zhulink logo
自动夜间模式 日间模式 夜间模式
侧栏
0

deno部署反向代理,0成本解决/加速docker镜像下载问题

意外富翁的头像
|
|
|

111 使用 Deno 部署 Docker Hub 反向代理,加速docker镜像下载教程 ## 一、前提准备 准备一个 github 账号。 打开 Deno 官网的 deploy 页面,通过 github 注册。 官网传送门:https://deno.com/deploy ![Alt](https://cdn.wangtwothree.com/imgur/OeyFLjb.png) ## 二、部署反向代理 登录 Deno 控制面板后选择 Projects,点击"New Playground"(如果是第一次使用,选择添加项目) ![Alt](https://cdn.wangtwothree.com/imgur/PDxXXdH.png) 然后复制下面的代码到 Deno,是不是觉得代码眼熟,因为这个就是 cloudflare workers 部署的代码,一模一样,Deno 可以直接用。 注意需要自行把 workers_url 替换成右边 Deno 分配的域名。然后点击上方的“Save & Deploy”完成部署。 ![Alt](https://cdn.wangtwothree.com/imgur/dW4CLWY.png) ``` 'use strict' const hub_host = 'registry-1.docker.io' const auth_url = 'https://auth.docker.io' const workers_url = 'https://换成右边的域名' const PREFLIGHT_INIT = { status: 204, headers: new Headers({ 'access-control-allow-origin': '*', 'access-control-allow-methods': 'GET,POST,PUT,PATCH,TRACE,DELETE,HEAD,OPTIONS', 'access-control-max-age': '1728000', }), } function makeRes(body, status = 200, headers = {}) { headers['access-control-allow-origin'] = '*' return new Response(body, {status, headers}) } function newUrl(urlStr) { try { return new URL(urlStr) } catch (err) { return null } } addEventListener('fetch', e => { const ret = fetchHandler(e) .catch(err => makeRes('cfworker error:\n' + err.stack, 502)) e.respondWith(ret) }) async function fetchHandler(e) { const getReqHeader = (key) => e.request.headers.get(key); let url = new URL(e.request.url); if (url.pathname === '/token') { let token_parameter = { headers: { 'Host': 'auth.docker.io', 'User-Agent': getReqHeader("User-Agent"), 'Accept': getReqHeader("Accept"), 'Accept-Language': getReqHeader("Accept-Language"), 'Accept-Encoding': getReqHeader("Accept-Encoding"), 'Connection': 'keep-alive', 'Cache-Control': 'max-age=0' } }; let token_url = auth_url + url.pathname + url.search return fetch(new Request(token_url, e.request), token_parameter) } url.hostname = hub_host; let parameter = { headers: { 'Host': hub_host, 'User-Agent': getReqHeader("User-Agent"), 'Accept': getReqHeader("Accept"), 'Accept-Language': getReqHeader("Accept-Language"), 'Accept-Encoding': getReqHeader("Accept-Encoding"), 'Connection': 'keep-alive', 'Cache-Control': 'max-age=0' }, cacheTtl: 3600 }; if (e.request.headers.has("Authorization")) { parameter.headers.Authorization = getReqHeader("Authorization"); } let original_response = await fetch(new Request(url, e.request), parameter) let original_response_clone = original_response.clone(); let original_text = original_response_clone.body; let response_headers = original_response.headers; let new_response_headers = new Headers(response_headers); let status = original_response.status; if (new_response_headers.get("Www-Authenticate")) { let auth = new_response_headers.get("Www-Authenticate"); let re = new RegExp(auth_url, 'g'); new_response_headers.set("Www-Authenticate", response_headers.get("Www-Authenticate").replace(re, workers_url)); } if (new_response_headers.get("Location")) { return httpHandler(e.request, new_response_headers.get("Location")) } let response = new Response(original_text, { status, headers: new_response_headers }) return response; } function httpHandler(req, pathname) { const reqHdrRaw = req.headers // preflight if (req.method === 'OPTIONS' && reqHdrRaw.has('access-control-request-headers') ) { return new Response(null, PREFLIGHT_INIT) } let rawLen = '' const reqHdrNew = new Headers(reqHdrRaw) const refer = reqHdrNew.get('referer') let urlStr = pathname const urlObj = newUrl(urlStr) /** @type {RequestInit} */ const reqInit = { method: req.method, headers: reqHdrNew, redirect: 'follow', body: req.body } return proxy(urlObj, reqInit, rawLen, 0) } async function proxy(urlObj, reqInit, rawLen) { const res = await fetch(urlObj.href, reqInit) const resHdrOld = res.headers const resHdrNew = new Headers(resHdrOld) // verify if (rawLen) { const newLen = resHdrOld.get('content-length') || '' const badLen = (rawLen !== newLen) if (badLen) { return makeRes(res.body, 400, { '--error': `bad len: ${newLen}, except: ${rawLen}`, 'access-control-expose-headers': '--error', }) } } const status = res.status resHdrNew.set('access-control-expose-headers', '*') resHdrNew.set('access-control-allow-origin', '*') resHdrNew.set('Cache-Control', 'max-age=1500') resHdrNew.delete('content-security-policy') resHdrNew.delete('content-security-policy-report-only') resHdrNew.delete('clear-site-data') return new Response(res.body, { status, headers: resHdrNew }) } ``` 这个代码里面不包含 web 界面,所以直接访问会提示 404,这个是正常的,不带 web 界面是因为添加 web 界面要改动几个地方,而且 web 界面也没用,不如从简,能保证正常拉取镜像就行。 如果觉得默认分配的域名太长,还可以在设置里面改成自己想要的域名。前提是这个域名没被占用。 ![Alt](https://cdn.wangtwothree.com/imgur/VhUEvgH.png) 也可以选择添加自己的域名,但是没啥必要就是了,毕竟官方域名可用,没必要把自己的域名加上去。 ## 三、验证并拉取镜像 如果以上步骤都无误,就可以直接拉取 docker 镜像,但是需要对相应的拉取命令做更改。 1. 常规拉取镜像 例如原拉取命令如下: ``` docker pull library/alpine:latest ``` 那就需要在前面加上自己的域名: ``` docker pull deno分配的域名/library/alpine:latest ``` 当然也可以直接设置 docker registry,替换成自己的域名即可: ``` sudo tee /etc/docker/daemon.json <<EOF { "registry-mirrors": ["https://deno分配的域名"] } EOF ```

▲ 赞同(0)    ★ 收藏(0)