go/src/github.com/go-swagger/go-swagger && git checkout -q $GO_SWAGGER_COMMIT) \
 	&& go install -v github.com/go-swagger/go-swagger/cmd/swagger
 
66d24c2b
 # Set user.email so crosbymichael's in-container merge commits go smoothly
 RUN git config --global user.email 'docker-dummy@example.com'
 
 # Add an unprivileged user to be used for tests which need it
 RUN groupadd -r docker
 RUN useradd --create-home --gid docker unprivilegeduser
 
 VOLUME /var/lib/docker
 WORKDIR /go/src/github.com/docker/docker
8d18e6b3
 ENV DOCKER_BUILDTAGS apparmor pkcs11 seccomp selinux
66d24c2b
 
 # Let us use a .bashrc file
 RUN ln -sfv $PWD/.bashrc ~/.bashrc
 
 # Register Docker's bash completion.
 RUN ln -sv $PWD/contrib/completion/bash/docker /etc/bash_completion.d/docker
 
 # Get useful and necessary Hub images so we can "docker load" locally instead of pulling
 COPY contrib/download-frozen-image-v2.sh /go/src/github.com/docker/docker/contrib/
 RUN ./contrib/download-frozen-image-v2.sh /docker-frozen-images \
d8d47f42
 	aarch64/buildpack-deps:jessie@sha256:6aa1d6910791b7ac78265fd0798e5abd6cb3f27ae992f6f960f6c303ec9535f2 \
66d24c2b
 	aarch64/busybox:latest@sha256:b23a6a37cf269dff6e46d2473b6e227afa42b037e6d23435f1d2bc40fc8c2828 \
 	aarch64/debian:jessie@sha256:4be74a41a7c70ebe887b634b11ffe516cf4fcd56864a54941e56bb49883c3170 \
 	aarch64/hello-world:latest@sha256:65a4a158587b307bb02db4de41b836addb0c35175bdc801367b1ac1ddeb9afda
bd31b243
 # See also "hack/make/.ensure-frozen-images" (which needs to be updated any time this list is)
66d24c2b
 
d58b4762
 # Install tomlv, vndr, runc, containerd, tini, docker-proxy
1b41125a
 # Please edit hack/dockerfile/install-binaries.sh to update them.
2790ac68
 COPY hack/dockerfile/binaries-commits /tmp/binaries-commits
1b41125a
 COPY hack/dockerfile/install-binaries.sh /tmp/install-binaries.sh
d58b4762
 RUN /tmp/install-binaries.sh tomlv vndr runc containerd tini proxy
ee3ac3aa
 
66d24c2b
 # Wrap all commands in the "docker-in-docker" script to allow nested containers
 ENTRYPOINT ["hack/dind"]
 
 # Upload docker source
 COPY . /go/src/github.com/docker/docker