-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathdocker-compose.yml
More file actions
98 lines (93 loc) · 2.97 KB
/
Copy pathdocker-compose.yml
File metadata and controls
98 lines (93 loc) · 2.97 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
services:
mysql:
image: mysql:8.0
container_name: dutypark-db
restart: unless-stopped
ports:
- "3306:3306"
environment:
TZ: ${TZ:-Asia/Seoul}
MYSQL_ROOT_PASSWORD: ${MYSQL_ROOT_PASSWORD}
MYSQL_DATABASE: dutypark
MYSQL_USER: dutypark
MYSQL_PASSWORD: ${MYSQL_PASSWORD}
MYSQL_INITDB_SKIP_TZINFO: 1
volumes:
- ./data/my.cnf:/etc/mysql/my.cnf:ro
- ./data/db:/var/lib/mysql
networks:
- dutypark-network
app:
build: .
container_name: dutypark-app
restart: unless-stopped
depends_on:
- mysql
environment:
TZ: ${TZ:-Asia/Seoul}
DB_URL: jdbc:mysql://mysql:3306/dutypark
DB_USERNAME: dutypark
DB_PASSWORD: ${MYSQL_PASSWORD}
JWT_SECRET: ${JWT_SECRET}
ADMIN_EMAIL: ${ADMIN_EMAIL}
SLACK_TOKEN: ${SLACK_TOKEN}
DATA_GO_KR_SERVICE_KEY: ${DATA_GO_KR_SERVICE_KEY}
KAKAO_REST_API_KEY: ${KAKAO_REST_API_KEY}
NAVER_CLIENT_ID: ${NAVER_CLIENT_ID}
NAVER_CLIENT_SECRET: ${NAVER_CLIENT_SECRET}
GEMINI_API_KEY: ${GEMINI_API_KEY}
VAPID_PUBLIC_KEY: ${VAPID_PUBLIC_KEY}
VAPID_PRIVATE_KEY: ${VAPID_PRIVATE_KEY}
COOKIE_SSL_ENABLED: ${COOKIE_SSL_ENABLED}
DOMAIN_NAME: ${DOMAIN_NAME}
networks:
- dutypark-network
volumes:
- ./data/logs:/dutypark/logs
- ./data/storage:/dutypark/storage
nginx:
image: nginx:alpine
container_name: dutypark-nginx
restart: unless-stopped
# ports removed - Caddy handles external traffic
environment:
TZ: ${TZ:-Asia/Seoul}
DOMAIN_NAME: ${DOMAIN_NAME}
volumes:
- ./data/${NGINX_CONF_NAME:-nginx.conf}:/tmp/nginx.template:ro
- ./frontend/dist:/usr/share/nginx/html:ro
# SSL certificate volumes - ensure Let's Encrypt certificates are obtained first
# Run: sudo certbot certonly --standalone -d ${DOMAIN_NAME} before deploying
- /etc/letsencrypt/live/${DOMAIN_NAME}:/etc/letsencrypt/live/${DOMAIN_NAME}:ro
- /etc/letsencrypt/archive/${DOMAIN_NAME}:/etc/letsencrypt/archive/${DOMAIN_NAME}:ro
command: /bin/sh -c "envsubst '$$DOMAIN_NAME' < /tmp/nginx.template > /etc/nginx/nginx.conf && nginx -g 'daemon off;'"
depends_on:
app:
condition: service_started
networks:
- dutypark-network
prometheus:
image: prom/prometheus
volumes:
- ./data/prometheus/prometheus.yml:/etc/prometheus/prometheus.yml
command:
- '--config.file=/etc/prometheus/prometheus.yml'
- '--storage.tsdb.path=/prometheus'
- '--web.console.libraries=/usr/share/prometheus/console_libraries'
- '--web.console.templates=/usr/share/prometheus/consoles'
restart: unless-stopped
networks:
- dutypark-network
grafana:
image: grafana/grafana
user: "${UID:-1000}:${GID:-1000}"
ports:
- "3000:3000"
volumes:
- ./data/grafana:/var/lib/grafana
restart: unless-stopped
networks:
- dutypark-network
networks:
dutypark-network:
driver: bridge