Files
compose-files/pangolin-secondary/docker-compose.yml
T

65 lines
1.8 KiB
YAML

# pangolin-secondary VPS (plex-hetzner) — pangolin edge stack.
# Moved off files_on_host /root/docker-compose.yml into the repo, so Renovate
# can handle updates (config lives on the host at /root/config; mounts are
# absolute paths for that reason — periphery has /root:/root bind-mounted).
# Original: /root/docker-compose.yml (left in place as backup).
name: pangolin
services:
pangolin:
image: docker.io/fosrl/pangolin:ee-1.24.0
container_name: pangolin
restart: unless-stopped
volumes:
- /root/config:/app/config
healthcheck:
test: ["CMD", "curl", "-f", "http://localhost:3001/api/v1/"]
interval: "10s"
timeout: "10s"
retries: 15
gerbil:
image: docker.io/fosrl/gerbil:1.5.2
container_name: gerbil
restart: unless-stopped
depends_on:
pangolin:
condition: service_healthy
command:
- --reachableAt=http://gerbil:3004
- --generateAndSaveKeyTo=/var/config/key
- --remoteConfig=http://pangolin:3001/api/v1/
volumes:
- /root/config/:/var/config
cap_add:
- NET_ADMIN
- SYS_MODULE
ports:
- 51820:51820/udp
- 21820:21820/udp
- 443:443
- 80:80
- 32400:32400
traefik:
image: docker.io/traefik:v3.7
container_name: traefik
restart: unless-stopped
network_mode: service:gerbil # Ports appear on the gerbil service
depends_on:
pangolin:
condition: service_healthy
command:
- --configFile=/etc/traefik/traefik_config.yml
volumes:
- /root/config/traefik:/etc/traefik:ro # Volume to store the Traefik configuration
- /root/config/letsencrypt:/letsencrypt # Volume to store the Let's Encrypt certificates
- /root/config/traefik/logs:/var/log/traefik # Volume to store Traefik logs
networks:
default:
driver: bridge
name: pangolin
enable_ipv6: true