Skip to content

Commit

Permalink
Publish distroless docker image (close #258)
Browse files Browse the repository at this point in the history
  • Loading branch information
istreeter committed May 4, 2022
1 parent 7a902d1 commit dd94ff8
Show file tree
Hide file tree
Showing 5 changed files with 91 additions and 49 deletions.
9 changes: 8 additions & 1 deletion .github/workflows/lacework.yml
Original file line number Diff line number Diff line change
Expand Up @@ -29,13 +29,20 @@ jobs:
- name: Build docker images
run: sbt docker:publishLocal

- name: Scan snowplow-s3-loader
- name: Scan snowplow-s3-loader focal
env:
LW_ACCESS_TOKEN: ${{ secrets.LW_ACCESS_TOKEN }}
LW_ACCOUNT_NAME: ${{ secrets.LW_ACCOUNT_NAME }}
LW_SCANNER_SAVE_RESULTS: ${{ !contains(steps.version.outputs.tag, 'rc') }}
run: ./lw-scanner image evaluate snowplow/snowplow-s3-loader ${{ steps.ver.outputs.tag }} --build-id ${{ github.run_id }} --no-pull

- name: Scan snowplow-s3-loader distroless
env:
LW_ACCESS_TOKEN: ${{ secrets.LW_ACCESS_TOKEN }}
LW_ACCOUNT_NAME: ${{ secrets.LW_ACCOUNT_NAME }}
LW_SCANNER_SAVE_RESULTS: ${{ !contains(steps.version.outputs.tag, 'rc') }}
run: ./lw-scanner image evaluate snowplow/snowplow-s3-loader ${{ steps.ver.outputs.tag }}-distroless --build-id ${{ github.run_id }} --no-pull

- name: Scan snowplow-s3-loader lzo
env:
LW_ACCESS_TOKEN: ${{ secrets.LW_ACCESS_TOKEN }}
Expand Down
53 changes: 13 additions & 40 deletions build.sbt
Original file line number Diff line number Diff line change
Expand Up @@ -14,55 +14,28 @@
*/

lazy val root = project.in(file("."))
.aggregate(main, lzo)
.aggregate(main, distroless, lzo)

lazy val main = project.in(file("modules/main"))
.settings(BuildSettings.mainSettings)
.settings(
name := "snowplow-s3-loader",
)
.settings(BuildSettings.commonSettings)
.settings(
libraryDependencies ++= Seq(
// Java
Dependencies.Libraries.kinesisClient,
Dependencies.Libraries.kinesisConnector,
Dependencies.Libraries.slf4j,
Dependencies.Libraries.jclOverSlf4j,
Dependencies.Libraries.jackson,
Dependencies.Libraries.sentry,
// Scala
Dependencies.Libraries.decline,
Dependencies.Libraries.circe,
Dependencies.Libraries.snowplowTracker,
Dependencies.Libraries.snowplowBadrows,
Dependencies.Libraries.pureconfig,
Dependencies.Libraries.pureconfigCirce,
// Scala (test only)
Dependencies.Libraries.specs2,
// Thrift (test only)
Dependencies.Libraries.collectorPayload,
Dependencies.Libraries.thrift % Test,
),
excludeDependencies += "commons-logging" % "commons-logging"
libraryDependencies ++= Dependencies.mainDependencies,
excludeDependencies ++= Dependencies.mainExclusions
)
.enablePlugins(JavaAppPackaging, DockerPlugin)

lazy val lzo = project.in(file("modules/lzo"))
lazy val distroless = project.in(file("modules/distroless"))
.settings(BuildSettings.distrolessSettings)
.settings(sourceDirectory := (main / sourceDirectory).value)
.settings(
name := "snowplow-s3-loader-lzo",
libraryDependencies ++= Dependencies.mainDependencies,
excludeDependencies ++= Dependencies.mainExclusions
)
.settings(BuildSettings.commonSettings)
.enablePlugins(JavaAppPackaging, DockerPlugin, LauncherJarPlugin)

lazy val lzo = project.in(file("modules/lzo"))
.settings(BuildSettings.lzoSettings)
.settings(
libraryDependencies ++= Seq(
Dependencies.Libraries.hadoop,
Dependencies.Libraries.elephantbird,
Dependencies.Libraries.hadoopLZO,
Dependencies.Libraries.thrift,
Dependencies.Libraries.collections,
Dependencies.Libraries.jacksonCbor,
)
)
.settings(libraryDependencies ++= Dependencies.lzoDependencies)
.dependsOn(main % "compile->compile; test->test")
.enablePlugins(JavaAppPackaging, DockerPlugin)

Expand Down
40 changes: 33 additions & 7 deletions project/BuildSettings.scala
Original file line number Diff line number Diff line change
Expand Up @@ -15,9 +15,12 @@
import sbt._
import Keys._

import com.typesafe.sbt.packager.Keys._
import com.typesafe.sbt.packager.docker.DockerPlugin.autoImport.Docker
import com.typesafe.sbt.packager.docker._
import com.typesafe.sbt.SbtNativePackager.autoImport._
import com.typesafe.sbt.packager.archetypes.jar.LauncherJarPlugin.autoImport.packageJavaLauncherJar
import com.typesafe.sbt.packager.docker.{Cmd, DockerPermissionStrategy}
import com.typesafe.sbt.packager.docker.DockerPlugin.autoImport._
import com.typesafe.sbt.packager.linux.LinuxPlugin.autoImport._
import com.typesafe.sbt.packager.universal.UniversalPlugin.autoImport._

// Scoverage plugin
import scoverage.ScoverageKeys._
Expand Down Expand Up @@ -47,15 +50,29 @@ object BuildSettings {
}
)

lazy val dockerSettings = Seq(
lazy val dockerSettingsFocal = Seq(
Docker / maintainer := "Snowplow Analytics Ltd. <[email protected]>",
Docker / daemonUser := "daemon",
Docker / packageName := "snowplow/snowplow-s3-loader",
dockerBaseImage := "eclipse-temurin:11-jre-focal",
dockerUpdateLatest := true,
)

lazy val lzoDockerSettings = Seq(
lazy val dockerSettingsDistroless = Seq(
Docker / maintainer := "Snowplow Analytics Ltd. <[email protected]>",
dockerBaseImage := "gcr.io/distroless/java11-debian11:nonroot",
Docker / daemonUser := "nonroot",
Docker / daemonGroup := "nonroot",
dockerRepository := Some("snowplow"),
Docker / daemonUserUid := None,
Docker / defaultLinuxInstallLocation := "/home/snowplow",
dockerEntrypoint := Seq("java", "-jar",s"/home/snowplow/lib/${(packageJavaLauncherJar / artifactPath).value.getName}"),
dockerPermissionStrategy := DockerPermissionStrategy.CopyChown,
dockerAlias := dockerAlias.value.withTag(Some(version.value + "-distroless")),
dockerUpdateLatest := false
)

lazy val lzoDockerSettingsFocal = Seq(
dockerCommands := {
val installLzo = Seq(Cmd("RUN", "mkdir -p /var/lib/apt/lists/partial && apt-get update && apt-get install -y lzop && apt-get purge -y"))
val (h, t) = dockerCommands.value.splitAt(dockerCommands.value.size-4)
Expand Down Expand Up @@ -112,9 +129,18 @@ object BuildSettings {
scalafmtOnCompile := false
)

lazy val commonSettings = basicSettings ++ scalifySettings ++ sbtAssemblySettings ++ dockerSettings ++ addExampleConfToTestCp
lazy val commonSettings = basicSettings ++ scalifySettings ++ sbtAssemblySettings ++ addExampleConfToTestCp

lazy val mainSettings = commonSettings ++ dockerSettingsFocal ++ Seq(
name := "snowplow-s3-loader"
)

lazy val distrolessSettings = commonSettings ++ dockerSettingsDistroless ++ Seq(
name := "snowplow-s3-loader"
)

lazy val lzoSettings = lzoDockerSettings ++ Seq(
lazy val lzoSettings = commonSettings ++ lzoDockerSettingsFocal ++ Seq(
name := "snowplow-s3-loader-lzo",
Compile / discoveredMainClasses := Seq(),
Compile / mainClass := Some("com.snowplowanalytics.s3.loader.lzo.Main")
)
Expand Down
36 changes: 36 additions & 0 deletions project/Dependencies.scala
Original file line number Diff line number Diff line change
Expand Up @@ -90,4 +90,40 @@ object Dependencies {
val specs2 = "org.specs2" %% "specs2-core" % V.specs2 % Test
val collectorPayload = "com.snowplowanalytics" % "collector-payload-1" % V.collectorPayload % Test
}

val mainDependencies = Seq(
// Java
Libraries.kinesisClient,
Libraries.kinesisConnector,
Libraries.slf4j,
Libraries.jclOverSlf4j,
Libraries.jackson,
Libraries.sentry,
// Scala
Libraries.decline,
Libraries.circe,
Libraries.snowplowTracker,
Libraries.snowplowBadrows,
Libraries.pureconfig,
Libraries.pureconfigCirce,
// Scala (test only)
Libraries.specs2,
// Thrift (test only)
Libraries.collectorPayload,
Libraries.thrift % Test
)

val lzoDependencies = Seq(
Libraries.hadoop,
Libraries.elephantbird,
Libraries.hadoopLZO,
Libraries.thrift,
Libraries.collections,
Libraries.jacksonCbor,
)

val mainExclusions = Seq(
"commons-logging" % "commons-logging"
)

}
2 changes: 1 addition & 1 deletion project/plugins.sbt
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
addSbtPlugin("io.github.davidgregory084" % "sbt-tpolecat" % "0.1.18")
addSbtPlugin("com.eed3si9n" % "sbt-assembly" % "0.14.10")
addSbtPlugin("com.typesafe.sbt" % "sbt-native-packager" % "1.8.1")
addSbtPlugin("com.github.sbt" % "sbt-native-packager" % "1.9.7")
addSbtPlugin("net.virtual-void" % "sbt-dependency-graph" % "0.9.2")
addSbtPlugin("org.scalameta" % "sbt-scalafmt" % "2.4.0")
addSbtPlugin("org.scoverage" % "sbt-scoverage" % "1.6.1")
Expand Down

0 comments on commit dd94ff8

Please sign in to comment.