-
Notifications
You must be signed in to change notification settings - Fork 46
/
Copy pathDockerfile
114 lines (88 loc) · 3.85 KB
/
Dockerfile
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
# Using Ubuntu 18.04 image
FROM ubuntu:18.04
USER root
RUN mkdir -p /mc2/data
######################
# Install MC2 Client #
######################
# Copy the current directory contents into the container
RUN mkdir -p /mc2/client
COPY . /mc2/client
# Install wget
RUN apt-get update
RUN apt-get install -y wget sudo gnupg2 git vim
RUN useradd -m docker && echo "docker:docker" | chpasswd && adduser docker sudo
# Install CMake
RUN cd /mc2 && \
wget https://github.com/Kitware/CMake/releases/download/v3.15.6/cmake-3.15.6-Linux-x86_64.sh && \
sudo bash cmake-3.15.6-Linux-x86_64.sh --skip-license --prefix=/usr/local
# Configure Intel and Microsoft APT repos
RUN echo 'deb [arch=amd64] https://download.01.org/intel-sgx/sgx_repo/ubuntu bionic main' | sudo tee /etc/apt/sources.list.d/intel-sgx.list && \
wget -qO - https://download.01.org/intel-sgx/sgx_repo/ubuntu/intel-sgx-deb.key | sudo apt-key add - && \
echo "deb http://apt.llvm.org/bionic/ llvm-toolchain-bionic-7 main" | sudo tee /etc/apt/sources.list.d/llvm-toolchain-bionic-7.list && \
wget -qO - https://apt.llvm.org/llvm-snapshot.gpg.key | sudo apt-key add - && \
echo "deb [arch=amd64] https://packages.microsoft.com/ubuntu/18.04/prod bionic main" | sudo tee /etc/apt/sources.list.d/msprod.list && \
wget -qO - https://packages.microsoft.com/keys/microsoft.asc | sudo apt-key add - && \
sudo apt update
# Install Intel and Open Enclave packages and dependencies
RUN sudo apt -y install clang-8 libssl-dev gdb libsgx-enclave-common libsgx-quote-ex libprotobuf10 libsgx-dcap-ql libsgx-dcap-ql-dev az-dcap-client open-enclave=0.17.1
# Install Azure CLI
RUN curl -sL https://aka.ms/InstallAzureCLIDeb | sudo bash
# Mbed TLS and pip
RUN sudo apt-get install -y libmbedtls-dev python3-pip
# Upgrade pip
RUN pip3 install --upgrade pip
# Install Python dependencies
RUN cd /mc2/client && pip3 install -r requirements.txt
# Install Opaque Systems' sequencefile
RUN cd /mc2 && \
git clone https://github.com/opaque-systems/sequencefile.git && \
cd sequencefile && \
sudo python3 setup.py install
# Build mc2client
RUN cd /mc2/client && \
cd src && mkdir -p build && cd build && \
cmake .. && \
make -j4
# Install mc2client Python package
RUN cd /mc2/client/python-package/ && \
sudo python3 setup.py install
RUN echo "alias mc2=\"python3 /mc2/client/mc2.py\"" >> ~/.bashrc
######################
# Install Opaque SQL #
######################
# Clone Opaque SQL
RUN cd /mc2/ && git clone https://github.com/mc2-project/opaque-sql.git
# Install SBT dependencies
RUN sudo apt -y install build-essential openjdk-8-jdk python libssl-dev
# Install Spark 3.1.1
RUN wget https://archive.apache.org/dist/spark/spark-3.1.1/spark-3.1.1-bin-hadoop2.7.tgz && \
tar xvf spark-3.1.1* && \
sudo mkdir -p /opt/spark && \
sudo mv spark-3.1.1*/* /opt/spark && \
rm -rf spark-3.1.1* && \
sudo mkdir -p /opt/spark/work && \
sudo chmod -R a+wx /opt/spark/work
# Set Spark environment variables in bashrc
RUN echo "" >> ~/.bashrc && \
echo "# Spark settings" >> ~/.bashrc && \
echo "export SPARK_HOME=/opt/spark" >> ~/.bashrc && \
echo "export PATH=$PATH:/opt/spark/bin:/opt/spark/sbin" >> ~/.bashrc && \
echo "" >> ~/.bashrc
# Source Open Enclave on every login
RUN echo "source /opt/openenclave/share/openenclave/openenclaverc" >> ~/.bashrc
# Set environment variables
ENV OPAQUE_HOME="/mc2/opaque-sql"
ENV OPAQUE_DATA_DIR=${OPAQUE_HOME}/data/
ENV PRIVATE_KEY_PATH=${OPAQUE_HOME}/src/test/keys/mc2_test_key.pem
ENV MODE=SIMULATE
ENV OE_SDK_PATH=/opt/openenclave/
# Spark settings
ENV SPARK_SCALA_VERSION=2.12
ENV SPARK_HOME=/opt/spark
ENV PATH=$PATH:/opt/spark/bin:/opt/spark/sbin
# Build Opaque SQL
SHELL ["/bin/bash", "-c"]
RUN cd /mc2/opaque-sql && source /opt/openenclave/share/openenclave/openenclaverc && build/sbt package
# Set the working directory to /mc2
WORKDIR /mc2/client