-
Notifications
You must be signed in to change notification settings - Fork 0
/
docker-compose.yml
142 lines (130 loc) · 3.47 KB
/
docker-compose.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
version: '3.9'
x-kong-config: &kong-env
KONG_DATABASE: ${KONG_DATABASE:-off}
KONG_PG_DATABASE: ${KONG_PG_DATABASE:-kong}
KONG_PG_HOST: ${KONG_PG_HOST:-kong-db}
KONG_PG_USER: ${KONG_PG_USER:-kong}
KONG_PG_PASSWORD: ${KONG_PG_PASSWORD:-kong}
x-postgres-config: &postgres-env
POSTGRES_DB: ${POSTGRES_DB:-kong}
POSTGRES_USER: ${POSTGRES_USER:-kong}
POSTGRES_PASSWORD: ${POSTGRES_PASSWORD:-kong}
volumes:
kong_data: {}
kong_prefix_vol:
driver_opts:
type: tmpfs
device: tmpfs
kong_tmp_vol:
driver_opts:
type: tmpfs
device: tmpfs
networks:
kong-net:
external: false
services:
kong-db:
image: postgres:9.5
profiles: ["database", "migrations"]
environment:
<<: *postgres-env
healthcheck:
test: ["CMD", "pg_isready", "-U", "${KONG_PG_USER:-kong}"]
interval: 30s
timeout: 30s
retries: 3
restart: on-failure
stdin_open: true
tty: true
networks:
- kong-net
volumes:
- kong_data:/var/lib/postgresql/data
kong-migrations:
image: kong:latest
command: kong migrations bootstrap
profiles: ["database", "migrations"]
depends_on:
- kong-db
environment:
<<: *kong-env
networks:
- kong-net
restart: on-failure
kong-migrations-up:
image: kong:latest
command: kong migrations up && kong migrations finish
profiles: ["database", "migrations"]
depends_on:
- kong-db
environment:
<<: *kong-env
networks:
- kong-net
restart: on-failure
kong-setup:
build:
context: ./setup
image: "alpine:latest"
profiles: ["setup"]
networks:
- kong-net
kong-deck:
image: "kong/deck"
profiles: ["cli"]
environment:
DECK_KONG_ADDR: "http://kong:8001"
networks:
- kong-net
volumes:
- ./config:/opt/kong
kong:
image: kong:latest
user: "${KONG_USER:-kong}"
environment:
<<: *kong-env
KONG_ADMIN_ACCESS_LOG: "${KONG_ADMIN_ACCESS_LOG:-/dev/stdout}"
KONG_ADMIN_ERROR_LOG: "${KONG_ADMIN_ERROR_LOG:-/dev/stderr}"
KONG_PROXY_LISTEN: "${KONG_PROXY_LISTEN:-0.0.0.0:8000}"
KONG_ADMIN_LISTEN: "${KONG_ADMIN_LISTEN:-0.0.0.0:8001}"
KONG_PROXY_ACCESS_LOG: "${KONG_PROXY_ACCESS_LOG:-/dev/stdout}"
KONG_PROXY_ERROR_LOG: "${KONG_PROXY_ERROR_LOG:-/dev/stderr}"
KONG_PREFIX: "${KONG_PREFIX:-/var/run/kong}"
KONG_DECLARATIVE_CONFIG: "${KONG_DECLARATIVE_CONFIG:-/opt/kong/kong.yaml}"
networks:
- kong-net
ports:
- "${KONG_INBOUND_PROXY_LISTEN:-0.0.0.0}:8000:8000/tcp"
- "${KONG_INBOUND_SSL_PROXY_LISTEN:-0.0.0.0}:8443:8443/tcp"
- "127.0.0.1:8001:8001/tcp"
- "127.0.0.1:8444:8444/tcp"
healthcheck:
test: ["CMD", "kong", "health"]
interval: 10s
timeout: 10s
retries: 10
restart: on-failure:5
read_only: true
volumes:
- kong_prefix_vol:${KONG_PREFIX:-/var/run/kong}
- kong_tmp_vol:/tmp
- ./config:/opt/kong
security_opt:
- no-new-privileges
kong-dashboard:
image: pantsel/konga
profiles: ["database"]
depends_on:
- kong-db
ports:
- 1337:1337
environment:
TOKEN_SECRET: ${KONGA_NODE_ENV:-production}
TOKEN_SECRET: ${KONGA_TOKEN_SECRET:-kong}
DB_ADAPTER: ${KONGA_DB_ADAPTER:-postgres}
DB_HOST: ${KONGA_PG_HOST:-kong-db}
DB_USER: ${KONGA_PG_USER:-konga}
DB_PASSWORD: ${KONGA_PG_PASSWORD:-konga}
DB_DATABASE: ${KONGA_PG_DATABASE:-konga}
networks:
- kong-net