php version 8.4.5 debian rebuild v6

This commit is contained in:
Nick Yeoman 2025-03-15 00:38:49 -07:00
parent 125e461786
commit c8021f204d
8 changed files with 350 additions and 236 deletions

1
.gitignore vendored Normal file
View File

@ -0,0 +1 @@
data/

16
000-default.conf Normal file
View File

@ -0,0 +1,16 @@
# Global log redirection to stdout and stderr
ErrorLog "|/usr/bin/tee -a /var/log/apache2/error.log"
CustomLog "|/usr/bin/tee -a /var/log/apache2/access.log" combined
<VirtualHost *:80>
DocumentRoot /data/public
<Directory /data/public>
Options Indexes FollowSymLinks
AllowOverride All
Require all granted
</Directory>
# Remote IP configuration
RemoteIPHeader X-Forwarded-For
RemoteIPTrustedProxy 127.0.0.1
</VirtualHost>

View File

@ -1,70 +1,53 @@
#################################################################################################################################
# Project: https://git.4lt.ca/4lt/phpcontainer/
# v 5.0.1
#################################################################################################################################
FROM debian:bookworm-20250224
FROM php:8.4.2-apache
# Set maintainer information
LABEL version="5.0.1"
LABEL maintainer="4 Lights Consulting <info@4lt.ca>"
LABEL description="Production-ready PHP Apache container"
LABEL org.label-schema.vcs-url="https://git.4lt.ca/4lt/phpcontainer"
# Set working directory and Apache document root
WORKDIR /data
ENV APACHE_DOCUMENT_ROOT=/data/public/
# Update and install required packages
RUN set -eux; \
# Install necessary packages and configure PHP repository
RUN apt-get update && apt-get install -y \
lsb-release ca-certificates curl apt-transport-https logrotate ssl-cert apache2 && \
echo "ServerName localhost" >> /etc/apache2/apache2.conf && \
curl -sSLo /tmp/debsuryorg-archive-keyring.deb https://packages.sury.org/debsuryorg-archive-keyring.deb && \
dpkg -i /tmp/debsuryorg-archive-keyring.deb && \
sh -c 'echo "deb [signed-by=/usr/share/keyrings/deb.sury.org-php.gpg] https://packages.sury.org/php/ $(lsb_release -sc) main" > /etc/apt/sources.list.d/php.list' && \
apt-get update && \
apt-get install -y --no-install-recommends \
ghostscript \
libssl-dev \
libbz2-dev \
libfreetype6-dev \
libjpeg-dev \
libpng-dev \
libwebp-dev \
libzip-dev && \
rm -rf /var/lib/apt/lists/*
apt-get install -y \
php8.4 php8.4-cli php8.4-fpm php8.4-mysql php8.4-xml php8.4-mbstring php8.4-curl php8.4-zip php8.4-redis libapache2-mod-php8.4 && \
apt-get autoremove -y && \
apt-get clean && \
rm -rf /var/lib/apt/lists/* /tmp/*
# Configure and install essential PHP extensions
RUN set -ex; \
docker-php-ext-configure gd --with-freetype --with-jpeg --with-webp; \
docker-php-ext-install -j "$(nproc)" \
bz2 \
gd \
mysqli \
pdo_mysql \
zip
# log management
RUN cat <<EOF > /etc/logrotate.d/apache2
/var/log/apache2/*.log {
weekly
missingok
rotate 4
compress
delaycompress
notifempty
create 640 root adm
}
EOF
# Set recommended PHP.ini settings
RUN set -eux; \
echo 'opcache.memory_consumption=128' > /usr/local/etc/php/conf.d/opcache-recommended.ini; \
echo 'opcache.interned_strings_buffer=8' >> /usr/local/etc/php/conf.d/opcache-recommended.ini; \
echo 'opcache.max_accelerated_files=4000' >> /usr/local/etc/php/conf.d/opcache-recommended.ini; \
echo 'opcache.revalidate_freq=2' >> /usr/local/etc/php/conf.d/opcache-recommended.ini; \
echo 'opcache.fast_shutdown=1' >> /usr/local/etc/php/conf.d/opcache-recommended.ini; \
echo 'error_reporting = E_ERROR | E_WARNING | E_PARSE | E_CORE_ERROR | E_CORE_WARNING | E_COMPILE_ERROR | E_COMPILE_WARNING | E_RECOVERABLE_ERROR' > /usr/local/etc/php/conf.d/error-logging.ini; \
echo 'display_errors = Off' >> /usr/local/etc/php/conf.d/error-logging.ini; \
echo 'log_errors = On' >> /usr/local/etc/php/conf.d/error-logging.ini; \
echo 'error_log = /dev/stderr' >> /usr/local/etc/php/conf.d/error-logging.ini
# Enable Apache modules and configure RemoteIP
RUN set -eux; \
a2enmod expires headers rewrite remoteip socache_shmcb ssl; \
echo 'RemoteIPHeader X-Forwarded-For' > /etc/apache2/conf-available/remoteip.conf; \
echo 'RemoteIPTrustedProxy 10.0.0.0/8' >> /etc/apache2/conf-available/remoteip.conf; \
echo 'RemoteIPTrustedProxy 172.16.0.0/12' >> /etc/apache2/conf-available/remoteip.conf; \
echo 'RemoteIPTrustedProxy 192.168.0.0/16' >> /etc/apache2/conf-available/remoteip.conf; \
a2enconf remoteip; \
RUN echo 'RemoteIPHeader X-Forwarded-For' > /etc/apache2/conf-available/remoteip.conf && \
echo 'RemoteIPTrustedProxy 127.0.0.1' >> /etc/apache2/conf-available/remoteip.conf && \
a2enconf remoteip && \
sed -ri 's/([[:space:]]*LogFormat[[:space:]]+"[^"]*)%h([^"]*")/\1%a\2/g' /etc/apache2/*.conf
# More Apache settings
RUN sed -ri -e 's!/var/www/html!${APACHE_DOCUMENT_ROOT}!g' /etc/apache2/sites-available/*.conf
RUN sed -ri -e 's!/var/www/!${APACHE_DOCUMENT_ROOT}!g' /etc/apache2/apache2.conf /etc/apache2/conf-available/*.conf
RUN echo "ServerName localhost" >> /etc/apache2/apache2.conf
RUN mkdir -p /php && echo "PHP_INI_SCAN_DIR=/php" > /etc/environment
COPY php.ini /php/php.ini
COPY 000-default.conf /etc/apache2/sites-available/000-default.conf
# Security headers for Apache
RUN echo 'Header always set Strict-Transport-Security "max-age=31536000; includeSubDomains; preload"' >> /etc/apache2/conf-available/security.conf && \
echo 'Header always set X-Content-Type-Options "nosniff"' >> /etc/apache2/conf-available/security.conf && \
echo 'Header always set X-XSS-Protection "1; mode=block"' >> /etc/apache2/conf-available/security.conf && \
echo 'Header always set X-Frame-Options "SAMEORIGIN"' >> /etc/apache2/conf-available/security.conf
RUN a2enmod expires headers rewrite remoteip socache_shmcb ssl
EXPOSE 80
CMD ["apache2-foreground"]
CMD ["apachectl", "-D", "FOREGROUND"]
HEALTHCHECK --interval=30s --timeout=10s --retries=3 \
CMD curl --silent --fail localhost:80 || exit 1

View File

@ -1,32 +1,68 @@
# 4 Lights Consulting
The apache php docker container that 4 Lights uses for production.
Dockerhub: https://hub.docker.com/r/4lights/phpcontainer
Git Repo: https://git.4lt.ca/4lt/phpcontainer
## How to update
This repository provides a production-ready Docker container for running PHP with Apache.
It comes pre-configured with the necessary PHP extensions, Apache modules, and is optimized for [Novaconium Framework](https://git.4lt.ca/4lt/novaconium).
1. Clone the project: ```git clone git@git.4lt.ca:4lt/phpcontainer.git```
2. Update the Dockerfile.
3. Build (be sure to change the version number)
## Features
- **PHP Version**: 8.4.5
- **Apache Web Server**: Configured to run PHP applications
- **Enabled Apache Modules**:
- `expires`
- `headers`
- `rewrite`
- `remoteip`
- `socache_shmcb`
- `ssl`
- **PHP Extensions**:
- `mysqli`
- `pdo_mysql`
- `pdo_pgsql`
- `pgsql`
- `pdo_sqlite`
- `sqlite3`
- `gd`
- `intl`
- `zip`
- `opcache`
- `bcmath`
- Redis (via PECL)
- **Email Setup**: Configured to use msmtp for sending emails
- **Timezone**: Default set to Vancouver (`America/Vancouver`)
- **PHP Session Storage**: Supports Redis as the default, with fallback to file-based sessions
## Getting Started
Follow these steps to set up the PHP container on your local environment.
### Prerequisites
1. Docker
2. Docker Compose is recommended
3. Alternatively Podman is supported
### Usage
#### Clone the Repository
```bash
git clone https://git.4lt.ca/4lt/phpcontainer.git
cd phpcontainer
docker build -t php-apache-container .
```
## How to update on dockerhub
```bash
sudo su
docker buildx build --no-cache -t 4lights/phpcontainer:5.0.1 -t 4lights/phpcontainer:latest --load .
docker buildx build --no-cache -t 4lights/phpcontainer:6.0.0 -t 4lights/phpcontainer:latest --load .
docker login
docker push 4lights/phpcontainer:5.0.1
docker push 4lights/phpcontainer:6.0.0
docker push 4lights/phpcontainer:latest
```
# References And Notes
* [Stack Overflow IMAP features](https://stackoverflow.com/questions/49854767/docker-php7-2-fpm-cant-install-imap-module)
* Joomla base used: f9a16bcbd8/4.3/php8.1/apache/Dockerfile
## Supported Software
* 4 Lights PHP Framework
## Samples included in Repo
There is a docker-compose, env-sample and php.ini included as sample data.
Test using test.php

View File

@ -1,36 +1,40 @@
---
# Sample Docker Compose File
# Sample Docker Compose
services:
php-apache:
#image: 4lights/phpcontainer:6.0.0
image: debianphp
ports:
- "8000:80"
volumes:
- ./:/data # looks for /data/public
- ./php.ini:/php/php.ini # Optional override php.ini
- ./data/logs:/var/log/apache2 # Optional Logs
restart: unless-stopped
networks:
- proxy
- internal
version: "3.3"
redis:
image: redis:latest
networks:
- internal
restart: unless-stopped
volumes:
db:
mariadb:
image: mariadb:latest
environment:
MYSQL_ROOT_PASSWORD: rootpassword
MYSQL_DATABASE: dbname
MYSQL_USER: user
MYSQL_PASSWORD: password
volumes:
- ./data/db:/var/lib/mysql
networks:
- internal
restart: unless-stopped
networks:
default:
external:
name: ${NETWORKNAME}
services:
db:
image: mariadb:latest
restart: always
container_name: "${DBHOST}"
environment:
MYSQL_ROOT_PASSWORD: ${MYSQL_ROOT_PASSWORD}
MYSQL_PASSWORD: ${DBPASSWORD}
MYSQL_DATABASE: ${DB}
MYSQL_USER: ${DBUSER}
volumes:
- "db:/var/lib/mysql"
php-app:
container_name: "${DOCKERNAME}"
image: "4lights/phpcontainer:latest"
restart: always
volumes:
- "./:/data"
- ./php.ini:/usr/local/etc/php/php.ini
ports:
- "${DOCKERPORT}:80"
proxy:
external: true
internal:
driver: bridge

View File

@ -1,8 +0,0 @@
NETWORKNAME=PROXY_NETWORK
DBHOST=DB_HOST_NAME
MYSQL_ROOT_PASSWORD=ChangeMe
DBPASSWORD=ChangeMeAlso
DB=DATABASENAME
DBUSER=DBUSERNAME
DOCKERNAME=Container_name
DOCKERPORT=8000

163
php.ini
View File

@ -1,128 +1,55 @@
[PHP]
engine = On
short_open_tag = Off
precision = 14
output_buffering = 4096
zlib.output_compression = Off
implicit_flush = Off
unserialize_callback_func =
serialize_precision = -1
disable_functions =
disable_classes =
zend.enable_gc = On
zend.exception_ignore_args = On
zend.exception_string_param_max_len = 0
expose_php = On
; Basic PHP settings
max_execution_time = 30
memory_limit = 500M
upload_max_filesize = 100M
post_max_size = 100M
max_input_time = 60
memory_limit = 128M
error_reporting = E_ALL & ~E_DEPRECATED & ~E_STRICT
display_errors = Off
display_startup_errors = Off
date.timezone = America/Vancouver
; Error handling
display_errors = On
display_startup_errors = On
log_errors = On
log_errors_max_len = 1024
ignore_repeated_errors = Off
ignore_repeated_source = Off
report_memleaks = On
variables_order = "GPCS"
request_order = "GP"
register_argc_argv = Off
auto_globals_jit = On
post_max_size = 800M
auto_prepend_file =
auto_append_file =
default_mimetype = "text/html"
default_charset = "UTF-8"
doc_root =
user_dir =
enable_dl = Off
file_uploads = On
upload_max_filesize = 400M
max_file_uploads = 20
allow_url_fopen = On
allow_url_include = Off
default_socket_timeout = 60
error_log = /var/log/php_errors.log
[CLI Server]
cli_server.color = On
[Pdo_mysql]
pdo_mysql.default_socket=
[mail function]
SMTP = localhost
smtp_port = 25
mail.add_x_header = Off
[ODBC]
odbc.allow_persistent = On
odbc.check_persistent = On
odbc.max_persistent = -1
odbc.max_links = -1
odbc.defaultlrl = 4096
odbc.defaultbinmode = 1
[MySQLi]
mysqli.max_persistent = -1
mysqli.allow_persistent = On
mysqli.max_links = -1
mysqli.default_port = 3306
mysqli.default_socket =
mysqli.default_host =
mysqli.default_user =
mysqli.default_pw =
mysqli.reconnect = Off
[mysqlnd]
mysqlnd.collect_statistics = On
mysqlnd.collect_memory_statistics = Off
[PostgreSQL]
pgsql.allow_persistent = On
pgsql.auto_reset_persistent = Off
pgsql.max_persistent = -1
pgsql.max_links = -1
pgsql.ignore_notice = 0
pgsql.log_notice = 0
[bcmath]
bcmath.scale = 0
[Session]
session.save_handler = files
session.use_strict_mode = 0
session.use_cookies = 1
session.use_only_cookies = 1
session.name = PHPSESSID
session.auto_start = 0
session.cookie_lifetime = 0
session.cookie_path = /
session.cookie_domain =
session.cookie_httponly =
session.cookie_samesite =
session.serialize_handler = php
session.gc_probability = 1
session.gc_divisor = 1000
; Session settings
session.save_path = "/var/lib/php/sessions"
session.gc_maxlifetime = 1440
session.referer_check =
session.cache_limiter = nocache
session.cache_expire = 180
session.use_trans_sid = 0
session.sid_length = 26
session.trans_sid_tags = "a=href,area=href,frame=src,form="
session.sid_bits_per_character = 5
session.cookie_lifetime = 0
session.use_strict_mode = 1
[Assertion]
zend.assertions = -1
; Realpath cache
realpath_cache_size = 4096k
realpath_cache_ttl = 120
[Tidy]
tidy.clean_output = Off
; File upload settings
file_uploads = On
allow_url_fopen = On
[soap]
soap.wsdl_cache_enabled=1
soap.wsdl_cache_dir="/tmp"
soap.wsdl_cache_ttl=86400
soap.wsdl_cache_limit = 5
; Redis settings (ensure Redis extension is loaded)
extension=redis.so
[ldap]
ldap.max_links = -1
; mbstring settings (useful for multi-byte encoding handling)
mbstring.language = Japanese
mbstring.internal_encoding = UTF-8
mbstring.http_input = auto
mbstring.http_output = UTF-8
mbstring.detect_order = auto
mbstring.substitute_character = none
; cURL settings
curl.cainfo = "/etc/ssl/certs/ca-certificates.crt"
; SMTP settings (for sending mail, if needed)
SMTP = localhost
sendmail_path = /usr/sbin/sendmail -t -i
; Extension loading
extension=curl
extension=mbstring
extension=redis
extension=xml
extension=mysqli
extension=pdo_mysql
extension=zip

155
public/test.php Normal file
View File

@ -0,0 +1,155 @@
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<title>Server Test - Debian PHP Apache</title>
<style>
body {
font-family: Arial, sans-serif;
background-color: #f4f4f4;
color: #333;
margin: 20px;
padding: 20px;
}
h2 {
color: #0056b3;
border-bottom: 2px solid #0056b3;
padding-bottom: 5px;
}
p {
background: #fff;
padding: 10px;
border-radius: 5px;
box-shadow: 0px 1px 3px rgba(0,0,0,0.1);
}
.container {
max-width: 700px;
margin: auto;
background: #fff;
padding: 20px;
border-radius: 8px;
box-shadow: 0 2px 4px rgba(0, 0, 0, 0.1);
}
table {
width: 100%;
border-collapse: collapse;
margin-top: 10px;
background: #fff;
}
table, th, td {
border: 1px solid #ddd;
}
th, td {
padding: 10px;
text-align: left;
}
th {
background: #0056b3;
color: white;
}
.upload-section {
background: #e3f2fd;
padding: 15px;
border-radius: 5px;
margin-top: 20px;
}
.upload-section input[type="file"] {
padding: 5px;
}
.upload-section input[type="submit"] {
background: #0056b3;
color: white;
border: none;
padding: 8px 12px;
border-radius: 5px;
cursor: pointer;
}
.upload-section input[type="submit"]:hover {
background: #003d80;
}
</style>
</head>
<body>
<div class="container">
<h1>PHP Container Test Script</h1>
<p><a href="https://git.4lt.ca/4lt/phpcontainer">Four Lights PHP Container</a></p>
<h2>Server Information</h2>
<table>
<tr><th>PHP Version</th><td><?php echo phpversion(); ?></td></tr>
<tr><th>Current Date/Time (Vancouver)</th><td><?php date_default_timezone_set('America/Vancouver'); echo date('Y-m-d H:i:s'); ?></td></tr>
<tr><th>upload_max_filesize</th><td><?php echo ini_get('upload_max_filesize'); ?></td></tr>
<tr><th>post_max_size</th><td><?php echo ini_get('post_max_size'); ?></td></tr>
<tr><th>php.ini</th><td><?php echo php_ini_loaded_file(); ?></td></tr>
</table>
<h2>Redis Test</h2>
<?php
$redis = new Redis();
try {
$redis->connect('redis', 6379);
echo "<p>✅ Redis connected</p>";
$redis->set("test_key", "There are FOUR Lights!");
echo "<p>Redis test_key: " . $redis->get("test_key") . "</p>";
} catch (Exception $e) {
echo "<p>❌ Redis connection failed: " . $e->getMessage() . "</p>";
}
?>
<h2>MariaDB Test</h2>
<?php
$mysqli = new mysqli('mariadb', 'user', 'password', 'dbname');
if ($mysqli->connect_error) {
echo "<p>❌ MariaDB connection failed: " . $mysqli->connect_error . "</p>";
} else {
echo "<p>✅ MariaDB connected</p>";
$result = $mysqli->query('SELECT NOW()');
$row = $result->fetch_row();
echo "<p>Current time in MariaDB: " . $row[0] . "</p>";
$mysqli->close();
}
?>
<h2>RemoteIP Test</h2>
<p>Your IP address (from Apache's remoteip module): <?php echo $_SERVER['REMOTE_ADDR']; ?></p>
<h2>File Upload Test</h2>
<div class="upload-section">
<form action="" method="post" enctype="multipart/form-data">
<input type="file" name="testfile">
<input type="submit" name="upload" value="Upload">
</form>
</div>
<?php
if ($_SERVER['REQUEST_METHOD'] == 'POST' && isset($_FILES['testfile'])) {
if ($_FILES['testfile']['error'] === UPLOAD_ERR_OK) {
$uploadDir = '/data/public/uploads/';
if (!is_dir($uploadDir)) {
mkdir($uploadDir, 0777, true);
}
$destination = $uploadDir . basename($_FILES['testfile']['name']);
if (move_uploaded_file($_FILES['testfile']['tmp_name'], $destination)) {
echo "<p>✅ File uploaded successfully to: <strong>" . htmlspecialchars($destination) . "</strong></p>";
echo "<p>Size: " . $_FILES['testfile']['size'] . " bytes</p>";
} else {
echo "<p>❌ Error moving file.</p>";
}
} else {
echo "<p>❌ Error uploading file. Error Code: " . $_FILES['testfile']['error'] . "</p>";
}
}
?>
</div>
</body>
</html>