Files
infrastructure/docker-compose.yml

128 lines
3.7 KiB
YAML

version: "3.8"
services:
gitea:
image: docker.gitea.com/gitea:1.24
container_name: gitea
environment:
- USER_UID=1000
- USER_GID=1000
- GITEA_CUSTOM=/data/gitea
# Database
- GITEA__database__DB_TYPE=postgres
- GITEA__database__HOST=postgres:5432
- GITEA__database__NAME=${POSTGRES_DB}
- GITEA__database__USER=${POSTGRES_USER}
- GITEA__database__PASSWD=${POSTGRES_PASSWORD}
- GITEA__database__SSL_MODE=disable
# Server
- GITEA__server__DOMAIN=${GITEA_DOMAIN}
- GITEA__server__SSH_DOMAIN=${GITEA_DOMAIN}
- GITEA__server__ROOT_URL=https://${GITEA_DOMAIN}/
- GITEA__server__HTTP_PORT=3000
- GITEA__server__SSH_PORT=22222
- GITEA__server__SSH_LISTEN_PORT=222
- GITEA__server__START_SSH_SERVER=true
- GITEA__server__DISABLE_SSH=false
- GITEA__server__LFS_START_SERVER=true
- GITEA__server__LFS_JWT_SECRET=${LFS_JWT_SECRET}
- GITEA__server__OFFLINE_MODE=true
- GITEA__server__APP_DATA_PATH=/data/gitea
# Security
- GITEA__security__INSTALL_LOCK=true
- GITEA__security__SECRET_KEY=${SECRET_KEY}
- GITEA__security__INTERNAL_TOKEN=${INTERNAL_TOKEN}
- GITEA__security__REVERSE_PROXY_LIMIT=1
- GITEA__security__REVERSE_PROXY_TRUSTED_PROXIES=*
- GITEA__security__PASSWORD_HASH_ALGO=pbkdf2
# Service
- GITEA__service__DISABLE_REGISTRATION=true
- GITEA__service__REQUIRE_SIGNIN_VIEW=false
- GITEA__service__ENABLE_OPENID_SIGNUP=false
- GITEA__service__ENABLE_OPENID_SIGNIN=false
# OAuth2
- GITEA__oauth2__JWT_SECRET=${OAUTH2_JWT_SECRET}
# Actions
- GITEA__actions__ENABLED=true
# Repository
- GITEA__repository__ROOT=/data/git/repositories
- GITEA__repository__ENABLE_GO_GET=true
# LFS
- GITEA__lfs__PATH=/data/git/lfs
# Session
- GITEA__session__PROVIDER=file
- GITEA__session__PROVIDER_CONFIG=/data/gitea/sessions
# Log
- GITEA__log__MODE=console
- GITEA__log__LEVEL=info
# Mailer
- GITEA__mailer__ENABLED=false
# Cron
- GITEA__cron.update_checker__ENABLED=false
restart: unless-stopped
volumes:
- gitea-data:/data
ports:
- "3000:3000"
- "22222:222"
depends_on:
postgres:
condition: service_healthy
networks:
- gitea-net
healthcheck:
test: ["CMD", "curl", "-f", "http://localhost:3000/api/v1/version"]
interval: 30s
timeout: 10s
retries: 5
start_period: 60s
postgres:
image: postgres:16-alpine
container_name: gitea-postgres
environment:
- POSTGRES_USER=${POSTGRES_USER}
- POSTGRES_PASSWORD=${POSTGRES_PASSWORD}
- POSTGRES_DB=${POSTGRES_DB}
restart: unless-stopped
volumes:
- postgres-data:/var/lib/postgresql/data
networks:
- gitea-net
healthcheck:
test: ["CMD-SHELL", "pg_isready -U ${POSTGRES_USER} -d ${POSTGRES_DB}"]
interval: 10s
timeout: 5s
retries: 5
start_period: 30s
act-runner:
image: gitea/act_runner:latest
container_name: gitea-act-runner
environment:
- GITEA_INSTANCE_URL=http://gitea:3000
- GITEA_RUNNER_REGISTRATION_TOKEN=${RUNNER_REGISTRATION_TOKEN}
- GITEA_RUNNER_NAME=default-runner
- GITEA_RUNNER_LABELS=ubuntu-latest:docker://node:20-bookworm,ubuntu-22.04:docker://ubuntu:22.04
restart: unless-stopped
volumes:
- runner-data:/data
- /var/run/docker.sock:/var/run/docker.sock
depends_on:
gitea:
condition: service_healthy
networks:
- gitea-net
volumes:
gitea-data:
driver: local
postgres-data:
driver: local
runner-data:
driver: local
networks:
gitea-net:
driver: bridge