move db passwords into secrets/
This commit is contained in:
1
.gitignore
vendored
1
.gitignore
vendored
@@ -1,2 +1,3 @@
|
|||||||
*~
|
*~
|
||||||
env
|
env
|
||||||
|
secrets
|
||||||
|
|||||||
@@ -26,10 +26,13 @@ services:
|
|||||||
image: mariadb
|
image: mariadb
|
||||||
container_name: brewblogger-mariadb
|
container_name: brewblogger-mariadb
|
||||||
restart: unless-stopped
|
restart: unless-stopped
|
||||||
# environment:
|
environment:
|
||||||
# - MARIADB_ROOT_PASSWORD=super-secret-password
|
MARIADB_USER: brewblogger
|
||||||
# # set MARIADB_ROOT_PASSWORD for first run only
|
MARIADB_DATABASE: brewblogger
|
||||||
|
MARIADB_ROOT_PASSWORD_FILE: /run/secrets/MARIADB_ROOT_PASSWORD
|
||||||
|
MARIADB_PASSWORD_FILE: /run/secrets/BREWBLOGGER_DB_PASSWORD
|
||||||
volumes:
|
volumes:
|
||||||
|
- ./secrets:/run/secrets
|
||||||
- brewblogger-db:/var/lib/mysql
|
- brewblogger-db:/var/lib/mysql
|
||||||
networks:
|
networks:
|
||||||
- brewblogger
|
- brewblogger
|
||||||
@@ -40,7 +43,7 @@ services:
|
|||||||
network_mode: none
|
network_mode: none
|
||||||
command: [ "tail", "-f", "/dev/null" ]
|
command: [ "tail", "-f", "/dev/null" ]
|
||||||
labels:
|
labels:
|
||||||
caddy: beerandloafing.org
|
caddy: www.beerandloafing.org
|
||||||
caddy.redir: https://beerandloafing.org{uri}
|
caddy.redir: https://beerandloafing.org{uri}
|
||||||
|
|
||||||
networks:
|
networks:
|
||||||
|
|||||||
Reference in New Issue
Block a user