werf on Alpine, amd64/arm64; tag suffix -cloud adds gcloud, aws-cli, teleport
8.5K
werf — build and deploy to Kubernetes, ready for rootless Buildah builds in CI.
<version> — Alpine with werf, git and the rootless Buildah runtime (newuidmap/newgidmap,
fuse-overlayfs, netavark, subuid/subgid ranges for tools). Use it by default: CI jobs, clusters reached with a kubeconfig.<version>-cloud — the same binary on top of google-cloud-cli (Alpine) with gcloud and
gke-gcloud-auth-plugin, aws (AWS CLI v2) and Teleport (tsh, tctl, …). Use it when cluster
access goes through a cloud CLI (GKE, EKS) or Teleport.| Tag | Image | Updates |
|---|---|---|
<version> | slim | floating: a rebuild of the same version (base image bump) moves it to a new digest |
<version>-cloud | cloud | floating, same rule |
<version>-<short-sha> | slim | immutable, bound to a commit of main |
<version>-cloud-<short-sha> | cloud | immutable |
<version> is the werf version without the v prefix.
The entrypoint is /usr/local/bin/werf. Runs as the non-root user tools (uid/gid 1000, home /home/tools), working directory /app.
# .gitlab-ci.yml
converge:
image:
name: lexauw/werf:<version>
entrypoint: [""]
script:
- werf converge
Rootless Buildah keeps its storage in /home/tools/.local/share/containers — mount a volume there
to reuse layers between builds.
Platforms: linux/amd64, linux/arm64. Every published digest is listed in the
releases of the source repository — use it to pin or roll back a floating tag.
Source, Dockerfile and build pipeline: gitlab.com/libs-for-dev/devops/tools.
Content type
Image
Digest
sha256:f66358cb6…
Size
488 MB
Last updated
1 day ago
docker pull lexauw/werf:3.7.2-cloud-ea47685f