1、安装docker
直接使用阿里云上面的安装脚本
curl -fsSL https://get.docker.com | bash -s docker --mirror Aliyun
安装成功后执行docker --help命令被识别则安装成功,常用命令列表
Usage: docker [OPTIONS] COMMAND
A self-sufficient runtime for containers
Options:
--config string Location of client config files (default "/home/gwm/.docker")
-c, --context string Name of the context to use to connect to the daemon (overrides DOCKER_HOST env var and default context set with
"docker context use")
-D, --debug Enable debug mode
-H, --host list Daemon socket(s) to connect to
-l, --log-level string Set the logging level ("debug"|"info"|"warn"|"error"|"fatal") (default "info")
--tls Use TLS; implied by --tlsverify
--tlscacert string Trust certs signed only by this CA (default "/home/gwm/.docker/ca.pem")
--tlscert string Path to TLS certificate file (default "/home/gwm/.docker/cert.pem")
--tlskey string Path to TLS key file (default "/home/gwm/.docker/key.pem")
--tlsverify Use TLS and verify the remote
-v, --version Print version information and quit
Management Commands:
app* Docker App (Docker Inc., v0.9.1-beta3)
builder Manage builds
buildx* Build with BuildKit (Docker Inc., v0.5.1-docker)
config Manage Docker configs
container Manage containers
context Manage contexts
image Manage images
manifest Manage Docker image manifests and manifest lists
network Manage networks
node Manage Swarm nodes
plugin Manage plugins
scan* Docker Scan (Docker Inc., v0.8.0)
secret Manage Docker secrets
service Manage services
stack Manage Docker stacks
swarm Manage Swarm
system Manage Docker
trust Manage trust on Docker images
volume Manage volumes
Commands:
attach Attach local standard input, output, and error streams to a running container
build Build an image from a Dockerfile
commit Create a new image from a container's changes
cp Copy files/folders between a container and the local filesystem
create Create a new container
diff Inspect changes to files or directories on a container's filesystem
events Get real time events from the server
exec Run a command in a running container
export Export a container's filesystem as a tar archive
history Show the history of an image
images List images
import Import the contents from a tarball to create a filesystem image
info Display system-wide information
inspect Return low-level information on Docker objects
kill Kill one or more running containers
load Load an image from a tar archive or STDIN
login Log in to a Docker registry
logout Log out from a Docker registry
logs Fetch the logs of a container
pause Pause all processes within one or more containers
port List port mappings or a specific mapping for the container
ps List containers
pull Pull an image or a repository from a registry
push Push an image or a repository to a registry
rename Rename a container
restart Restart one or more containers
rm Remove one or more containers
rmi Remove one or more images
run Run a command in a new container
save Save one or more images to a tar archive (streamed to STDOUT by default)
search Search the Docker Hub for images
start Start one or more stopped containers
stats Display a live stream of container(s) resource usage statistics
stop Stop one or more running containers
tag Create a tag TARGET_IMAGE that refers to SOURCE_IMAGE
top Display the running processes of a container
unpause Unpause all processes within one or more containers
update Update configuration of one or more containers
version Show the Docker version information
wait Block until one or more containers stop, then print their exit codes
Run 'docker COMMAND --help' for more information on a command.
To get more help with docker, check out our guides at https://docs.docker.com/go/guides/
2、常用操作
创建有sudo权限的容器
sudo docker run -itd(后台运行) --name ubuntu_v1 ubuntu(镜像名称)
#sudo docker run -itd --privileged --restart=always --name ubuntu_v1 ubuntu /bin/bash 不能赋予privileged权限,和宿主机的权限接近
关闭容器
sudo docker stop ubuntu
开启容器
sudo docker start ubuntu
访问docker容器
sudo docker exec -it ubuntu /bin/bash
把当前修改好的容器打包成镜像:相当于一个tag
docker commit 容器名字 镜像名字
备份镜像:
docker save -o image.tar imagename
加载备份文件:
docker load -i image.tar
docker中创建用户:
g:gid u:uid
sudo useradd -d /home/wlj -g 999 -u 998 -m -s /bin/bash wlj
添加用户到docker组:
sudo useradd -d /home/test -g 1001 -m -s /bin/bash test
重启docker服务:会停止所有的容器
systemctl daemon-reload
systemctl restart docker
启动docker service:
systemctl daemon-reload
systemctl start docker.service
systemctl enable docker.service #自动启动
systemctl status docker
限制docker容器大小
修改/etc/systemd/system/docker.service.d/docker.service:
[service]
Type=notify
OPTIONS='--storage-opt overlay2.size=40G'
EnvironmentFile=/etc/sysconfig/docker