mirror of
https://github.com/arjunkomath/openclaw-railway-template.git
synced 2026-08-14 00:48:11 +00:00
102 lines
2.9 KiB
Docker
102 lines
2.9 KiB
Docker
# Build openclaw from source to avoid npm packaging gaps (some dist files are not shipped).
|
|
FROM node:24.1.0-bookworm AS openclaw-build
|
|
|
|
# Dependencies needed for openclaw build
|
|
RUN apt-get update \
|
|
&& DEBIAN_FRONTEND=noninteractive apt-get install -y --no-install-recommends \
|
|
git \
|
|
ca-certificates \
|
|
curl \
|
|
python3 \
|
|
make \
|
|
g++ \
|
|
&& rm -rf /var/lib/apt/lists/*
|
|
|
|
# Install Bun (openclaw build uses it)
|
|
RUN curl -fsSL https://bun.sh/install | bash
|
|
ENV PATH="/root/.bun/bin:${PATH}"
|
|
|
|
RUN corepack enable
|
|
|
|
WORKDIR /openclaw
|
|
|
|
# Pin to a known ref (tag/branch). If it doesn't exist, fall back to main.
|
|
ARG OPENCLAW_GIT_REF=main
|
|
RUN git clone --depth 1 --branch "${OPENCLAW_GIT_REF}" https://github.com/openclaw/openclaw.git .
|
|
|
|
# Patch: relax version requirements for packages that may reference unpublished versions.
|
|
# Apply to all extension package.json files to handle workspace protocol (workspace:*).
|
|
RUN set -eux; \
|
|
find ./extensions -name 'package.json' -type f | while read -r f; do \
|
|
sed -i -E 's/"openclaw"[[:space:]]*:[[:space:]]*">=[^"]+"/"openclaw": "*"/g' "$f"; \
|
|
sed -i -E 's/"openclaw"[[:space:]]*:[[:space:]]*"workspace:[^"]+"/"openclaw": "*"/g' "$f"; \
|
|
done
|
|
|
|
RUN pnpm install --no-frozen-lockfile
|
|
RUN pnpm build
|
|
ENV OPENCLAW_PREFER_PNPM=1
|
|
RUN pnpm ui:install && pnpm ui:build
|
|
|
|
|
|
# Runtime image
|
|
FROM node:24.1.0-bookworm
|
|
ENV NODE_ENV=production
|
|
|
|
RUN apt-get update \
|
|
&& DEBIAN_FRONTEND=noninteractive apt-get install -y --no-install-recommends \
|
|
ca-certificates \
|
|
curl \
|
|
build-essential \
|
|
gcc \
|
|
g++ \
|
|
make \
|
|
procps \
|
|
file \
|
|
git \
|
|
python3 \
|
|
pkg-config \
|
|
sudo \
|
|
&& rm -rf /var/lib/apt/lists/*
|
|
|
|
# Install Homebrew (must run as non-root user)
|
|
# Create a user for Homebrew installation, install it, then make it accessible to all users
|
|
RUN useradd -m -s /bin/bash linuxbrew \
|
|
&& echo 'linuxbrew ALL=(ALL) NOPASSWD:ALL' >> /etc/sudoers
|
|
|
|
USER linuxbrew
|
|
RUN NONINTERACTIVE=1 /bin/bash -c "$(curl -fsSL https://raw.githubusercontent.com/Homebrew/install/HEAD/install.sh)"
|
|
|
|
USER root
|
|
RUN chown -R root:root /home/linuxbrew/.linuxbrew
|
|
ENV PATH="/home/linuxbrew/.linuxbrew/bin:/home/linuxbrew/.linuxbrew/sbin:${PATH}"
|
|
|
|
RUN corepack enable
|
|
|
|
WORKDIR /app
|
|
|
|
# Wrapper deps
|
|
COPY package.json pnpm-lock.yaml ./
|
|
RUN pnpm install --frozen-lockfile --prod
|
|
|
|
# Copy built openclaw
|
|
COPY --from=openclaw-build /openclaw /openclaw
|
|
|
|
# Provide an openclaw executable
|
|
RUN printf '%s\n' '#!/usr/bin/env bash' 'exec node /openclaw/dist/entry.js "$@"' > /usr/local/bin/openclaw \
|
|
&& chmod +x /usr/local/bin/openclaw
|
|
|
|
COPY src ./src
|
|
|
|
RUN useradd -m -s /bin/bash openclaw \
|
|
&& chown -R openclaw:openclaw /app /openclaw \
|
|
&& mkdir -p /data && chown openclaw:openclaw /data
|
|
|
|
ENV PORT=8080
|
|
EXPOSE 8080
|
|
|
|
HEALTHCHECK --interval=30s --timeout=5s --start-period=10s \
|
|
CMD curl -f http://localhost:8080/setup/healthz || exit 1
|
|
|
|
USER openclaw
|
|
CMD ["node", "src/server.js"]
|