-
Notifications
You must be signed in to change notification settings - Fork 1
/
Copy pathdocker-compose.yml
146 lines (140 loc) · 2.8 KB
/
docker-compose.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
volumes:
store:
driver: local
services:
extract:
build:
context: .
dockerfile: ./ext/Dockerfile
ports:
- "8080:8080"
user: user
cap_drop:
- ALL
- SETUID
- SETGID
security_opt:
- no-new-privileges:true
mem_limit: 1024M
mem_reservation: 512M
healthcheck:
test: ["CMD", "curl", "-sf", "http://extract:8080/"]
interval: 30s
timeout: 5s
retries: 3
restart: always
subset:
build:
context: .
dockerfile: ./sub/Dockerfile
ports:
- "7080:7080"
user: user
cap_drop:
- ALL
- SETUID
- SETGID
security_opt:
- no-new-privileges:true
mem_limit: 1024M
mem_reservation: 512M
healthcheck:
test: ["CMD", "curl", "-sf", "http://subset:7080/"]
interval: 30s
timeout: 5s
retries: 3
restart: always
depends_on:
extract:
condition: service_healthy
write:
build:
context: .
dockerfile: ./wrt/Dockerfile
environment:
DB_NAME: idle
DB_USER: user
DB_PASS: pass
ports:
- "6080:6080"
user: user
cap_drop:
- ALL
- SETUID
- SETGID
security_opt:
- no-new-privileges:true
mem_limit: 1024M
mem_reservation: 512M
healthcheck:
test: ["CMD", "curl", "-sf", "http://write:6080/"]
interval: 30s
timeout: 5s
retries: 3
restart: always
depends_on:
subset:
condition: service_healthy
database:
condition: service_healthy
read:
build:
context: .
dockerfile: ./rdb/Dockerfile
environment:
DB_NAME: idle
DB_USER: user
DB_PASS: pass
ports:
- "4080:4080"
user: user
cap_drop:
- ALL
- SETUID
- SETGID
security_opt:
- no-new-privileges:true
mem_limit: 1024M
mem_reservation: 512M
healthcheck:
test: ["CMD", "curl", "-sf", "http://read:4080/"]
interval: 30s
timeout: 5s
retries: 3
restart: always
depends_on:
database:
condition: service_healthy
database:
image: postgres:16
environment:
POSTGRES_DB: idle
POSTGRES_USER: user
POSTGRES_PASSWORD: pass
ports:
- "5432:5432"
security_opt:
- no-new-privileges:true
volumes:
- store:/var/lib/postgresql/data
- ./wrt/conf/sql/init.sql:/docker-entrypoint-initdb.d/init.sql
healthcheck:
test: ["CMD", "pg_isready", "-U", "user", "-d", "idle"]
interval: 60s
timeout: 10s
retries: 3
restart: always
interface:
build:
context: .
dockerfile: ./gui/Dockerfile
ports:
- "3080:3080"
user: user
cap_drop:
- ALL
- SETUID
- SETGID
security_opt:
- no-new-privileges:true
restart: always