53 lines
1.8 KiB
YAML
53 lines
1.8 KiB
YAML
# Gitea (web + act runner) — moved off Unraid dockerman into the repo.
|
|
# Exposed via atlas-traefik (LAN) AND pangolin primary (internet) via the
|
|
# pangolin docker-label blueprint. Renovate bumps the pinned tags.
|
|
# Note: dockerman had restart=no (autostart handled by Unraid); here it is
|
|
# unless-stopped so docker/compose restarts it after host boot.
|
|
services:
|
|
gitea:
|
|
image: gitea/gitea:28.0.0
|
|
container_name: "Gitea"
|
|
restart: unless-stopped
|
|
ipc: private
|
|
mac_address: "7e:d9:f5:36:de:80"
|
|
network_mode: bridge
|
|
ports:
|
|
- "2233:22/tcp"
|
|
- "3322:3000/tcp"
|
|
environment:
|
|
- "TZ=Europe/Berlin"
|
|
- "DELIVER_TIMEOUT=60"
|
|
- "USER=git"
|
|
- "GITEA_CUSTOM=/data/gitea"
|
|
volumes:
|
|
- "/mnt/user/appdata/gitea:/data"
|
|
logging:
|
|
driver: "json-file"
|
|
options:
|
|
max-file: "1"
|
|
max-size: "50m"
|
|
labels:
|
|
- traefik.enable=true
|
|
- traefik.http.routers.gitea.rule=Host(`gitea.arnoutvw.nl`)
|
|
- traefik.http.services.gitea.loadbalancer.server.port=3000
|
|
|
|
# port/ssl/healthcheck-string values are coerced by pangolin; only the
|
|
# region-rule (value=EU, not a valid UN M.49 subregion) was rejected —
|
|
# existing resources carry no rules, so none are set via labels.
|
|
|
|
gitea-runner:
|
|
image: gitea/act_runner:0.6.1
|
|
container_name: "Gitea-Runner"
|
|
restart: unless-stopped
|
|
ipc: private
|
|
network_mode: bridge
|
|
entrypoint: [ "/sbin/tini", "--", "run.sh" ]
|
|
environment:
|
|
# Registration token for the runner (rotate via gitea admin if leaked).
|
|
- "GITEA_RUNNER_REGISTRATION_TOKEN=5tPWewhkKr58gQt0UsSvOvh3E4RPFWV1CIXO7imj"
|
|
- "GITEA_INSTANCE_URL=https://gitea.arnoutvw.nl"
|
|
- "TZ=Europe/Berlin"
|
|
volumes:
|
|
- "/mnt/user/appdata/gitea-runner:/data"
|
|
- "/var/run/docker.sock:/var/run/docker.sock:ro"
|