Sign inSign up

lexauw/werf

By lexauw

•Updated 1 day ago

werf on Alpine, amd64/arm64; tag suffix -cloud adds gcloud, aws-cli, teleport

Image
0

8.5K

lexauw/werf repository overview

⁠lexauw/werf

werf⁠ — build and deploy to Kubernetes, ready for rootless Buildah builds in CI.

⁠Variants

  • <version> — Alpine with werf, git and the rootless Buildah runtime (newuidmap/newgidmap, fuse-overlayfs, netavark, subuid/subgid ranges for tools). Use it by default: CI jobs, clusters reached with a kubeconfig.
  • <version>-cloud — the same binary on top of google-cloud-cli (Alpine) with gcloud and gke-gcloud-auth-plugin, aws (AWS CLI v2) and Teleport (tsh, tctl, …). Use it when cluster access goes through a cloud CLI (GKE, EKS) or Teleport.

⁠Tags

TagImageUpdates
<version>slimfloating: a rebuild of the same version (base image bump) moves it to a new digest
<version>-cloudcloudfloating, same rule
<version>-<short-sha>slimimmutable, bound to a commit of main
<version>-cloud-<short-sha>cloudimmutable

<version> is the werf version without the v prefix.

⁠Usage

The entrypoint is /usr/local/bin/werf. Runs as the non-root user tools (uid/gid 1000, home /home/tools), working directory /app.

# .gitlab-ci.yml
converge:
  image:
    name: lexauw/werf:<version>
    entrypoint: [""]
  script:
    - werf converge

Rootless Buildah keeps its storage in /home/tools/.local/share/containers — mount a volume there to reuse layers between builds.

Platforms: linux/amd64, linux/arm64. Every published digest is listed in the releases⁠ of the source repository — use it to pin or roll back a floating tag.

Source, Dockerfile and build pipeline: gitlab.com/libs-for-dev/devops/tools⁠.

Tag summary

Content type

Image

Digest

sha256:f66358cb6…

Size

488 MB

Last updated

1 day ago

docker pull lexauw/werf:3.7.2-cloud-ea47685f