Blazor编译后的文件是静态文件,因此咱们只须要一个支持静态页面的web server便可。
根据不一样项目,会用不一样的容器编排,本文已无网关的状况下为例,一步一步展现如何打包进dockerjavascript
既然无网关,直接面向互联网,因此HTTPS显得尤其重要css
既然都是静态资源,使用H2和TLS3.0的目的是进一步加快加载速度html
对静态资源的压缩的目的依然是进一步加快加载速度。压缩选型为Brotli和 Gzip 压缩java
官方的Nginx镜像,默认不支持Brotli
因此须要本身准备一个具备Brotli支持的镜像,这里推荐使用自卖自诩的Nginx镜像,不只使用最新的openssl编译(避免漏洞),还支持TLS1.3 http2 brotli和默认东八时区,且配置文件里还有配置示例。欢迎访问Docker Hub rsnow/nginx,了解更多。nginx
截至2020.05.26,VS还不能把blazor wasm直接发布到Docker镜像仓库,因此只能本身打包git
FROM rsnow/nginx:amd64-1.18.0 RUN rm /usr/share/nginx/html/index.html && \ echo -e 'server { \n\ listen 443 ssl http2; \n\ server_name localhost; \n\ brotli on; \n\ brotli_comp_level 6; \n\ brotli_types application/wasm application/octet-stream text/plain text/css application/json application/x-javascript text/xml application/xml application/xml+rss text/javascript application/javascript image/svg+xml; \n\ gzip on; \n\ gzip_vary on; \n\ gzip_proxied any; \n\ gzip_comp_level 6; \n\ gzip_types application/wasm application/octet-stream text/plain text/css text/xml application/json application/javascript application/rss+xml application/atom+xml image/svg+xml; \n\ ssl_certificate /etc/letsencrypt/live/example.com/fullchain.pem; \n\ ssl_certificate_key /etc/letsencrypt/live/example.com/privkey.pem; \n\ ssl_trusted_certificate /etc/letsencrypt/live/example.com/chain.pem; \n\ ssl_dhparam /etc/certs/dhparam.pem; \n\ ssl_session_timeout 1d; \n\ ssl_session_cache shared:SSL:10m; about 40000 sessions \n\ ssl_session_tickets off; \n\ ssl_protocols TLSv1.3; \n\ ssl_prefer_server_ciphers off; \n\ ssl_stapling on; \n\ ssl_stapling_verify on; \n\ resolver 1.1.1.1 1.0.0.1 8.8.8.8 8.8.4.4 208.67.222.222 208.67.220.220 valid=60s; \n\ resolver_timeout 2s; \n\ add_header X-Frame-Options "SAMEORIGIN" always; \n\ add_header X-XSS-Protection "1; mode=block" always; \n\ add_header X-Content-Type-Options "nosniff" always; \n\ add_header Referrer-Policy "no-referrer-when-downgrade" always; \n\ add_header Content-Security-Policy "default-src \'self\' http: https: data: blob: \'unsafe-inline\'" always; \n\ add_header Strict-Transport-Security "max-age=31536000; includeSubDomains; preload" always; \n\ location / { \n\ root /usr/share/nginx/html; \n\ try_files $uri $uri/ /index.html =404; \n\ } \n\ } \n\ ' > /etc/nginx/conf.d/default.conf COPY ./bin/Release/netstandard2.1/publish/wwwroot /usr/share/nginx/html/
咱们使用自定义的conf覆盖掉默认的conf(最简单的状况)github
有个Dockerfile,就开始生成镜像吧web
docker build -t example.com/testnginxblazor:latest .
若是须要上传到仓库docker
docker push example.com/testnginxblazor:latest
根据建立的镜像,建立并运行容器json
docker run \ -d \ --name nginxblazor \ -p 443:443 \ -v /test/fullchain.pem : /etc/letsencrypt/live/example.com/fullchain.pem \ -v /test/privkey.pem : /etc/letsencrypt/live/example.com/privkey.pem \ -v /test/chain.pem : /etc/letsencrypt/live/example.com/chain.pem \ -v /test/dhparam.pem : /etc/certs/dhparam.pem \ example.com/testnginxblazor
本文采用知识共享署名-非商业性使用-相同方式共享 2.5 中国大陆许可协议进行许可,发表在CSDN和博客园,欢迎读者转载,但未经做者赞成必须保留此段声明,且在文章页面明显位置给出原文链接!请读者/爬虫们尊重版权