概況
最近將 jenkins 遷移到了 docker 里面蓉坎,可以直接使用官方提供的鏡像 jenkins/jenkins,但我想在 jenkins 里面使用 docker灶壶,并且在 jenkins 里面構(gòu)建的鏡像能直接保存在 jenkins 的宿主機(jī)喳坠,在 jenkins 的全局工具配置里面是有 Docker 這個(gè)選項(xiàng)的,但是因?yàn)槟承┰蚰阍趪?guó)內(nèi)就是安裝不了脱茉。
這篇文章 Running Docker in Jenkins(in Docker)寫的挺好剪芥,提到了兩個(gè)概念
- DooD(Docker-outside-of-Docker) 在 docker 容器里面安裝 docker,然后通過(guò)
/var/run/docker.sock
與宿主機(jī)的 docker 關(guān)聯(lián)琴许,成為宿主機(jī)的兄弟容器税肪,在該容器里面執(zhí)行docker 命令相當(dāng)于在宿主機(jī)里面執(zhí)行,且可以將鏡像安裝到宿主機(jī)里面 - DinD (Docker-in-Docker)在 docker 容器里面安裝 docker,與宿主機(jī)是完全獨(dú)立的兩套 docker 環(huán)境
安裝
綜上益兄,我選擇的是 DooD 的方式锻梳,在 gitlab 上面搜到了一個(gè) docker-jenkins-dood 的 repo,但是人家是可以在線安裝 docker-engine 的净捅,所以針對(duì)國(guó)情需要修改一下疑枯。
-
首先是需要替換一下 sources.list 文件使用阿里云鏡像
[root@localhost docker-jenkins]# cat sources.list deb-src http://archive.ubuntu.com/ubuntu xenial main restricted #Added by software-properties deb http://mirrors.aliyun.com/ubuntu/ xenial main restricted deb-src http://mirrors.aliyun.com/ubuntu/ xenial main restricted multiverse universe #Added by software-properties deb http://mirrors.aliyun.com/ubuntu/ xenial-updates main restricted deb-src http://mirrors.aliyun.com/ubuntu/ xenial-updates main restricted multiverse universe #Added by software-properties deb http://mirrors.aliyun.com/ubuntu/ xenial universe deb http://mirrors.aliyun.com/ubuntu/ xenial-updates universe deb http://mirrors.aliyun.com/ubuntu/ xenial multiverse deb http://mirrors.aliyun.com/ubuntu/ xenial-updates multiverse deb http://mirrors.aliyun.com/ubuntu/ xenial-backports main restricted universe multiverse deb-src http://mirrors.aliyun.com/ubuntu/ xenial-backports main restricted universe multiverse #Added by software-properties deb http://archive.canonical.com/ubuntu xenial partner deb-src http://archive.canonical.com/ubuntu xenial partner deb http://mirrors.aliyun.com/ubuntu/ xenial-security main restricted deb-src http://mirrors.aliyun.com/ubuntu/ xenial-security main restricted multiverse universe #Added by software-properties deb http://mirrors.aliyun.com/ubuntu/ xenial-security universe deb http://mirrors.aliyun.com/ubuntu/ xenial-security multiverse
-
構(gòu)建 docker 鏡像
FROM jenkins/jenkins:lts MAINTAINER javahuang <javahrp@gmail.com> # Install necessary packages # USER root COPY sources.list /etc/apt/sources.list RUN apt-key adv --keyserver keyserver.ubuntu.com --recv-keys 40976EAF437D05B5 \ && apt-key adv --keyserver keyserver.ubuntu.com --recv-keys 3B4FE6ACC0B21F32 \ && apt-get update \ && apt-get install -y sudo \ && sudo apt-get install -y supervisor iptables libdevmapper1.02.1 libltdl7 libseccomp2 rsync \ && sudo rm -rf /var/lib/apt/lists/* # Install docker-engine # According to Petazzoni's article: # --------------------------------- # "Former versions of this post advised to bind-mount the docker binary from # the host to the container. This is not reliable anymore, because the Docker # Engine is no longer distributed as (almost) static libraries." # ARG docker_version=18.03.1-ce # RUN curl -sSL https://get.docker.com/ | sh && \ # apt-get purge -y docker-engine && \ # apt-get install docker-engine=${docker_version}-0~jessie COPY docker-ce_18.03.1_ce-0_debian_amd64.deb /root RUN cd /root \ && dpkg -i docker-ce_18.03.1_ce-0_debian_amd64.deb # Make sure jenkins user has docker privileges RUN usermod -aG docker jenkins # Install initial plugins # USER jenkins # COPY plugins.txt /usr/share/jenkins/plugins.txt # RUN /usr/local/bin/plugins.sh /usr/share/jenkins/plugins.txt # supervisord USER root # Create log folder for supervisor and jenkins RUN mkdir -p /var/log/supervisor RUN mkdir -p /var/log/jenkins # Copy the supervisor.conf file into Docker COPY supervisord.conf /etc/supervisor/conf.d/supervisord.conf # Start supervisord when running the container CMD /usr/bin/supervisord -c /etc/supervisor/conf.d/supervisord.conf
docker build -t docker-jenkins:v1 .
-
啟動(dòng) jenkins
docker run --restart=always -d --name jenkins -v /var/run/docker.sock:/var/run/docker.sock -v jenkins_home:/var/jenkins_home -p 8080:8080 -p 50000:50000 docker-jenkins:v1
-
測(cè)試
[root@localhost]# docker exec -it jenkins /bin/bash root@90f540fa6bd8:/# su - jenkins jenkins@90f540fa6bd8:~$ docker images # 可以看到返回的是宿主機(jī)的鏡像 ...