services: # Gitea - Self-hosted Git service gitea: image: ${DEV_GITEA_IMAGE:-gitea/gitea:latest} container_name: ${DEV_COMPOSE_PROJECT_NAME}_gitea restart: unless-stopped depends_on: - gitea_runner volumes: - gitea_data:/data - gitea_config:/etc/gitea - /etc/timezone:/etc/timezone:ro - /etc/localtime:/etc/localtime:ro - ./dev/themes:/data/gitea/public/assets/css:ro environment: TZ: ${TIMEZONE:-Europe/Berlin} USER_UID: 1000 USER_GID: 1000 GITEA__database__DB_TYPE: postgres GITEA__database__HOST: ${CORE_DB_HOST}:${CORE_DB_PORT} GITEA__database__NAME: ${DEV_GITEA_DB_NAME} GITEA__database__USER: ${DB_USER} GITEA__database__PASSWD: ${DB_PASSWORD} GITEA__server__DOMAIN: ${DEV_GITEA_TRAEFIK_HOST} GITEA__server__SSH_DOMAIN: ${DEV_GITEA_TRAEFIK_HOST} GITEA__server__ROOT_URL: https://${DEV_GITEA_TRAEFIK_HOST}/ GITEA__server__PROTOCOL: http GITEA__server__HTTP_PORT: 3000 GITEA__server__START_SSH_SERVER: true GITEA__server__SSH_PORT: 22 GITEA__server__SSH_LISTEN_PORT: 2222 GITEA__mailer__ENABLED: true GITEA__mailer__PROTOCOL: smtps GITEA__mailer__SMTP_ADDR: ${EMAIL_SMTP_HOST} GITEA__mailer__SMTP_PORT: ${EMAIL_SMTP_PORT} GITEA__mailer__USER: ${EMAIL_SMTP_USER} GITEA__mailer__PASSWD: ${EMAIL_SMTP_PASSWORD} GITEA__mailer__FROM: ${EMAIL_FROM} GITEA__service__DISABLE_REGISTRATION: false GITEA__service__REQUIRE_SIGNIN_VIEW: false GITEA__packages__ENABLED: true GITEA__actions__ENABLED: true GITEA__ui__THEMES: gitea-auto,gitea-light,gitea-dark,auto,edge-auto,edge-dark,edge-light,everforest-auto,everforest-dark,everforest-light,gruvbox-auto,gruvbox-dark,gruvbox-light,gruvbox-material-auto,gruvbox-material-dark,gruvbox-material-light,nord,palenight,soft-era,sonokai,sonokai-andromeda,sonokai-atlantis,sonokai-espresso,sonokai-maia,sonokai-shusia GITEA__ui__DEFAULT_THEME: auto GITEA__ui__ENABLE_FEED: true GITEA__picture__ENABLE_FEDERATED_AVATAR: true GITEA__picture__AVATAR_UPLOAD_PATH: /data/gitea/avatars GITEA__picture__GRAVATAR_SOURCE: gravatar networks: - compose_network labels: - 'traefik.enable=${DEV_TRAEFIK_ENABLED}' # HTTP to HTTPS redirect - 'traefik.http.middlewares.${DEV_COMPOSE_PROJECT_NAME}-gitea-redirect-web-secure.redirectscheme.scheme=https' - 'traefik.http.routers.${DEV_COMPOSE_PROJECT_NAME}-gitea-web.middlewares=${DEV_COMPOSE_PROJECT_NAME}-gitea-redirect-web-secure' - 'traefik.http.routers.${DEV_COMPOSE_PROJECT_NAME}-gitea-web.rule=Host(`${DEV_GITEA_TRAEFIK_HOST}`)' - 'traefik.http.routers.${DEV_COMPOSE_PROJECT_NAME}-gitea-web.entrypoints=web' # HTTPS router - 'traefik.http.routers.${DEV_COMPOSE_PROJECT_NAME}-gitea-web-secure.rule=Host(`${DEV_GITEA_TRAEFIK_HOST}`)' - 'traefik.http.routers.${DEV_COMPOSE_PROJECT_NAME}-gitea-web-secure.tls.certresolver=resolver' - 'traefik.http.routers.${DEV_COMPOSE_PROJECT_NAME}-gitea-web-secure.entrypoints=web-secure' - 'traefik.http.middlewares.${DEV_COMPOSE_PROJECT_NAME}-gitea-web-secure-compress.compress=true' - 'traefik.http.routers.${DEV_COMPOSE_PROJECT_NAME}-gitea-web-secure.middlewares=${DEV_COMPOSE_PROJECT_NAME}-gitea-web-secure-compress,security-headers@file' # Service - 'traefik.http.services.${DEV_COMPOSE_PROJECT_NAME}-gitea-web-secure.loadbalancer.server.port=3000' - 'traefik.docker.network=${NETWORK_NAME}' # Watchtower - 'com.centurylinklabs.watchtower.enable=${WATCHTOWER_LABEL_ENABLE}' # Gitea Runner - Act runner for Gitea Actions gitea_runner: image: ${DEV_GITEA_RUNNER_IMAGE:-gitea/act_runner:latest} container_name: ${DEV_COMPOSE_PROJECT_NAME}_gitea_runner restart: unless-stopped volumes: - gitea_runner_data:/data - /var/run/docker.sock:/var/run/docker.sock environment: TZ: ${TIMEZONE:-Europe/Berlin} GITEA_INSTANCE_URL: https://${DEV_GITEA_TRAEFIK_HOST} GITEA_RUNNER_REGISTRATION_TOKEN: ${DEV_GITEA_RUNNER_TOKEN} GITEA_RUNNER_NAME: ${DEV_GITEA_RUNNER_NAME:-docker-runner} GITEA_RUNNER_LABELS: ubuntu-latest:docker://node:20-bookworm,ubuntu-22.04:docker://node:20-bookworm,ubuntu-20.04:docker://node:18-buster networks: - compose_network volumes: gitea_data: name: ${DEV_COMPOSE_PROJECT_NAME}_gitea_data gitea_config: name: ${DEV_COMPOSE_PROJECT_NAME}_gitea_config gitea_runner_data: name: ${DEV_COMPOSE_PROJECT_NAME}_gitea_runner_data networks: compose_network: name: ${NETWORK_NAME} external: true