# syntax=docker/dockerfile:1 # Stage 1: Build FROM --platform=${BUILDPLATFORM} docker.io/library/golang:1.26.2-trixie@sha256:c0074c718b473f3827043f86532c4c0ff537e3fe7a81b8219b0d1ccfcc2c9a09 AS builder ARG TARGETOS ARG TARGETARCH ARG TARGETVARIANT ARG GOOS=$TARGETOS ARG GOARCH=$TARGETARCH WORKDIR /go/src/goauthentik.io RUN --mount=type=cache,id=apt-$TARGETARCH$TARGETVARIANT,sharing=locked,target=/var/cache/apt \ dpkg --add-architecture arm64 && \ apt-get update && \ apt-get install -y --no-install-recommends crossbuild-essential-arm64 gcc-aarch64-linux-gnu RUN --mount=type=bind,target=/go/src/goauthentik.io/go.mod,src=./go.mod \ --mount=type=bind,target=/go/src/goauthentik.io/go.sum,src=./go.sum \ --mount=type=cache,target=/go/pkg/mod \ go mod download COPY . . RUN --mount=type=cache,sharing=locked,target=/go/pkg/mod \ --mount=type=cache,id=go-build-$TARGETARCH$TARGETVARIANT,sharing=locked,target=/root/.cache/go-build \ if [ "$TARGETARCH" = "arm64" ]; then export CC=aarch64-linux-gnu-gcc && export CC_FOR_TARGET=gcc-aarch64-linux-gnu; fi && \ CGO_ENABLED=1 GOFIPS140=latest GOARM="${TARGETVARIANT#v}" \ go build -o /go/rac ./cmd/rac # Stage 2: Run FROM ghcr.io/goauthentik/guacd:v1.6.0-ak-p1-fips@sha256:0748e2a430ba39a4c837e0cf8886d831ff5e871875614190783d20b7755d0636 ARG VERSION ARG GIT_BUILD_HASH ENV GIT_BUILD_HASH=$GIT_BUILD_HASH LABEL org.opencontainers.image.authors="Authentik Security Inc." \ org.opencontainers.image.source="https://github.com/goauthentik/authentik" \ org.opencontainers.image.description="goauthentik.io RAC outpost, see https://goauthentik.io for more info." \ org.opencontainers.image.documentation="https://docs.goauthentik.io" \ org.opencontainers.image.licenses="https://github.com/goauthentik/authentik/blob/main/LICENSE" \ org.opencontainers.image.revision=${GIT_BUILD_HASH} \ org.opencontainers.image.title="authentik RAC outpost image" \ org.opencontainers.image.url="https://goauthentik.io" \ org.opencontainers.image.vendor="Authentik Security Inc." \ org.opencontainers.image.version=${VERSION} USER root RUN apt-get update && \ apt-get upgrade -y && \ apt-get clean && \ rm -rf /tmp/* /var/lib/apt/lists/* USER 1000 COPY --from=builder /go/rac / HEALTHCHECK --interval=5s --retries=20 --start-period=3s CMD [ "/rac", "healthcheck" ] USER 1000 ENV TMPDIR=/dev/shm/ \ GOFIPS=1 ENTRYPOINT ["/rac"]