- apps/freeswitch-config (b2bcall-fs-config): Fastify service implementing the mod_xml_curl HTTP protocol (form-encoded POST -> XML response), containerized, no host port published - reactivated mod_xml_curl in FreeSWITCH, binding restricted to directory|dialplan only (configuration was removed after testing showed it firing several unnecessary HTTP round-trips at boot for module configs we don't need dynamic — matches agente.md's own 'don't put every critical config through XML Curl' guidance) - no extensions/dialplan tables exist yet (next phases), so the service always answers 'not found' for now — this phase only proves the wire protocol works without breaking the static vanilla config fallback - verified end-to-end: user/8888 (nowhere) -> SUBSCRIBER_ABSENT via fs-config; user/1000 (static vanilla extension) -> USER_NOT_REGISTERED, proving FreeSWITCH correctly falls through to static XML when xml_curl says not found - docs/XML_CURL.md, including the not-yet-authenticated endpoint note (fine while it only returns not-found; needs gateway-credentials before serving real directory/dialplan data)
56 lines
2.7 KiB
Docker
56 lines
2.7 KiB
Docker
# syntax=docker/dockerfile:1.7
|
||
#
|
||
# Imagem própria/controlada do FreeSWITCH (agente.md secao 19), usando os
|
||
# pacotes pré-compilados do SignalWire em vez de compilar da fonte — build
|
||
# de C/C++ e´ pesado demais pra VM de laboratorio (1.9GB RAM).
|
||
FROM debian:trixie-slim
|
||
|
||
ENV DEBIAN_FRONTEND=noninteractive
|
||
|
||
RUN apt-get update \
|
||
&& apt-get install -y --no-install-recommends ca-certificates gnupg curl \
|
||
&& rm -rf /var/lib/apt/lists/*
|
||
|
||
# FREESWITCH_PAT só existe durante este RUN (BuildKit secret, nunca vira
|
||
# camada da imagem) e o arquivo de credenciais do apt é apagado antes do fim
|
||
# do MESMO RUN — agente.md secao 11: "a credencial nao devera permanecer na
|
||
# imagem runtime".
|
||
RUN --mount=type=secret,id=freeswitch_pat,required=true \
|
||
set -eu; \
|
||
FS_PAT="$(cat /run/secrets/freeswitch_pat)"; \
|
||
curl -fsSL -u "signalwire:${FS_PAT}" \
|
||
https://freeswitch.signalwire.com/repo/deb/debian-release/signalwire-freeswitch-repo.gpg \
|
||
-o /usr/share/keyrings/signalwire-freeswitch-repo.gpg; \
|
||
install -d -m 700 /etc/apt/auth.conf.d; \
|
||
printf 'machine freeswitch.signalwire.com\nlogin signalwire\npassword %s\n' "${FS_PAT}" \
|
||
> /etc/apt/auth.conf.d/freeswitch.conf; \
|
||
chmod 600 /etc/apt/auth.conf.d/freeswitch.conf; \
|
||
echo "deb [signed-by=/usr/share/keyrings/signalwire-freeswitch-repo.gpg] https://freeswitch.signalwire.com/repo/deb/debian-release/ trixie main" \
|
||
> /etc/apt/sources.list.d/freeswitch.list; \
|
||
apt-get update; \
|
||
apt-get install -y --no-install-recommends \
|
||
freeswitch-meta-vanilla \
|
||
freeswitch-conf-vanilla \
|
||
freeswitch-mod-xml-curl \
|
||
freeswitch-mod-callcenter \
|
||
freeswitch-mod-avmd \
|
||
freeswitch-mod-curl; \
|
||
rm -f /etc/apt/auth.conf.d/freeswitch.conf /etc/apt/sources.list.d/freeswitch.list; \
|
||
rm -rf /var/lib/apt/lists/*
|
||
|
||
# Overrides mínimos por cima da config vanilla (agente.md secao 15: "carregar
|
||
# somente o necessário"). Directory/dialplan/sip_profiles ficam na config
|
||
# vanilla padrão por enquanto — serão substituídos por mod_xml_curl na fase
|
||
# "Extensions/Trunks/Dialplan" (ver docs/FREESWITCH.md).
|
||
COPY overrides/autoload_configs/modules.conf.xml /etc/freeswitch/autoload_configs/modules.conf.xml
|
||
COPY overrides/autoload_configs/event_socket.conf.xml /etc/freeswitch/autoload_configs/event_socket.conf.xml
|
||
COPY overrides/autoload_configs/acl.conf.xml /etc/freeswitch/autoload_configs/acl.conf.xml
|
||
COPY overrides/autoload_configs/xml_curl.conf.xml /etc/freeswitch/autoload_configs/xml_curl.conf.xml
|
||
COPY entrypoint.sh /usr/local/bin/entrypoint.sh
|
||
RUN chmod +x /usr/local/bin/entrypoint.sh
|
||
|
||
EXPOSE 8021
|
||
|
||
ENTRYPOINT ["/usr/local/bin/entrypoint.sh"]
|
||
CMD ["/usr/bin/freeswitch", "-nonat"]
|