2024-02-12 18:05:54 +00:00
|
|
|
FROM scratch as base
|
2024-02-13 15:42:58 +00:00
|
|
|
ENV KERNEL_SRC_HASH=41a4f824af614460c429a7c723e8dcbb0e042f0047d328c18b4ed6f2b4efa63a
|
|
|
|
ENV KERNEL_SRC_FILE=linux-${KERNEL_VERSION}.tar.xz
|
|
|
|
ENV KERNEL_SRC_SITE=http://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/${KERNEL_SRC_FILE}
|
|
|
|
ENV NSM_VERSION=ed24913346a34d719afa2031299253160a2e3460
|
|
|
|
ENV NSM_SRC_HASH=720916a640f7579a1e9a972ddd43448d201b9ce4d4750079d8256e83be3e937c
|
|
|
|
ENV NSM_SRC_FILE=nsm.tgz
|
|
|
|
ENV NSM_SRC_SITE=https://codeload.github.com/aws/aws-nitro-enclaves-sdk-bootstrap/legacy.tar.gz/${VERSION}
|
|
|
|
ENV KERNEL_VERSION=5.19.6
|
2024-02-12 18:05:54 +00:00
|
|
|
|
|
|
|
FROM base as fetch
|
|
|
|
ADD --checksum=sha256:${SRC_HASH} ${SRC_SITE} .
|
2024-02-13 15:42:58 +00:00
|
|
|
ADD --checksum=sha256:${NSM_SRC_HASH} ${NSM_SRC_SITE} ${NSM_SRC_FILE}
|
2024-02-12 18:05:54 +00:00
|
|
|
|
|
|
|
FROM fetch as build
|
|
|
|
COPY --from=busybox . /
|
|
|
|
COPY --from=musl . /
|
|
|
|
COPY --from=make . /
|
|
|
|
COPY --from=binutils . /
|
|
|
|
COPY --from=linux-headers . /
|
|
|
|
COPY --from=elfutils . /
|
|
|
|
COPY --from=openssl . /
|
|
|
|
COPY --from=perl . /
|
|
|
|
COPY --from=m4 . /
|
|
|
|
COPY --from=gcc . /
|
|
|
|
COPY --from=bison . /
|
|
|
|
COPY --from=libzstd . /
|
|
|
|
COPY --from=zlib . /
|
|
|
|
COPY --from=flex . /
|
|
|
|
COPY --from=pkgconf . /
|
2024-02-13 15:42:58 +00:00
|
|
|
WORKDIR nitro-bootstrap
|
|
|
|
RUN tar -xf ../${NSM_SRC_FILE} -C . --strip-components 1
|
2024-02-12 18:05:54 +00:00
|
|
|
RUN tar -xf ${SRC_FILE}
|
2024-02-13 15:42:58 +00:00
|
|
|
WORKDIR linux-${KERNEL_VERSION}
|
2024-02-12 18:05:54 +00:00
|
|
|
ADD linux.config .config
|
|
|
|
RUN <<-EOF
|
|
|
|
set -eux
|
|
|
|
make olddefconfig
|
2024-02-13 15:42:58 +00:00
|
|
|
make bzImage
|
|
|
|
make modules_prepare
|
|
|
|
cd ../nitro-bootstrap
|
|
|
|
make -C ../linux-${KERNEL_VERSION} M=../nitro-bootstrap/nsm-driver
|
2024-02-12 18:05:54 +00:00
|
|
|
EOF
|
|
|
|
|
|
|
|
FROM build as install
|
|
|
|
RUN <<-EOF
|
|
|
|
set -eux
|
2024-02-13 15:42:58 +00:00
|
|
|
mkdir /rootfs
|
|
|
|
cp arch/x86_64/boot/bzImage /rootfs
|
|
|
|
cp /nitro-bootstrap/nsm-driver/nsm.ko /rootfs
|
2024-02-12 18:05:54 +00:00
|
|
|
EOF
|
|
|
|
RUN find /rootfs -exec touch -hcd "@0" "{}" +
|
|
|
|
|
|
|
|
FROM scratch as package
|
|
|
|
COPY --from=install /rootfs /
|