Compare commits
3
Commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
28778ca411
|
||
|
|
5af432db59 | ||
|
|
a5daf26196 |
+11
@@ -215,6 +215,8 @@ WRITE_TIMEOUT=0s
|
||||
## Garage
|
||||
#COMPOSE_FILE="$COMPOSE_FILE:compose.garage.yml"
|
||||
#GARAGE_RPC_ENABLED=1
|
||||
#COMPOSE_FILE="$COMPOSE_FILE:compose.garage-admin.yml"
|
||||
#GARAGE_ADMIN_ENABLED=1
|
||||
|
||||
## Nextcloud Talk HPB
|
||||
#COMPOSE_FILE="$COMPOSE_FILE:compose.nextcloud-talk-hpb.yml"
|
||||
@@ -247,3 +249,12 @@ WRITE_TIMEOUT=0s
|
||||
#
|
||||
# https://doc.traefik.io/traefik/reference/install-configuration/entrypoints/#opt-forwardedHeaders-trustedIPs
|
||||
#TRUSTED_IPS="['10.13.12.1']" # 10.13.12.1 is an example
|
||||
|
||||
## Rate limits
|
||||
# You can enable universal rate limits by setting RATE_LIMIT_EVERYTHING
|
||||
# to true, otherwise each app needs to export their own middleware labels.
|
||||
#
|
||||
# https://doc.traefik.io/traefik/reference/routing-configuration/http/middlewares/ratelimit/
|
||||
#RATE_LIMIT_EVERYTHING=false
|
||||
#RATE_LIMIT_AVERAGE=100
|
||||
#RATE_LIMIT_BURST=200
|
||||
|
||||
@@ -1,4 +1,4 @@
|
||||
export TRAEFIK_YML_VERSION=v35
|
||||
export FILE_PROVIDER_YML_VERSION=v13
|
||||
export TRAEFIK_YML_VERSION=v37
|
||||
export FILE_PROVIDER_YML_VERSION=v14
|
||||
export ENTRYPOINT_VERSION=v5
|
||||
export ANUBIS_YML_VERSION=v1
|
||||
|
||||
@@ -0,0 +1,10 @@
|
||||
version: "3.8"
|
||||
services:
|
||||
app:
|
||||
environment:
|
||||
- GARAGE_ADMIN_ENABLED
|
||||
ports:
|
||||
- target: 3903
|
||||
published: 3903
|
||||
protocol: tcp
|
||||
mode: host
|
||||
+1
-1
@@ -3,7 +3,7 @@ version: "3.8"
|
||||
|
||||
services:
|
||||
app:
|
||||
image: "traefik:v3.7.12"
|
||||
image: "traefik:v3.7.13"
|
||||
# Note(decentral1se): *please do not* add any additional ports here.
|
||||
# Doing so could break new installs with port conflicts. Please use
|
||||
# the usual `compose.$app.yml` approach for any additional ports
|
||||
|
||||
@@ -22,6 +22,11 @@ http:
|
||||
basicAuth:
|
||||
usersFile: "/run/secrets/usersfile"
|
||||
{{ end }}
|
||||
ip-rate-limit:
|
||||
rateLimit:
|
||||
average: {{ or (env "RATE_LIMIT_AVERAGE") "100" }}
|
||||
burst: {{ or (env "RATE_LIMIT_BURST") "200" }}
|
||||
period: "1s"
|
||||
security:
|
||||
headers:
|
||||
frameDeny: true
|
||||
@@ -70,4 +75,4 @@ tls:
|
||||
certificates:
|
||||
- certFile: /run/secrets/ssl_cert
|
||||
keyFile: /run/secrets/ssl_key
|
||||
{{ end }}
|
||||
{{ end }}
|
||||
|
||||
@@ -51,6 +51,10 @@ entrypoints:
|
||||
{{ if ne (env "TRUSTED_IPS") "" }}
|
||||
forwardedHeaders:
|
||||
trustedIPs: {{ env "TRUSTED_IPS" }}
|
||||
{{ end }}
|
||||
{{ if eq (env "RATE_LIMIT_EVERYTHING") "true" }}
|
||||
middlewares:
|
||||
- "ip-rate-limit@file"
|
||||
{{ end }}
|
||||
transport:
|
||||
respondingTimeouts:
|
||||
@@ -79,6 +83,10 @@ entrypoints:
|
||||
garage-rpc:
|
||||
address: ":3901"
|
||||
{{- end }}
|
||||
{{- if eq (env "GARAGE_ADMIN_ENABLED") "1" }}
|
||||
garage-admin:
|
||||
address: ":3903"
|
||||
{{- end }}
|
||||
{{- if eq (env "FOODSOFT_SMTP_ENABLED") "1" }}
|
||||
foodsoft-smtp:
|
||||
address: ":2525"
|
||||
|
||||
Reference in New Issue
Block a user