Newer
Older
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
# Copyright 2021 Dominik Sekotill <dom.sekotill@kodo.org.uk>
#
# This Source Code Form is subject to the terms of the Mozilla Public
# License, v. 2.0. If a copy of the MPL was not distributed with this
# file, You can obtain one at http://mozilla.org/MPL/2.0/.
"""
Commands for managing Docker for fixtures
"""
from __future__ import annotations
import ipaddress
import json
from contextlib import contextmanager
from pathlib import Path
from secrets import token_hex
from subprocess import DEVNULL
from subprocess import PIPE
from subprocess import CompletedProcess
from subprocess import Popen
from subprocess import run
from types import TracebackType
from typing import IO
from typing import Any
from typing import Iterable
from typing import Iterator
from typing import Tuple
from typing import TypeVar
from typing import Union
from .json import JSONObject
from .proc import Arguments
from .proc import Environ
from .proc import MutableArguments
from .proc import PathArg
from .proc import PathLike
from .proc import coerce_args
HostMount = tuple[PathLike, PathLike]
NamedMount = tuple[str, PathLike]
AnonMount = PathLike
Mount = Union[HostMount, NamedMount, AnonMount]
Volumes = Iterable[Mount]
DOCKER = "docker"
def docker(*args: PathArg, **env: str) -> None:
"""
Run a Docker command, with output going to stdout
"""
run([DOCKER, *coerce_args(args)], env=env, check=True)
def docker_output(*args: PathArg, **env: str) -> str:
"""
Run a Docker command, capturing and returning its stdout
"""
proc = run([DOCKER, *coerce_args(args)], env=env, check=True, stdout=PIPE, text=True)
return proc.stdout.strip()
def docker_quiet(*args: PathArg, **env: str) -> None:
"""
Run a Docker command, directing its stdout to /dev/null
"""
run([DOCKER, *coerce_args(args)], env=env, check=True, stdout=DEVNULL)
class IPv4Address(ipaddress.IPv4Address):
"""
Subclass of IPv4Address that handle's docker idiosyncratic tendency to add a mask suffix
"""
T = TypeVar("T", bound="IPv4Address")
@classmethod
def with_suffix(cls: type[T], address: str) -> T:
"""
Construct an instance with a suffixed bitmask size
"""
address, *_ = address.partition("/")
return cls(address)
class Item:
"""
A mix-in for Docker items that can be inspected
"""
def __init__(self, ident: str):
self._id = ident
def get_id(self) -> str:
"""
Return an identifier for the Docker item
"""
return self._id
def inspect(self) -> JSONObject:
"""
Get the result of inspecting the Docker item
"""
with Popen([DOCKER, 'inspect', self.get_id()], stdout=PIPE) as proc:
assert proc.stdout is not None
results = json.load(proc.stdout)
assert isinstance(results, list)
assert len(results) == 1 and isinstance(results[0], dict)
return JSONObject(results[0])
class Image(Item):
"""
Docker image items
"""
T = TypeVar('T', bound='Image')
def __init__(self, iid: str):
self.iid = iid
@classmethod
def build(cls: type[T], context: Path, target: str = "", **build_args: str|None) -> T:
"""
Build an image from the given context
Build arguments are ignored if they are None to make it easier to supply (or not)
arguments from external lookups without complex argument composing.
"""
cmd: Arguments = [
'build', context, f"--target={target}",
*(f"--build-arg={arg}={val}" for arg, val in build_args.items() if val is not None),
]
docker(*cmd, DOCKER_BUILDKIT='1')
iid = docker_output(*cmd, '-q', DOCKER_BUILDKIT='1')
return cls(iid)
@classmethod
def pull(cls: type[T], repository: str) -> T:
"""
Pull an image from a registry
"""
docker('pull', repository)
iid = Item(repository).inspect().path('$.Id', str)
return cls(iid)
def get_id(self) -> str:
"""
Return an identifier for the Docker Image
"""
return self.iid
class Container(Item):
"""
Docker container items
Instances can be used as context managers that ensure the container is stopped on
exiting the context.
"""
DEFAULT_ALIASES = tuple[str]()
def __init__(
self,
image: Image,
cmd: Arguments = [],
volumes: Volumes = [],
env: Environ = {},
network: Network|None = None,
entrypoint: HostMount|PathArg|None = None,
):
if isinstance(entrypoint, tuple):
volumes = [*volumes, entrypoint]
entrypoint = entrypoint[1]
self.image = image
self.cmd = cmd
self.volumes = volumes
self.env = env
self.entrypoint = entrypoint
self.networks = dict[Network, Tuple[str, ...]]()
self.cid: str|None = None
if network:
self.networks[network] = Container.DEFAULT_ALIASES
def __enter__(self) -> Container:
return self
def __exit__(self, etype: type[BaseException], exc: BaseException, tb: TracebackType) -> None:
if self.cid and exc:
self.show_logs()
self.stop(rm=True)
@contextmanager
def started(self) -> Iterator[Container]:
"""
Return a context manager that ensures the container is started when the context is entered
"""
with self:
self.start()
yield self
def is_running(self) -> bool:
"""
Return whether the container is running
"""
if self.cid is None:
return False
details = self.inspect()
if details.path('$.State.Status', str) == 'exited':
code = details.path('$.State.ExitCode', int)
raise ProcessLookupError(f"container {self.cid} exited ({code})")
return (
self.cid is not None
and details.path('$.State.Running', bool)
)
def get_id(self) -> str:
"""
Return an identifier for the Docker Container
"""
if self.cid is not None:
return self.cid
networks = set[Network]()
opts: MutableArguments = [
*(
(f"--volume={vol[0]}:{vol[1]}" if isinstance(vol, tuple) else f"--volume={vol}")
for vol in self.volumes
),
*(f"--env={name}={val}" for name, val in self.env.items()),
]
if self.entrypoint:
opts.append(f"--entrypoint={self.entrypoint}")
if self.networks:
networks.update(self.networks)
net = networks.pop()
opts.append(f"--network={net}")
opts.extend(f"--network-alias={alias}" for alias in self.networks[net])
self.cid = docker_output('container', 'create', *opts, self.image.iid, *self.cmd)
assert self.cid
return self.cid
def start(self) -> None:
"""
Start the container
"""
docker_quiet('container', 'start', self.get_id())
def stop(self, rm: bool = False) -> None:
"""
Stop the container
"""
if self.cid is None:
return
docker_quiet('container', 'stop', self.cid)
if rm:
docker_quiet('container', 'rm', self.cid)
self.cid = None
def connect(self, network: Network, *aliases: str) -> None:
"""
Connect the container to a Docker network
Any aliases supplied will be resolvable to the container by other containers on the
network.
"""
is_running = self.is_running()
if network in self.networks:
if self.networks[network] == aliases:
return
if is_running:
docker('network', 'disconnect', str(network), self.get_id())
if is_running:
docker(
'network', 'connect',
*(f'--alias={a}' for a in aliases),
str(network), self.get_id(),
)
self.networks[network] = aliases
def show_logs(self) -> None:
"""
Print the container logs to stdout
"""
if self.cid:
docker('logs', self.cid)
def get_exec_args(self, cmd: Arguments, interactive: bool = False) -> MutableArguments:
"""
Return a full argument list for running "cmd" inside the container
"""
return [DOCKER, "exec", *(("-i",) if interactive else ""), self.get_id(), *coerce_args(cmd)]
def run(
self,
cmd: Arguments,
*,
stdin: IO[Any]|int|None = None,
stdout: IO[Any]|int|None = None,
stderr: IO[Any]|int|None = None,
capture_output: bool = False,
check: bool = False,
input: bytes|None = None,
timeout: float|None = None,
) -> CompletedProcess[bytes]:
"""
Run "cmd" to completion inside the container and return the result
"""
return run(
self.get_exec_args(cmd),
stdin=stdin, stdout=stdout, stderr=stderr,
capture_output=capture_output,
check=check, timeout=timeout, input=input,
)
def exec(
self,
cmd: Arguments,
*,
stdin: IO[Any]|int|None = None,
stdout: IO[Any]|int|None = None,
stderr: IO[Any]|int|None = None,
) -> Popen[bytes]:
"""
Execute "cmd" inside the container and return a process object once started
"""
return Popen(
self.get_exec_args(cmd),
stdin=stdin, stdout=stdout, stderr=stderr,
)
class Network(Item):
"""
A Docker network
"""
def __init__(self, name: str|None = None) -> None:
self._name = name or f"br{token_hex(6)}"
def __str__(self) -> str:
return self._name
def __repr__(self) -> str:
cls = type(self)
return f"<{cls.__module__}.{cls.__name__} {self._name}>"
def __eq__(self, other: Any) -> bool:
if not isinstance(other, Network):
return self._name == str(other)
return self._name == other._name
def __hash__(self) -> int:
return self._name.__hash__()
def __enter__(self) -> Network:
self.create()
return self
def __exit__(self, etype: type[BaseException], exc: BaseException, tb: TracebackType) -> None:
self.destroy()
@property
def name(self) -> str:
"""
Return the name of the Docker network
"""
return self._name
def get_id(self) -> str:
"""
Return an identifier for the Docker Network
"""
return self._name
def create(self) -> None:
"""
Create the network
"""
docker_quiet("network", "create", self._name)
def destroy(self) -> None:
"""
Remove the network
"""
docker_quiet("network", "rm", self._name)