Cerca
Heus ací els resultats de la cerca.
Resultats de text complet:
- DOCKER
- = DOCKER {{tag>devops info}} == related {{topic>docker&nodate&nouser&sort&tags}} == +info * [[tech:docker:dockerd:start]] * [[tech:do... r:context]] * [[tech:docker:scan]] * Dev Containers: [[https://www.youtube.com/watch?v=DkKs29etRis... st/tu-contenedor-docker-podria-estar-muerto-y-tu-sin-enterarte/]] * [[https://tech.paulcz.net/blog/
- docker volumes
- { :tech:docker:pasted:20200327-151948.png }} * bind mount: montaje clásico con ''-v'' sobre una estr... ===docker volume * ''create'' * ''ls'' * ''inspect'' * ''rm'' === docker run * ''--volume | -v'' * ''[ volume_name | local_path | <nothing-for-anonymous-volume ] : path-in-container [ : [ ro ] ]'' * ''--mount | -m'' * ''type=[bind,vo
- docker-compose casos de uso @tech:docker:docker-compose
- ose casos de uso = docker-compose == mariadb + adminer <code yaml docker-compose.yml> version: '3.9' ... r/lib/mysql env_file: - db.env container_name: mariadb adminer: image: adminer restart: unless-stopped ports: - 8080:8080 </code> <code proper
- Dockerfile run script @tech:docker:dockerfile:examples
- ob/master/run.sh]] == destacable <sxh bash> for i in /scripts/pre-init.d/*sh do if [ -e "${i}" ]; then echo "[i] pre-init.d - processing $i" . "${i}" fi done </sxh> == completo <code bash> #!/bin
- docker TLS (OLD)
- (OLD) * SSL, TLS: [[https://docs.docker.com/engine/security/protect-access/]] * [[https://www.lab... name=dockerTLS]] * [[https://docs.docker.com/engine/security/apparmor/]] * ''docker context'' -> [[https://docs.docker.com/engine/context/working-with-contexts/]] * [[https://tech.paulcz.net/2016/01/secure-docker-with-tls/]]
- Dockerfile mariadb + SSL @tech:docker:dockerfile:examples
- t server-key.pem -out server-req.pem openssl rsa -in server-key.pem -out server-key.pem openssl x509 -req -in server-req.pem -days 3600 -CA ca-cert.pem -CAkey ... t client-key.pem -out client-req.pem openssl rsa -in client-key.pem -out client-key.pem openssl x509 -req -in client-req.pem -days 3600 -CA ca-cert.pem -CAkey
- docker-compose @tech:docker:docker-compose
- docker compose ps --status=exited </code> === reiniciar servicio <code bash> # reiniciar sin cambios: docker compose restart [nombre_del_servicio] # reconstruir si detecta cambios (y reiniciar servicios dependientes si no estan en marcha
- Dockerfile
- .com/questions/42642561/docker-restrictions-regarding-naming-container]] == zona horaria * [[linux:bash:zonahoraria|]] * crear volumenes a ''/etc/localtime'', ''/etc
- docker scan
- = docker scan * Instalación: <code bash>apt-get update && apt-get install docker-scan-plugin</code> * Aceptar licencia: <code bash>docker scan --accept-license --version</code> * Es necesario hacer login en Docker Hub:<code bash>docker login --username
- dockerd remote tls access @tech:docker:dockerd
- ls access == via * [[https://docs.docker.com/engine/security/https/]] * [[https://nickjanetakis.com/blog/docker-tip-73-connecting-to-a-remote-docker-daemon]] * [[https://succes... l **Common Name** ha de apuntar al FQDN de la máquina - crear key y CSR:<code bash>openssl genrsa -o... : <code bash>openssl x509 -req -days 365 -sha256 -in server.csr -CA ca.pem -CAkey ca-key.pem -CAcreate
- docker run
- = docker run == usos útiles <code bash; portainer.sh> #!/bin/bash docker run \ --detach \ --publish 9000:9000 \ --name portainer \ --restart unless-stopped \ --volume /... cker.sock \ --volume ${PWD}/data:/data \ portainer/portainer </code> <code bash; ftpserver.sh> #
- dockerd @tech:docker:dockerd
- ockerd * [[tech:docker:dockerd:remote-tls]] == info <code bash>sudo systemctl start docker</code> <... lay", # autorizar docker-registry no seguros "insecure-registries" : ["10.29.66.85:5000"] } </cod... fig/daemon/systemd/]] * [[https://docs.docker.com/registry/insecure/#deploy-a-plain-http-registry]]
- docker daemon TLS
- ystemd/system/docker.service> ... ExecStart=/usr/bin/dockerd -H fd:// -H tcp://0.0.0.0:2376 -H unix://... docker</code> /via: [[https://docs.docker.com/engine/security/protect-access/]]\\ /via: [[https://tec