Files
api/docker-compose.prod.yml
T

29 lines
1.2 KiB
YAML
Raw Blame History

This file contains ambiguous Unicode characters
This file contains Unicode characters that might be confused with other characters. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.
services:
traefik:
# Use hardened Traefik config in production (no staging CA, no tracing/metrics)
volumes:
- ./services/traefik/traefik.prod.yml:/etc/traefik/traefik.yml:ro
- ./services/traefik/dynamic.yml:/etc/traefik/dynamic.yml:ro
- ./services/traefik/acme.json:/acme.json
ports:
- "80:80"
- "443:443"
# Remove public exposure of internal datastores in production
db:
ports: []
redis:
ports: []
## Usage (examples):
## - With explicit files (recommended):
## docker compose -f docker-compose.yml -f docker-compose.prod.yml up -d traefik caddy php1 php2 php3 php4 php5 db redis
##
## - Or set COMPOSE_FILE for the shell session (PowerShell on Windows):
## $env:COMPOSE_FILE = "docker-compose.yml;docker-compose.prod.yml"
## docker compose up -d traefik caddy php1 php2 php3 php4 php5 db redis
##
## Notes:
## - Traefik uses Lets Encrypt production. Ensure DNS A/AAAA records for api.truckwash.dk and traefik.truckwash.dk point to this host and ports 80/443 are reachable.
## - The dashboard is protected by basic auth and an IP allowlist (defined in dynamic.yml). Replace the bcrypt hash before enabling in production.