|
|
|
FROM python:3.12-slim-bookworm AS base |
|
|
|
|
|
ENV POETRY_VERSION=1.8.4 \ |
|
POETRY_NO_INTERACTION=1 \ |
|
POETRY_VIRTUALENVS_CREATE=true \ |
|
POETRY_VIRTUALENVS_IN_PROJECT=true \ |
|
POETRY_CACHE_DIR=/tmp/poetry_cache \ |
|
PYTHONDONTWRITEBYTECODE=1 \ |
|
PATH=/usr/lib/postgresql/15/bin:$PATH \ |
|
LANG=en_US.UTF-8 \ |
|
LANGUAGE=en_US:en \ |
|
LC_ALL=en_US.UTF-8 |
|
|
|
|
|
RUN useradd -m -u 1000 user |
|
|
|
|
|
RUN apt-get update && apt-get install -y \ |
|
curl \ |
|
git \ |
|
gcc \ |
|
python3-dev \ |
|
libgmp-dev \ |
|
libmpfr-dev \ |
|
libmpc-dev \ |
|
nodejs \ |
|
npm \ |
|
postgresql-15 \ |
|
postgresql-contrib-15 \ |
|
postgresql-client-15 \ |
|
locales \ |
|
&& rm -rf /var/lib/apt/lists/* \ |
|
&& pip install --no-cache-dir "poetry==${POETRY_VERSION}" \ |
|
&& sed -i '/en_US.UTF-8/s/^# //g' /etc/locale.gen \ |
|
&& locale-gen |
|
|
|
|
|
RUN mkdir -p /home/user/postgresql/data /home/user/postgresql/logs && \ |
|
chown -R user:user /home/user/postgresql && \ |
|
chmod 700 /home/user/postgresql/data |
|
|
|
|
|
RUN mkdir -p /app/api /app/web /data/storage && \ |
|
chown -R user:user /app /data && \ |
|
chmod 777 /data /app |
|
|
|
|
|
USER user |
|
|
|
|
|
ENV HOME=/home/user \ |
|
PATH=/usr/lib/postgresql/15/bin:/home/user/.local/bin:$PATH \ |
|
PGDATA=/home/user/postgresql/data |
|
|
|
|
|
FROM langgenius/dify-web:latest AS web |
|
FROM langgenius/dify-api:latest AS api |
|
|
|
|
|
FROM base |
|
|
|
|
|
WORKDIR /app |
|
RUN mkdir -p api web /data/storage |
|
|
|
|
|
COPY --from=web --chown=user:user /app/web /app/web/ |
|
COPY --from=api --chown=user:user /app/api /app/api/ |
|
|
|
|
|
WORKDIR /app/api |
|
COPY --from=api --chown=user /app/api/pyproject.toml /app/api/poetry.lock /app/api/poetry.toml ./ |
|
RUN poetry install --no-root --no-dev |
|
|
|
|
|
RUN ln -s /data/storage /app/api/storage |
|
|
|
|
|
ENV FLASK_APP=app.py \ |
|
EDITION=SELF_HOSTED \ |
|
DEPLOY_ENV=PRODUCTION \ |
|
MODE=api \ |
|
LOG_LEVEL=INFO \ |
|
DEBUG=false \ |
|
FLASK_DEBUG=false \ |
|
SECRET_KEY=sk-9f73s3ljTXVcMT3Blb3ljTqtsKiGHXVcMT3BlbkFJLK7U \ |
|
CONSOLE_API_URL=https://${SPACE_ID}.hf.space \ |
|
CONSOLE_WEB_URL=https://${SPACE_ID}.hf.space \ |
|
SERVICE_API_URL=https://${SPACE_ID}.hf.space \ |
|
APP_WEB_URL=https://${SPACE_ID}.hf.space \ |
|
DIFY_PORT=7860 \ |
|
DIFY_BIND_ADDRESS=0.0.0.0 \ |
|
DB_USERNAME=user \ |
|
DB_PASSWORD=difyai123456 \ |
|
DB_HOST=localhost \ |
|
DB_PORT=5432 \ |
|
DB_DATABASE=dify \ |
|
PYTHONPATH=/app/api \ |
|
STORAGE_PATH=/data/storage |
|
|
|
EXPOSE 7860 |
|
|
|
|
|
RUN echo '#!/bin/bash\n\ |
|
echo "===== Application Startup at $(date "+%Y-%m-%d %H:%M:%S") ====="\n\ |
|
\n\ |
|
# Initialize PostgreSQL database if not already initialized\n\ |
|
if [ ! -f "$PGDATA/PG_VERSION" ]; then\n\ |
|
echo "Initializing PostgreSQL database..."\n\ |
|
initdb --auth=trust --no-locale --encoding=UTF8\n\ |
|
\n\ |
|
# Configure PostgreSQL\n\ |
|
echo "host all all 0.0.0.0/0 md5" >> $PGDATA/pg_hba.conf\n\ |
|
echo "listen_addresses = '\''*'\''" >> $PGDATA/postgresql.conf\n\ |
|
fi\n\ |
|
\n\ |
|
# Start PostgreSQL\n\ |
|
pg_ctl start -D $PGDATA -l /home/user/postgresql/logs/postgresql.log -w\n\ |
|
\n\ |
|
# Wait for PostgreSQL to start\n\ |
|
max_tries=30\n\ |
|
count=0\n\ |
|
echo "Checking database connection..."\n\ |
|
until pg_isready -h localhost -p 5432; do\n\ |
|
echo "Waiting for database connection... (${count}/${max_tries})"\n\ |
|
sleep 2\n\ |
|
count=$((count+1))\n\ |
|
if [ $count -gt $max_tries ]; then\n\ |
|
echo "Failed to connect to database after ${max_tries} attempts"\n\ |
|
exit 1\n\ |
|
fi\n\ |
|
done\n\ |
|
\n\ |
|
# Set up database user and permissions\n\ |
|
psql -v ON_ERROR_STOP=1 --username user --dbname postgres <<-EOSQL\n\ |
|
ALTER USER user WITH PASSWORD '\''difyai123456'\'';\n\ |
|
CREATE DATABASE dify;\n\ |
|
GRANT ALL PRIVILEGES ON DATABASE dify TO user;\n\ |
|
EOSQL\n\ |
|
\n\ |
|
echo "Database connection successful"\n\ |
|
\n\ |
|
# Start application services\n\ |
|
cd /app/api && poetry run python -m flask db upgrade\n\ |
|
\n\ |
|
cd /app/api && poetry run python -m gunicorn app:app \\\n\ |
|
--bind ${DIFY_BIND_ADDRESS:-0.0.0.0}:${DIFY_PORT:-7860} \\\n\ |
|
--worker-class gevent \\\n\ |
|
--workers 1 \\\n\ |
|
--timeout 300 \\\n\ |
|
--preload &\n\ |
|
\n\ |
|
cd /app/web && node server.js &\n\ |
|
\n\ |
|
wait' > /app/entrypoint.sh && \ |
|
chmod +x /app/entrypoint.sh |
|
|
|
WORKDIR /app |
|
|
|
CMD ["./entrypoint.sh"] |