]> git.immae.eu Git - github/fretlink/docker-nix.git/blob - debian/Dockerfile
e5d410e52c882db4dfa30c2bd440ccf9dfcfa19f
[github/fretlink/docker-nix.git] / debian / Dockerfile
1 # Dockerfile to create an environment that contains the Nix package manager.
2 FROM debian:stable-slim
3
4 ARG NIX_VERSION
5 ENV NIX_VERSION ${NIX_VERSION:-2.3.4}
6 ARG LANG
7 ENV LANG ${LANG:-"en_US.UTF-8"}
8
9 RUN addgroup --gid 30000 --system nixbld \
10 && for i in $(seq 1 30); do adduser --system --disabled-password --home /var/empty --gecos "Nix build user $i" --uid $((30000 + i)) --ingroup nixbld nixbld$i ; done \
11 && adduser --disabled-password nixuser \
12 && mkdir -m 0755 /nix && chown nixuser /nix \
13 && apt update && apt install -y wget xz-utils \
14 && apt clean && rm -rf /var/lib/apt/lists/* /tmp/* /var/tmp/* \
15 # sandboxing enabled by default since 2.2
16 && mkdir -p /etc/nix && echo 'sandbox = false' > /etc/nix/nix.conf
17
18 USER nixuser
19 ENV USER=nixuser
20 ENV HOME="/home/nixuser"
21
22 RUN cd && wget https://nixos.org/releases/nix/nix-$NIX_VERSION/nix-$NIX_VERSION-x86_64-linux.tar.xz \
23 && tar xJf nix-*-x86_64-linux.tar.xz \
24 && ~/nix-*-x86_64-linux/install \
25 && rm -rf ~/nix-*-*
26
27 ENV ENV="/home/nixuser/.nix-profile/etc/profile.d/nix.sh"
28 RUN echo ". ${ENV}" >> ${HOME}/.profile
29 # All subsequent "RUN" will use a login shell
30 SHELL ["/usr/bin/env", "bash", "-l", "-c"]
31
32 RUN nix-channel --add https://nixos.org/channels/nixpkgs-19.09-darwin nixpkgs \
33 && nix-channel --add https://nixos.org/channels/nixpkgs-unstable unstable \
34 && nix-channel --update
35
36 # Propagate UTF8
37 # https://github.com/NixOS/nix/issues/599#issuecomment-153885553
38 # The same is hapenning with stack2nix
39 RUN nix-env -iA nixpkgs.glibcLocales
40
41 # < Nix context as a volume
42 # We want to be able to define /nix/store as a volume
43 VOLUME ["/nix"]
44 # Create bash profile
45 COPY --chown=nixuser:nixuser files/.profile ${HOME}/.profile
46 # />
47
48 # Make sure to use "login" shell when running container
49 ENTRYPOINT ["/usr/bin/env", "bash", "-l", "-c"]