Files
compose-files/gitea/docker-compose.yml
T

53 lines
1.8 KiB
YAML

# Gitea (web + act runner) — moved off Unraid dockerman into the repo.
# Exposed via atlas-traefik (LAN) AND pangolin primary (internet) via the
# pangolin docker-label blueprint. Renovate bumps the pinned tags.
# Note: dockerman had restart=no (autostart handled by Unraid); here it is
# unless-stopped so docker/compose restarts it after host boot.
services:
gitea:
image: gitea/gitea:28.0.0
container_name: "Gitea"
restart: unless-stopped
ipc: private
mac_address: "7e:d9:f5:36:de:80"
network_mode: bridge
ports:
- "2233:22/tcp"
- "3322:3000/tcp"
environment:
- "TZ=Europe/Berlin"
- "DELIVER_TIMEOUT=60"
- "USER=git"
- "GITEA_CUSTOM=/data/gitea"
volumes:
- "/mnt/user/appdata/gitea:/data"
logging:
driver: "json-file"
options:
max-file: "1"
max-size: "50m"
labels:
- traefik.enable=true
- traefik.http.routers.gitea.rule=Host(`gitea.arnoutvw.nl`)
- traefik.http.services.gitea.loadbalancer.server.port=3000
# port/ssl/healthcheck-string values are coerced by pangolin; only the
# region-rule (value=EU, not a valid UN M.49 subregion) was rejected —
# existing resources carry no rules, so none are set via labels.
gitea-runner:
image: gitea/act_runner:0.6.1
container_name: "Gitea-Runner"
restart: unless-stopped
ipc: private
network_mode: bridge
entrypoint: [ "/sbin/tini", "--", "run.sh" ]
environment:
# Registration token for the runner (rotate via gitea admin if leaked).
- "GITEA_RUNNER_REGISTRATION_TOKEN=5tPWewhkKr58gQt0UsSvOvh3E4RPFWV1CIXO7imj"
- "GITEA_INSTANCE_URL=https://gitea.arnoutvw.nl"
- "TZ=Europe/Berlin"
volumes:
- "/mnt/user/appdata/gitea-runner:/data"
- "/var/run/docker.sock:/var/run/docker.sock:ro"