Restricto/module1
0
1# Copyright (c) Meta Platforms, Inc. and affiliates.
2# All rights reserved.
3#
4# This source code is licensed under the BSD-style license found in the
5# LICENSE file in the root directory of this source tree.
6
7# Multi-stage build using openenv-base
8# This Dockerfile is flexible and works for both:
9# - In-repo environments (with local src/core)
10# - Standalone environments (with openenv-core from pip)
11# The build script (openenv build) handles context detection and sets appropriate build args.
12
13ARG BASE_IMAGE=ghcr.io/meta-pytorch/openenv-base:latest
14FROM ${BASE_IMAGE} AS builder
15
16WORKDIR /app
17
18# Build argument to control whether we're building standalone or in-repo
19ARG BUILD_MODE=in-repo
20
21# Copy environment code (always at root of build context)
22COPY . /app/env
23
24# For in-repo builds, openenv-core is already in the pyproject.toml dependencies
25# For standalone builds, openenv-core will be installed from pip via pyproject.toml
26WORKDIR /app/env
27
28# Ensure uv is available (for local builds where base image lacks it)
29RUN if ! command -v uv >/dev/null 2>&1; then \
30 curl -LsSf https://astral.sh/uv/install.sh | sh && \
31 mv /root/.local/bin/uv /usr/local/bin/uv && \
32 mv /root/.local/bin/uvx /usr/local/bin/uvx; \
33 fi
34
35# Install git for building from git repos (build-time only)
36RUN apt-get update && apt-get install -y --no-install-recommends \
37 git \
38 && rm -rf /var/lib/apt/lists/*
39
40# Install dependencies using uv sync
41# First pass: install dependencies without the project (for better caching)
42# Second pass: install the project itself
43RUN --mount=type=cache,target=/root/.cache/uv \
44 if [ -f uv.lock ]; then \
45 uv sync --frozen --no-install-project --no-editable; \
46 else \
47 uv sync --no-install-project --no-editable; \
48 fi
49
50RUN --mount=type=cache,target=/root/.cache/uv \
51 if [ -f uv.lock ]; then \
52 uv sync --frozen --no-editable; \
53 else \
54 uv sync --no-editable; \
55 fi
56
57# Final runtime stage
58FROM ${BASE_IMAGE}
59
60WORKDIR /app
61
62# Copy the virtual environment from builder
63COPY --from=builder /app/env/.venv /app/.venv
64
65# Copy the environment code
66COPY --from=builder /app/env /app/env
67
68# Set PATH to use the virtual environment
69ENV PATH="/app/.venv/bin:$PATH"
70
71# Set PYTHONPATH so imports work correctly
72ENV PYTHONPATH="/app/env:$PYTHONPATH"
73
74# Health check using Python (more portable than curl/wget)
75HEALTHCHECK --interval=30s --timeout=3s --start-period=5s --retries=3 \
76 CMD python -c "import urllib.request; urllib.request.urlopen('http://localhost:8000/health')" || exit 1
77
78# Run the FastAPI server
79# The module path is constructed to work with the /app/env structure
80ENV ENABLE_WEB_INTERFACE=true
81CMD ["sh", "-c", "cd /app/env && uvicorn server.app:app --host 0.0.0.0 --port 8000"]
82 