128 lines
3.7 KiB
YAML
128 lines
3.7 KiB
YAML
version: "3.8"
|
|
|
|
services:
|
|
gitea:
|
|
image: docker.gitea.com/gitea:1.24
|
|
container_name: gitea
|
|
environment:
|
|
- USER_UID=1000
|
|
- USER_GID=1000
|
|
- GITEA_CUSTOM=/data/gitea
|
|
# Database
|
|
- GITEA__database__DB_TYPE=postgres
|
|
- GITEA__database__HOST=postgres:5432
|
|
- GITEA__database__NAME=${POSTGRES_DB}
|
|
- GITEA__database__USER=${POSTGRES_USER}
|
|
- GITEA__database__PASSWD=${POSTGRES_PASSWORD}
|
|
- GITEA__database__SSL_MODE=disable
|
|
# Server
|
|
- GITEA__server__DOMAIN=${GITEA_DOMAIN}
|
|
- GITEA__server__SSH_DOMAIN=${GITEA_DOMAIN}
|
|
- GITEA__server__ROOT_URL=https://${GITEA_DOMAIN}/
|
|
- GITEA__server__HTTP_PORT=3000
|
|
- GITEA__server__SSH_PORT=22222
|
|
- GITEA__server__SSH_LISTEN_PORT=222
|
|
- GITEA__server__START_SSH_SERVER=true
|
|
- GITEA__server__DISABLE_SSH=false
|
|
- GITEA__server__LFS_START_SERVER=true
|
|
- GITEA__server__LFS_JWT_SECRET=${LFS_JWT_SECRET}
|
|
- GITEA__server__OFFLINE_MODE=true
|
|
- GITEA__server__APP_DATA_PATH=/data/gitea
|
|
# Security
|
|
- GITEA__security__INSTALL_LOCK=true
|
|
- GITEA__security__SECRET_KEY=${SECRET_KEY}
|
|
- GITEA__security__INTERNAL_TOKEN=${INTERNAL_TOKEN}
|
|
- GITEA__security__REVERSE_PROXY_LIMIT=1
|
|
- GITEA__security__REVERSE_PROXY_TRUSTED_PROXIES=*
|
|
- GITEA__security__PASSWORD_HASH_ALGO=pbkdf2
|
|
# Service
|
|
- GITEA__service__DISABLE_REGISTRATION=true
|
|
- GITEA__service__REQUIRE_SIGNIN_VIEW=false
|
|
- GITEA__service__ENABLE_OPENID_SIGNUP=false
|
|
- GITEA__service__ENABLE_OPENID_SIGNIN=false
|
|
# OAuth2
|
|
- GITEA__oauth2__JWT_SECRET=${OAUTH2_JWT_SECRET}
|
|
# Actions
|
|
- GITEA__actions__ENABLED=true
|
|
# Repository
|
|
- GITEA__repository__ROOT=/data/git/repositories
|
|
- GITEA__repository__ENABLE_GO_GET=true
|
|
# LFS
|
|
- GITEA__lfs__PATH=/data/git/lfs
|
|
# Session
|
|
- GITEA__session__PROVIDER=file
|
|
- GITEA__session__PROVIDER_CONFIG=/data/gitea/sessions
|
|
# Log
|
|
- GITEA__log__MODE=console
|
|
- GITEA__log__LEVEL=info
|
|
# Mailer
|
|
- GITEA__mailer__ENABLED=false
|
|
# Cron
|
|
- GITEA__cron.update_checker__ENABLED=false
|
|
restart: unless-stopped
|
|
volumes:
|
|
- gitea-data:/data
|
|
ports:
|
|
- "3000:3000"
|
|
- "22222:222"
|
|
depends_on:
|
|
postgres:
|
|
condition: service_healthy
|
|
networks:
|
|
- gitea-net
|
|
healthcheck:
|
|
test: ["CMD", "curl", "-f", "http://localhost:3000/api/v1/version"]
|
|
interval: 30s
|
|
timeout: 10s
|
|
retries: 5
|
|
start_period: 60s
|
|
|
|
postgres:
|
|
image: postgres:16-alpine
|
|
container_name: gitea-postgres
|
|
environment:
|
|
- POSTGRES_USER=${POSTGRES_USER}
|
|
- POSTGRES_PASSWORD=${POSTGRES_PASSWORD}
|
|
- POSTGRES_DB=${POSTGRES_DB}
|
|
restart: unless-stopped
|
|
volumes:
|
|
- postgres-data:/var/lib/postgresql/data
|
|
networks:
|
|
- gitea-net
|
|
healthcheck:
|
|
test: ["CMD-SHELL", "pg_isready -U ${POSTGRES_USER} -d ${POSTGRES_DB}"]
|
|
interval: 10s
|
|
timeout: 5s
|
|
retries: 5
|
|
start_period: 30s
|
|
|
|
act-runner:
|
|
image: gitea/act_runner:latest
|
|
container_name: gitea-act-runner
|
|
environment:
|
|
- GITEA_INSTANCE_URL=http://gitea:3000
|
|
- GITEA_RUNNER_REGISTRATION_TOKEN=${RUNNER_REGISTRATION_TOKEN}
|
|
- GITEA_RUNNER_NAME=default-runner
|
|
- GITEA_RUNNER_LABELS=ubuntu-latest:docker://node:20-bookworm,ubuntu-22.04:docker://ubuntu:22.04
|
|
restart: unless-stopped
|
|
volumes:
|
|
- runner-data:/data
|
|
- /var/run/docker.sock:/var/run/docker.sock
|
|
depends_on:
|
|
gitea:
|
|
condition: service_healthy
|
|
networks:
|
|
- gitea-net
|
|
|
|
volumes:
|
|
gitea-data:
|
|
driver: local
|
|
postgres-data:
|
|
driver: local
|
|
runner-data:
|
|
driver: local
|
|
|
|
networks:
|
|
gitea-net:
|
|
driver: bridge
|