# Multi-stage build for Foxhunt Backtesting Service # Wave 71 Agent 8: Production-optimized Docker image # ============================================================================= # Builder Stage # ============================================================================= FROM rust:1.89-slim-bookworm AS builder # Install build dependencies RUN apt-get update && apt-get install -y \ pkg-config \ libssl-dev \ protobuf-compiler \ perl \ make \ && rm -rf /var/lib/apt/lists/* # Set working directory WORKDIR /build # Set CUDA environment variables to skip GPU detection during build # CUDA 13.0 matches development environment, RTX 3050 Ti = compute capability 8.6 ENV CUDARC_CUDA_VERSION=13000 ENV CUDA_COMPUTE_CAP=86 # Copy workspace manifests COPY Cargo.toml Cargo.lock ./ # Copy sqlx offline cache for compile-time query verification COPY .sqlx ./.sqlx # Copy workspace members to satisfy manifest dependencies COPY trading_engine ./trading_engine COPY risk ./risk COPY risk-data ./risk-data COPY trading-data ./trading-data COPY tli ./tli COPY ml ./ml COPY ml-data ./ml-data COPY data ./data COPY backtesting ./backtesting COPY adaptive-strategy ./adaptive-strategy COPY common ./common COPY storage ./storage COPY model_loader ./model_loader COPY market-data ./market-data COPY database ./database COPY config ./config COPY web-gateway ./web-gateway COPY ctrader-openapi ./ctrader-openapi COPY foxhunt-deploy ./foxhunt-deploy COPY services/backtesting_service ./services/backtesting_service COPY services/broker_gateway_service ./services/broker_gateway_service COPY services/trading_service ./services/trading_service COPY services/ml_training_service ./services/ml_training_service COPY services/data_acquisition_service ./services/data_acquisition_service COPY services/trading_agent_service ./services/trading_agent_service COPY services/api_gateway ./services/api_gateway COPY services/load_tests ./services/load_tests COPY services/stress_tests ./services/stress_tests COPY services/integration_tests ./services/integration_tests COPY tests ./tests # Enable sqlx offline mode to use cached query metadata ENV SQLX_OFFLINE=true # Build the application RUN cargo build --release -p backtesting_service # ============================================================================= # Runtime Stage # ============================================================================= FROM debian:bookworm-slim # Install runtime dependencies RUN apt-get update && apt-get install -y \ ca-certificates \ libssl3 \ curl \ && rm -rf /var/lib/apt/lists/* # Download and install grpc_health_probe RUN curl -sSL https://github.com/grpc-ecosystem/grpc-health-probe/releases/download/v0.4.25/grpc_health_probe-linux-amd64 \ -o /usr/local/bin/grpc_health_probe && \ chmod +x /usr/local/bin/grpc_health_probe # Create non-root user RUN groupadd --system --gid 1000 foxhunt && \ useradd --system --uid 1000 --gid foxhunt --shell /bin/bash foxhunt # Create application directories RUN mkdir -p /app/config /app/logs /app/data /app/results && \ chown -R foxhunt:foxhunt /app # Set working directory WORKDIR /app # Copy binary from builder COPY --from=builder /build/target/release/backtesting_service ./backtesting_service RUN chmod +x ./backtesting_service # Switch to non-root user USER foxhunt # Expose gRPC, metrics, and health check ports EXPOSE 50052 9093 8080 # Health check using HTTP endpoint (doesn't require TLS) HEALTHCHECK --interval=10s --timeout=5s --start-period=30s --retries=3 \ CMD curl -f http://localhost:8080/health || exit 1 # Run the application ENTRYPOINT ["./backtesting_service"]