# This Dockerfile builds our base image with gosu, dumb-init and the atlantis # user. We split this from the main Dockerfile because this base doesn't change # and also because it kept breaking the build due to flakiness. FROM alpine:3.6 LABEL authors="Anubhav Mishra, Luke Kysow" # create atlantis user RUN addgroup atlantis && \ adduser -S -G atlantis atlantis ENV ATLANTIS_HOME_DIR=/home/atlantis # install atlantis dependencies ENV DUMB_INIT_VERSION=1.2.0 ENV GOSU_VERSION=1.10 RUN apk add --no-cache ca-certificates gnupg curl git unzip bash openssh libcap openssl && \ curl -L -s --output /bin/dumb-init "https://github.com/Yelp/dumb-init/releases/download/v${DUMB_INIT_VERSION}/dumb-init_${DUMB_INIT_VERSION}_amd64" && \ chmod +x /bin/dumb-init && \ mkdir -p /tmp/build && \ cd /tmp/build && \ curl -L -s --output gosu "https://github.com/tianon/gosu/releases/download/${GOSU_VERSION}/gosu-amd64" && \ curl -L -s --output gosu.asc "https://github.com/tianon/gosu/releases/download/${GOSU_VERSION}/gosu-amd64.asc" && \ for server in $(shuf -e ipv4.pool.sks-keyservers.net \ hkp://p80.pool.sks-keyservers.net:80 \ keyserver.ubuntu.com \ hkp://keyserver.ubuntu.com:80 \ pgp.mit.edu) ; do \ gpg --keyserver "$server" --recv-keys B42F6819007F00F88E364FD4036A9C25BF357DD4 && break || : ; \ done && \ gpg --batch --verify gosu.asc gosu && \ chmod +x gosu && \ cp gosu /bin && \ cd /tmp && \ rm -rf /tmp/build && \ apk del gnupg openssl && \ rm -rf /root/.gnupg && rm -rf /var/cache/apk/* # set up nsswitch.conf for Go's "netgo" implementation # - https://github.com/golang/go/blob/go1.9.1/src/net/conf.go#L194-L275 RUN [ ! -e /etc/nsswitch.conf ] && echo 'hosts: files dns' > /etc/nsswitch.conf