2023-01-23 19:37:35 -08:00
|
|
|
{{- if ne .host.distro.family "windows" -}}
|
|
|
|
#!/usr/bin/env bash
|
|
|
|
|
2023-01-24 20:36:59 -08:00
|
|
|
{{ includeTemplate "universal/profile-before" }}
|
|
|
|
{{ includeTemplate "universal/logg-before" }}
|
2023-01-23 19:37:35 -08:00
|
|
|
|
|
|
|
### Install Docker
|
|
|
|
if [ -d /Applications ] && [ -d /System ]; then
|
|
|
|
# macOS
|
2023-01-24 21:10:11 -08:00
|
|
|
if [ ! -d /Applications/Docker.app ]; then
|
|
|
|
logg info 'Installing Docker on macOS via Homebrew cask'
|
|
|
|
brew install --cask docker
|
|
|
|
else
|
|
|
|
logg info 'Docker appears to be installed already'
|
|
|
|
fi
|
2023-01-23 19:37:35 -08:00
|
|
|
logg info 'Opening the Docker for Desktop app so that the Docker engine starts running'
|
2023-01-23 20:29:20 -08:00
|
|
|
open --background -a Docker
|
2023-01-23 19:37:35 -08:00
|
|
|
elif command -v apt-get > /dev/null; then
|
|
|
|
. /etc/os-release
|
|
|
|
if [ "$ID" == 'ubuntu' ]; then
|
|
|
|
logg info 'Installing Docker on Ubuntu'
|
|
|
|
else
|
|
|
|
logg info 'Installing Docker on Debian'
|
|
|
|
fi
|
|
|
|
sudo apt-get update
|
|
|
|
sudo apt-get install -y ca-certificates curl gnupg lsb-release
|
|
|
|
sudo mkdir -p /etc/apt/keyrings
|
2023-01-23 21:06:39 -08:00
|
|
|
curl -fsSL "https://download.docker.com/linux/$ID/gpg" | sudo gpg --dearmor --yes -o /etc/apt/keyrings/docker.gpg
|
2023-01-23 19:37:35 -08:00
|
|
|
sudo chmod a+r /etc/apt/keyrings/docker.gpg
|
|
|
|
echo "deb [arch=$(dpkg --print-architecture) signed-by=/etc/apt/keyrings/docker.gpg] https://download.docker.com/linux/$ID $(lsb_release -cs) stable" | sudo tee /etc/apt/sources.list.d/docker.list > /dev/null
|
|
|
|
sudo apt-get update
|
|
|
|
sudo apt-get install -y docker-ce docker-ce-cli containerd.io docker-compose-plugin
|
|
|
|
elif command -v dnf > /dev/null; then
|
2023-01-25 05:18:43 -08:00
|
|
|
. /etc/os-release
|
|
|
|
if [ "$ID" == 'centos' ]; then
|
|
|
|
logg info 'Installing Docker on CentOS'
|
|
|
|
elif [ "$ID" == 'fedora' ]; then
|
|
|
|
logg info 'Installing Docker on Fedora'
|
|
|
|
else
|
|
|
|
logg error 'Unknown OS - cannot install Docker' && exit 1
|
|
|
|
fi
|
2023-01-23 19:37:35 -08:00
|
|
|
sudo dnf -y install dnf-plugins-core
|
2023-01-25 05:18:43 -08:00
|
|
|
sudo dnf config-manager --add-repo "https://download.docker.com/linux/$ID/docker-ce.repo"
|
2023-01-23 19:37:35 -08:00
|
|
|
sudo dnf install -y docker-ce docker-ce-cli containerd.io docker-compose-plugin
|
|
|
|
elif command -v yum > /dev/null; then
|
|
|
|
# CentOS
|
|
|
|
logg info 'Installing Docker on CentOS'
|
|
|
|
sudo yum install -y yum-utils
|
2023-01-24 15:46:10 -08:00
|
|
|
sudo yum-config-manager --add-repo https://download.docker.com/linux/centos/docker-ce.repo
|
2023-01-23 19:37:35 -08:00
|
|
|
sudo yum install -y docker-ce docker-ce-cli containerd.io docker-compose-plugin
|
|
|
|
elif command -v apk > /dev/null; then
|
|
|
|
# Alpine
|
|
|
|
logg info 'Installing Docker on Alpine'
|
|
|
|
sudo apk add --update docker
|
|
|
|
elif command -v pacman > /dev/null; then
|
|
|
|
# Archlinux
|
|
|
|
logg info 'Installing Docker on Archlinux'
|
|
|
|
sudo pacman -Syu
|
|
|
|
sudo pacman -S docker
|
|
|
|
elif command -v zypper > /dev/null; then
|
|
|
|
# OpenSUSE
|
|
|
|
logg info 'Installing Docker on OpenSUSE'
|
|
|
|
sudo zypper addrepo https://download.docker.com/linux/sles/docker-ce.repo
|
|
|
|
sudo zypper install docker-ce docker-ce-cli containerd.io docker-compose-plugin
|
|
|
|
fi
|
|
|
|
|
|
|
|
### Add Docker group on Linux
|
|
|
|
if command -v groupadd > /dev/null; then
|
|
|
|
# Linux
|
2023-01-23 20:59:44 -08:00
|
|
|
if ! cat /etc/group | grep docker > /dev/null; then
|
|
|
|
logg info 'Creating Docker group'
|
|
|
|
sudo groupadd docker
|
|
|
|
fi
|
2023-01-23 19:37:35 -08:00
|
|
|
logg info 'Adding user to Docker group'
|
|
|
|
sudo usermod -aG docker "$USER"
|
|
|
|
fi
|
|
|
|
|
|
|
|
### Boot Docker on start with systemd on Linux machines
|
|
|
|
if command -v systemctl > /dev/null; then
|
|
|
|
# Systemd Linux
|
|
|
|
sudo systemctl start docker.service
|
|
|
|
sudo systemctl enable docker.service
|
|
|
|
sudo systemctl enable containerd.service
|
|
|
|
fi
|
|
|
|
|
2023-01-23 20:29:20 -08:00
|
|
|
### Add gVisor
|
|
|
|
if [ ! -d /Applications ] || [ ! -d /System ]; then
|
|
|
|
# Linux
|
|
|
|
if ! command -v runsc > /dev/null; then
|
|
|
|
# Install gVisor
|
|
|
|
logg info 'Building gVisor from source'
|
2023-01-23 21:47:23 -08:00
|
|
|
if [ -d /usr/local/src/gvisor ]; then
|
|
|
|
logg info 'Removing stale directory /usr/local/src/gvisor'
|
|
|
|
sudo rm -rf /usr/local/src/gvisor
|
|
|
|
fi
|
2023-01-23 20:29:20 -08:00
|
|
|
sudo git clone https://github.com/google/gvisor.git /usr/local/src/gvisor
|
|
|
|
cd /usr/local/src/gvisor
|
2023-01-23 21:10:04 -08:00
|
|
|
sudo mkdir -p bin
|
2023-02-03 21:03:36 -08:00
|
|
|
# Wait 5 minutes for build to finish, and if it does not use Go
|
|
|
|
sudo timeout 300 make copy TARGETS=runsc DESTINATION=bin/
|
2023-02-03 20:53:29 -08:00
|
|
|
if [ -f ./bin/runsc ]; then
|
|
|
|
sudo cp ./bin/runsc /usr/local/bin
|
|
|
|
else
|
2023-02-03 21:03:36 -08:00
|
|
|
# Official build timed out - use Go method
|
|
|
|
logg info 'Installing gVisor using the Go fallback method'
|
|
|
|
sudo chown -Rf "$(whoami)" /usr/local/src/gvisor
|
|
|
|
echo "module runsc" > go.mod
|
|
|
|
GO111MODULE=on go get gvisor.dev/gvisor/runsc@go
|
|
|
|
CGO_ENABLED=0 GO111MODULE=on sudo -E go build -o /usr/local/bin/runsc gvisor.dev/gvisor/runsc
|
|
|
|
GO111MODULE=on sudo -E go build -o /usr/local/bin/containerd-shim-runsc-v1 gvisor.dev/gvisor/shim
|
2023-02-03 20:53:29 -08:00
|
|
|
fi
|
2023-02-03 21:03:36 -08:00
|
|
|
else
|
|
|
|
logg info '`runsc` is installed'
|
2023-01-23 20:29:20 -08:00
|
|
|
fi
|
|
|
|
|
2023-02-03 21:03:36 -08:00
|
|
|
### Ensure Docker is configured to use runsc
|
2023-01-23 20:29:20 -08:00
|
|
|
if [ ! -f /etc/docker/daemon.json ]; then
|
|
|
|
# Configure Docker to use gVisor
|
|
|
|
# Create /etc/docker/daemon.json
|
|
|
|
logg info 'Creating /etc/docker'
|
|
|
|
sudo mkdir -p /etc/docker
|
2023-01-24 22:09:28 -08:00
|
|
|
if [ -f /usr/local/src/install.doctor/home/dot_config/docker/daemon.json ]; then
|
2023-01-23 21:47:23 -08:00
|
|
|
logg info 'Creating /etc/docker/daemon.json'
|
2023-01-24 22:09:28 -08:00
|
|
|
sudo cp "/usr/local/src/install.doctor/home/dot_config/docker/daemon.json" /etc/docker/daemon.json
|
2023-01-23 21:47:23 -08:00
|
|
|
else
|
2023-01-24 22:09:28 -08:00
|
|
|
logg warn '/usr/local/src/install.doctor/home/dot_config/docker/daemon.json is not available so the /etc/docker/daemon.json file cannot be populated'
|
2023-01-23 21:47:23 -08:00
|
|
|
fi
|
2023-02-03 21:03:36 -08:00
|
|
|
|
|
|
|
# Restart / enable Docker
|
|
|
|
if command -v systemctl > /dev/null; then
|
|
|
|
logg info 'Restarting Docker service'
|
|
|
|
sudo systemctl restart docker.service
|
|
|
|
sudo systemctl restart containerd.service
|
|
|
|
fi
|
|
|
|
|
|
|
|
# Test Docker /w runsc
|
|
|
|
docker run --rm --runtime=runsc hello-world || RUNSC_EXIT_CODE=$?
|
|
|
|
if [ -n "$RUNSC_EXIT_CODE" ]; then
|
|
|
|
logg error 'Failed to run the Docker hello-world container with runsc' && exit 5
|
|
|
|
fi
|
2023-01-23 20:29:20 -08:00
|
|
|
fi
|
|
|
|
fi
|
|
|
|
|
2023-01-23 19:37:35 -08:00
|
|
|
{{ end -}}
|