mirror of
https://github.com/ledgersmb/ledgersmb-docker.git
synced 2025-10-14 08:10:30 -04:00
Compare commits
96 Commits
Author | SHA1 | Date | |
---|---|---|---|
|
f951646c81 | ||
|
2615228ba6 | ||
|
6b4aac814c | ||
|
0d560b92d7 | ||
|
9dba5f4490 | ||
|
0172dc1684 | ||
|
b53c4a3689 | ||
|
a16d23bfa9 | ||
|
9ccc327468 | ||
|
028d8c45ed | ||
|
cf4256a20e | ||
|
83e1bbe8cd | ||
|
690fac08be | ||
|
7264d72638 | ||
|
e4e43b838e | ||
|
952ef62e6a | ||
|
b68f6d1672 | ||
|
575e91da47 | ||
|
f6422f03c3 | ||
|
06ccefa8b6 | ||
|
fb18381bdd | ||
|
b095cb9bb6 | ||
|
4c56e98a65 | ||
|
7dcd5c1709 | ||
|
5adfac5a82 | ||
|
d11e525fac | ||
|
94ca69315a | ||
|
1b6a2f5c99 | ||
|
eea2bbdbdd | ||
|
894393e781 | ||
|
6468e9e9f2 | ||
|
69cc364527 | ||
|
0210dce1d0 | ||
|
ba2bdd0dda | ||
|
6249141929 | ||
|
09a79b8258 | ||
|
4776803ef8 | ||
|
0a12f5c735 | ||
|
d808dd0b14 | ||
|
13b4e0f933 | ||
|
892592505f | ||
|
708a5afebc | ||
|
34d10ae0e0 | ||
|
f5909088f0 | ||
|
34a2270cf3 | ||
|
9881c06e5d | ||
|
c65adc6042 | ||
|
f9ee2e86ab | ||
|
e34a6a1326 | ||
|
1d0da66881 | ||
|
da2254dd4c | ||
|
cd3d2f573d | ||
|
1d4430ecfa | ||
|
a90ac97832 | ||
|
733413dd16 | ||
|
aeab695a50 | ||
|
dd13647ec6 | ||
|
2b689e9791 | ||
|
bef6697325 | ||
|
09d2d73db8 | ||
|
db8e441a8f | ||
|
638e0813e0 | ||
|
d265b58372 | ||
|
2fc8e55367 | ||
|
69b959f591 | ||
|
c7da8194cb | ||
|
e0338aa303 | ||
|
4dbd5a2a26 | ||
|
fafaea715e | ||
|
b8694aa449 | ||
|
98a5696570 | ||
|
0d1483d78f | ||
|
bde9b780b1 | ||
|
fd7c04d170 | ||
|
364cf01203 | ||
|
dbf99f981d | ||
|
fa4aa9dae0 | ||
|
8f3875acb0 | ||
|
4905f2a469 | ||
|
cd9e3037f7 | ||
|
e4f4d31922 | ||
|
4a8d6dc6b6 | ||
|
22ac547e94 | ||
|
0627a33477 | ||
|
4da73006fa | ||
|
a53dd55ecf | ||
|
99ba66e9b7 | ||
|
756c28ad4f | ||
|
719672490f | ||
|
75c8c8f0b0 | ||
|
5390be8aac | ||
|
2738fc3728 | ||
|
edaa2008af | ||
|
04b1786414 | ||
|
293fd65da4 | ||
|
0034b44033 |
119
Dockerfile
119
Dockerfile
@@ -1,13 +1,11 @@
|
||||
# Build time variables
|
||||
|
||||
ARG SRCIMAGE=debian:bullseye-slim
|
||||
ARG SRCIMAGE=debian:trixie-slim
|
||||
|
||||
|
||||
FROM $SRCIMAGE AS builder
|
||||
|
||||
ARG LSMB_VERSION="1.9.9"
|
||||
ARG LSMB_DL_DIR="Releases"
|
||||
ARG ARTIFACT_LOCATION="https://download.ledgersmb.org/f/$LSMB_DL_DIR/$LSMB_VERSION/ledgersmb-$LSMB_VERSION.tar.gz"
|
||||
ENV LSMB_VERSION=master
|
||||
|
||||
|
||||
RUN set -x ; \
|
||||
@@ -17,10 +15,9 @@ RUN set -x ; \
|
||||
apt-file update
|
||||
|
||||
RUN set -x ; \
|
||||
wget --quiet -O /tmp/ledgersmb-$LSMB_VERSION.tar.gz "$ARTIFACT_LOCATION" && \
|
||||
tar -xzf /tmp/ledgersmb-$LSMB_VERSION.tar.gz --directory /srv && \
|
||||
rm -f /tmp/ledgersmb-$LSMB_VERSION.tar.gz && \
|
||||
cd /srv/ledgersmb && \
|
||||
cd /srv && \
|
||||
git clone --depth 1 --recursive -b $LSMB_VERSION https://github.com/ledgersmb/LedgerSMB.git ledgersmb && \
|
||||
cd ledgersmb && \
|
||||
( ( for lib in $( cpanfile-dump --with-all-features --recommends --no-configure --no-build --no-test ) ; \
|
||||
do \
|
||||
if dh-make-perl locate "$lib" 2>/dev/null ; \
|
||||
@@ -43,32 +40,20 @@ RUN set -x ; \
|
||||
FROM $SRCIMAGE
|
||||
LABEL org.opencontainers.image.authors="LedgerSMB project <devel@lists.ledgersmb.org>"
|
||||
|
||||
ARG LSMB_VERSION="1.9.9"
|
||||
ARG LSMB_DL_DIR="Releases"
|
||||
ARG ARTIFACT_LOCATION="https://download.ledgersmb.org/f/$LSMB_DL_DIR/$LSMB_VERSION/ledgersmb-$LSMB_VERSION.tar.gz"
|
||||
|
||||
|
||||
# Install Perl, Tex, Starman, psql client, and all dependencies
|
||||
# Without libclass-c3-xs-perl, performance is terribly slow...
|
||||
|
||||
#
|
||||
# Without libclass-c3-xs-perl, everything grinds to a halt;
|
||||
# add it, because it's a 'recommends' it the dep tree, which
|
||||
# we're skipping, normally
|
||||
#
|
||||
# Installing psql client directly from instructions at https://wiki.postgresql.org/wiki/Apt
|
||||
# That mitigates issues where the PG instance is running a newer version than this container
|
||||
# Install Locale::Codes Locale::Country Locale::Language from CPAN to suppress
|
||||
# deprecation-as-core-module warning
|
||||
|
||||
|
||||
COPY --from=builder /srv/derived-deps /tmp/derived-deps
|
||||
|
||||
|
||||
RUN set -x ; \
|
||||
echo -n "APT::Install-Recommends \"0\";\nAPT::Install-Suggests \"0\";\n" >> /etc/apt/apt.conf && \
|
||||
mkdir -p /usr/share/man/man1/ && \
|
||||
mkdir -p /usr/share/man/man2/ && \
|
||||
mkdir -p /usr/share/man/man3/ && \
|
||||
mkdir -p /usr/share/man/man4/ && \
|
||||
mkdir -p /usr/share/man/man5/ && \
|
||||
mkdir -p /usr/share/man/man6/ && \
|
||||
mkdir -p /usr/share/man/man7/ && \
|
||||
mkdir -p /usr/share/man/man8/ && \
|
||||
echo "APT::Install-Recommends \"false\";\nAPT::Install-Suggests \"false\";\n" > /etc/apt/apt.conf.d/00recommends && \
|
||||
DEBIAN_FRONTEND="noninteractive" apt-get -y update && \
|
||||
DEBIAN_FRONTEND="noninteractive" apt-get -y upgrade && \
|
||||
DEBIAN_FRONTEND="noninteractive" apt-get -y install \
|
||||
@@ -78,44 +63,67 @@ RUN set -x ; \
|
||||
texlive-plain-generic texlive-latex-recommended texlive-fonts-recommended \
|
||||
texlive-xetex fonts-liberation \
|
||||
lsb-release && \
|
||||
echo "deb http://apt.postgresql.org/pub/repos/apt/ $(lsb_release -cs)-pgdg main" > /etc/apt/sources.list.d/pgdg.list && \
|
||||
(wget --quiet -O - https://www.postgresql.org/media/keys/ACCC4CF8.asc | apt-key add -) && \
|
||||
echo "deb [signed-by=/etc/apt/keyrings/postgresql.asc] http://apt.postgresql.org/pub/repos/apt/ $(lsb_release -cs)-pgdg main" > /etc/apt/sources.list.d/pgdg.list && \
|
||||
wget --quiet -O - https://www.postgresql.org/media/keys/ACCC4CF8.asc > /etc/apt/keyrings/postgresql.asc && \
|
||||
DEBIAN_FRONTEND="noninteractive" apt-get -y update && \
|
||||
DEBIAN_FRONTEND="noninteractive" apt-get -y install postgresql-client && \
|
||||
DEBIAN_FRONTEND="noninteractive" apt-get -q -y install git cpanminus make gcc libperl-dev && \
|
||||
wget --quiet -O /tmp/ledgersmb-$LSMB_VERSION.tar.gz "$ARTIFACT_LOCATION" && \
|
||||
tar -xzf /tmp/ledgersmb-$LSMB_VERSION.tar.gz --directory /srv && \
|
||||
rm -f /tmp/ledgersmb-$LSMB_VERSION.tar.gz && \
|
||||
cpanm --notest \
|
||||
DEBIAN_FRONTEND="noninteractive" apt-get -y autoremove && \
|
||||
DEBIAN_FRONTEND="noninteractive" apt-get -y autoclean && \
|
||||
rm -rf /var/lib/apt/lists/*
|
||||
|
||||
|
||||
# Build time variables
|
||||
ENV LSMB_VERSION=master
|
||||
ENV NODE_PATH=/usr/local/lib/node_modules
|
||||
|
||||
|
||||
###########################################################
|
||||
# Java & Nodejs for doing Dojo build
|
||||
|
||||
# These packages are only needed during the dojo build
|
||||
ENV DOJO_Build_Deps="git make gcc libperl-dev curl nodejs npm cpanminus"
|
||||
# These packages can be removed after the dojo build
|
||||
ENV DOJO_Build_Deps_removal="${DOJO_Build_Deps} nodejs npm cpanminus"
|
||||
|
||||
# RUN (wget --quiet -O - https://deb.nodesource.com/setup_22.x | bash -) && \
|
||||
RUN DEBIAN_FRONTEND="noninteractive" apt-get -y update && \
|
||||
DEBIAN_FRONTEND="noninteractive" apt-get -y install ${DOJO_Build_Deps} && \
|
||||
npm i -g --no-save yarn && \
|
||||
cd /srv && \
|
||||
git clone --depth 1 --recursive -b $LSMB_VERSION https://github.com/ledgersmb/LedgerSMB.git ledgersmb && \
|
||||
cd ledgersmb && \
|
||||
cpanm --metacpan --quiet --notest \
|
||||
--with-feature=starman \
|
||||
--with-feature=latex-pdf-ps \
|
||||
--with-feature=openoffice \
|
||||
--installdeps /srv/ledgersmb/ && \
|
||||
apt-get purge -q -y git cpanminus make gcc libperl-dev && \
|
||||
apt-get autoremove -q -y && \
|
||||
apt-get clean -q && \
|
||||
rm -rf ~/.cpanm/ /var/lib/apt/lists/* /usr/share/man/*
|
||||
--installdeps . && \
|
||||
make js && \
|
||||
DEBIAN_FRONTEND="noninteractive" apt-get -y purge ${DOJO_Build_Deps_removal} && \
|
||||
rm -rf /usr/local/lib/node_modules && \
|
||||
DEBIAN_FRONTEND="noninteractive" apt-get -y autoremove && \
|
||||
DEBIAN_FRONTEND="noninteractive" apt-get -y autoclean && \
|
||||
rm -rf ~/.cpanm && \
|
||||
rm -rf /var/lib/apt/lists/*
|
||||
|
||||
|
||||
WORKDIR /srv/ledgersmb
|
||||
|
||||
# master requirements
|
||||
# Cleanup args that are for internal use
|
||||
ENV DOJO_Build_Deps=
|
||||
ENV DOJO_Build_Deps_removal=
|
||||
ENV NODE_PATH=
|
||||
|
||||
# Configure outgoing mail to use host, other run time variable defaults
|
||||
|
||||
## MAIL
|
||||
ENV LSMB_MAIL_SMTPHOST 172.17.0.1
|
||||
#ENV LSMB_MAIL_SMTPPORT 25
|
||||
#ENV LSMB_MAIL_SMTPSENDER_HOSTNAME (container hostname)
|
||||
#ENV LSMB_MAIL_SMTPTLS
|
||||
#ENV LSMB_MAIL_SMTPUSER
|
||||
#ENV LSMB_MAIL_SMTPPASS
|
||||
#ENV LSMB_MAIL_SMTPAUTHMECH
|
||||
ENV LSMB_MAIL_SMTPHOST=172.17.0.1
|
||||
#ENV LSMB_MAIL_SMTPPORT=25
|
||||
#ENV LSMB_MAIL_SMTPSENDER_HOSTNAME=(container hostname)
|
||||
#ENV LSMB_MAIL_SMTPTLS=
|
||||
#ENV LSMB_MAIL_SMTPUSER=
|
||||
#ENV LSMB_MAIL_SMTPPASS=
|
||||
#ENV LSMB_MAIL_SMTPAUTHMECH=
|
||||
|
||||
## DATABASE
|
||||
ENV POSTGRES_HOST postgres
|
||||
ENV POSTGRES_PORT 5432
|
||||
ENV DEFAULT_DB lsmb
|
||||
ENV POSTGRES_HOST=postgres
|
||||
ENV POSTGRES_PORT=5432
|
||||
ENV DEFAULT_DB=lsmb
|
||||
|
||||
COPY start.sh /usr/local/bin/start.sh
|
||||
|
||||
@@ -123,7 +131,8 @@ RUN chmod +x /usr/local/bin/start.sh && \
|
||||
mkdir -p /var/www
|
||||
|
||||
# Work around an aufs bug related to directory permissions:
|
||||
RUN mkdir -p /tmp && chmod 1777 /tmp
|
||||
RUN mkdir -p /tmp && \
|
||||
chmod 1777 /tmp
|
||||
|
||||
# Internal Port Expose
|
||||
EXPOSE 5762
|
||||
|
127
README.md
127
README.md
@@ -4,12 +4,16 @@ Dockerfile for LedgerSMB Docker image
|
||||
|
||||
# Supported tags
|
||||
|
||||
- `1.9`, `1.9.x`, `latest` - Latest official release from the 1.9 branch
|
||||
- `1.8`, `1.8.x` - Latest official release from the 1.8 branch
|
||||
- `1.7`, `1.7.x` - Latest official release from 1.7 branch
|
||||
- `1.6`, `1.6.33` - Last official release from 1.6 branch
|
||||
- `1.5`, `1.5.30` - Last official release from 1.5 branch
|
||||
- `1.4`, `1.4.42` - Last official release from 1.4 branch
|
||||
- `1.13`, `1.13.x`, `latest` - Latest official release from the 1.13 branch
|
||||
- `1.12`, `1.12.x` - Latest official release from the 1.12 branch
|
||||
- `1.11`, `1.11.x` - Latest official release from the 1.11 branch
|
||||
- `1.10`, `1.10.38` - Last official release from the 1.10 branch
|
||||
- `1.9`, `1.9.30` - Last official release from 1.9 branch (End-of-Life)
|
||||
- `1.8`, `1.8.31` - Last official release from 1.8 branch (End-of-Life)
|
||||
- `1.7`, `1.7.41` - Last official release from 1.7 branch (End-of-Life)
|
||||
- `1.6`, `1.6.33` - Last official release from 1.6 branch (End-of-Life)
|
||||
- `1.5`, `1.5.30` - Last official release from 1.5 branch (End-of-Life)
|
||||
- `1.4`, `1.4.42` - Last official release from 1.4 branch (End-of-Life)
|
||||
- `master` - Master branch from git, unstable
|
||||
|
||||
Containers supporting the development process are provided
|
||||
@@ -30,9 +34,9 @@ This image is designed to be used in conjunction with a running PostgreSQL
|
||||
instance (such as may be provided through a separate image).
|
||||
|
||||
This image exposes port 5762 running a Starman HTTP application server. We
|
||||
do recommend not exposing this port publicly, because
|
||||
do not recommend exposing this port publicly, because
|
||||
|
||||
1. The Starman author recommends not exposing it
|
||||
1. The Starman author recommends it
|
||||
2. We strongly recommend TLS encryption of all application traffic
|
||||
|
||||
While the exposed port can be used for quick evaluation, it's recommended
|
||||
@@ -44,9 +48,12 @@ could require additional setup of a mail service or CUPS printer service.
|
||||
# How to use this image
|
||||
|
||||
This image can be installed either automatically with the Docker compose file
|
||||
or manually with docker only.
|
||||
manually with docker only.
|
||||
|
||||
## Docker-Compose: Installation and start
|
||||
❌ Do not use unofficial or AI-generated Docker Compose examples. These are
|
||||
often incomplete, break silently, or skip required services.
|
||||
|
||||
## Docker-Compose installation and start
|
||||
|
||||
This image provides `docker-compose.yml` which can be used to pull related
|
||||
images, install them, establish an internal network for their communications,
|
||||
@@ -56,36 +63,21 @@ variables, are:
|
||||
|
||||
```plain
|
||||
$ docker-compose pull
|
||||
$ docker-compose up -d
|
||||
```
|
||||
|
||||
Or use the following to set a different password and/or parallel processing
|
||||
capacity (so called 'workers'):
|
||||
|
||||
```plain
|
||||
$ docker-compose pull
|
||||
$ POSTGRES_PASSWORD=def \
|
||||
LSMB_WORKERS=10 \
|
||||
docker-compose up -d
|
||||
$ docker-compose up
|
||||
```
|
||||
|
||||
This will set up two containers: (1) a PostgreSQL container with persistent
|
||||
storage which is retained between container updates and (2) a LedgerSMB
|
||||
container configured to connect to the PostgreSQL container as its database
|
||||
server. Your LedgerSMB installation should now be accessible through
|
||||
[http://localhost:5762/](http://localhost:5762/).
|
||||
server.
|
||||
|
||||
The default number of workers is 5. The default database username and password
|
||||
are:
|
||||
The database username and password are:
|
||||
|
||||
```plain
|
||||
username: postgres
|
||||
password: abc
|
||||
```
|
||||
|
||||
From here, follow the steps as detailed in the instructions for
|
||||
[preparing for first use](https://ledgersmb.org/content/preparing-ledgersmb-19-first-use).
|
||||
|
||||
## Manual installation
|
||||
|
||||
This section assumes availability of a PostgreSQL server to attach to the
|
||||
@@ -123,13 +115,9 @@ Visit http://localhost:5762/login.pl to log in and get started.
|
||||
|
||||
No persistant data is stored in the LedgerSMB container.
|
||||
|
||||
All LedgerSMB data is stored in PostgreSQL, so you can stop/destroy/run a
|
||||
All LedgerSMB data is stored in Postgres, so you can stop/destroy/run a
|
||||
new LedgerSMB container as often as you want.
|
||||
|
||||
In case of the Docker Compose setup, all PostgreSQL data is stored on the
|
||||
Docker volume with the name ending in `_pgdata`. This volume is not destroyed
|
||||
when updating the containers; only explicit removal destroys the data.
|
||||
|
||||
# Environment Variables
|
||||
|
||||
The LedgerSMB image uses several environment variables. They are all optional.
|
||||
@@ -165,6 +153,30 @@ affect the performance experience of users.
|
||||
|
||||
## Mail configuration
|
||||
|
||||
### Before 1.8.0
|
||||
|
||||
These variables are used to set outgoing SMTP defaults.
|
||||
|
||||
* `SSMTP_ROOT` (config: `Root` -- DEPRECATED)
|
||||
* `SSMTP_MAILHUB` (config: `Mailhub`)
|
||||
* `SSMTP_HOSTNAME` (config: `Hostname`)
|
||||
* `SSMTP_USE_STARTTLS` (config: `UseSTARTTLS`)
|
||||
* `SSMTP_AUTH_USER` (config: `AuthUser`)
|
||||
* `SSMTP_AUTH_PASS` (config: `AuthPass`)
|
||||
* `SSMTP_AUTH_METHOD` (config: `AuthMethod` -- DEPRECATED)
|
||||
* `SSMTP_FROMLINE_OVERRIDE` (config: `FromLineOverride` -- DEPRECATED)
|
||||
|
||||
`SSMTP_MAILHUB` defaults to the default docker0 interface, so if your host is
|
||||
already configured to relay mail, this should relay successfully with only
|
||||
the root and hostname set.
|
||||
|
||||
Use the other environment variables to relay mail through a different host.
|
||||
Use the [ssmtp.conf man
|
||||
page](https://www.systutorials.com/docs/linux/man/5-ssmtp.conf/) to look up
|
||||
the meaning and function of each of the mail configuration keys.
|
||||
|
||||
### 1.8.0 and higher (under development)
|
||||
|
||||
As of 1.8.0, the image is based on Debian Buster instead of Debian Stretch;
|
||||
with Buster, the `ssmtp` program has been removed from Debian, this image
|
||||
had to change strategy. The main application always came with built-in e-mail
|
||||
@@ -180,51 +192,7 @@ The following parameters are now supported to set mail preferences:
|
||||
* `LSMB_MAIL_SMTPPASS`
|
||||
* `LSMB_MAIL_SMTPAUTHMECH`
|
||||
|
||||
# Advanced setup
|
||||
|
||||
## Docker Compose with reverse proxy
|
||||
|
||||
The `docker-compose-reverseproxy.yml` file shows a docker-compose setup
|
||||
which adds an Nginx reverse proxy configuration on top of the base
|
||||
`docker-compose.yml` configuration file. If the content of this repository
|
||||
is cloned into the current directory (`git clone https://github.com/ledgersmb/ledgersmb-docker.git ; cd ledgersmb-docker`), it can be used as:
|
||||
|
||||
```plain
|
||||
$ docker-compose \
|
||||
-f docker-compose.yml \
|
||||
-f docker-compose-reverseproxy.yml \
|
||||
up -d
|
||||
```
|
||||
|
||||
This setup can be used in combination with an image which runs the
|
||||
Certbot certificate renewal process *and* Nginx to do TLS termination. The
|
||||
default reverse proxy is mostly an example; it publishes on
|
||||
[http://localhost:8080/](http://localhost:8080/).
|
||||
|
||||
An example of such an image can be found at
|
||||
[https://github.com/jonasalfredsson/docker-nginx-certbot](https://github.com/jonasalfredsson/docker-nginx-certbot),
|
||||
which is published on Docker Hub as
|
||||
[jonasal/nginx-certbot](https://hub.docker.com/r/jonasal/nginx-certbot).
|
||||
|
||||
**Upgrade note** When upgrading this setup, please remove the volume ending
|
||||
in `_lsmbdata` before starting the upgraded containers. Without that, the
|
||||
webcontent won't be upgraded! E.g.:
|
||||
|
||||
```plain
|
||||
$ docker-compose \
|
||||
-f docker-compose.yml \
|
||||
-f docker-compose-reverseproxy.yml \
|
||||
rm -s -f -v && \
|
||||
docker volume rm ledgersmb-docker_lsmbdata && \
|
||||
docker-compose \
|
||||
-f docker-compose.yml \
|
||||
-f docker-compose-reverseproxy.yml \
|
||||
pull && \
|
||||
docker-compose \
|
||||
-f docker-compose.yml \
|
||||
-f docker-compose-reverseproxy.yml \
|
||||
up -d
|
||||
```
|
||||
|
||||
# Troubleshooting/Developing
|
||||
|
||||
@@ -241,8 +209,9 @@ please contact us on the [mailing list](http://ledgersmb.org/topic/support/maili
|
||||
or through a [GitHub issue](https://github.com/ledgersmb/ledgersmb-docker/issues).
|
||||
|
||||
You can also reach some of the official LedgerSMB maintainers via the
|
||||
[Matrix](https://matrix.org) room in [#ledgersmb:matrix.org](https://matrix.to/#/#ledgersmb:matrix.org).
|
||||
The [Element](https://app.element.io/#/room/#ledgersmb:matrix.org) Matrix client is highly recommended.
|
||||
`#ledgersmb` IRC channel on [Freenode](https://freenode.net), or on the
|
||||
bridged [Matrix](https://matrix.org) room in [#ledgersmb:matrix.org](https://matrix.to/#/#ledgersmb:matrix.org).
|
||||
The [Riot.im](https://riot.im/app/#/room/#ledgersmb:matrix.org) Matrix client is highly recommended.
|
||||
|
||||
|
||||
## Contributing
|
||||
|
@@ -1,31 +0,0 @@
|
||||
# Use this docker-compose file as:
|
||||
#
|
||||
# docker-compose -f docker-compose.yml -f docker-compose-reverseproxy.yml up -d
|
||||
#
|
||||
#
|
||||
# This command creates one
|
||||
# compose 'project' consisting of three containers
|
||||
#
|
||||
# 1. The PostgreSQL data container
|
||||
# 2. The LedgerSMB application container
|
||||
# 3. The Nginx reverse proxy container
|
||||
#
|
||||
# In addition to publishing LedgerSMB on port 5762 on localhost,
|
||||
# this project also publishes Nginx's reverse proxied content on
|
||||
# port 8080 on localhost
|
||||
|
||||
version: "3.2"
|
||||
services:
|
||||
proxy:
|
||||
image: nginx:1-alpine
|
||||
volumes:
|
||||
- "lsmbdata:/srv/ledgersmb"
|
||||
- "./nginx.conf:/etc/nginx/nginx.conf"
|
||||
ports:
|
||||
- "8080:8080"
|
||||
lsmb:
|
||||
volumes:
|
||||
- "lsmbdata:/srv/ledgersmb"
|
||||
|
||||
volumes:
|
||||
lsmbdata:
|
@@ -16,10 +16,10 @@ services:
|
||||
# because that allows us to use the default hostname ("postgres")
|
||||
# from the LedgerSMB configuration
|
||||
postgres:
|
||||
image: postgres:12-alpine
|
||||
image: postgres:14-alpine
|
||||
environment:
|
||||
# Replace the password below for a secure setup
|
||||
POSTGRES_PASSWORD: ${POSTGRES_PASSWORD:-abc}
|
||||
POSTGRES_PASSWORD: abc
|
||||
PGDATA: /var/lib/postgresql/data/pgdata
|
||||
networks:
|
||||
- internal
|
||||
@@ -28,18 +28,18 @@ services:
|
||||
lsmb:
|
||||
depends_on:
|
||||
- postgres
|
||||
image: ghcr.io/ledgersmb/ledgersmb:1.9
|
||||
image: ghcr.io/ledgersmb/ledgersmb:master
|
||||
networks:
|
||||
- internal
|
||||
- default
|
||||
# Comment the 'ports' section to disable mapping the LedgerSMB container port (5762)
|
||||
# Uncomment the 'ports' section to map the LedgerSMB container port (5762)
|
||||
# to the host's port of the same number, thus making LedgerSMB
|
||||
# available on http://<host-dns-or-ip>:5762/
|
||||
# SECURITY NOTE: Do this for evaluation purposes only!
|
||||
# In production, be sure to use SSL/TLS to protect user's passwords
|
||||
# and other sensitive data
|
||||
ports:
|
||||
- "5762:5762"
|
||||
# ports:
|
||||
# - "5762:5762"
|
||||
environment:
|
||||
# The LSMB_WORKERS environment variable lets you select the number
|
||||
# of processes serving HTTP requests. The default number of 2 workers
|
||||
@@ -47,17 +47,17 @@ services:
|
||||
# improve the performance experience, increase memory and the
|
||||
# number of workers
|
||||
#
|
||||
LSMB_WORKERS: ${LSMB_WORKERS:-5}
|
||||
LSMB_WORKERS: 2
|
||||
#
|
||||
#
|
||||
|
||||
# LSMB_MAIL_SMTPHOST:
|
||||
# LSMB_MAIL_SMTPPORT:
|
||||
# LSMB_MAIL_SMTPTLS:
|
||||
# LSMB_MAIL_SMTPSENDER_HOSTNAME:
|
||||
# LSMB_MAIL_SMTPUSER:
|
||||
# LSMB_MAIL_SMTPPASS:
|
||||
# LSMB_MAIL_SMTPAUTHMECH:
|
||||
# SSMTP_ROOT:
|
||||
# SSMTP_HOSTNAME:
|
||||
# SSMTP_MAILHUB:
|
||||
# SSMTP_AUTH_USER:
|
||||
# SSMTP_AUTH_PASS:
|
||||
# SSMTP_AUTH_METHOD:
|
||||
# SSMTP_USE_STARTTLS:
|
||||
# SSMTP_FROMLINE_OVERRIDE:
|
||||
#
|
||||
#
|
||||
# The PROXY_IP environment variable lets you set the IP address
|
||||
|
81
nginx.conf
81
nginx.conf
@@ -1,81 +0,0 @@
|
||||
# This is a full (minimal) nginx configuration file
|
||||
|
||||
error_log /dev/stderr info;
|
||||
pid /tmp/nginx.pid;
|
||||
worker_processes 1;
|
||||
|
||||
events {
|
||||
worker_connections 1024;
|
||||
}
|
||||
|
||||
http {
|
||||
client_body_temp_path /tmp/client_body;
|
||||
proxy_temp_path /tmp/proxy_temp;
|
||||
fastcgi_temp_path /tmp/fastcgi_temp;
|
||||
scgi_temp_path /tmp/scgi_temp;
|
||||
uwsgi_temp_path /tmp/uwsgi_temp;
|
||||
|
||||
sendfile on;
|
||||
tcp_nopush on;
|
||||
tcp_nodelay on;
|
||||
keepalive_timeout 65;
|
||||
types_hash_max_size 2048;
|
||||
include /etc/nginx/mime.types;
|
||||
default_type application/octet-stream;
|
||||
|
||||
access_log /dev/stdout;
|
||||
error_log /dev/stderr info;
|
||||
|
||||
gzip off;
|
||||
gzip_static on;
|
||||
|
||||
server {
|
||||
listen 8080 default_server;
|
||||
listen [::]:8080 default_server ipv6only=on;
|
||||
|
||||
root /srv/ledgersmb/UI;
|
||||
|
||||
access_log /dev/stdout;
|
||||
error_log /dev/stderr info;
|
||||
|
||||
# Don't log status polls
|
||||
location /nginx_status {
|
||||
stub_status on;
|
||||
access_log off;
|
||||
allow 127.0.0.1;
|
||||
allow ::1;
|
||||
deny all;
|
||||
}
|
||||
|
||||
# Configuration files don't exist
|
||||
location ^~ \.conf$ {
|
||||
return 404;
|
||||
}
|
||||
|
||||
# 'Hidden' files don't exist
|
||||
location ~ /\. {
|
||||
return 404;
|
||||
}
|
||||
|
||||
location = / {
|
||||
return 301 /login.pl;
|
||||
}
|
||||
|
||||
# JS & CSS
|
||||
location ~* \.(js|css)$ {
|
||||
add_header Pragma "public";
|
||||
add_header Cache-Control "public, must-revalidate, proxy-revalidate"; # Production
|
||||
expires 7d; # Indicate that the resource can be cached for 1 week # Production
|
||||
try_files $uri =404;
|
||||
}
|
||||
|
||||
location / {
|
||||
proxy_set_header Host $host;
|
||||
proxy_set_header X-Real-IP $remote_addr;
|
||||
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
|
||||
proxy_set_header X-Forwarded-Proto $scheme;
|
||||
proxy_read_timeout 300;
|
||||
proxy_pass http://lsmb:5762;
|
||||
}
|
||||
}
|
||||
}
|
24
start.sh
24
start.sh
@@ -66,16 +66,30 @@ fi
|
||||
if [[ -n "$LSMB_HAVE_DEPRECATED" ]]; then
|
||||
echo "!!! DEPRECATED \$SSMTP_* PARAMETERS WILL BE REMOVED in the 1.9 image!!!"
|
||||
fi
|
||||
# This was never a parameter: ?
|
||||
# if [[ -n "$SSMTP_USE_TLS" ]]; then
|
||||
# echo "\$SSMTP_USE_TLS set; parameter is deprecated"
|
||||
# if [[ -z "$LSMB_MAIL_SMTPTLS" ]]; then
|
||||
# echo " Deriving \$LSMB_MAIL_SMTPSENDER_HOSTNAME setting from \$SSMTP_MAILHUB"
|
||||
# if [[ "$SSMTP_USE_TLS" == "yes" ]]; then
|
||||
# LSMB_MAIL_SMTPTLS=raw
|
||||
# else
|
||||
# LSMB_MAIL_SMTPTLS=no
|
||||
# fi
|
||||
# fi
|
||||
# fi
|
||||
|
||||
|
||||
if [[ ! -f ledgersmb.conf ]]; then
|
||||
cat <<EOF >/tmp/ledgersmb.conf
|
||||
[main]
|
||||
cache_templates = 1
|
||||
|
||||
[database]
|
||||
host = $POSTGRES_HOST
|
||||
port = $POSTGRES_PORT
|
||||
default_db = $DEFAULT_DB
|
||||
|
||||
[mail]
|
||||
${LSMB_MAIL_SMTPHOST:+smtphost=$LSMB_MAIL_SMTPHOST
|
||||
}${LSMB_MAIL_SMTPPORT:+smtpport=$LSMB_MAIL_SMTPPORT
|
||||
@@ -85,16 +99,24 @@ ${LSMB_MAIL_SMTPHOST:+smtphost=$LSMB_MAIL_SMTPHOST
|
||||
}${LSMB_MAIL_SMTPPASS:+smtppass=$LSMB_MAIL_SMTPPASS
|
||||
}${LSMB_MAIL_SMTPAUTHMECH:+smtpauthmech=$LSMB_MAIL_SMTPAUTHMECH
|
||||
}
|
||||
|
||||
[proxy]
|
||||
ip=${PROXY_IP:-172.17.0.1/12}
|
||||
EOF
|
||||
export LSMB_CONFIG_FILE='/tmp/ledgersmb.conf'
|
||||
fi
|
||||
|
||||
# Currently unmaintained/untested
|
||||
# if [ ! -z ${CREATE_DATABASE+x} ]; then
|
||||
# perl tools/dbsetup.pl --company $CREATE_DATABASE \
|
||||
# --host $POSTGRES_HOST \
|
||||
# --postgres_password "$POSTGRES_PASS"
|
||||
#fi
|
||||
|
||||
# start ledgersmb
|
||||
# --preload-app allows application initialization to kill the entire
|
||||
# starman instance (instead of just the worker, which will immediately
|
||||
# get restarted) on error; it also has a positive effect on memory use
|
||||
# get restarted); it also has a positive effect on memory use
|
||||
|
||||
echo '--------- LEDGERSMB CONFIGURATION: ledgersmb.conf'
|
||||
cat ${LSMB_CONFIG_FILE:-ledgersmb.conf}
|
||||
|
Reference in New Issue
Block a user