docker-compose.yaml 5.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105
  1. {% set tpl = ix_lib.base.render.Render(values) %}
  2. {% if values.network.ftpd_services %}
  3. {% if values.network.ftpd_passive_port_range.start and values.network.ftpd_passive_port_range.end and values.network.ftpd_passive_port_range.start > values.network.ftpd_passive_port_range.end %}
  4. {% do tpl.funcs.fail("Expected [network.ftpd_passive_port_range.start] to be less than [network.ftpd_passive_port_range.end], but got [%d] and [%d]" | format(values.network.ftpd_passive_port_range.start, values.network.ftpd_passive_port_range.end)) %}
  5. {% endif %}
  6. {% endif %}
  7. {% set proto = "https" if values.network.certificate_id else "http" %}
  8. {% set c1 = tpl.add_container(values.consts.sftpgo_container_name, values.sftpgo.image_selector) %}
  9. {% set perm_container = tpl.deps.perms(values.consts.perms_container_name) %}
  10. {% set perms_config = {"uid": values.run_as.user, "gid": values.run_as.group, "mode": "check"} %}
  11. {% do c1.set_user(values.run_as.user, values.run_as.group) %}
  12. {% do c1.set_grace_period(values.sftpgo.stop_grace_period) %}
  13. {% do c1.healthcheck.set_custom_test("SFTPGO_HTTP__SKIP_TLS_VERIFY=true sftpgo ping") %}
  14. {% do c1.environment.add_env("SFTPGO_CONFIG_DIR", values.consts.config_dir_path) %}
  15. {% do c1.environment.add_env("SFTPGO_DATA_PROVIDER__USERS_BASE_DIR", values.consts.data_dir_path) %}
  16. {% do c1.environment.add_env("SFTPGO_DATA_PROVIDER__BACKUPS_PATH", values.consts.backups_dir_path) %}
  17. {% do c1.environment.add_env("SFTPGO_GRACE_TIME", values.sftpgo.stop_grace_period) %}
  18. {% do c1.environment.add_env("SFTPGO_HTTPD__BINDINGS__0__PORT", values.network.web_port.port_number) %}
  19. {% do c1.environment.add_env("SFTPGO_HTTPD__BINDINGS__0__ADDRESS", "") %}
  20. {% do c1.environment.add_env("SFTPGO_HTTPD__BINDINGS__0__ENABLE_WEB_ADMIN", true) %}
  21. {% if values.network.certificate_id %}
  22. {% set cert = values.ix_certificates[values.network.certificate_id] %}
  23. {% do c1.configs.add("private", cert.privatekey, values.consts.ssl_key_path) %}
  24. {% do c1.configs.add("public", cert.certificate, values.consts.ssl_cert_path) %}
  25. {% do c1.environment.add_env("SFTPGO_HTTPD__BINDINGS__0__ENABLE_HTTPS", true) %}
  26. {% do c1.environment.add_env("SFTPGO_HTTPD__BINDINGS__0__CERTIFICATE_FILE", values.consts.ssl_cert_path) %}
  27. {% do c1.environment.add_env("SFTPGO_HTTPD__BINDINGS__0__CERTIFICATE_KEY_FILE", values.consts.ssl_key_path) %}
  28. {% endif %}
  29. {% do c1.environment.add_user_envs(values.sftpgo.additional_envs) %}
  30. {% do c1.add_port(values.network.web_port) %}
  31. {% for svc in values.network.sftpd_services if svc.enabled %}
  32. {% do c1.add_port(svc.port) %}
  33. {% do c1.environment.add_env("SFTPGO_SFTPD__BINDINGS__%d__PORT"|format(loop.index0), svc.port.port_number) %}
  34. {% do c1.environment.add_env("SFTPGO_SFTPD__BINDINGS__%d__ADDRESS"|format(loop.index0), "") %}
  35. {% else %}
  36. {% do c1.environment.add_env("SFTPGO_SFTPD__BINDINGS__0__PORT", 0) %}
  37. {% endfor %}
  38. {% for svc in values.network.ftpd_services if svc.enabled %}
  39. {% do c1.add_port(svc.port) %}
  40. {% do c1.environment.add_env("SFTPGO_FTPD__BINDINGS__%d__PORT"|format(loop.index0), svc.port.port_number) %}
  41. {% do c1.environment.add_env("SFTPGO_FTPD__BINDINGS__%d__ADDRESS"|format(loop.index0), "") %}
  42. {% endfor %}
  43. {% for svc in values.network.webdavd_services if svc.enabled %}
  44. {% do c1.add_port(svc.port) %}
  45. {% do c1.environment.add_env("SFTPGO_WEBDAVD__BINDINGS__%d__PORT"|format(loop.index0), svc.port.port_number) %}
  46. {% do c1.environment.add_env("SFTPGO_WEBDAVD__BINDINGS__%d__ADDRESS"|format(loop.index0), "") %}
  47. {% endfor %}
  48. {% if values.network.ftpd_services %}
  49. {% do c1.environment.add_env("SFTPGO_FTPD__PASSIVE_PORT_RANGE__START", values.network.ftpd_passive_port_range.start) %}
  50. {% do c1.environment.add_env("SFTPGO_FTPD__PASSIVE_PORT_RANGE__END", values.network.ftpd_passive_port_range.end) %}
  51. {% for port in range(values.network.ftpd_passive_port_range.start, values.network.ftpd_passive_port_range.end+1) %}
  52. {% do c1.add_port({
  53. "port_number": port,
  54. "bind_mode": values.network.ftpd_passive_port_range.bind_mode,
  55. "host_ips": values.network.ftpd_passive_port_range.host_ips
  56. }) %}
  57. {% endfor %}
  58. {% endif %}
  59. {% if values.network.telemetry_port.bind_mode %}
  60. {% do c1.add_port(values.network.telemetry_port) %}
  61. {% do c1.environment.add_env("SFTPGO_TELEMETRY__BIND_PORT", values.network.telemetry_port.port_number) %}
  62. {% do c1.environment.add_env("SFTPGO_TELEMETRY__BIND_ADDRESS", "") %}
  63. {% if values.network.certificate_id %}
  64. {% do c1.environment.add_env("SFTPGO_TELEMETRY__CERTIFICATE_FILE", values.consts.ssl_cert_path) %}
  65. {% do c1.environment.add_env("SFTPGO_TELEMETRY__CERTIFICATE_KEY_FILE", values.consts.ssl_key_path) %}
  66. {% endif %}
  67. {% endif %}
  68. {% do c1.add_storage(values.consts.config_dir_path, values.storage.config) %}
  69. {% do perm_container.add_or_skip_action("config", values.storage.config, perms_config) %}
  70. {% do c1.add_storage(values.consts.data_dir_path, values.storage.data) %}
  71. {% do perm_container.add_or_skip_action("data", values.storage.data, perms_config) %}
  72. {% do c1.add_storage(values.consts.backups_dir_path, values.storage.backups) %}
  73. {% do perm_container.add_or_skip_action("backups", values.storage.backups, perms_config) %}
  74. {% for store in values.storage.additional_storage %}
  75. {% do c1.add_storage(store.mount_path, store) %}
  76. {% do perm_container.add_or_skip_action(store.mount_path, store, perms_config) %}
  77. {% endfor %}
  78. {% if perm_container.has_actions() %}
  79. {% do perm_container.activate() %}
  80. {% do c1.depends.add_dependency(values.consts.perms_container_name, "service_completed_successfully") %}
  81. {% endif %}
  82. {% do tpl.portals.add(values.network.web_port, {"path": "/web/admin", "scheme": proto}) %}
  83. {{ tpl.render() | tojson }}