Compare commits
99 Commits
snikket
...
72eaf74ce2
| Author | SHA1 | Date | |
|---|---|---|---|
| 72eaf74ce2 | |||
| e5c34ad8e3 | |||
| 154163fcf7 | |||
| e08af3bae2 | |||
| d896905acc | |||
| 15946657f7 | |||
| 10499c16ee | |||
| 8db7a6288a | |||
| 08eb7e47c0 | |||
| a827eef634 | |||
| bbc434672b | |||
| cb09904046 | |||
| 189f11eff5 | |||
| 2b00675c12 | |||
| 20583a9ef1 | |||
| 7e26cab902 | |||
| 32313d1815 | |||
| 2b2f6df49c | |||
| b779ea4cd9 | |||
| b381d15fba | |||
| 26cc93a4fd | |||
| dd98a9a07e | |||
| 4051b96761 | |||
| 55d29b5a9b | |||
| e5cd6467e7 | |||
| 1ac75e4454 | |||
| e4136b143f | |||
| a2e16404d6 | |||
| 63e70ac899 | |||
| bd9bcdbaf4 | |||
| 495faac457 | |||
| 58f0cbc4d6 | |||
| 430465588d | |||
| a5183dbc79 | |||
| 4f8541703b | |||
| 919d627389 | |||
| 4a72cbe804 | |||
| 6baf283259 | |||
| 283557d01d | |||
| a5c1b5825a | |||
| 401d104fcb | |||
| 9d908538dc | |||
| 08eb2e06bc | |||
| db2712be15 | |||
| dd3478f3bd | |||
| 78d93bea34 | |||
| c79ad96c0c | |||
| bda435064b | |||
| eaabd3dff0 | |||
| 04f5f2c40c | |||
| c89672edd4 | |||
| 0028bff5da | |||
| 0d95a34439 | |||
| dc174d141b | |||
| 61f98de7c4 | |||
| 43e48bd839 | |||
| c552fbb699 | |||
| ff6335c117 | |||
| 9783bf894a | |||
| 519e07c4d4 | |||
| e003580b48 | |||
| 0b32053961 | |||
| 3ce53408ad | |||
| fa539e2da7 | |||
| b0293a2d95 | |||
| dd227b73e3 | |||
| 4dafb0a5cb | |||
| 43326004c5 | |||
| 499a71857b | |||
| 4d6ae3fbf4 | |||
| 2e5f3d2285 | |||
| 076781d131 | |||
| 53e6d5cb94 | |||
| 20ff8b7950 | |||
| fa669dc304 | |||
| 440a8eba35 | |||
| 4e37027ea5 | |||
| df684d83ac | |||
| a15d7ebeab | |||
| d3056d42fa | |||
| cd51e3e635 | |||
| ed361b833b | |||
| b76380e263 | |||
| 86f37f6a6e | |||
| cae7d65d2f | |||
| 92ec22ed4d | |||
| 97665582c3 | |||
| d245e45ecd | |||
| ed23a51021 | |||
| 3cbf709c5a | |||
| e2bb32e145 | |||
| 061d08a940 | |||
| 6842231ced | |||
| 10057d68ad | |||
| 9df93f388c | |||
| 90f008931a | |||
| 78a8c64031 | |||
| e6eb845efa | |||
| 882eda9f45 |
@@ -8,6 +8,7 @@ Vous trouverez dans ce dépôt l'ensemble des services Open Source que RésiLien
|
|||||||
|
|
||||||
- [Directus](./directus) : Permet d'administrer une base de données
|
- [Directus](./directus) : Permet d'administrer une base de données
|
||||||
- [HedgeDoc](./hedgedoc) : Prise de note en Markdown collaborative en temps réel
|
- [HedgeDoc](./hedgedoc) : Prise de note en Markdown collaborative en temps réel
|
||||||
|
- [Matomo](./matomo) : Logiciel libre et open source de mesure de statistiques web
|
||||||
- [listmonk](./listmonk) : Gestionnaire de listes de diffusion et de newsletter
|
- [listmonk](./listmonk) : Gestionnaire de listes de diffusion et de newsletter
|
||||||
- [Mobilizon](./mobilizon): Permet l'organisation d'évènements et de gestion de groupes
|
- [Mobilizon](./mobilizon): Permet l'organisation d'évènements et de gestion de groupes
|
||||||
- [Nextcloud](./nextcloud) : Site d'hébergement de fichiers et une plateforme de collaboration
|
- [Nextcloud](./nextcloud) : Site d'hébergement de fichiers et une plateforme de collaboration
|
||||||
@@ -23,6 +24,7 @@ Vous trouverez dans ce dépôt l'ensemble des services Open Source que RésiLien
|
|||||||
- [GeoIP Update](./geoipupdate) : Permet de télécharger la base de données GeoIP2 permettant de localiser les IPs
|
- [GeoIP Update](./geoipupdate) : Permet de télécharger la base de données GeoIP2 permettant de localiser les IPs
|
||||||
- [Gitea](./gitea) : Un service Git très simple à installer et à utiliser. Il est similaire à GitHub, Bitbucket ou Gitlab.
|
- [Gitea](./gitea) : Un service Git très simple à installer et à utiliser. Il est similaire à GitHub, Bitbucket ou Gitlab.
|
||||||
- [Grafana](./grafana) : Un outil de supervision simple et élégant
|
- [Grafana](./grafana) : Un outil de supervision simple et élégant
|
||||||
|
- [MariaDB](./mariadb) : MariaDB est un système de gestion de base de données, un fork communautaire de MySQL
|
||||||
- [LLDAP](./lldap): Implémentation légère de LDAP pour l'authentification
|
- [LLDAP](./lldap): Implémentation légère de LDAP pour l'authentification
|
||||||
- [PostgreSQL](./postgres) : PostgreSQL est un système de gestion de base de données relationnelle et objet.
|
- [PostgreSQL](./postgres) : PostgreSQL est un système de gestion de base de données relationnelle et objet.
|
||||||
- [Prometheus](./prometheus) : Un logiciel de surveillance informatique
|
- [Prometheus](./prometheus) : Un logiciel de surveillance informatique
|
||||||
|
|||||||
@@ -18,6 +18,7 @@ services:
|
|||||||
KEY: ${DIRECTUS_KEY:?err}
|
KEY: ${DIRECTUS_KEY:?err}
|
||||||
SECRET: ${DIRECTUS_SECRET:?err}
|
SECRET: ${DIRECTUS_SECRET:?err}
|
||||||
TELEMETRY: false
|
TELEMETRY: false
|
||||||
|
ACCEPT_TERMS: ${DIRECTUS_ACCEPT_TERMS:-true}
|
||||||
|
|
||||||
ADMIN_EMAIL: ${DIRECTUS_ADMIN_EMAIL:?err}
|
ADMIN_EMAIL: ${DIRECTUS_ADMIN_EMAIL:?err}
|
||||||
ADMIN_PASSWORD: ${DIRECTUS_ADMIN_PASSWORD:?err}
|
ADMIN_PASSWORD: ${DIRECTUS_ADMIN_PASSWORD:?err}
|
||||||
|
|||||||
@@ -8,7 +8,7 @@ COMPOSE_FILE=${SERVICES_DIR}/lldap/docker-compose.yml:${SERVICES_DIR}/lldap/dock
|
|||||||
#######
|
#######
|
||||||
# LLDAP
|
# LLDAP
|
||||||
|
|
||||||
LLDAP_DOMAIN=lldap.cool.life
|
SERVICE_DOMAIN=lldap.cool.life
|
||||||
LLDAP_VOLUME_NAME=lldap_cool_life
|
LLDAP_VOLUME_NAME=lldap_cool_life
|
||||||
LLDAP_CONTAINER_NAME=lldap_cool_life
|
LLDAP_CONTAINER_NAME=lldap_cool_life
|
||||||
LLDAP_IMAGE=nitnelave/lldap:v0.4.3
|
LLDAP_IMAGE=nitnelave/lldap:v0.4.3
|
||||||
|
|||||||
@@ -10,13 +10,13 @@ services:
|
|||||||
labels:
|
labels:
|
||||||
- traefik.enable=true
|
- traefik.enable=true
|
||||||
- traefik.docker.network=${TRAEFIK_NETWORK_NAME:-traefik}
|
- traefik.docker.network=${TRAEFIK_NETWORK_NAME:-traefik}
|
||||||
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-lldap}.rule=Host(`${LLDAP_DOMAIN:?err}`)
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-lldap}.rule=Host(`${SERVICE_DOMAIN:?err}`)
|
||||||
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-lldap}.entrypoints=${TRAEFIK_ENTRYPOINTS:-web}
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-lldap}.entrypoints=${TRAEFIK_ENTRYPOINTS:-web}
|
||||||
# - traefik.http.routers.${TRAEFIK_ROUTER_NAME:-lldap}.tls.certResolver=letsencrypt
|
# - traefik.http.routers.${TRAEFIK_ROUTER_NAME:-lldap}.tls.certResolver=letsencrypt
|
||||||
- traefik.http.services.${TRAEFIK_ROUTER_NAME:-lldap}.loadbalancer.server.port=17170
|
- traefik.http.services.${TRAEFIK_ROUTER_NAME:-lldap}.loadbalancer.server.port=17170
|
||||||
- traefik.http.services.${TRAEFIK_ROUTER_NAME:-lldap}.loadbalancer.server.scheme=http
|
- traefik.http.services.${TRAEFIK_ROUTER_NAME:-lldap}.loadbalancer.server.scheme=http
|
||||||
|
|
||||||
# https://github.com/lldap/lldap/issues/247#issuecomment-1489962511
|
# https://github.com/lldap/lldap/issues/247#issuecomment-1489962511
|
||||||
# - traefik.tcp.routers.${TRAEFIK_ROUTER_NAME:-lldap}.rule=HostSNI(`${LLDAP_DOMAIN:?err}`)
|
# - traefik.tcp.routers.${TRAEFIK_ROUTER_NAME:-lldap}.rule=HostSNI(`${SERVICE_DOMAIN:?err}`)
|
||||||
# - traefik.tcp.routers.${TRAEFIK_ROUTER_NAME:-lldap}.entrypoints=${TRAEFIK_ENTRYPOINTS:-web}
|
# - traefik.tcp.routers.${TRAEFIK_ROUTER_NAME:-lldap}.entrypoints=${TRAEFIK_ENTRYPOINTS:-web}
|
||||||
# - traefik.tcp.services.${TRAEFIK_ROUTER_NAME:-lldap}.loadbalancer.server.port=3890
|
# - traefik.tcp.services.${TRAEFIK_ROUTER_NAME:-lldap}.loadbalancer.server.port=3890
|
||||||
|
|||||||
@@ -16,7 +16,7 @@ services:
|
|||||||
- LLDAP_VERBOSE=${LLDAP_VERBOSE:-false}
|
- LLDAP_VERBOSE=${LLDAP_VERBOSE:-false}
|
||||||
|
|
||||||
- LLDAP_JWT_SECRET=${LLDAP_JWT_SECRET:?err}
|
- LLDAP_JWT_SECRET=${LLDAP_JWT_SECRET:?err}
|
||||||
- LLDAP_HTTP_URL=https://${LLDAP_DOMAIN:?err}
|
- LLDAP_HTTP_URL=https://${SERVICE_DOMAIN:?err}
|
||||||
|
|
||||||
- LLDAP_LDAP_BASE_DN=${LLDAP_LDAP_BASE_DN:?err}
|
- LLDAP_LDAP_BASE_DN=${LLDAP_LDAP_BASE_DN:?err}
|
||||||
- LLDAP_LDAP_USER_DN=${LLDAP_LDAP_USER_DN:?err}
|
- LLDAP_LDAP_USER_DN=${LLDAP_LDAP_USER_DN:?err}
|
||||||
|
|||||||
8
mariadb/.env
Normal file
8
mariadb/.env
Normal file
@@ -0,0 +1,8 @@
|
|||||||
|
#MARIADB_CONTAINER_NAME=
|
||||||
|
#MARIADB_VOLUME_NAME=
|
||||||
|
#MARIADB_IMAGE=
|
||||||
|
MARIADB_ROOT_PASSWORD=replace-me
|
||||||
|
MARIADB_USER=user-example
|
||||||
|
MARIADB_PASSWORD=password-example
|
||||||
|
MARIADB_DATABASE=mariadb-database-name-example
|
||||||
|
#MARIADB_COMMAND=
|
||||||
28
mariadb/README.md
Normal file
28
mariadb/README.md
Normal file
@@ -0,0 +1,28 @@
|
|||||||
|
# MariaDB
|
||||||
|
|
||||||
|
> MariaDB est un système de gestion de base de données édité sous licence GPL. Il s'agit d'un fork communautaire de MySQL
|
||||||
|
>
|
||||||
|
> <cite>[Wikipédia][wikipedia]</cite>
|
||||||
|
|
||||||
|
## Configuration
|
||||||
|
|
||||||
|
Les variables contenu dans `.env` permettent de changer :
|
||||||
|
|
||||||
|
- `MARIADB_IMAGE` : la version
|
||||||
|
- `MARIADB_ROOT_PASSWORD` : le mot de passe _root_
|
||||||
|
- `MARIADB_USER` : le nom d'utilisateur
|
||||||
|
- `MARIADB_PASSWORD` : le mot de passe
|
||||||
|
- `MARIADB_DATABASE` : le nom de la base de données
|
||||||
|
- `MARIADB_CONTAINER_NAME` (par defaut _mariadb_) : le nom du conteneur
|
||||||
|
- `MARIADB_VOLUME_NAME` (par defaut _mariadb_) : le nom du volume
|
||||||
|
|
||||||
|
## Liens
|
||||||
|
|
||||||
|
- [Site Officiel][site]
|
||||||
|
- [Code source][source]
|
||||||
|
- [Docker Hub][dockerhub]
|
||||||
|
|
||||||
|
[wikipedia]: https://fr.wikipedia.org/wiki/MariaDB
|
||||||
|
[site]: https://mariadb.org/
|
||||||
|
[source]: https://github.com/MariaDB/server
|
||||||
|
[dockerhub]: https://hub.docker.com/_/mariadb/
|
||||||
23
mariadb/docker-compose.yml
Normal file
23
mariadb/docker-compose.yml
Normal file
@@ -0,0 +1,23 @@
|
|||||||
|
version: "3.8"
|
||||||
|
|
||||||
|
volumes:
|
||||||
|
mariadb:
|
||||||
|
name: ${MARIADB_VOLUME_NAME:-mariadb}
|
||||||
|
|
||||||
|
services:
|
||||||
|
mariadb:
|
||||||
|
container_name: ${MARIADB_CONTAINER_NAME:-mariadb}
|
||||||
|
image: ${MARIADB_IMAGE:-mariadb:10.7.1-focal}
|
||||||
|
command: ${MARIADB_COMMAND}
|
||||||
|
restart: always
|
||||||
|
environment:
|
||||||
|
MARIADB_ROOT_PASSWORD: ${MARIADB_ROOT_PASSWORD:?err}
|
||||||
|
MARIADB_USER: ${MARIADB_USER:?err}
|
||||||
|
MARIADB_PASSWORD: ${MARIADB_PASSWORD:?err}
|
||||||
|
MARIADB_DATABASE: ${MARIADB_DATABASE:?err}
|
||||||
|
PUID: ${MARIADB_PUID:-1000}
|
||||||
|
PGID: ${MARIADB_PGID:-1000}
|
||||||
|
volumes:
|
||||||
|
- mariadb:/var/lib/mysql
|
||||||
|
- /etc/timezone:/etc/timezone:ro
|
||||||
|
- /etc/localtime:/etc/localtime:ro
|
||||||
31
matomo/.env
Normal file
31
matomo/.env
Normal file
@@ -0,0 +1,31 @@
|
|||||||
|
########
|
||||||
|
# DOCKER
|
||||||
|
|
||||||
|
#DOCKER_CONTEXT=
|
||||||
|
#DOCKER_HOST=
|
||||||
|
SERVICES_DIR=..
|
||||||
|
COMPOSE_FILE=${SERVICES_DIR}/matomo/docker-compose.yml:${SERVICES_DIR}/matomo/docker-compose.local.yml
|
||||||
|
#COMPOSE_PROJECT_NAME=
|
||||||
|
|
||||||
|
## APP
|
||||||
|
|
||||||
|
MATOMO_DOMAIN=localhost
|
||||||
|
#MATOMO_CONTAINER_NAME=matomo
|
||||||
|
#MATOMO_VOLUME_NAME=matomo
|
||||||
|
#MATOMO_IMAGE=matomo:4.1.1-apache
|
||||||
|
|
||||||
|
## MARIADB
|
||||||
|
|
||||||
|
#MARIADB_VOLUME_NAME=
|
||||||
|
#MARIADB_CONTAINER_NAME=
|
||||||
|
#MARIADB_IMAGE=
|
||||||
|
MARIADB_USER=user-example
|
||||||
|
MARIADB_ROOT_PASSWORD=password-example
|
||||||
|
MARIADB_PASSWORD=password-example
|
||||||
|
MARIADB_DB=matomo_dev
|
||||||
|
|
||||||
|
## TRAEFIK
|
||||||
|
|
||||||
|
#TRAEFIK_NETWORK_NAME=
|
||||||
|
#TRAEFIK_ROUTER_NAME=
|
||||||
|
#TRAEFIK_ENTRYPOINTS=
|
||||||
15
matomo/README.md
Normal file
15
matomo/README.md
Normal file
@@ -0,0 +1,15 @@
|
|||||||
|
# Matomo
|
||||||
|
|
||||||
|
> Matomo est une plateforme d'analyse Web complète et open source.
|
||||||
|
|
||||||
|
## Liens
|
||||||
|
|
||||||
|
- [Site Officiel][site]
|
||||||
|
- [Documentation][documentation]
|
||||||
|
- [Code source][source]
|
||||||
|
- [Docker Hub][dockerhub]
|
||||||
|
|
||||||
|
[site]: https://matomo.org/
|
||||||
|
[source]: https://github.com/matomo-org/matomo
|
||||||
|
[documentation]: https://matomo.org/faq/reports/tour-of-matomo-overview-of-the-reporting-interface/
|
||||||
|
[dockerhub]: https://hub.docker.com/_/matomo/
|
||||||
6
matomo/docker-compose.local.yml
Normal file
6
matomo/docker-compose.local.yml
Normal file
@@ -0,0 +1,6 @@
|
|||||||
|
---
|
||||||
|
|
||||||
|
services:
|
||||||
|
matomo:
|
||||||
|
ports:
|
||||||
|
- ${LOCAL_PORT:-8080}:80
|
||||||
14
matomo/docker-compose.traefik.yml
Normal file
14
matomo/docker-compose.traefik.yml
Normal file
@@ -0,0 +1,14 @@
|
|||||||
|
---
|
||||||
|
|
||||||
|
networks:
|
||||||
|
default:
|
||||||
|
name: ${TRAEFIK_NETWORK_NAME:-traefik}
|
||||||
|
external: true
|
||||||
|
|
||||||
|
services:
|
||||||
|
matomo:
|
||||||
|
labels:
|
||||||
|
- traefik.enable=true
|
||||||
|
- traefik.docker.network=${TRAEFIK_NETWORK_NAME:-traefik}
|
||||||
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-matomo}.rule=Host(`${MATOMO_DOMAIN:?err}`)
|
||||||
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-matomo}.entrypoints=${TRAEFIK_ENTRYPOINTS:-web}
|
||||||
48
matomo/docker-compose.yml
Normal file
48
matomo/docker-compose.yml
Normal file
@@ -0,0 +1,48 @@
|
|||||||
|
---
|
||||||
|
|
||||||
|
services:
|
||||||
|
db:
|
||||||
|
image: mariadb:lts
|
||||||
|
container_name: ${MARIADB_CONTAINER_NAME:-mariadb}
|
||||||
|
image: ${MARIADB_IMAGE:-mariadb:lts}
|
||||||
|
command: --max-allowed-packet=64MB
|
||||||
|
restart: always
|
||||||
|
volumes:
|
||||||
|
- db:/var/lib/mysql:Z
|
||||||
|
- /etc/timezone:/etc/timezone:ro
|
||||||
|
- /etc/localtime:/etc/localtime:ro
|
||||||
|
environment:
|
||||||
|
- MARIADB_AUTO_UPGRADE=1
|
||||||
|
- MARIADB_DATABASE=matomo
|
||||||
|
- MARIADB_DISABLE_UPGRADE_BACKUP=1
|
||||||
|
- MARIADB_INITDB_SKIP_TZINFO=1
|
||||||
|
- MARIADB_PASSWORD=${MARIADB_PASSWORD:?err}
|
||||||
|
- MARIADB_ROOT_PASSWORD=${MARIADB_ROOT_PASSWORD:?err}
|
||||||
|
- MARIADB_USER=matomo
|
||||||
|
|
||||||
|
app:
|
||||||
|
container_name: ${MATOMO_CONTAINER_NAME:-matomo}
|
||||||
|
image: ${MATOMO_IMAGE:-matomo:4.1.1-apache}
|
||||||
|
restart: always
|
||||||
|
volumes:
|
||||||
|
# - ./config:/var/www/html/config:z
|
||||||
|
# - ./logs:/var/www/html/logs:z
|
||||||
|
- matomo:/var/www/html:z
|
||||||
|
- /etc/timezone:/etc/timezone:ro
|
||||||
|
- /etc/localtime:/etc/localtime:ro
|
||||||
|
depends_on:
|
||||||
|
- db
|
||||||
|
environment:
|
||||||
|
- MATOMO_DATABASE_ADAPTER=mysql
|
||||||
|
- MATOMO_DATABASE_DBNAME=matomo
|
||||||
|
- MATOMO_DATABASE_HOST=db
|
||||||
|
- MATOMO_DATABASE_PASSWORD=${MARIADB_PASSWORD:?err}
|
||||||
|
- MATOMO_DATABASE_TABLES_PREFIX=matomo_
|
||||||
|
- MATOMO_DATABASE_USERNAME=matomo
|
||||||
|
ports:
|
||||||
|
- 8080:80
|
||||||
|
|
||||||
|
volumes:
|
||||||
|
db:
|
||||||
|
matomo:
|
||||||
|
name: ${MATOMO_VOLUME_NAME:-matomo}
|
||||||
11
signaturepdf/docker-compose.traefik.https.yml
Normal file
11
signaturepdf/docker-compose.traefik.https.yml
Normal file
@@ -0,0 +1,11 @@
|
|||||||
|
---
|
||||||
|
services:
|
||||||
|
signaturepdf:
|
||||||
|
labels:
|
||||||
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-signaturepdf}.tls.certResolver=letsencrypt
|
||||||
|
# redirect HTTP to HTTPS
|
||||||
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-signaturepdf}_http.rule=Host(`${SIGNATUREPDF_DOMAIN:?err}`)
|
||||||
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-signaturepdf}_http.entrypoints=web
|
||||||
|
- traefik.http.middlewares.${TRAEFIK_ROUTER_NAME:-signaturepdf}_redirect_https.redirectscheme.scheme=https
|
||||||
|
- traefik.http.middlewares.${TRAEFIK_ROUTER_NAME:-signaturepdf}_redirect_https.redirectscheme.permanent=true
|
||||||
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-signaturepdf}_http.middlewares=${TRAEFIK_ROUTER_NAME:-signaturepdf}_redirect_https
|
||||||
@@ -11,4 +11,4 @@ services:
|
|||||||
- traefik.enable=true
|
- traefik.enable=true
|
||||||
- traefik.docker.network=${TRAEFIK_NETWORK_NAME:-traefik}
|
- traefik.docker.network=${TRAEFIK_NETWORK_NAME:-traefik}
|
||||||
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-signaturepdf}.rule=Host(`${SIGNATUREPDF_DOMAIN:?err}`)
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-signaturepdf}.rule=Host(`${SIGNATUREPDF_DOMAIN:?err}`)
|
||||||
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-signaturepdf}.entrypoints=web
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-signaturepdf}.entrypoints=${TRAEFIK_ENTRYPOINTS:-web}
|
||||||
|
|||||||
@@ -19,3 +19,5 @@ services:
|
|||||||
PDF_STORAGE_PATH: ${PDF_STORAGE_PATH}
|
PDF_STORAGE_PATH: ${PDF_STORAGE_PATH}
|
||||||
DISABLE_ORGANIZATION: ${DISABLE_ORGANIZATION}
|
DISABLE_ORGANIZATION: ${DISABLE_ORGANIZATION}
|
||||||
PDF_DEMO_LINK: ${PDF_DEMO_LINK}
|
PDF_DEMO_LINK: ${PDF_DEMO_LINK}
|
||||||
|
DEFAULT_LANGUAGE: ${DEFAULT_LANGUAGE:-fr_FR.UTF-8}
|
||||||
|
PDF_STORAGE_ENCRYPTION: ${PDF_STORAGE_ENCRYPTION:-true}
|
||||||
|
|||||||
24
snikket/.env
24
snikket/.env
@@ -1,24 +0,0 @@
|
|||||||
########
|
|
||||||
# DOCKER
|
|
||||||
|
|
||||||
SERVICES_DIR=".."
|
|
||||||
COMPOSE_FILE=${SERVICES_DIR}/snikket/docker-compose.yml:${SERVICES_DIR}/snikket/docker-compose.local.yml
|
|
||||||
# COMPOSE_PROJECT_NAME=
|
|
||||||
|
|
||||||
## APP
|
|
||||||
|
|
||||||
# SNIKKET_DOMAIN={{ SNIKKET_DOMAIN }}
|
|
||||||
SNIKKET_CONTAINER_NAME=snikket
|
|
||||||
SNIKKET_DATA_VOLUME_NAME=snikket_data
|
|
||||||
SNIKKET_ACME_CHALLENGES_VOLUME_NAME=acme_challenges
|
|
||||||
# SNIKKET_SERVER_IMAGE=
|
|
||||||
# SNIKKET_WEB_PORTAL_IMAGE=
|
|
||||||
# SNIKKET_CERT_MANAGER_IMAGE
|
|
||||||
# SNIKKET_WEB_PROXY_IMAGE
|
|
||||||
|
|
||||||
#########
|
|
||||||
# TRAEFIK
|
|
||||||
|
|
||||||
# TRAEFIK_NETWORK_NAME=
|
|
||||||
# TRAEFIK_ROUTER_NAME=
|
|
||||||
# TRAEFIK_ENTRYPOINTS=
|
|
||||||
@@ -1,22 +0,0 @@
|
|||||||
# Snikket
|
|
||||||
|
|
||||||
> Snikket est un service de messagerie instantanée basée sur le protocole XMPP destiné à être utilisé d'abord sur téléphone.
|
|
||||||
|
|
||||||
## Clients
|
|
||||||
|
|
||||||
Pour utiliser Snikket sur un téléphone Android, vous pouvez télécharger l'application sur F-droid (recommandé) ou sur le Google Play Store.
|
|
||||||
|
|
||||||
Sur Linux, nous recommandons le client Dino (d'abord créer son compte Snikket via le téléphone).
|
|
||||||
Sur iPhone, vous pouvez aussi télécharger l'application Snikket qui sera cependant moins complète que sur Android.
|
|
||||||
|
|
||||||
## Liens
|
|
||||||
|
|
||||||
- [Site Officiel][site]
|
|
||||||
- [Documentation][documentation]
|
|
||||||
- [Code source][source]
|
|
||||||
- [Docker Hub][dockerhub]
|
|
||||||
|
|
||||||
[site]: https://snikket.org
|
|
||||||
[source]: https://github.com/snikket-im/snikket-selfhosted
|
|
||||||
[documentation]: https://snikket.org/service/quickstart/
|
|
||||||
[dockerhub]: https://hub.docker.com/r/snikket/snikket-server
|
|
||||||
@@ -1,13 +0,0 @@
|
|||||||
---
|
|
||||||
|
|
||||||
version: "3.8"
|
|
||||||
|
|
||||||
services:
|
|
||||||
snikket_proxy:
|
|
||||||
network_mode: host
|
|
||||||
snikket_certs:
|
|
||||||
network_mode: host
|
|
||||||
snikket_portal:
|
|
||||||
network_mode: host
|
|
||||||
snikket_server:
|
|
||||||
network_mode: host
|
|
||||||
@@ -1,15 +0,0 @@
|
|||||||
---
|
|
||||||
|
|
||||||
version: "3.8"
|
|
||||||
|
|
||||||
networks:
|
|
||||||
default:
|
|
||||||
name: ${TRAEFIK_NETWORK_NAME:-traefik}
|
|
||||||
|
|
||||||
services:
|
|
||||||
snikket_proxy:
|
|
||||||
labels:
|
|
||||||
- traefik.enable=true
|
|
||||||
- traefik.docker.network=${TRAEFIK_NETWORK_NAME:-traefik}
|
|
||||||
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-snikket}.rule=Host(`${SNIKKET_DOMAIN:?err}`)
|
|
||||||
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-snikket}.entrypoints=${TRAEFIK_ENTRYPOINTS:-web}
|
|
||||||
@@ -1,48 +0,0 @@
|
|||||||
---
|
|
||||||
|
|
||||||
version: "3.3"
|
|
||||||
|
|
||||||
services:
|
|
||||||
snikket_proxy:
|
|
||||||
container_name: ${SNIKKET_CONTAINER_NAME:-snikket}_proxy
|
|
||||||
image: ${SNIKKET_WEB_PROXY_IMAGE:-snikket/snikket-web-proxy:beta}
|
|
||||||
environment:
|
|
||||||
- SNIKKET_DOMAIN: ${SNIKKET_DOMAIN:?err}
|
|
||||||
- SNIKKET_ADMIN_EMAIL: ${SNIKKET_ADMIN_EMAIL:?err}
|
|
||||||
volumes:
|
|
||||||
- snikket_data:/snikket
|
|
||||||
- acme_challenges:/var/www/html/.well-known/acme-challenge
|
|
||||||
restart: "unless-stopped"
|
|
||||||
snikket_certs:
|
|
||||||
container_name: ${SNIKKET_CONTAINER_NAME:-snikket}-certs
|
|
||||||
image: ${SNIKKET_CERT_MANAGER_IMAGE:-snikket/snikket-cert-manager:beta}
|
|
||||||
environment:
|
|
||||||
- SNIKKET_DOMAIN: ${SNIKKET_DOMAIN:?err}
|
|
||||||
- SNIKKET_ADMIN_EMAIL: ${SNIKKET_ADMIN_EMAIL:?err}
|
|
||||||
volumes:
|
|
||||||
- snikket_data:/snikket
|
|
||||||
- acme_challenges:/var/www/.well-known/acme-challenge
|
|
||||||
restart: "unless-stopped"
|
|
||||||
snikket_portal:
|
|
||||||
container_name: ${SNIKKET_CONTAINER_NAME:-snikket}-portal
|
|
||||||
image: ${SNIKKET_WEB_PORTAL_IMAGE:-snikket/snikket-web-portal:beta}
|
|
||||||
environment:
|
|
||||||
- SNIKKET_DOMAIN: ${SNIKKET_DOMAIN:?err}
|
|
||||||
- SNIKKET_ADMIN_EMAIL: ${SNIKKET_ADMIN_EMAIL:?err}
|
|
||||||
restart: "unless-stopped"
|
|
||||||
|
|
||||||
snikket_server:
|
|
||||||
container_name: ${SNIKKET_CONTAINER_NAME:-snikket}
|
|
||||||
image: ${SNIKKET_SERVER_IMAGE:-snikket/snikket-server:beta}
|
|
||||||
volumes:
|
|
||||||
- snikket_data:/snikket
|
|
||||||
environment:
|
|
||||||
- SNIKKET_DOMAIN: ${SNIKKET_DOMAIN:?err}
|
|
||||||
- SNIKKET_ADMIN_EMAIL: ${SNIKKET_ADMIN_EMAIL:?err}
|
|
||||||
restart: "unless-stopped"
|
|
||||||
|
|
||||||
volumes:
|
|
||||||
acme_challenges:
|
|
||||||
name: ${SNIKKET_ACME_CHALLENGES_VOLUME_NAME:-acme_challenges}
|
|
||||||
snikket_data:
|
|
||||||
name: ${SNIKKET_DATA_VOLUME_NAME:-snikket_data}
|
|
||||||
@@ -9,7 +9,7 @@ COMPOSE_FILE=${SERVICES_DIR}/vaultwarden/docker-compose.yml
|
|||||||
|
|
||||||
#VAULTWARDEN_IMAGE=
|
#VAULTWARDEN_IMAGE=
|
||||||
#VAULTWARDEN_VOLUME_NAME=
|
#VAULTWARDEN_VOLUME_NAME=
|
||||||
VAULTWARDEN_DOMAIN=vaultwarden.local
|
SERVICE_DOMAIN=vaultwarden.local
|
||||||
|
|
||||||
#VAULTWARDEN_LOG_LEVEL=
|
#VAULTWARDEN_LOG_LEVEL=
|
||||||
#VAULTWARDEN_SIGNUPS_ALLOWED=false
|
#VAULTWARDEN_SIGNUPS_ALLOWED=false
|
||||||
|
|||||||
@@ -10,6 +10,20 @@ Toutes les variables de configuration du service sont disponibles à [cette adre
|
|||||||
|
|
||||||
[Les clients de Bitwarden](https://bitwarden.com/#download) sont compatibles avec le serveur.
|
[Les clients de Bitwarden](https://bitwarden.com/#download) sont compatibles avec le serveur.
|
||||||
|
|
||||||
|
## Ajout des mails en Français
|
||||||
|
|
||||||
|
Il est possible de [traduire les mails](https://github.com/dani-garcia/vaultwarden/wiki/Translating-the-email-templates).
|
||||||
|
|
||||||
|
```
|
||||||
|
. .env
|
||||||
|
cd /var/lib/docker/volumes/${VAULTWARDEN_VOLUME_NAME}/_data/
|
||||||
|
mkdir templates && cd templates
|
||||||
|
wget https://github.com/YoanSimco/vaultwarden-lang-fr/archive/refs/heads/main.zip
|
||||||
|
unzip main.zip
|
||||||
|
mv vaultwarden-lang-fr/email .
|
||||||
|
rm vaultwarden-lang-fr-main/ main.zip -rf
|
||||||
|
```
|
||||||
|
|
||||||
## Liens
|
## Liens
|
||||||
|
|
||||||
- [Documentation][documentation]
|
- [Documentation][documentation]
|
||||||
|
|||||||
25
vaultwarden/docker-compose.sso.yml
Normal file
25
vaultwarden/docker-compose.sso.yml
Normal file
@@ -0,0 +1,25 @@
|
|||||||
|
---
|
||||||
|
|
||||||
|
services:
|
||||||
|
vaultwarden:
|
||||||
|
environment:
|
||||||
|
SSO_ENABLED: ${SSO_ENABLED:-true}
|
||||||
|
SSO_ONLY: ${SSO_ONLY:-true}
|
||||||
|
SSO_SIGNUPS_MATCH_EMAIL: ${SSO_SIGNUPS_MATCH_EMAIL:-true}
|
||||||
|
SSO_AUTHORITY: ${SSO_AUTHORITY}
|
||||||
|
SSO_SCOPES: ${SSO_SCOPES:-email groups profile offline_access}
|
||||||
|
SSO_AUTHORIZE_EXTRA_PARAMS: ${SSO_AUTHORIZE_EXTRA_PARAMS:-}
|
||||||
|
SSO_PKCE: ${SSO_PKCE:-false}
|
||||||
|
SSO_CLIENT_ID: ${SSO_CLIENT_ID}
|
||||||
|
SSO_CLIENT_SECRET: ${SSO_CLIENT_SECRET}
|
||||||
|
# SSO_MASTER_PASSWORD_POLICY: ${SSO_MASTER_PASSWORD_POLICY:-}
|
||||||
|
SSO_AUTH_ONLY_NOT_SESSION: ${SSO_AUTH_ONLY_NOT_SESSION:-false}
|
||||||
|
SSO_CLIENT_CACHE_EXPIRATION: ${SSO_CLIENT_CACHE_EXPIRATION:-0}
|
||||||
|
SSO_DEBUG_TOKENS: ${SSO_DEBUG_TOKENS:-false}
|
||||||
|
|
||||||
|
SSO_FRONTEND: ${SSO_FRONTEND:-override}
|
||||||
|
# SSO_EXPERIMENTAL_NO_MASTER_PWD: ${SSO_EXPERIMENTAL_NO_MASTER_PWD:-false}
|
||||||
|
SSO_ROLES_ENABLED: ${SSO_ROLES_ENABLED:-false}
|
||||||
|
SSO_ROLES_DEFAULT_TO_USER: ${SSO_ROLES_DEFAULT_TO_USER:-false}
|
||||||
|
|
||||||
|
SSO_ORGANIZATIONS_INVITE: ${SSO_ORGANIZATIONS_INVITE:-false}
|
||||||
12
vaultwarden/docker-compose.traefik.https.yml
Normal file
12
vaultwarden/docker-compose.traefik.https.yml
Normal file
@@ -0,0 +1,12 @@
|
|||||||
|
---
|
||||||
|
|
||||||
|
services:
|
||||||
|
vaultwarden:
|
||||||
|
labels:
|
||||||
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-vaultwarden}.tls.certResolver=letsencrypt
|
||||||
|
# redirect HTTP to HTTPS
|
||||||
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-vaultwarden}_http.rule=Host(`${SERVICE_DOMAIN:?err}`)
|
||||||
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-vaultwarden}_http.entrypoints=web
|
||||||
|
- traefik.http.middlewares.${TRAEFIK_ROUTER_NAME:-vaultwarden}_redirect_https.redirectscheme.scheme=https
|
||||||
|
- traefik.http.middlewares.${TRAEFIK_ROUTER_NAME:-vaultwarden}_redirect_https.redirectscheme.permanent=true
|
||||||
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-vaultwarden}_http.middlewares=${TRAEFIK_ROUTER_NAME:-vaultwarden}_redirect_https
|
||||||
@@ -10,5 +10,5 @@ services:
|
|||||||
labels:
|
labels:
|
||||||
- traefik.enable=true
|
- traefik.enable=true
|
||||||
- traefik.docker.network=${TRAEFIK_NETWORK_NAME:-traefik}
|
- traefik.docker.network=${TRAEFIK_NETWORK_NAME:-traefik}
|
||||||
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-vaultwarden}.rule=Host(`${VAULTWARDEN_DOMAIN:?err}`)
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-vaultwarden}.rule=Host(`${SERVICE_DOMAIN:?err}`)
|
||||||
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-vaultwarden}.entrypoints=${TRAEFIK_ENTRYPOINTS:-web}
|
- traefik.http.routers.${TRAEFIK_ROUTER_NAME:-vaultwarden}.entrypoints=${TRAEFIK_ENTRYPOINTS:-web}
|
||||||
@@ -6,15 +6,21 @@ volumes:
|
|||||||
|
|
||||||
services:
|
services:
|
||||||
vaultwarden:
|
vaultwarden:
|
||||||
image: ${VAULTWARDEN_IMAGE:-vaultwarden/server:1.27.0-alpine}
|
image: ${VAULTWARDEN_IMAGE:-vaultwarden/server:1.34.1-alpine}
|
||||||
container_name: ${VAULTWARDEN_CONTAINER_NAME:-vaultwarden}
|
container_name: ${VAULTWARDEN_CONTAINER_NAME:-vaultwarden}
|
||||||
restart: always
|
restart: always
|
||||||
environment:
|
environment:
|
||||||
ADMIN_TOKEN: ${VAULTWARDEN_ADMIN_TOKEN:?err}
|
ADMIN_TOKEN: ${VAULTWARDEN_ADMIN_TOKEN:?err}
|
||||||
DOMAIN: https://${VAULTWARDEN_DOMAIN:?err}
|
DOMAIN: https://${SERVICE_DOMAIN:?err}
|
||||||
|
SENDS_ALLOWED: ${SENDS_ALLOWED:-true}
|
||||||
|
TRASH_AUTO_DELETE_DAYS: ${TRASH_AUTO_DELETE_DAYS:-}
|
||||||
|
DISABLE_ICON_DOWNLOAD: ${DISABLE_ICON_DOWNLOAD:-false}
|
||||||
|
SIGNUPS_ALLOWED: ${VAULTWARDEN_SIGNUPS_ALLOWED:-true}
|
||||||
|
SIGNUPS_VERIFY: ${SIGNUPS_VERIFY:-false}
|
||||||
|
SIGNUPS_DOMAINS_WHITELIST: ${SIGNUPS_DOMAINS_WHITELIST:-}
|
||||||
INVITATION_ORG_NAME: ${VAULTWARDEN_INVITATION_ORG_NAME:-Vaultwarden}
|
INVITATION_ORG_NAME: ${VAULTWARDEN_INVITATION_ORG_NAME:-Vaultwarden}
|
||||||
LOG_LEVEL: ${VAULTWARDEN_LOG_LEVEL:-Info}
|
LOG_LEVEL: ${VAULTWARDEN_LOG_LEVEL:-Info}
|
||||||
SIGNUPS_ALLOWED: ${VAULTWARDEN_SIGNUPS_ALLOWED:-true}
|
ORG_GROUPS_ENABLED: ${VAULTWARDEN_ORG_GROUPS_ENABLED:-false}
|
||||||
volumes:
|
volumes:
|
||||||
- vaultwarden:/data
|
- vaultwarden:/data
|
||||||
- /etc/timezone:/etc/timezone:ro
|
- /etc/timezone:/etc/timezone:ro
|
||||||
|
|||||||
Reference in New Issue
Block a user