From 100aff90d74ab0d25dbfa80e570b620be5e511fe Mon Sep 17 00:00:00 2001 From: Tim Bannister Date: Fri, 17 Jun 2022 12:30:10 +0100 Subject: [PATCH] Don't lock source when building in a container The container build process can work independently of the source, so no locking is required. (this also fixes unprivileged container builds) --- Makefile | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/Makefile b/Makefile index 4d99f64b12..4b3ca99864 100644 --- a/Makefile +++ b/Makefile @@ -77,8 +77,9 @@ container-push: container-image ## Push container image for the preview of the w container-build: module-check $(CONTAINER_RUN) --read-only --mount type=tmpfs,destination=/tmp,tmpfs-mode=01777 $(CONTAINER_IMAGE) sh -c "npm ci && hugo --minify --environment development" +# no build lock to allow for read-only mounts container-serve: module-check ## Boot the development server using container. - $(CONTAINER_RUN) --cap-drop=ALL --cap-add=AUDIT_WRITE --read-only --mount type=tmpfs,destination=/tmp,tmpfs-mode=01777 -p 1313:1313 $(CONTAINER_IMAGE) hugo server --buildFuture --environment development --bind 0.0.0.0 --destination /tmp/hugo --cleanDestinationDir + $(CONTAINER_RUN) --cap-drop=ALL --cap-add=AUDIT_WRITE --read-only --mount type=tmpfs,destination=/tmp,tmpfs-mode=01777 -p 1313:1313 $(CONTAINER_IMAGE) hugo server --buildFuture --environment development --bind 0.0.0.0 --destination /tmp/hugo --cleanDestinationDir --noBuildLock test-examples: scripts/test_examples.sh install