Compare commits

...

4 Commits

Author SHA1 Message Date
0ec0471603 feat: add telos static site service with Traefik routing
Some checks failed
Build Hermes agent / build (pull_request) Has been cancelled
Build ollama (gfx906) / build (pull_request) Has been cancelled
2026-05-25 00:19:15 -04:00
72757b9c3c feat: drop fork, use official image + plugin URLs for Hermes (#52) 2026-05-25 00:17:27 -04:00
d1ba93fd38 feat: add plugin URLs pointing to gortium account
Some checks failed
Build Hermes agent / build (pull_request) Has been cancelled
Build ollama (gfx906) / build (pull_request) Has been cancelled
2026-05-24 19:58:42 -04:00
317a5b23af feat: drop fork, use official image + plugin URL build arg 2026-05-24 19:47:08 -04:00
3 changed files with 47 additions and 28 deletions

View File

@@ -28,8 +28,8 @@ services:
hermes: hermes:
build: build:
context: ./hermes context: ./hermes
ssh: args:
- default HERMES_PLUGIN_URLS: "git+https://code.lazyworkhorse.net/gortium/hermes-piper-plugin.git;git+https://code.lazyworkhorse.net/gortium/hermes-identity-plugin.git"
container_name: hermes container_name: hermes
entrypoint: ["/bin/bash", "-c", entrypoint: ["/bin/bash", "-c",
"bash /opt/data/hermes-tools/install.sh && bash /usr/local/bin/run-multi-gateways.sh && exec /usr/bin/tini -g -- /opt/hermes/docker/entrypoint.sh \"$@\"", "bash /opt/data/hermes-tools/install.sh && bash /usr/local/bin/run-multi-gateways.sh && exec /usr/bin/tini -g -- /opt/hermes/docker/entrypoint.sh \"$@\"",

View File

@@ -1,33 +1,15 @@
# syntax=docker/dockerfile:1 # syntax=docker/dockerfile:1
# Hermes Agent -- custom fork build # Hermes Agent -- official image + custom plugins layered on top.
# Builds on top of official image + overlays our forked source from Gitea. # No fork needed — customizations are pip-installable plugins from Gitea.
# Requires Docker BuildKit. Pass SSH agent for git clone:
# docker compose build hermes # docker compose build hermes
# Or manually: # Or manually:
# DOCKER_BUILDKIT=1 docker build --ssh default -t hermes-agent:custom . # DOCKER_BUILDKIT=1 docker build --build-arg HERMES_PLUGIN_URLS="url1 url2" -t hermes-agent:custom .
# ---------- Base: official Hermes image (system deps, npm, uv, Playwright) ---------- # ---------- Base: official Hermes image (system deps, npm, uv, Playwright) ----------
FROM nousresearch/hermes-agent:latest FROM nousresearch/hermes-agent:latest
# ---------- Overlay our forked source ---------- # ---------- Plugin URLs (semicolon-separated, set via compose.yml build args) ----------
# Uses SSH agent forwarding from the build host (no key baked into image). ARG HERMES_PLUGIN_URLS=""
# --exclude node_modules/.venv keeps the base image's pre-built layers intact.
# Only the Python source, web UI source, and config change.
RUN --mount=type=ssh \
mkdir -p /root/.ssh && \
ssh-keyscan -p 2222 code.lazyworkhorse.net >> /root/.ssh/known_hosts 2>/dev/null && \
cd /tmp && \
GIT_SSH_COMMAND='ssh -p 2222 -o StrictHostKeyChecking=no' \
git clone --depth 1 --branch main \
git@code.lazyworkhorse.net:gortium/hermes-agent.git fork && \
rm -rf fork/node_modules fork/.venv fork/.git && \
cp -a fork/. /opt/hermes/ && \
rm -rf /tmp/fork /root/.ssh/
# ---------- Reinstall Python package (editable) ----------
# Picks up source changes from our fork.
RUN . /opt/hermes/.venv/bin/activate && \
uv pip install --no-cache-dir --no-deps -e /opt/hermes
# ---------- Extra system deps ---------- # ---------- Extra system deps ----------
USER root USER root
@@ -44,8 +26,6 @@ RUN apt-get update && \
COPY --chmod=0755 --from=ghcr.io/astral-sh/uv:latest /uv /usr/local/bin/ COPY --chmod=0755 --from=ghcr.io/astral-sh/uv:latest /uv /usr/local/bin/
# ---------- Matrix bridge + extra pip deps ---------- # ---------- Matrix bridge + extra pip deps ----------
# Previously installed inline at container startup and persisted via volume mount.
# Now baked into the image so the fragile venv volume mount can be removed.
RUN . /opt/hermes/.venv/bin/activate && \ RUN . /opt/hermes/.venv/bin/activate && \
uv pip install --no-cache-dir 'mautrix[encryption]' openai uv pip install --no-cache-dir 'mautrix[encryption]' openai
@@ -76,6 +56,19 @@ os.remove(tgz)
print('himalaya v1.2.0 installed') print('himalaya v1.2.0 installed')
PYEOF PYEOF
# ---------- Install custom plugins from URLs ----------
# HERMES_PLUGIN_URLS is a semicolon-separated list of pip-installable
# package URLs (e.g. git+https:// or direct .tar.gz archives from Gitea).
# Each plugin is installed into the Hermes venv.
RUN if [ -n "$HERMES_PLUGIN_URLS" ]; then \
. /opt/hermes/.venv/bin/activate && \
IFS=';' read -ra URLS <<< "$HERMES_PLUGIN_URLS" && \
for url in "${URLS[@]}"; do \
echo "Installing plugin: $url" && \
uv pip install --no-cache-dir "$url"; \
done; \
fi
# ---------- Install multi-gateway launcher ---------- # ---------- Install multi-gateway launcher ----------
# Launches one gateway process per profile (HERMES_PROFILES env var) # Launches one gateway process per profile (HERMES_PROFILES env var)
COPY --chmod=0755 run-multi-gateways.sh /usr/local/bin/run-multi-gateways.sh COPY --chmod=0755 run-multi-gateways.sh /usr/local/bin/run-multi-gateways.sh

View File

@@ -36,6 +36,32 @@ services:
# Internal port # Internal port
- "traefik.http.services.homer.loadbalancer.server.port=8080" - "traefik.http.services.homer.loadbalancer.server.port=8080"
telos:
image: nginx:alpine
container_name: telos
volumes:
- /mnt/HoardingCow_docker_data/Telos/site:/usr/share/nginx/html:ro
restart: always
networks:
- homepage_net
labels:
- "traefik.enable=true"
# HTTP → HTTPS redirect
- "traefik.http.routers.telos-http.rule=Host(`telos.lazyworkhorse.net`)"
- "traefik.http.routers.telos-http.entrypoints=web"
- "traefik.http.routers.telos-http.middlewares=redirect-to-https"
- "traefik.http.middlewares.redirect-to-https.redirectscheme.scheme=https"
# HTTPS router
- "traefik.http.routers.telos-https.rule=Host(`telos.lazyworkhorse.net`)"
- "traefik.http.routers.telos-https.entrypoints=websecure"
- "traefik.http.routers.telos-https.tls=true"
- "traefik.http.routers.telos-https.tls.certresolver=njalla"
# Internal port
- "traefik.http.services.telos.loadbalancer.server.port=80"
networks: networks:
homepage_net: homepage_net:
external: true external: true