fix docler-compsoe labales
This commit is contained in:
parent
6fb9512a0c
commit
d9c8b7d661
|
|
@ -45,14 +45,17 @@ services:
|
||||||
- "traefik.enable=true"
|
- "traefik.enable=true"
|
||||||
- "traefik.docker.network=traefik_default"
|
- "traefik.docker.network=traefik_default"
|
||||||
|
|
||||||
# HTTP → HTTPS redirect
|
# -------------------------------
|
||||||
- "traefik.http.routers.nextcloud.entrypoints=web"
|
# HTTP router (for ACME challenge)
|
||||||
- "traefik.http.routers.nextcloud.rule=Host(`nextcloud.rozic-dev.com`)"
|
# -------------------------------
|
||||||
- "traefik.http.routers.nextcloud.middlewares=nextcloud-https-redirect"
|
- "traefik.http.routers.nextcloud-http.entrypoints=web"
|
||||||
- "traefik.http.middlewares.nextcloud-https-redirect.redirectscheme.scheme=https"
|
- "traefik.http.routers.nextcloud-http.rule=Host(`nextcloud.rozic-dev.com`)"
|
||||||
- "traefik.http.middlewares.nextcloud-https-redirect.redirectscheme.permanent=true"
|
- "traefik.http.routers.nextcloud-http.tls.certresolver=letsencrypt"
|
||||||
|
- "traefik.http.routers.nextcloud-http.service=noop@internal"
|
||||||
|
|
||||||
# HTTPS Router
|
# -------------------------------
|
||||||
|
# HTTPS router (real traffic)
|
||||||
|
# -------------------------------
|
||||||
- "traefik.http.routers.nextcloud-secure.entrypoints=websecure"
|
- "traefik.http.routers.nextcloud-secure.entrypoints=websecure"
|
||||||
- "traefik.http.routers.nextcloud-secure.rule=Host(`nextcloud.rozic-dev.com`)"
|
- "traefik.http.routers.nextcloud-secure.rule=Host(`nextcloud.rozic-dev.com`)"
|
||||||
- "traefik.http.routers.nextcloud-secure.tls=true"
|
- "traefik.http.routers.nextcloud-secure.tls=true"
|
||||||
|
|
@ -60,11 +63,15 @@ services:
|
||||||
- "traefik.http.routers.nextcloud-secure.service=nextcloud"
|
- "traefik.http.routers.nextcloud-secure.service=nextcloud"
|
||||||
- "traefik.http.routers.nextcloud-secure.middlewares=nextcloud-headers"
|
- "traefik.http.routers.nextcloud-secure.middlewares=nextcloud-headers"
|
||||||
|
|
||||||
# Nextcloud-specific security headers
|
# -------------------------------
|
||||||
|
# Security headers middleware
|
||||||
|
# -------------------------------
|
||||||
- "traefik.http.middlewares.nextcloud-headers.headers.customFrameOptionsValue=SAMEORIGIN"
|
- "traefik.http.middlewares.nextcloud-headers.headers.customFrameOptionsValue=SAMEORIGIN"
|
||||||
- "traefik.http.middlewares.nextcloud-headers.headers.customResponseHeaders.Strict-Transport-Security=max-age=15552000; includeSubDomains"
|
- "traefik.http.middlewares.nextcloud-headers.headers.customResponseHeaders.Strict-Transport-Security=max-age=15552000; includeSubDomains"
|
||||||
|
|
||||||
# Internal port inside container
|
# -------------------------------
|
||||||
|
# Service (internal port)
|
||||||
|
# -------------------------------
|
||||||
- "traefik.http.services.nextcloud.loadbalancer.server.port=80"
|
- "traefik.http.services.nextcloud.loadbalancer.server.port=80"
|
||||||
|
|
||||||
mariadb:
|
mariadb:
|
||||||
|
|
|
||||||
Loading…
Reference in a new issue