-
Notifications
You must be signed in to change notification settings - Fork 1
/
Copy pathdocker-compose.vault.tpl.yml
70 lines (70 loc) · 1.83 KB
/
docker-compose.vault.tpl.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
#vault-version:<VERSION>
#strato-getting-started-min-version:4.2.1
version: "3"
volumes:
vaultpgdata:
driver: local
idpconfig:
driver: local
services:
vault-wrapper:
depends_on:
- postgres
environment:
- keyStoreCacheTimeout=${keyStoreCacheTimeout:-60}
- postgres_host=postgres
- postgres_password=${postgres_password:-api}
- postgres_port=5432
- postgres_user=postgres
- postgres_vault_wrapper_db=oauth
- VAULTWRAPPER_DEBUG=${VAULTWRAPPER_DEBUG}
build: .
image: ${VAULTWRAPPER_IMAGE:-<REPO_URL>vault-wrapper:<VERSION>}
restart: unless-stopped
logging:
driver: "json-file"
options:
max-size: "100m"
max-file: "3"
postgres:
environment:
- POSTGRES_PASSWORD=${postgres_password:-api}
image: postgres:9.6
volumes:
- vaultpgdata:/var/lib/postgresql/data
command:
- "postgres"
- "-c"
- "max_connections=300"
- "-c"
- "shared_buffers=512MB"
restart: unless-stopped
logging:
driver: "json-file"
options:
max-size: "100m"
max-file: "3"
nginx:
depends_on:
- vault-wrapper
environment:
- INITIAL_OAUTH_DISCOVERY_URL=${INITIAL_OAUTH_DISCOVERY_URL}
- INITIAL_OAUTH_ISSUER=${INITIAL_OAUTH_ISSUER}
- INITIAL_OAUTH_JWT_USER_ID_CLAIM=${INITIAL_OAUTH_JWT_USER_ID_CLAIM}
- ssl=${ssl}
- sslCertFileType=${sslCertFileType}
- VAULT_WRAPPER_HOST=${VAULT_WRAPPER_HOST}
build: .
image: ${VAULTNGINX_IMAGE:-<REPO_URL>vault-nginx:<VERSION>}
ports:
- ${HTTP_PORT:-8090}:80 #TAG_REMOVE_WHEN_SSL_CUSTOM_HTTPS_PORT
- ${HTTPS_PORT:-8093}:443 #TAG_REMOVE_WHEN_NO_SSL
volumes:
- ./ssl:/tmp/ssl:ro
- idpconfig:/config
restart: unless-stopped
logging:
driver: "json-file"
options:
max-size: "100m"
max-file: "3"