Brings up the documented target architecture as a docker-compose stack — a modular monolith with the Ghidra step split into its own async worker. - worker/: RQ queue (lazy redis import) + run_acquisition task (Job status queued→started→finished/failed, drives ams.acquire with sink=db) - Job model + JobOut schema; Snapshot.data is JSONB on Postgres - POST/GET /jobs: stream an upload to a shared volume, enqueue, poll status - docker/api.Dockerfile (slim) + docker/worker.Dockerfile (JDK21 + Ghidra fetched at build, overridable via GHIDRA_URL) + docker-compose.yml - ghidra.py: AMS_GHIDRA_SCRIPTS override for in-container script path - pyproject: [worker] extra (rq/redis/psycopg), python-multipart in [api] - tests: 4 new (task success/failure + endpoint enqueue/503) -> 22/22 Verified: API image builds, container serves /health + /ui + /jobs; compose config validates. Worker image (downloads ~1 GB Ghidra) not built here. Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
20 lines
693 B
Docker
20 lines
693 B
Docker
# API + Command Center UI. Stays slim — the heavy Ghidra lifting lives in the worker image.
|
|
FROM python:3.12-slim
|
|
|
|
WORKDIR /app
|
|
|
|
# Copy metadata first for layer caching, then the source.
|
|
COPY pyproject.toml README.md ./
|
|
COPY ams ./ams
|
|
COPY ghidra_scripts ./ghidra_scripts
|
|
COPY snapshots ./snapshots
|
|
|
|
# Editable install keeps ams + ghidra_scripts co-located (the worker resolves the script
|
|
# path relative to the package). The API needs the queue client too, to enqueue jobs.
|
|
RUN pip install --no-cache-dir -e ".[api]" rq redis "psycopg[binary]>=3.1"
|
|
|
|
ENV AMS_UPLOAD_DIR=/data/uploads
|
|
EXPOSE 8000
|
|
|
|
CMD ["uvicorn", "ams.api.app:create_app", "--factory", "--host", "0.0.0.0", "--port", "8000"]
|