Compare commits

..

8 Commits

Author SHA1 Message Date
fauno 92650aa12a feat: serve default robots txt 2025-12-26 13:40:51 -03:00
fauno 0e38a772e9 feat: anubis open graph cache 2025-12-26 13:29:05 -03:00
fauno f469a1a90e doc: readme 2025-12-26 13:23:06 -03:00
fauno 0d85f97200 fix: traefik complains the network is not set 2025-12-24 19:00:41 -03:00
fauno ac33efe73a fix: labels 2025-12-24 18:26:33 -03:00
fauno a135d170bb fix: anubis 2025-12-24 16:58:51 -03:00
fauno fa7cf3e17b fix: labels 2025-12-24 16:49:37 -03:00
fauno d05c81b4d7 feat: anubis 2025-12-24 16:27:05 -03:00
7 changed files with 67 additions and 36 deletions
+11 -1
View File
@@ -174,4 +174,14 @@ COMPOSE_FILE="compose.yml"
## Nextcloud Talk HPB ## Nextcloud Talk HPB
#COMPOSE_FILE="$COMPOSE_FILE:compose.nextcloud-talk-hpb.yml" #COMPOSE_FILE="$COMPOSE_FILE:compose.nextcloud-talk-hpb.yml"
#NEXTCLOUD_TALK_HPB_ENABLED=1 #NEXTCLOUD_TALK_HPB_ENABLED=1
## Anubis
#COMPOSE_FILE="$COMPOSE_FILE:compose.anubis.yml"
#ANUBIS_COOKIE_DOMAIN=example.com
#ANUBIS_DOMAIN=anubis.example.com
#ANUBIS_REDIRECT_DOMAINS=
#ANUBIS_OG_PASSTHROUGH=true
#ANUBIS_OG_EXPIRY_TIME=1h
#ANUBIS_OG_CACHE_CONSIDER_HOST=true
#ANUBIS_SERVE_ROBOTS_TXT=true
-15
View File
@@ -1,15 +0,0 @@
---
name: "Traefik pull request template"
---
<!--
Thank you for doing recipe maintenance work!
Please mark all checklist items which are relevant for your changes.
Please remove the checklist items which are not relevant for your changes.
Feel free to remove this comment.
-->
* [ ] I have deployed and tested my changes
* [ ] I have [updated relevant versions in `abra.sh`](https://docs.coopcloud.tech/maintainers/upgrade/#updating-versions-in-the-abrash)
* [ ] I have made my environment variable changes [backwards compatible](https://docs.coopcloud.tech/maintainers/upgrade/#backwards-compatible-environment-variable-changes)
* [ ] I have added a [release note entry](https://docs.coopcloud.tech/maintainers/upgrade/#creating-new-release-notes)
+12 -17
View File
@@ -1,29 +1,24 @@
# Traefik Recipe Maintenance # Traefik Recipe Maintenance
All contributions should be made via a pull request. This is to ensure a All contributions should be made via a pull request. This is to ensure a certain quality / consistency, that others can rely on.
certain quality and consistency, that others can rely on.
## Maintainer Responsibilities ## Maintainer Responsibilities
A recipe maintainer has the following responsibilities: A recipe maintainer has the following responsibilities:
- respond to pull requests / issues within a week
- Respond to pull requests / issues within a week - make image security updates within a day
- Make image security updates within a day - make image patch / minor updates within a week
- Make image patch / minor updates within a week - make image major updates within a month
- Make image major updates within a month
In order to fullfill these responsibilities a recipe maintainer: In order to fullfill these responsibilities a recipe maintainer:
- has to watch the repository (to get notifications)
- needs to make sure renovate is configured properly
- Has to watch the repository (to get notifications) ## Merge rules
- Needs to make sure renovate is configured properly
## Pull Requests A pull request can be merged if it is approved by at least one maintainer. For pull requests opened by a maintainer they need to be approved by another maintainer.
A pull request can be merged if it is approved by at least one maintainer. For ## Becoming a maintainer
pull requests opened by a maintainer they need to be approved by another
maintainer.
## Become a maintainer Everyone can apply to be a recipe maintainer. Simply add your self to the list in the [README.md](./README.md) and open a new pull request with the change.
Everyone can apply to be a recipe maintainer. Simply add your self to the list
in the [README.md](./README.md) and open a new pull request with the change.
+14 -1
View File
@@ -5,7 +5,7 @@
> https://docs.traefik.io > https://docs.traefik.io
<!-- metadata --> <!-- metadata -->
* **Maintainer**: [@p4u1](https://git.coopcloud.tech/p4u1), [@decentral1se](https://git.coopcloud.tech/decentral1se) * **Maintainer**: [@p4u1](https://git.coopcloud.tech/p4u1)
* **Status**: `stable` * **Status**: `stable`
* **Category**: Utilities * **Category**: Utilities
* **Features**: ? * **Features**: ?
@@ -55,4 +55,17 @@ Letsencrypt DNS challenges.
Access Token, in which case use compose.gandi-personal-access-token.yml. Access Token, in which case use compose.gandi-personal-access-token.yml.
6. Redeploy Traefik, using e.g. `abra app deploy YOURAPPDOMAIN -f` 6. Redeploy Traefik, using e.g. `abra app deploy YOURAPPDOMAIN -f`
## Blocking scrapers with [Anubis](https://anubis.techaro.lol/)
Uncomment the lines on the Anubis section of the configuration. Set
a domain name for the cookies and a domain that will serve Anubis
redirection service. Optionally and for [added
security](https://anubis.techaro.lol/docs/admin/configuration/redirect-domains),
set a list of the domain names for the apps that are going to be
protected.
After deploying these changes, go to each recipe that supports Anubis
and follow the process there. **Enabling Anubis here is not enough for
protection your apps.**
[`abra`]: https://git.autonomic.zone/autonomic-cooperative/abra [`abra`]: https://git.autonomic.zone/autonomic-cooperative/abra
+1 -1
View File
@@ -1,3 +1,3 @@
export TRAEFIK_YML_VERSION=v28 export TRAEFIK_YML_VERSION=v28
export FILE_PROVIDER_YML_VERSION=v11 export FILE_PROVIDER_YML_VERSION=v10
export ENTRYPOINT_VERSION=v5 export ENTRYPOINT_VERSION=v5
+29
View File
@@ -0,0 +1,29 @@
---
version: "3.8"
services:
app:
deploy:
labels:
- "traefik.http.middlewares.anubis.forwardauth.address=http://anubis:8080/.within.website/x/cmd/anubis/api/check"
anubis:
image: "ghcr.io/techarohq/anubis:v1.24.0"
environment:
BIND: ":8080"
TARGET: " "
REDIRECT_DOMAINS: "${ANUBIS_REDIRECT_DOMAINS}"
COOKIE_DOMAIN: "${ANUBIS_COOKIE_DOMAIN}"
PUBLIC_URL: "https://${ANUBIS_DOMAIN}"
OG_PASSTHROUGH: "${ANUBIS_OG_PASSTHROUGH}"
OG_EXPIRY_TIME: "${ANUBIS_OG_EXPIRY_TIME}"
OG_CACHE_CONSIDER_HOST: "${ANUBIS_OG_CACHE_CONSIDER_HOST}"
SERVE_ROBOTS_TXT: "${ANUBIS_SERVE_ROBOTS_TXT}"
networks:
- proxy
deploy:
labels:
- "traefik.enable=true"
- "traefik.http.routers.anubis.rule=Host(`${ANUBIS_DOMAIN}`)"
- "traefik.http.routers.anubis.tls.certresolver=${LETS_ENCRYPT_ENV}"
- "traefik.http.routers.anubis.entrypoints=web-secure"
- "traefik.http.services.anubis.loadbalancer.server.port=8080"
- "traefik.http.routers.anubis.service=anubis"
-1
View File
@@ -43,7 +43,6 @@ tls:
curvePreferences: curvePreferences:
- CurveP521 - CurveP521
- CurveP384 - CurveP384
- CurveP256
sniStrict: true sniStrict: true
{{ if eq (env "WILDCARDS_ENABLED") "1" }} {{ if eq (env "WILDCARDS_ENABLED") "1" }}
certificates: certificates: