Dominik Süß

fighting computers since 1999

‼️A blog post appeared

Weekly Wrap 26/34


Last week I teased a post on how to set up HAProxy with iocaine. And guess what? I followed through on it! You can read it in all its glory here.

In order to get this working nicely and be useable for others, I published nse-oci - an OCI image build of nam-shub-of-enki. The code itself is very boring: A short containerfile and a patch to get the trusted decision header.

It took quite some work under the hood to get the build working though. I had a forgejo runner setup on my forge already but it couldn't build container images yet. I first explored daemonless builds using podman but wrangling capabilities made this infeasible as my forgejo runner was already spawning containers inside of a cri-o runtime scheduled through kubernetes. The actual solution was quite simple though: in order to be able to use custom images defined in workflows, I already had docker-in-docker setup as a sidecar to the runner. The only missing part was passing through the socket and correct options.

Now that this is all set up, I should probably look into automating all the other custom containers I'm using. There's not that many so it really shouldn't take that long but I also have better things to do 🤷