mirror of
https://gitlab.com/openconnect/ocserv.git
synced 2026-02-10 08:46:58 +08:00
34 lines
1.1 KiB
Plaintext
34 lines
1.1 KiB
Plaintext
FROM fedora:23
|
|
|
|
RUN yum install -y gnutls gnutls-utils protobuf-c iproute pcllib http-parser tcp_wrappers pam systemd libseccomp
|
|
RUN yum install -y bash openssh-server nuttcp
|
|
RUN systemctl enable sshd
|
|
RUN yum install -y libnl3 libtalloc haproxy libev
|
|
RUN yum install -y freeradius-client
|
|
RUN yum install -y lz4 radcli liboauth oathtool procps-ng iputils
|
|
RUN yum install -y krb5-libs less
|
|
RUN sed 's/PermitRootLogin without-password/PermitRootLogin yes/g' -i /etc/ssh/sshd_config
|
|
|
|
RUN echo 'root:root' |chpasswd
|
|
RUN useradd -m -d /home/admin -s /bin/bash admin
|
|
RUN echo 'admin:admin' |chpasswd
|
|
|
|
RUN mkdir /etc/ocserv
|
|
|
|
|
|
ADD key.pem /etc/ocserv/
|
|
ADD cert.pem /etc/ocserv/
|
|
ADD combo.pem /etc/ocserv/
|
|
ADD haproxy.cfg /etc/haproxy/
|
|
ADD ocserv-unix.conf /etc/ocserv/ocserv.conf
|
|
ADD passwd /etc/ocserv/
|
|
ADD ocserv /usr/sbin/
|
|
ADD ocpasswd /usr/bin/
|
|
ADD occtl /usr/bin/
|
|
ADD myscript /usr/bin/
|
|
# It's not possible to use mknod inside a container with the default LXC
|
|
# template, so we untar it from this archive.
|
|
ADD dev-tun.tgz /dev/
|
|
|
|
CMD nuttcp -S;sshd-keygen;/usr/sbin/sshd;mkdir -p /tmp/disconnect/;/usr/sbin/haproxy -f /etc/haproxy/haproxy.cfg;/usr/sbin/ocserv -d 1 -f;sleep 3600
|