# Multi-region tidalDB cluster image.
#
# Runs a simulated 3-region cluster (us-east, eu-west, ap-south) behind a
# single HTTP surface on port 9500. See docs/runbooks/cluster.md for the
# operational API.
FROM rust:1.91 AS builder

ARG DEBIAN_FRONTEND=noninteractive

WORKDIR /app

# Copy workspace manifests first for caching.
COPY Cargo.toml Cargo.lock ./
COPY tidal/Cargo.toml tidal/Cargo.toml
COPY tidal-net/Cargo.toml tidal-net/Cargo.toml
COPY tidalctl/Cargo.toml tidalctl/Cargo.toml
COPY tidal-server/Cargo.toml tidal-server/Cargo.toml
COPY applications/forage/engine/Cargo.toml applications/forage/engine/Cargo.toml
COPY applications/forage/server/Cargo.toml applications/forage/server/Cargo.toml
COPY applications/forage/embedder/Cargo.toml applications/forage/embedder/Cargo.toml
COPY applications/iknowyou/engine/Cargo.toml applications/iknowyou/engine/Cargo.toml

# Copy full workspace.
COPY . .

RUN apt-get update && apt-get install -y g++ && rm -rf /var/lib/apt/lists/*
RUN cargo build -p tidal-server --release

FROM debian:bookworm-slim

ARG DEBIAN_FRONTEND=noninteractive

WORKDIR /srv
RUN useradd --system --home /srv tidal && \
    apt-get update && apt-get install -y ca-certificates curl && \
    rm -rf /var/lib/apt/lists/*

COPY --from=builder /app/target/release/tidal-server /usr/local/bin/tidal-server
COPY --chown=tidal tidal-server/config /etc/tidal-server

USER tidal
EXPOSE 9500

ENV TIDAL_CONFIG=/etc/tidal-server

HEALTHCHECK --interval=30s --timeout=5s --start-period=15s --retries=3 \
    CMD curl -f http://localhost:9500/health || exit 1

ENTRYPOINT ["tidal-server"]
CMD ["cluster", "--listen", "0.0.0.0:9500", "--schema", "/etc/tidal-server/default-schema.yaml", "--topology", "/etc/tidal-server/default-cluster.yaml"]
