coder-templates/image.nix

45 lines
1.1 KiB
Nix
Raw Normal View History

2024-04-24 17:09:10 +02:00
{
lib,
pkgs,
...
}:
pkgs.dockerTools.buildLayeredImage {
2024-04-24 17:09:10 +02:00
name = "nix-coder";
tag = "latest";
contents = pkgs.buildEnv {
2024-04-24 17:09:10 +02:00
name = "image-root";
paths = [
pkgs.bash
pkgs.bashInteractive
pkgs.nix
pkgs.coreutils-full
2024-04-27 17:56:06 +02:00
pkgs.openssh
pkgs.git
2024-04-25 00:42:29 +02:00
pkgs.curl
(pkgs.writeShellScriptBin "reload-dotfiles" ''
${pkgs.home-manager}/bin/home-manager switch --flake ''${DOTFILES_REPO:-$1}
'')
(pkgs.writeTextDir "etc/nix/nix.conf" "experimental-features = nix-command flakes")
(pkgs.writeTextDir "etc/passwd" "coder:x:1000:1000::/home/coder:/bin/bash")
(pkgs.writeTextDir "etc/shadow" "coder:!:::::::")
(pkgs.writeTextDir "etc/group" "coder:x:1000:")
(pkgs.writeTextDir "etc/gshadow" "coder:x::")
];
pathsToLink = ["/bin" "/etc"];
2024-04-24 17:09:10 +02:00
};
maxLayers = 5;
2024-04-24 17:09:10 +02:00
fakeRootCommands = ''
mkdir -p ./home/coder ./tmp ./nix/var/nix
'';
2024-04-26 20:45:24 +02:00
config = {
Cmd = ["/bin/bash"];
Env = [
"SSL_CERT_FILE=${pkgs.cacert}/etc/ssl/certs/ca-bundle.crt"
"HOME=/home/coder"
"USER=coder"
];
2024-04-26 20:45:24 +02:00
};
2024-04-24 17:09:10 +02:00
}