Files
selfhosting/traefik/docker-compose.traefik.yml
T

66 lines
2.6 KiB
YAML
Raw Normal View History

2021-11-01 19:10:42 +01:00
version: '3'
services:
traefik:
container_name: traefik
2021-11-06 15:58:13 +01:00
image: traefik:v2.5.3
2021-11-01 19:10:42 +01:00
command:
- --providers.docker=true
- --providers.docker.exposedbydefault=false
2021-11-06 15:58:13 +01:00
- --api.dashboard=false
2021-11-01 20:26:33 +01:00
- --entrypoints.http.address=:80
- --entrypoints.https.address=:443
2021-11-01 19:10:42 +01:00
- --certificatesresolvers.letsencrypt.acme.email=${LETSENCRYPT_EMAIL}
- --certificatesresolvers.letsencrypt.acme.storage=/acme.json
2022-02-08 12:34:25 +01:00
- --certificatesresolvers.letsencrypt.acme.tlschallenge=true
#- --certificatesResolvers.letsencrypt.acme.dnsChallenge=true
#- --certificatesResolvers.letsencrypt.acme.dnsChallenge.resolvers=1.1.1.1:53,8.8.8.8:53
#- --certificatesresolvers.letsencrypt.acme.dnschallenge.provider=gandiv5
#- --certificatesResolvers.letsencrypt.acme.dnsChallenge.delayBeforeCheck=0
2021-11-01 19:10:42 +01:00
# staging server
#- --certificatesresolvers.letsencrypt.acme.caserver=https://acme-staging-v02.api.letsencrypt.org/directory
environment:
- GANDIV5_API_KEY=${GANDIV5_API_KEY}
labels:
2021-11-20 15:18:32 +01:00
- traefik.enable=true
2021-11-14 16:33:55 +01:00
- traefik.http.routers.api.entrypoints=http
- traefik.http.routers.api.entrypoints=https
2021-11-14 17:49:28 +01:00
- traefik.http.routers.api.service=api@internal
2021-11-14 16:33:55 +01:00
# middleware auth
- traefik.http.routers.api.middlewares=auth
- traefik.http.middlewares.auth.basicauth.users=${BASIC_AUTH}
2021-11-01 19:10:42 +01:00
# request widlcard certificate
- traefik.http.routers.api.tls.certresolver=letsencrypt
- traefik.http.routers.api.tls.domains[0].main=${DOMAIN}
- traefik.http.routers.api.tls.domains[0].sans=*.${DOMAIN}
# global redirect to https
- traefik.http.routers.http-catchall.rule=hostregexp(`{host:.+}`)
2021-11-01 20:26:33 +01:00
- traefik.http.routers.http-catchall.entrypoints=http
2021-11-01 19:10:42 +01:00
- traefik.http.routers.http-catchall.middlewares=redirect-to-https
# middleware redirect
- traefik.http.middlewares.redirect-to-https.redirectscheme.scheme=https
- traefik.http.middlewares.redirect-to-https.redirectscheme.permanent=true
ports:
- 80:80
- 443:443
networks:
2021-12-12 12:02:11 +01:00
- dmz
- baikal-frontend
- blog-frontend
- deluge-frontend
- dokuwiki-frontend
- glances-frontend
- netdata-frontend
- photo-frontend
- portainer-frontend
- posteio-frontend
- seafile-frontend
- selfoss-frontend
- shaarli-frontend
- wallabag-frontend
- wwww-frontend
2021-11-01 19:10:42 +01:00
restart: unless-stopped
volumes:
- /var/run/docker.sock:/var/run/docker.sock:ro
2021-11-12 11:13:16 +01:00
- ${ROOT_INSTALL}/selfhosting/traefik/acme.json:/acme.json