forked from DevOps/deploy.stack
feat(traefik): 添加traefik配置文件和docker-compose部署文件
添加traefik相关配置文件包括环境变量、主配置、动态配置和docker-compose部署文件 更新tasks.md中的docker compose命令语法
This commit is contained in:
33
traefik/data/configurations/dynamic.yml
Normal file
33
traefik/data/configurations/dynamic.yml
Normal file
@@ -0,0 +1,33 @@
|
||||
# Dynamic configuration
|
||||
http:
|
||||
middlewares:
|
||||
nofloc:
|
||||
headers:
|
||||
customResponseHeaders:
|
||||
Permissions-Policy: "interest-cohort=()"
|
||||
secureHeaders:
|
||||
headers:
|
||||
sslRedirect: true
|
||||
forceSTSHeader: true
|
||||
stsIncludeSubdomains: true
|
||||
stsPreload: true
|
||||
stsSeconds: 31536000
|
||||
|
||||
# UserName : admin
|
||||
# Password : qwer1234
|
||||
user-auth:
|
||||
basicAuth:
|
||||
users:
|
||||
- "admin:$apr1$tm53ra6x$FntXd6jcvxYM/YH0P2hcc1"
|
||||
|
||||
tls:
|
||||
options:
|
||||
default:
|
||||
cipherSuites:
|
||||
- TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384
|
||||
- TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
|
||||
- TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256
|
||||
- TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
|
||||
- TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305
|
||||
- TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305
|
||||
minVersion: VersionTLS12
|
||||
47
traefik/data/traefik.yml
Normal file
47
traefik/data/traefik.yml
Normal file
@@ -0,0 +1,47 @@
|
||||
api:
|
||||
dashboard: true
|
||||
|
||||
entryPoints:
|
||||
web:
|
||||
address: :80
|
||||
http:
|
||||
redirections:
|
||||
entryPoint:
|
||||
to: websecure
|
||||
|
||||
websecure:
|
||||
address: :443
|
||||
http:
|
||||
middlewares:
|
||||
- secureHeaders@file
|
||||
- nofloc@file
|
||||
tls:
|
||||
certResolver: letsencrypt
|
||||
|
||||
pilot:
|
||||
dashboard: false
|
||||
|
||||
providers:
|
||||
docker:
|
||||
endpoint: "unix:///var/run/docker.sock"
|
||||
exposedByDefault: false
|
||||
file:
|
||||
filename: /configurations/dynamic.yml
|
||||
|
||||
certificatesResolvers:
|
||||
letsencrypt:
|
||||
acme:
|
||||
email: admin@yourdomain
|
||||
storage: acme.json
|
||||
keyType: EC384
|
||||
httpChallenge:
|
||||
entryPoint: web
|
||||
|
||||
buypass:
|
||||
acme:
|
||||
email: admin@yourdomain
|
||||
storage: acme.json
|
||||
caServer: https://api.buypass.com/acme/directory
|
||||
keyType: EC256
|
||||
httpChallenge:
|
||||
entryPoint: web
|
||||
Reference in New Issue
Block a user