mirror of
				https://github.com/TriliumNext/Notes.git
				synced 2025-10-25 08:51:35 +08:00 
			
		
		
		
	
		
			
				
	
	
		
			49 lines
		
	
	
		
			1.5 KiB
		
	
	
	
		
			Docker
		
	
	
	
	
	
			
		
		
	
	
			49 lines
		
	
	
		
			1.5 KiB
		
	
	
	
		
			Docker
		
	
	
	
	
	
| FROM node:22.16.0-bullseye-slim AS builder
 | |
| RUN corepack enable
 | |
| 
 | |
| # Install native dependencies since we might be building cross-platform.
 | |
| WORKDIR /usr/src/app/build
 | |
| COPY ./docker/package.json ./docker/pnpm-workspace.yaml /usr/src/app/
 | |
| # We have to use --no-frozen-lockfile due to CKEditor patches
 | |
| RUN pnpm install --no-frozen-lockfile --prod && pnpm rebuild
 | |
| 
 | |
| FROM node:22.16.0-bullseye-slim
 | |
| # Create a non-root user with configurable UID/GID
 | |
| ARG USER=trilium
 | |
| ARG UID=1001
 | |
| ARG GID=1001
 | |
| ENV USER=${USER}
 | |
| ENV UID=${UID}
 | |
| ENV GID=${GID}
 | |
| 
 | |
| # Install only runtime dependencies
 | |
| RUN rm -rf \
 | |
|     /var/lib/apt/lists/* \
 | |
|     /var/cache/apt/* && \
 | |
|     # Create the user/group with the default UID/GID
 | |
|     groupadd -g ${GID} ${USER} && \
 | |
|     useradd -u ${UID} -g ${USER} -s /bin/sh -m ${USER}
 | |
| 
 | |
| WORKDIR /home/${USER}/app
 | |
| COPY ./dist /home/${USER}/app
 | |
| # Also copy the rootless entrypoint script
 | |
| COPY rootless-entrypoint.sh /home/${USER}/app/
 | |
| RUN rm -rf /home/${USER}/app/node_modules/better-sqlite3
 | |
| COPY --from=builder /usr/src/app/node_modules/better-sqlite3 /home/${USER}/app/node_modules/better-sqlite3
 | |
| RUN chown -R ${USER}:${USER} /home/${USER}
 | |
| 
 | |
| # Configure container
 | |
| USER ${USER}
 | |
| EXPOSE 8080
 | |
| 
 | |
| # By default, use UID/GID that was set during build
 | |
| # These can be overridden at runtime
 | |
| ENV TRILIUM_UID=${UID}
 | |
| ENV TRILIUM_GID=${GID}
 | |
| ENV TRILIUM_DATA_DIR=/home/${USER}/trilium-data
 | |
| 
 | |
| # Use the entrypoint script
 | |
| CMD [ "bash", "./rootless-entrypoint.sh" ]
 | |
| 
 | |
| HEALTHCHECK --start-period=10s CMD node /home/${USER}/app/docker_healthcheck.js
 | 
![renovate[bot]](/assets/img/avatar_default.png)