Container image for the [MystenLabs Seal](https://github.com/MystenLabs/seal) key server.
1.2K
Container image for the MystenLabs Seal key server.
This package downloads the official key-server release binary from
MystenLabs/seal releases and packages it for
linux/amd64 and linux/arm64.
.current-version maps to release tag seal-v${VERSION}
key-server-linux-x86_64, key-server-linux-aarch64linux/amd64 (x86_64)linux/arm64 (aarch64)| Port | Purpose |
|---|---|
2024 | HTTP API (PORT env overrides) |
9184 | Prometheus metrics (default) |
The binary supports two configuration modes:
Set CONFIG_PATH to a YAML config file path (mount it into the container).
Example config reference: key-server-config.yaml
docker run --rm \
-p 2024:2024 \
-e CONFIG_PATH=/config/key-server-config.yaml \
-e MASTER_KEY=<your-master-key> \
-v /path/to/key-server-config.yaml:/config/key-server-config.yaml:ro \
cmdoss/seal-key-server:latest
Optional: set NODE_URL either in the config file or as an environment variable (not both).
Without CONFIG_PATH, the server uses environment variables in Open mode:
| Variable | Description |
|---|---|
MASTER_KEY | Master key material (required) |
KEY_SERVER_OBJECT_ID | Onchain key server object ID (hex) |
NETWORK | Network name (default: Testnet) |
NODE_URL | Optional custom full node URL |
PORT | HTTP listen port (default: 2024) |
cd packages/seal-key-server
docker build --build-arg VERSION="$(cat .current-version)" -t seal-key-server .
This project is licensed under the Apache License 2.0.
The packaged key-server binary is from MystenLabs/seal (Apache-2.0).
Content type
Image
Digest
sha256:6c0c1b789…
Size
38.9 MB
Last updated
29 days ago
docker pull cmdoss/seal-key-server