docker-compose.yml had drifted from the committed version during the move to
this host: a dedicated gitea-postgres service replaces the shared postgres-db
on the LAN box, and SSH is now published on the netbird interface only
(100.75.252.111:2222) instead of 0.0.0.0.
The database password is no longer inline — both POSTGRES_PASSWORD and
GITEA__database__PASSWD read ${POSTGRES_PASSWORD} from .env (gitignored,
mode 0600). .env.example documents the key, and *.bak-* is now ignored.
Note: run docker compose from this directory, otherwise .env is not picked up
and the variable resolves empty.
Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01Kjn2zm5PJ5y9t4HjpGouWR
62 lines
1.6 KiB
YAML
62 lines
1.6 KiB
YAML
services:
|
|
postgres:
|
|
image: postgres:16-alpine
|
|
container_name: gitea-postgres
|
|
restart: unless-stopped
|
|
environment:
|
|
- POSTGRES_USER=gitea
|
|
- POSTGRES_PASSWORD=${POSTGRES_PASSWORD}
|
|
- POSTGRES_DB=gitea
|
|
volumes:
|
|
- postgres_data:/var/lib/postgresql/data
|
|
|
|
gitea:
|
|
image: gitea/gitea:latest
|
|
container_name: gitea
|
|
depends_on:
|
|
- postgres
|
|
environment:
|
|
- USER_UID=1000
|
|
- USER_GID=1000
|
|
- GITEA__database__DB_TYPE=postgres
|
|
- GITEA__database__HOST=postgres:5432
|
|
- GITEA__database__NAME=gitea
|
|
- GITEA__database__USER=gitea
|
|
- GITEA__database__PASSWD=${POSTGRES_PASSWORD}
|
|
restart: unless-stopped
|
|
volumes:
|
|
- gitea_data:/data
|
|
- /etc/timezone:/etc/timezone:ro
|
|
- /etc/localtime:/etc/localtime:ro
|
|
- ./backup:/tmp/backup
|
|
ports:
|
|
- "3008:3000"
|
|
- "100.75.252.111:2222:22"
|
|
|
|
gitea-backup:
|
|
image: alpine:3.21
|
|
container_name: gitea-backup
|
|
depends_on:
|
|
- gitea
|
|
restart: unless-stopped
|
|
environment:
|
|
- BACKUP_RETAIN_DAYS=7
|
|
volumes:
|
|
- /var/run/docker.sock:/var/run/docker.sock
|
|
- ./backup:/backup
|
|
- ./backup.sh:/usr/local/bin/backup.sh:ro
|
|
- /etc/timezone:/etc/timezone:ro
|
|
- /etc/localtime:/etc/localtime:ro
|
|
entrypoint: /bin/sh
|
|
command:
|
|
- -c
|
|
- |
|
|
apk add --no-cache docker-cli
|
|
echo "0 2 * * * /usr/local/bin/backup.sh >> /var/log/backup.log 2>&1" > /etc/crontabs/root
|
|
touch /var/log/backup.log
|
|
crond -f -l 2
|
|
|
|
volumes:
|
|
gitea_data:
|
|
postgres_data:
|