docker compose review

This commit is contained in:
2026-03-21 22:43:10 +01:00
parent 32c6bd56a5
commit 230f018f47

View File

@@ -3,14 +3,14 @@ version: "3.8"
services: services:
postgres: postgres:
image: postgres:16-alpine image: postgres:16-alpine
container_name: auditshield-db container_name: auditshield-db-prod
restart: unless-stopped restart: always
environment: environment:
POSTGRES_DB: ${POSTGRES_DB:-auditshield} POSTGRES_DB: ${POSTGRES_DB:-auditshield}
POSTGRES_USER: ${POSTGRES_USER:-auditshield} POSTGRES_USER: ${POSTGRES_USER:-auditshield}
POSTGRES_PASSWORD: ${POSTGRES_PASSWORD:?POSTGRES_PASSWORD required} POSTGRES_PASSWORD: ${POSTGRES_PASSWORD:?POSTGRES_PASSWORD required}
volumes: volumes:
- postgres_data:/var/lib/postgresql/data - postgres_data_prod:/var/lib/postgresql/data
healthcheck: healthcheck:
test: ["CMD-SHELL", "pg_isready -U ${POSTGRES_USER:-auditshield}"] test: ["CMD-SHELL", "pg_isready -U ${POSTGRES_USER:-auditshield}"]
interval: 10s interval: 10s
@@ -21,36 +21,35 @@ services:
redis: redis:
image: redis:7-alpine image: redis:7-alpine
container_name: auditshield-redis container_name: auditshield-redis-prod
restart: unless-stopped restart: always
networks: networks:
- internal - internal
backend: backend:
build: image: ${REGISTRY}/auditshield-backend:${TAG:-latest}
context: ../backend container_name: auditshield-backend-prod
dockerfile: Dockerfile restart: always
container_name: auditshield-backend env_file: .env
restart: unless-stopped
env_file: ../.env
environment: environment:
DATABASE_URL: postgresql://${POSTGRES_USER:-auditshield}:${POSTGRES_PASSWORD}@postgres:5432/${POSTGRES_DB:-auditshield} DATABASE_URL: postgresql://${POSTGRES_USER:-auditshield}:${POSTGRES_PASSWORD}@postgres:5432/${POSTGRES_DB:-auditshield}
REDIS_URL: redis://redis:6379/0 REDIS_URL: redis://redis:6379/0
depends_on: depends_on:
postgres: postgres:
condition: service_healthy condition: service_healthy
redis:
condition: service_started
networks: networks:
- internal - internal
- proxy - proxy
labels:
- "traefik.enable=true"
- "traefik.http.routers.auditshield-api.rule=Host(`${DOMAIN}`) && PathPrefix(`/api`)"
- "traefik.http.routers.auditshield-api.entrypoints=websecure"
- "traefik.http.routers.auditshield-api.tls.certresolver=letsencrypt"
frontend: frontend:
build: image: ${REGISTRY}/auditshield-frontend:${TAG:-latest}
context: ../frontend container_name: auditshield-frontend-prod
dockerfile: Dockerfile restart: always
container_name: auditshield-frontend
restart: unless-stopped
environment: environment:
NEXT_PUBLIC_API_URL: "" NEXT_PUBLIC_API_URL: ""
depends_on: depends_on:
@@ -58,9 +57,14 @@ services:
networks: networks:
- internal - internal
- proxy - proxy
labels:
- "traefik.enable=true"
- "traefik.http.routers.auditshield.rule=Host(`${DOMAIN}`)"
- "traefik.http.routers.auditshield.entrypoints=websecure"
- "traefik.http.routers.auditshield.tls.certresolver=letsencrypt"
volumes: volumes:
postgres_data: postgres_data_prod:
networks: networks:
internal: internal: