bazel/docker image builds #2256
No reviewers
Labels
No labels
1week
2weeks
Failed compliance check
IP cameras
NATS
Possible security concern
Review effort 1/5
Review effort 2/5
Review effort 3/5
Review effort 4/5
Review effort 5/5
UI
aardvark
accessibility
amd64
api
arm64
auth
back-end
bgp
blog
bug
build
checkers
ci-cd
cleanup
cnpg
codex
core
dependencies
device-management
documentation
duplicate
dusk
ebpf
enhancement
eta 1d
eta 1hr
eta 3d
eta 3hr
feature
fieldsurvey
github_actions
go
good first issue
help wanted
invalid
javascript
k8s
log-collector
mapper
mtr
needs-triage
netflow
network-sweep
observability
oracle
otel
plug-in
proton
python
question
reddit
redhat
research
rperf
rperf-checker
rust
sdk
security
serviceradar-agent
serviceradar-agent-gateway
serviceradar-web
serviceradar-web-ng
siem
snmp
sysmon
topology
ubiquiti
wasm
wontfix
zen-engine
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
carverauto/serviceradar!2256
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "refs/pull/2256/head"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Imported from GitHub pull request.
Original GitHub pull request: #1678
Original author: @mfreeman451
Original URL: https://github.com/carverauto/serviceradar/pull/1678
Original created: 2025-10-02T03:20:40Z
Original updated: 2025-10-02T05:42:41Z
Original head: carverauto/serviceradar:bazel/docker_image_builds
Original base: main
Original merged: 2025-10-02T05:42:37Z by @mfreeman451
PR Type
Enhancement
Description
Add Bazel-native Docker image build for core service
Update entrypoint script with improved portability and directory setup
Add external dependencies for jq and curl binaries
Create OCI image configuration with Ubuntu 22.04 base
Diagram Walkthrough
File Walkthrough
entrypoint-core.sh
Improve entrypoint script portability and setupdocker/compose/entrypoint-core.sh
#!/usr/bin/env bash/usr/local/binBUILD.bazel
Define Bazel-native OCI image builddocker/images/BUILD.bazel
MODULE.bazel
Add OCI dependencies and external binariesMODULE.bazel
BUILD.bazel
Expose compose assets to Bazeldocker/compose/BUILD.bazel
Imported GitHub PR comment.
Original author: @qodo-code-review[bot]
Original URL: https://github.com/carverauto/serviceradar/pull/1678#issuecomment-3358878807
Original created: 2025-10-02T03:21:36Z
PR Compliance Guide 🔍
Below is a summary of compliance checks for this PR:
No security concerns identified
No security vulnerabilities detected by AI analysis. Human verification advised for critical code.🎫 No ticket provided
Codebase context is not defined
Follow the guide to enable codebase context checks.
No custom compliance provided
Follow the guide to enable custom compliance check.
Compliance status legend
🟢 - Fully Compliant🟡 - Partial Compliant
🔴 - Not Compliant
⚪ - Requires Further Human Verification
🏷️ - Compliance label
Imported GitHub PR comment.
Original author: @qodo-code-review[bot]
Original URL: https://github.com/carverauto/serviceradar/pull/1678#issuecomment-3358880699
Original created: 2025-10-02T03:22:38Z
PR Code Suggestions ✨
Explore these optional code suggestions:
Use official packages instead of third-party binaries
Instead of downloading pre-built
curlandjqbinaries from third-party sources,use official packages from the Ubuntu repository or build them from source to
mitigate supply chain security risks.
Examples:
MODULE.bazel [628-662]
docker/images/BUILD.bazel [13-14]
Solution Walkthrough:
Before:
After:
Suggestion importance[1-10]: 8
__
Why: The suggestion correctly identifies a significant supply chain security risk by using pre-built
curlandjqbinaries from external sources, proposing more secure alternatives.Remove redundant container setup steps
Remove the redundant
PATHexport and directory creation from the entrypointscript, as these steps are already performed during the OCI image build process.
docker/compose/entrypoint-core.sh [16-24]
Suggestion importance[1-10]: 5
__
Why: The suggestion correctly identifies that the
PATHexport andmkdircommand are redundant, as these are handled in thedocker/images/BUILD.bazelfile, thus improving code cleanliness.