IT博客汇
  • 首页
  • 精华
  • 技术
  • 设计
  • 资讯
  • 扯淡
  • 权利声明
  • 登录 注册

    Install Docker on CentOS 7

    Adamhuan发表于 2016-10-23 04:18:11
    love 0

    参考文档:https://docs.docker.com/engine/installation/linux/centos/

    Kernel:

    [root@dockerme ~]# uname -a
    Linux dockerme 3.10.0-327.36.2.el7.x86_64 #1 SMP Mon Oct 10 23:08:37 UTC 2016 x86_64 x86_64 x86_64 GNU/Linux
    [root@dockerme ~]#

    一、【YUM】安装Docker

    Cmd:
    yum update kernel
    yum update

    configure YUM repo:

    [root@script-lang script]# cat /etc/yum.repos.d/docker.repo 
    [dockerrepo]
    name=Docker Repository
    baseurl=https://yum.dockerproject.org/repo/main/centos/7/
    enabled=1
    gpgcheck=1
    gpgkey=https://yum.dockerproject.org/gpg
    [root@script-lang script]# 
    [root@script-lang script]# yum repolist
    Loaded plugins: fastestmirror, refresh-packagekit, security
    Repository base is listed more than once in the configuration
    Repository updates is listed more than once in the configuration
    Repository extras is listed more than once in the configuration
    Repository centosplus is listed more than once in the configuration
    Repository contrib is listed more than once in the configuration
    Loading mirror speeds from cached hostfile
     * base: mirrors.zju.edu.cn
     * extras: mirrors.aliyun.com
     * updates: mirrors.aliyun.com
    dockerrepo                                                                                                                       | 2.9 kB     00:00     
    dockerrepo/primary_db                                                                                                            |  21 kB     00:03     
    repo id                                                                repo name                                                                  status
    Local-software                                                         Local-Software                                                                 7
    base                                                                   CentOS-6 - Base                                                            6,696
    dockerrepo                                                             Docker Repository                                                             60
    extras                                                                 CentOS-6 - Extras                                                             62
    updates                                                                CentOS-6 - Updates                                                           540
    repolist: 7,365
    [root@script-lang script]#
    [root@dockerme ~]# yum update
    Loaded plugins: fastestmirror, langpacks
    base                                                                                                                             | 3.6 kB  00:00:00     
    dockerrepo                                                                                                                       | 2.9 kB  00:00:00     
    extras                                                                                                                           | 3.4 kB  00:00:00     
    updates                                                                                                                          | 3.4 kB  00:00:00     
    dockerrepo/primary_db                                                                                                            |  21 kB  00:00:03     
    Loading mirror speeds from cached hostfile
     * base: mirrors.163.com
     * extras: mirrors.zju.edu.cn
     * updates: mirrors.zju.edu.cn
    No packages marked for update
    [root@dockerme ~]#

    检查相关的软件包的状态:

    [root@dockerme ~]# yum list | grep --color ^selinux
    selinux-policy.noarch                      3.13.1-60.el7_2.9           @updates 
    selinux-policy-targeted.noarch             3.13.1-60.el7_2.9           @updates 
    selinux-policy-devel.noarch                3.13.1-60.el7_2.9           updates  
    selinux-policy-doc.noarch                  3.13.1-60.el7_2.9           updates  
    selinux-policy-minimum.noarch              3.13.1-60.el7_2.9           updates  
    selinux-policy-mls.noarch                  3.13.1-60.el7_2.9           updates  
    selinux-policy-sandbox.noarch              3.13.1-60.el7_2.9           updates  
    [root@dockerme ~]# rpm -qa | grep --color selinux
    libselinux-utils-2.2.2-6.el7.x86_64
    selinux-policy-targeted-3.13.1-60.el7_2.9.noarch
    libselinux-2.2.2-6.el7.x86_64
    libselinux-python-2.2.2-6.el7.x86_64
    selinux-policy-3.13.1-60.el7_2.9.noarch
    [root@dockerme ~]#

    安装【Docker Engine】:

    [root@dockerme ~]# yum list | grep --color docker
    cockpit-docker.x86_64                      0.114-2.el7.centos          extras   
    docker.x86_64                              1.10.3-46.el7.centos.14     extras   
    docker-common.x86_64                       1.10.3-46.el7.centos.14     extras   
    docker-devel.x86_64                        1.3.2-4.el7.centos          extras   
    docker-distribution.x86_64                 2.4.1-2.el7                 extras   
    docker-engine.x86_64                       1.12.2-1.el7.centos         dockerrepo
    docker-engine-debuginfo.x86_64             1.12.2-1.el7.centos         dockerrepo
    docker-engine-selinux.noarch               1.12.2-1.el7.centos         dockerrepo
    docker-forward-journald.x86_64             1.10.3-44.el7.centos        extras   
    docker-latest.x86_64                       1.12.1-2.el7.centos         extras   
    docker-latest-logrotate.x86_64             1.12.1-2.el7.centos         extras   
    docker-latest-v1.10-migrator.x86_64        1.12.1-2.el7.centos         extras   
    docker-logrotate.x86_64                    1.10.3-46.el7.centos.14     extras   
    docker-lvm-plugin.x86_64                   1.10.3-46.el7.centos.14     extras   
    docker-novolume-plugin.x86_64              1.10.3-46.el7.centos.14     extras   
    docker-python.x86_64                       1.4.0-115.el7               extras   
    docker-registry.noarch                     0.6.8-8.el7                 extras   
    docker-registry.x86_64                     0.9.1-7.el7                 extras   
    docker-selinux.x86_64                      1.10.3-46.el7.centos.14     extras   
    docker-unit-test.x86_64                    1.10.3-46.el7.centos.14     extras   
    docker-v1.10-migrator.x86_64               1.10.3-46.el7.centos.14     extras   
    python-docker-py.noarch                    1.7.2-1.el7                 extras   
    [root@dockerme ~]# 
    [root@dockerme ~]# yum install docker-engine
    Loaded plugins: fastestmirror, langpacks
    Loading mirror speeds from cached hostfile
     * base: mirrors.163.com
     * extras: mirrors.zju.edu.cn
     * updates: mirrors.zju.edu.cn
    Resolving Dependencies
    --> Running transaction check
    ---> Package docker-engine.x86_64 0:1.12.2-1.el7.centos will be installed
    --> Processing Dependency: docker-engine-selinux >= 1.12.2-1.el7.centos for package: docker-engine-1.12.2-1.el7.centos.x86_64
    --> Running transaction check
    ---> Package docker-engine-selinux.noarch 0:1.12.2-1.el7.centos will be installed
    --> Finished Dependency Resolution
    
    Dependencies Resolved
    
    ========================================================================================================================================================
     Package                                    Arch                        Version                                   Repository                       Size
    ========================================================================================================================================================
    Installing:
     docker-engine                              x86_64                      1.12.2-1.el7.centos                       dockerrepo                       19 M
    Installing for dependencies:
     docker-engine-selinux                      noarch                      1.12.2-1.el7.centos                       dockerrepo                       28 k
    
    Transaction Summary
    ========================================================================================================================================================
    Install  1 Package (+1 Dependent package)
    
    Total download size: 19 M
    Installed size: 79 M
    Is this ok [y/d/N]: y
    Downloading packages:
    No Presto metadata available for dockerrepo
    warning: /var/cache/yum/x86_64/7/dockerrepo/packages/docker-engine-selinux-1.12.2-1.el7.centos.noarch.rpm: Header V4 RSA/SHA512 Signature, key ID 2c52609d: NOKEY
    Public key for docker-engine-selinux-1.12.2-1.el7.centos.noarch.rpm is not installed
    (1/2): docker-engine-selinux-1.12.2-1.el7.centos.noarch.rpm                                                                      |  28 kB  00:00:08     
    (2/2): docker-engine-1.12.2-1.el7.centos.x86_64.rpm                                                                              |  19 MB  00:07:27     
    --------------------------------------------------------------------------------------------------------------------------------------------------------
    Total                                                                                                                    44 kB/s |  19 MB  00:07:27     
    Retrieving key from https://yum.dockerproject.org/gpg
    Importing GPG key 0x2C52609D:
     Userid     : "Docker Release Tool (releasedocker) "
     Fingerprint: 5811 8e89 f3a9 1289 7c07 0adb f762 2157 2c52 609d
     From       : https://yum.dockerproject.org/gpg
    Is this ok [y/N]: y
    Running transaction check
    Running transaction test
    Transaction test succeeded
    Running transaction
      Installing : docker-engine-selinux-1.12.2-1.el7.centos.noarch                                                                                     1/2 
    setsebool:  SELinux is disabled.
      Installing : docker-engine-1.12.2-1.el7.centos.x86_64                                                                                             2/2 
      Verifying  : docker-engine-1.12.2-1.el7.centos.x86_64                                                                                             1/2 
      Verifying  : docker-engine-selinux-1.12.2-1.el7.centos.noarch                                                                                     2/2 
    
    Installed:
      docker-engine.x86_64 0:1.12.2-1.el7.centos                                                                                                            
    
    Dependency Installed:
      docker-engine-selinux.noarch 0:1.12.2-1.el7.centos                                                                                                    
    
    Complete!
    [root@dockerme ~]#

    设置开机启动,并运行Dcoker:

    [root@dockerme ~]# systemctl status docker.service
    ● docker.service - Docker Application Container Engine
       Loaded: loaded (/usr/lib/systemd/system/docker.service; disabled; vendor preset: disabled)
       Active: inactive (dead)
         Docs: https://docs.docker.com
    [root@dockerme ~]# 
    [root@dockerme ~]# systemctl enable docker.service
    Created symlink from /etc/systemd/system/multi-user.target.wants/docker.service to /usr/lib/systemd/system/docker.service.
    [root@dockerme ~]# 
    [root@dockerme ~]# systemctl status docker.service
    ● docker.service - Docker Application Container Engine
       Loaded: loaded (/usr/lib/systemd/system/docker.service; enabled; vendor preset: disabled)
       Active: inactive (dead)
         Docs: https://docs.docker.com
    [root@dockerme ~]# 
    [root@dockerme ~]# systemctl start docker
    [root@dockerme ~]# 
    [root@dockerme ~]# systemctl status docker.service
    ● docker.service - Docker Application Container Engine
       Loaded: loaded (/usr/lib/systemd/system/docker.service; enabled; vendor preset: disabled)
       Active: active (running) since Sat 2016-10-22 20:55:03 PDT; 5s ago
         Docs: https://docs.docker.com
     Main PID: 11195 (dockerd)
       Memory: 18.4M
       CGroup: /system.slice/docker.service
               ├─11195 /usr/bin/dockerd
               └─11201 docker-containerd -l unix:///var/run/docker/libcontainerd/docker-containerd.sock --shim docker-containerd-shim --metrics-interval=...
    
    Oct 22 20:55:02 dockerme dockerd[11195]: time="2016-10-22T20:55:02.856790585-07:00" level=info msg="Graph migration to content-addressabilit... seconds"
    Oct 22 20:55:02 dockerme dockerd[11195]: time="2016-10-22T20:55:02.857120544-07:00" level=warning msg="mountpoint for pids not found"
    Oct 22 20:55:02 dockerme dockerd[11195]: time="2016-10-22T20:55:02.857381542-07:00" level=info msg="Loading containers: start."
    Oct 22 20:55:02 dockerme dockerd[11195]: time="2016-10-22T20:55:02.882088994-07:00" level=info msg="Firewalld running: true"
    Oct 22 20:55:03 dockerme dockerd[11195]: time="2016-10-22T20:55:03.205934323-07:00" level=info msg="Default bridge (docker0) is assigned wit... address"
    Oct 22 20:55:03 dockerme dockerd[11195]: time="2016-10-22T20:55:03.501834841-07:00" level=info msg="Loading containers: done."
    Oct 22 20:55:03 dockerme dockerd[11195]: time="2016-10-22T20:55:03.501954032-07:00" level=info msg="Daemon has completed initialization"
    Oct 22 20:55:03 dockerme dockerd[11195]: time="2016-10-22T20:55:03.501987716-07:00" level=info msg="Docker daemon" commit=bb80604 graphdrive...on=1.12.2
    Oct 22 20:55:03 dockerme dockerd[11195]: time="2016-10-22T20:55:03.526164133-07:00" level=info msg="API listen on /var/run/docker.sock"
    Oct 22 20:55:03 dockerme systemd[1]: Started Docker Application Container Engine.
    Hint: Some lines were ellipsized, use -l to show in full.
    [root@dockerme ~]#

    跑一个“Hello world”:

    [root@dockerme ~]# docker run --rm hello-world
    Unable to find image 'hello-world:latest' locally
    latest: Pulling from library/hello-world
    c04b14da8d14: Pull complete 
    Digest: sha256:0256e8a36e2070f7bf2d0b0763dbabdd67798512411de4cdcf9431a1feb60fd9
    Status: Downloaded newer image for hello-world:latest
    
    Hello from Docker!
    This message shows that your installation appears to be working correctly.
    
    To generate this message, Docker took the following steps:
     1. The Docker client contacted the Docker daemon.
     2. The Docker daemon pulled the "hello-world" image from the Docker Hub.
     3. The Docker daemon created a new container from that image which runs the
        executable that produces the output you are currently reading.
     4. The Docker daemon streamed that output to the Docker client, which sent it
        to your terminal.
    
    To try something more ambitious, you can run an Ubuntu container with:
     $ docker run -it ubuntu bash
    
    Share images, automate workflows, and more with a free Docker Hub account:
     https://hub.docker.com
    
    For more examples and ideas, visit:
     https://docs.docker.com/engine/userguide/
    
    [root@dockerme ~]#

    这样,【用YUM的方式】安装Docker就完成了。

    二、卸载安装的DOCKER
    Shell:

    [root@dockerme ~]# yum list installed | grep --color docker
    docker-engine.x86_64                   1.12.2-1.el7.centos             @dockerrepo
    docker-engine-selinux.noarch           1.12.2-1.el7.centos             @dockerrepo
    [root@dockerme ~]# 
    [root@dockerme ~]# yum -y remove docker-engine
    Loaded plugins: fastestmirror, langpacks
    Resolving Dependencies
    --> Running transaction check
    ---> Package docker-engine.x86_64 0:1.12.2-1.el7.centos will be erased
    --> Finished Dependency Resolution
    
    Dependencies Resolved
    
    ========================================================================================================================================================
     Package                              Arch                          Version                                    Repository                          Size
    ========================================================================================================================================================
    Removing:
     docker-engine                        x86_64                        1.12.2-1.el7.centos                        @dockerrepo                         79 M
    
    Transaction Summary
    ========================================================================================================================================================
    Remove  1 Package
    
    Installed size: 79 M
    Downloading packages:
    Running transaction check
    Running transaction test
    Transaction test succeeded
    Running transaction
      Erasing    : docker-engine-1.12.2-1.el7.centos.x86_64                                                                                             1/1 
      Verifying  : docker-engine-1.12.2-1.el7.centos.x86_64                                                                                             1/1 
    
    Removed:
      docker-engine.x86_64 0:1.12.2-1.el7.centos                                                                                                            
    
    Complete!
    [root@dockerme ~]# 
    [root@dockerme ~]# yum list installed | grep --color docker
    docker-engine-selinux.noarch           1.12.2-1.el7.centos             @dockerrepo
    [root@dockerme ~]# 
    [root@dockerme ~]# ls /var/lib/docker/
    containers  devicemapper  image  network  swarm  tmp  trust  volumes
    [root@dockerme ~]# 
    [root@dockerme ~]# rm -rf /var/lib/docker/
    [root@dockerme ~]#

    三、【脚本】安装Docker

    查看下脚本:

    [root@dockerme ~]# cd /software
    [root@dockerme software]# 
    [root@dockerme software]# ls
    [root@dockerme software]# 
    [root@dockerme software]# curl -fsSL https://get.docker.com
    #!/bin/sh
    set -e
    #
    # This script is meant for quick & easy install via:
    #   'curl -sSL https://get.docker.com/ | sh'
    # or:
    #   'wget -qO- https://get.docker.com/ | sh'
    #
    # For test builds (ie. release candidates):
    #   'curl -fsSL https://test.docker.com/ | sh'
    # or:
    #   'wget -qO- https://test.docker.com/ | sh'
    #
    # For experimental builds:
    #   'curl -fsSL https://experimental.docker.com/ | sh'
    # or:
    #   'wget -qO- https://experimental.docker.com/ | sh'
    #
    # Docker Maintainers:
    #   To update this script on https://get.docker.com,
    #   use hack/release.sh during a normal release,
    #   or the following one-liner for script hotfixes:
    #     aws s3 cp --acl public-read hack/install.sh s3://get.docker.com/index
    #
    
    url="https://get.docker.com/"
    apt_url="https://apt.dockerproject.org"
    yum_url="https://yum.dockerproject.org"
    gpg_fingerprint="58118E89F3A912897C070ADBF76221572C52609D"
    
    key_servers="
    ha.pool.sks-keyservers.net
    pgp.mit.edu
    keyserver.ubuntu.com
    "
    
    command_exists() {
    	command -v "$@" > /dev/null 2>&1
    }
    
    echo_docker_as_nonroot() {
    	if command_exists docker && [ -e /var/run/docker.sock ]; then
    		(
    			set -x
    			$sh_c 'docker version'
    		) || true
    	fi
    	your_user=your-user
    	[ "$user" != 'root' ] && your_user="$user"
    	# intentionally mixed spaces and tabs here -- tabs are stripped by "<<-EOF", spaces are kept in the output
    	cat <<-EOF
    
    	If you would like to use Docker as a non-root user, you should now consider
    	adding your user to the "docker" group with something like:
    
    	  sudo usermod -aG docker $your_user
    
    	Remember that you will have to log out and back in for this to take effect!
    
    	EOF
    }
    
    # Check if this is a forked Linux distro
    check_forked() {
    
    	# Check for lsb_release command existence, it usually exists in forked distros
    	if command_exists lsb_release; then
    		# Check if the `-u` option is supported
    		set +e
    		lsb_release -a -u > /dev/null 2>&1
    		lsb_release_exit_code=$?
    		set -e
    
    		# Check if the command has exited successfully, it means we're in a forked distro
    		if [ "$lsb_release_exit_code" = "0" ]; then
    			# Print info about current distro
    			cat <<-EOF
    			You're using '$lsb_dist' version '$dist_version'.
    			EOF
    
    			# Get the upstream release info
    			lsb_dist=$(lsb_release -a -u 2>&1 | tr '[:upper:]' '[:lower:]' | grep -E 'id' | cut -d ':' -f 2 | tr -d '[[:space:]]')
    			dist_version=$(lsb_release -a -u 2>&1 | tr '[:upper:]' '[:lower:]' | grep -E 'codename' | cut -d ':' -f 2 | tr -d '[[:space:]]')
    
    			# Print info about upstream distro
    			cat <<-EOF
    			Upstream release is '$lsb_dist' version '$dist_version'.
    			EOF
    		else
    			if [ -r /etc/debian_version ] && [ "$lsb_dist" != "ubuntu" ] && [ "$lsb_dist" != "raspbian" ]; then
    				# We're Debian and don't even know it!
    				lsb_dist=debian
    				dist_version="$(cat /etc/debian_version | sed 's/\/.*//' | sed 's/\..*//')"
    				case "$dist_version" in
    					8|'Kali Linux 2')
    						dist_version="jessie"
    					;;
    					7)
    						dist_version="wheezy"
    					;;
    				esac
    			fi
    		fi
    	fi
    }
    
    rpm_import_repository_key() {
    	local key=$1; shift
    	local tmpdir=$(mktemp -d)
    	chmod 600 "$tmpdir"
    	for key_server in $key_servers ; do
    		gpg --homedir "$tmpdir" --keyserver "$key_server" --recv-keys "$key" && break
    	done
    	gpg --homedir "$tmpdir" -k "$key" >/dev/null
    	gpg --homedir "$tmpdir" --export --armor "$key" > "$tmpdir"/repo.key
    	rpm --import "$tmpdir"/repo.key
    	rm -rf "$tmpdir"
    }
    
    semverParse() {
    	major="${1%%.*}"
    	minor="${1#$major.}"
    	minor="${minor%%.*}"
    	patch="${1#$major.$minor.}"
    	patch="${patch%%[-.]*}"
    }
    
    do_install() {
    	case "$(uname -m)" in
    		*64)
    			;;
    		armv6l|armv7l)
    			;;
    		*)
    			cat >&2 <<-'EOF'
    			Error: you are not using a 64bit platform or a Raspberry Pi (armv6l/armv7l).
    			Docker currently only supports 64bit platforms or a Raspberry Pi (armv6l/armv7l).
    			EOF
    			exit 1
    			;;
    	esac
    
    	if command_exists docker; then
    		version="$(docker -v | awk -F '[ ,]+' '{ print $3 }')"
    		MAJOR_W=1
    		MINOR_W=10
    
    		semverParse $version
    
    		shouldWarn=0
    		if [ $major -lt $MAJOR_W ]; then
    			shouldWarn=1
    		fi
    
    		if [ $major -le $MAJOR_W ] && [ $minor -lt $MINOR_W ]; then
    			shouldWarn=1
    		fi
    
    		cat >&2 <<-'EOF'
    			Warning: the "docker" command appears to already exist on this system.
    
    			If you already have Docker installed, this script can cause trouble, which is
    			why we're displaying this warning and provide the opportunity to cancel the
    			installation.
    
    			If you installed the current Docker package using this script and are using it
    		EOF
    
    		if [ $shouldWarn -eq 1 ]; then
    			cat >&2 <<-'EOF'
    			again to update Docker, we urge you to migrate your image store before upgrading
    			to v1.10+.
    
    			You can find instructions for this here:
    			https://github.com/docker/docker/wiki/Engine-v1.10.0-content-addressability-migration
    			EOF
    		else
    			cat >&2 <<-'EOF'
    			again to update Docker, you can safely ignore this message.
    			EOF
    		fi
    
    		cat >&2 <<-'EOF'
    
    			You may press Ctrl+C now to abort this script.
    		EOF
    		( set -x; sleep 20 )
    	fi
    
    	user="$(id -un 2>/dev/null || true)"
    
    	sh_c='sh -c'
    	if [ "$user" != 'root' ]; then
    		if command_exists sudo; then
    			sh_c='sudo -E sh -c'
    		elif command_exists su; then
    			sh_c='su -c'
    		else
    			cat >&2 <<-'EOF'
    			Error: this installer needs the ability to run commands as root.
    			We are unable to find either "sudo" or "su" available to make this happen.
    			EOF
    			exit 1
    		fi
    	fi
    
    	curl=''
    	if command_exists curl; then
    		curl='curl -sSL'
    	elif command_exists wget; then
    		curl='wget -qO-'
    	elif command_exists busybox && busybox --list-modules | grep -q wget; then
    		curl='busybox wget -qO-'
    	fi
    
    	# check to see which repo they are trying to install from
    	if [ -z "$repo" ]; then
    		repo='main'
    		if [ "https://test.docker.com/" = "$url" ]; then
    			repo='testing'
    		elif [ "https://experimental.docker.com/" = "$url" ]; then
    			repo='experimental'
    		fi
    	fi
    
    	# perform some very rudimentary platform detection
    	lsb_dist=''
    	dist_version=''
    	if command_exists lsb_release; then
    		lsb_dist="$(lsb_release -si)"
    	fi
    	if [ -z "$lsb_dist" ] && [ -r /etc/lsb-release ]; then
    		lsb_dist="$(. /etc/lsb-release && echo "$DISTRIB_ID")"
    	fi
    	if [ -z "$lsb_dist" ] && [ -r /etc/debian_version ]; then
    		lsb_dist='debian'
    	fi
    	if [ -z "$lsb_dist" ] && [ -r /etc/fedora-release ]; then
    		lsb_dist='fedora'
    	fi
    	if [ -z "$lsb_dist" ] && [ -r /etc/oracle-release ]; then
    		lsb_dist='oracleserver'
    	fi
    	if [ -z "$lsb_dist" ] && [ -r /etc/centos-release ]; then
    		lsb_dist='centos'
    	fi
    	if [ -z "$lsb_dist" ] && [ -r /etc/redhat-release ]; then
    		lsb_dist='redhat'
    	fi
    	if [ -z "$lsb_dist" ] && [ -r /etc/os-release ]; then
    		lsb_dist="$(. /etc/os-release && echo "$ID")"
    	fi
    
    	lsb_dist="$(echo "$lsb_dist" | tr '[:upper:]' '[:lower:]')"
    
    	# Special case redhatenterpriseserver
    	if [ "${lsb_dist}" = "redhatenterpriseserver" ]; then
            	# Set it to redhat, it will be changed to centos below anyways
            	lsb_dist='redhat'
    	fi
    
    	case "$lsb_dist" in
    
    		ubuntu)
    			if command_exists lsb_release; then
    				dist_version="$(lsb_release --codename | cut -f2)"
    			fi
    			if [ -z "$dist_version" ] && [ -r /etc/lsb-release ]; then
    				dist_version="$(. /etc/lsb-release && echo "$DISTRIB_CODENAME")"
    			fi
    		;;
    
    		debian|raspbian)
    			dist_version="$(cat /etc/debian_version | sed 's/\/.*//' | sed 's/\..*//')"
    			case "$dist_version" in
    				8)
    					dist_version="jessie"
    				;;
    				7)
    					dist_version="wheezy"
    				;;
    			esac
    		;;
    
    		oracleserver)
    			# need to switch lsb_dist to match yum repo URL
    			lsb_dist="oraclelinux"
    			dist_version="$(rpm -q --whatprovides redhat-release --queryformat "%{VERSION}\n" | sed 's/\/.*//' | sed 's/\..*//' | sed 's/Server*//')"
    		;;
    
    		fedora|centos|redhat)
    			dist_version="$(rpm -q --whatprovides ${lsb_dist}-release --queryformat "%{VERSION}\n" | sed 's/\/.*//' | sed 's/\..*//' | sed 's/Server*//' | sort | tail -1)"
    		;;
    
    		*)
    			if command_exists lsb_release; then
    				dist_version="$(lsb_release --codename | cut -f2)"
    			fi
    			if [ -z "$dist_version" ] && [ -r /etc/os-release ]; then
    				dist_version="$(. /etc/os-release && echo "$VERSION_ID")"
    			fi
    		;;
    
    
    	esac
    
    	# Check if this is a forked Linux distro
    	check_forked
    
    	# Run setup for each distro accordingly
    	case "$lsb_dist" in
    		amzn)
    			(
    			set -x
    			$sh_c 'sleep 3; yum -y -q install docker'
    			)
    			echo_docker_as_nonroot
    			exit 0
    			;;
    
    		'opensuse project'|opensuse)
    			echo 'Going to perform the following operations:'
    			if [ "$repo" != 'main' ]; then
    				echo '  * add repository obs://Virtualization:containers'
    			fi
    			echo '  * install Docker'
    			$sh_c 'echo "Press CTRL-C to abort"; sleep 3'
    
    			if [ "$repo" != 'main' ]; then
    				# install experimental packages from OBS://Virtualization:containers
    				(
    					set -x
    					zypper -n ar -f obs://Virtualization:containers Virtualization:containers
    					rpm_import_repository_key 55A0B34D49501BB7CA474F5AA193FBB572174FC2
    				)
    			fi
    			(
    				set -x
    				zypper -n install docker
    			)
    			echo_docker_as_nonroot
    			exit 0
    			;;
    		'suse linux'|sle[sd])
    			echo 'Going to perform the following operations:'
    			if [ "$repo" != 'main' ]; then
    				echo '  * add repository obs://Virtualization:containers'
    				echo '  * install experimental Docker using packages NOT supported by SUSE'
    			else
    				echo '  * add the "Containers" module'
    				echo '  * install Docker using packages supported by SUSE'
    			fi
    			$sh_c 'echo "Press CTRL-C to abort"; sleep 3'
    
    			if [ "$repo" != 'main' ]; then
    				# install experimental packages from OBS://Virtualization:containers
    				echo >&2 'Warning: installing experimental packages from OBS, these packages are NOT supported by SUSE'
    				(
    					set -x
    					zypper -n ar -f obs://Virtualization:containers/SLE_12 Virtualization:containers
    					rpm_import_repository_key 55A0B34D49501BB7CA474F5AA193FBB572174FC2
    				)
    			else
    				# Add the containers module
    				# Note well-1: the SLE machine must already be registered against SUSE Customer Center
    				# Note well-2: the `-r ""` is required to workaround a known issue of SUSEConnect
    				(
    					set -x
    					SUSEConnect -p sle-module-containers/12/x86_64 -r ""
    				)
    			fi
    			(
    				set -x
    				zypper -n install docker
    			)
    			echo_docker_as_nonroot
    			exit 0
    			;;
    
    		ubuntu|debian|raspbian)
    			export DEBIAN_FRONTEND=noninteractive
    
    			did_apt_get_update=
    			apt_get_update() {
    				if [ -z "$did_apt_get_update" ]; then
    					( set -x; $sh_c 'sleep 3; apt-get update' )
    					did_apt_get_update=1
    				fi
    			}
    
    			if [ "$lsb_dist" = "raspbian" ]; then
    				# Create Raspbian specific systemd drop-in file, use overlay by default
    				( set -x; $sh_c "mkdir -p /etc/systemd/system/docker.service.d" )
    				( set -x; $sh_c "echo '[Service]\nExecStart=\nExecStart=/usr/bin/dockerd --storage-driver overlay -H fd://' > /etc/systemd/system/docker.service.d/overlay.conf" )
    			else
    				# aufs is preferred over devicemapper; try to ensure the driver is available.
    				if ! grep -q aufs /proc/filesystems && ! $sh_c 'modprobe aufs'; then
    					if uname -r | grep -q -- '-generic' && dpkg -l 'linux-image-*-generic' | grep -qE '^ii|^hi' 2>/dev/null; then
    						kern_extras="linux-image-extra-$(uname -r) linux-image-extra-virtual"
    
    						apt_get_update
    						( set -x; $sh_c 'sleep 3; apt-get install -y -q '"$kern_extras" ) || true
    
    						if ! grep -q aufs /proc/filesystems && ! $sh_c 'modprobe aufs'; then
    							echo >&2 'Warning: tried to install '"$kern_extras"' (for AUFS)'
    							echo >&2 ' but we still have no AUFS.  Docker may not work. Proceeding anyways!'
    							( set -x; sleep 10 )
    						fi
    					else
    						echo >&2 'Warning: current kernel is not supported by the linux-image-extra-virtual'
    						echo >&2 ' package.  We have no AUFS support.  Consider installing the packages'
    						echo >&2 ' linux-image-virtual kernel and linux-image-extra-virtual for AUFS support.'
    						( set -x; sleep 10 )
    					fi
    				fi
    			fi
    
    			# install apparmor utils if they're missing and apparmor is enabled in the kernel
    			# otherwise Docker will fail to start
    			if [ "$(cat /sys/module/apparmor/parameters/enabled 2>/dev/null)" = 'Y' ]; then
    				if command -v apparmor_parser >/dev/null 2>&1; then
    					echo 'apparmor is enabled in the kernel and apparmor utils were already installed'
    				else
    					echo 'apparmor is enabled in the kernel, but apparmor_parser is missing. Trying to install it..'
    					apt_get_update
    					( set -x; $sh_c 'sleep 3; apt-get install -y -q apparmor' )
    				fi
    			fi
    
    			if [ ! -e /usr/lib/apt/methods/https ]; then
    				apt_get_update
    				( set -x; $sh_c 'sleep 3; apt-get install -y -q apt-transport-https ca-certificates' )
    			fi
    			if [ -z "$curl" ]; then
    				apt_get_update
    				( set -x; $sh_c 'sleep 3; apt-get install -y -q curl ca-certificates' )
    				curl='curl -sSL'
    			fi
    			if [ ! -e /usr/bin/gpg ]; then
    				apt_get_update
    				( set -x; $sh_c 'sleep 3; apt-get install -y -q gnupg2 || apt-get install -y -q gnupg' )
    			fi
    
    			(
    			set -x
    			for key_server in $key_servers ; do
    				$sh_c "apt-key adv --keyserver hkp://${key_server}:80 --recv-keys ${gpg_fingerprint}" && break
    			done
    			$sh_c "apt-key adv -k ${gpg_fingerprint} >/dev/null"
    			$sh_c "mkdir -p /etc/apt/sources.list.d"
    			$sh_c "echo deb \[arch=$(dpkg --print-architecture)\] ${apt_url}/repo ${lsb_dist}-${dist_version} ${repo} > /etc/apt/sources.list.d/docker.list"
    			$sh_c 'sleep 3; apt-get update; apt-get install -y -q docker-engine'
    			)
    			echo_docker_as_nonroot
    			exit 0
    			;;
    
    		fedora|centos|redhat|oraclelinux)
    			if [ "${lsb_dist}" = "redhat" ]; then
    				# we use the centos repository for both redhat and centos releases
    				lsb_dist='centos'
    			fi
    			$sh_c "cat >/etc/yum.repos.d/docker-${repo}.repo" <<-EOF
    			[docker-${repo}-repo]
    			name=Docker ${repo} Repository
    			baseurl=${yum_url}/repo/${repo}/${lsb_dist}/${dist_version}
    			enabled=1
    			gpgcheck=1
    			gpgkey=${yum_url}/gpg
    			EOF
    			if [ "$lsb_dist" = "fedora" ] && [ "$dist_version" -ge "22" ]; then
    				(
    					set -x
    					$sh_c 'sleep 3; dnf -y -q install docker-engine'
    				)
    			else
    				(
    					set -x
    					$sh_c 'sleep 3; yum -y -q install docker-engine'
    				)
    			fi
    			echo_docker_as_nonroot
    			exit 0
    			;;
    		gentoo)
    			if [ "$url" = "https://test.docker.com/" ]; then
    				# intentionally mixed spaces and tabs here -- tabs are stripped by "<<-'EOF'", spaces are kept in the output
    				cat >&2 <<-'EOF'
    
    				  You appear to be trying to install the latest nightly build in Gentoo.'
    				  The portage tree should contain the latest stable release of Docker, but'
    				  if you want something more recent, you can always use the live ebuild'
    				  provided in the "docker" overlay available via layman.  For more'
    				  instructions, please see the following URL:'
    
    				    https://github.com/tianon/docker-overlay#using-this-overlay'
    
    				  After adding the "docker" overlay, you should be able to:'
    
    				    emerge -av =app-emulation/docker-9999'
    
    				EOF
    				exit 1
    			fi
    
    			(
    				set -x
    				$sh_c 'sleep 3; emerge app-emulation/docker'
    			)
    			exit 0
    			;;
    	esac
    
    	# intentionally mixed spaces and tabs here -- tabs are stripped by "<<-'EOF'", spaces are kept in the output
    	cat >&2 <<-'EOF'
    
    	  Either your platform is not easily detectable, is not supported by this
    	  installer script (yet - PRs welcome! [hack/install.sh]), or does not yet have
    	  a package for Docker.  Please visit the following URL for more detailed
    	  installation instructions:
    
    	    https://docs.docker.com/engine/installation/
    
    	EOF
    	exit 1
    }
    
    # wrapped up in a function so that we have some protection against only getting
    # half the file during "curl | sh"
    do_install
    [root@dockerme software]#

    运行Docker安装脚本:

    [root@dockerme software]# curl -fsSL https://get.docker.com | sh
    + sh -c 'sleep 3; yum -y -q install docker-engine'
    
    If you would like to use Docker as a non-root user, you should now consider
    adding your user to the "docker" group with something like:
    
      sudo usermod -aG docker your-user
    
    Remember that you will have to log out and back in for this to take effect!
    
    [root@dockerme software]# yum list installed | grep --color docker
    docker-engine.x86_64                   1.12.2-1.el7.centos             @docker-main-repo
    docker-engine-selinux.noarch           1.12.2-1.el7.centos             @dockerrepo
    [root@dockerme software]#

    安装后,状态验证与【Hello world】测试:

    [root@dockerme software]# systemctl enable docker.service
    Created symlink from /etc/systemd/system/multi-user.target.wants/docker.service to /usr/lib/systemd/system/docker.service.
    [root@dockerme software]# 
    [root@dockerme software]# systemctl start docker
    [root@dockerme software]# 
    [root@dockerme software]# docker run hello-world
    Unable to find image 'hello-world:latest' locally
    latest: Pulling from library/hello-world
    c04b14da8d14: Pull complete 
    Digest: sha256:0256e8a36e2070f7bf2d0b0763dbabdd67798512411de4cdcf9431a1feb60fd9
    Status: Downloaded newer image for hello-world:latest
    
    Hello from Docker!
    This message shows that your installation appears to be working correctly.
    
    To generate this message, Docker took the following steps:
     1. The Docker client contacted the Docker daemon.
     2. The Docker daemon pulled the "hello-world" image from the Docker Hub.
     3. The Docker daemon created a new container from that image which runs the
        executable that produces the output you are currently reading.
     4. The Docker daemon streamed that output to the Docker client, which sent it
        to your terminal.
    
    To try something more ambitious, you can run an Ubuntu container with:
     $ docker run -it ubuntu bash
    
    Share images, automate workflows, and more with a free Docker Hub account:
     https://hub.docker.com
    
    For more examples and ideas, visit:
     https://docs.docker.com/engine/userguide/
    
    [root@dockerme software]#

    四、为Docker指定特定的操作系统用户

    确认是否有用户组【docker】

    [root@dockerme software]# cat /etc/group | tail -n 1
    docker:x:982:
    [root@dockerme software]#

    一般,安装docker的时候,都会自动创建【docker】用户组。
    如果没有创建:
    groupadd docker

    将特定用户分配到【docker】用户组中:

    [root@dockerme software]# id adamhuan
    uid=1000(adamhuan) gid=1000(adamhuan) groups=1000(adamhuan)
    [root@dockerme software]# 
    [root@dockerme software]# usermod -aG docker adamhuan
    [root@dockerme software]#

    以特定的用户,运行Docker:

    [root@dockerme software]# su - adamhuan
    Last login: Sat Oct 22 06:25:10 PDT 2016 on pts/4
    [adamhuan@dockerme ~]$ 
    [adamhuan@dockerme ~]$ docker run hello-world
    
    Hello from Docker!
    This message shows that your installation appears to be working correctly.
    
    To generate this message, Docker took the following steps:
     1. The Docker client contacted the Docker daemon.
     2. The Docker daemon pulled the "hello-world" image from the Docker Hub.
     3. The Docker daemon created a new container from that image which runs the
        executable that produces the output you are currently reading.
     4. The Docker daemon streamed that output to the Docker client, which sent it
        to your terminal.
    
    To try something more ambitious, you can run an Ubuntu container with:
     $ docker run -it ubuntu bash
    
    Share images, automate workflows, and more with a free Docker Hub account:
     https://hub.docker.com
    
    For more examples and ideas, visit:
     https://docs.docker.com/engine/userguide/
    
    [adamhuan@dockerme ~]$

    ——————————————
    Done。



沪ICP备19023445号-2号
友情链接