Dockerfile
s act as instructions for the docker
(or compatible) CLI to use for building OCI container images. Images may or may not have layers and can be exported as a tarball for inspection (with tools like dive
).
Nix provides native support for building container images, and the resulting archive must be loaded using docker load
. There is another library (nix2container
) that aims for better performance and relies on skopeo
for copying the built image to a docker-compatible server, local or remote.
Just wanted to share a some of the information I’ve learned. Cheers!
For what it’s worth, some say that PGP is bad and needs to go away. I found that article pretty interesting when learning
sops
.