feat: enhance docker-compose.override.yml with Traefik labels and update env.prod.template for consistency

This commit is contained in:
Philip Henning 2025-08-28 09:13:48 +02:00
parent edc0b4c30d
commit bbf3f08be5
2 changed files with 26 additions and 6 deletions

View file

@ -34,6 +34,26 @@ services:
- geoip:/geoip
networks:
- backend
- dokploy-network
labels:
- "traefik.enable=true"
- "traefik.docker.network=dokploy-network"
- "traefik.http.services.sso-server.loadbalancer.server.port=9443" # set port the container listenes to
- "traefik.http.services.sso-server.loadbalancer.server.scheme=https"
- "traefik.http.routers.sso-server-web.rule=Host(`${PUBLIC_DOMAIN}`)"
- "traefik.http.routers.sso-server-web.entrypoints=web"
- "traefik.http.routers.sso-server-web.service=sso-server"
- "traefik.http.routers.sso-server-web.middlewares=redirect-to-https@file"
- "traefik.http.routers.sso-server-websecure.entrypoints=websecure"
- "traefik.http.routers.sso-server-websecure.rule=Host(`${PUBLIC_DOMAIN}`)" # change hostname!
- "traefik.http.routers.sso-server-websecure.tls=true"
- "traefik.http.routers.sso-server-websecure.tls.certresolver=hetzner"
- "traefik.http.routers.sso-server-websecure.tls.domains[0].main=${TLS_DOMAIN}"
- "traefik.http.routers.sso-server-websecure.middlewares=secHeaders@file, hsts-header@file"
- "traefik.http.routers.sso-server-websecure.service=sso-server"
worker:
image: ${AUTHENTIK_IMAGE:-ghcr.io/goauthentik/server}:${AUTHENTIK_TAG:?AUTHENTIK_TAG is not configured}
@ -57,4 +77,6 @@ volumes:
driver: local
networks:
backend:
backend:
dokploy-network:
external: true