|  | 
|  | 1 | +version: '3.7' | 
|  | 2 | + | 
|  | 3 | +services: | 
|  | 4 | + gitlab: | 
|  | 5 | + image: ${DOCKER_IMAGE_GITLAB} | 
|  | 6 | + container_name: ${SERVICE_NAME}_${CONTAINER_NAME_GITLAB} | 
|  | 7 | + restart: always | 
|  | 8 | + depends_on: | 
|  | 9 | + - postgresql | 
|  | 10 | + - redis | 
|  | 11 | + ports: | 
|  | 12 | + - "${GITLAB_SSH_PORT}:22" | 
|  | 13 | + expose: | 
|  | 14 | + - 80 | 
|  | 15 | + # labels: | 
|  | 16 | + # - "traefik.enable=true" | 
|  | 17 | + # - "traefik.http.routers.gitlab-server.entrypoints=https" | 
|  | 18 | + # - "traefik.http.routers.gitlab-server.rule=Host(`${GITLAB_HOST}`)" | 
|  | 19 | + # - "traefik.http.routers.gitlab-server.tls=true" | 
|  | 20 | + # - "traefik.http.routers.gitlab-server.tls.certresolver=letsEncrypt" | 
|  | 21 | + # - "traefik.http.services.gitlab-server-service.loadbalancer.server.port=80" | 
|  | 22 | + # - "traefik.docker.network=webproxy" | 
|  | 23 | + volumes: | 
|  | 24 | + - ${SERVICE_DATA}/${SERVICE_NAME}/gitlab:/home/git/data:Z | 
|  | 25 | + - ${SERVICE_DATA}/${SERVICE_NAME}/certs:/certs | 
|  | 26 | + environment: | 
|  | 27 | + - DEBUG=false | 
|  | 28 | + | 
|  | 29 | + - DB_ADAPTER=postgresql | 
|  | 30 | + - DB_HOST=${SERVICE_NAME}_${CONTAINER_NAME_PGSQL} | 
|  | 31 | + - DB_PORT=5432 | 
|  | 32 | + - DB_USER=${DB_USER} | 
|  | 33 | + - DB_PASS=${DB_PASS} | 
|  | 34 | + - DB_NAME=${DB_NAME} | 
|  | 35 | + | 
|  | 36 | + - REDIS_HOST=${SERVICE_NAME}_${CONTAINER_NAME_REDIS} | 
|  | 37 | + - REDIS_PORT=6379 | 
|  | 38 | + | 
|  | 39 | + - TZ=UTC | 
|  | 40 | + - GITLAB_TIMEZONE=${GITLAB_TIMEZONE} | 
|  | 41 | + | 
|  | 42 | + - GITLAB_HTTPS=false | 
|  | 43 | + - SSL_SELF_SIGNED=false | 
|  | 44 | + | 
|  | 45 | + - GITLAB_HOST=${GITLAB_HOST} | 
|  | 46 | + - GITLAB_PORT=80 | 
|  | 47 | + - GITLAB_SSH_PORT=${GITLAB_SSH_PORT} | 
|  | 48 | + - GITLAB_SECRETS_DB_KEY_BASE=${GITLAB_SECRETS_DB_KEY_BASE} | 
|  | 49 | + - GITLAB_SECRETS_SECRET_KEY_BASE=${GITLAB_SECRETS_SECRET_KEY_BASE} | 
|  | 50 | + - GITLAB_SECRETS_OTP_KEY_BASE=${GITLAB_SECRETS_OTP_KEY_BASE} | 
|  | 51 | + | 
|  | 52 | + - GITLAB_ROOT_PASSWORD=${GITLAB_ROOT_PASSWORD} | 
|  | 53 | + - GITLAB_ROOT_EMAIL=${GITLAB_ROOT_EMAIL} | 
|  | 54 | + | 
|  | 55 | + - GITLAB_NOTIFY_ON_BROKEN_BUILDS=true | 
|  | 56 | + - GITLAB_NOTIFY_PUSHER=false | 
|  | 57 | + | 
|  | 58 | + - GITLAB_EMAIL=${GITLAB_EMAIL} | 
|  | 59 | + - GITLAB_EMAIL_REPLY_TO=${GITLAB_EMAIL_REPLY_TO} | 
|  | 60 | + - GITLAB_INCOMING_EMAIL_ADDRESS=${GITLAB_INCOMING_EMAIL_ADDRESS} | 
|  | 61 | + | 
|  | 62 | + - GITLAB_PAGES_ENABLED=false | 
|  | 63 | + | 
|  | 64 | + - SMTP_ENABLED=true | 
|  | 65 | + - SMTP_DOMAIN=${SMTP_DOMAIN} | 
|  | 66 | + - SMTP_HOST=${SMTP_HOST} | 
|  | 67 | + - SMTP_PORT=${SMTP_PORT} | 
|  | 68 | + - SMTP_USER=${SMTP_USER} | 
|  | 69 | + - SMTP_PASS=${SMTP_PASS} | 
|  | 70 | + - SMTP_STARTTLS=${SMTP_STARTTLS} | 
|  | 71 | + - SMTP_AUTHENTICATION=${SMTP_AUTHENTICATION} | 
|  | 72 | + | 
|  | 73 | + - IMAP_ENABLED=false | 
|  | 74 | + - LDAP_ENABLED=false | 
|  | 75 | + | 
|  | 76 | + - GITLAB_REGISTRY_ENABLED=true | 
|  | 77 | + - GITLAB_REGISTRY_HOST=${REGISTRY_HOST} | 
|  | 78 | + - GITLAB_REGISTRY_API_URL=http://registry:5000/ | 
|  | 79 | + - GITLAB_REGISTRY_KEY_PATH=/certs/registry.key | 
|  | 80 | + healthcheck: | 
|  | 81 | + test: ["CMD", "/usr/local/sbin/healthcheck"] | 
|  | 82 | + interval: 1m | 
|  | 83 | + timeout: 5s | 
|  | 84 | + retries: 5 | 
|  | 85 | + start_period: 2m | 
|  | 86 | + networks: | 
|  | 87 | + # - webproxy | 
|  | 88 | + - service | 
|  | 89 | + | 
|  | 90 | + registry: | 
|  | 91 | + image: ${DOCKER_IMAGE_REGISTRY} | 
|  | 92 | + container_name: ${SERVICE_NAME}_${CONTAINER_NAME_REGISTRY} | 
|  | 93 | + restart: always | 
|  | 94 | + expose: | 
|  | 95 | + - 5000 | 
|  | 96 | + # labels: | 
|  | 97 | + # - "traefik.enable=true" | 
|  | 98 | + # - "traefik.http.routers.gitlab-registry.entrypoints=https" | 
|  | 99 | + # - "traefik.http.routers.gitlab-registry.rule=Host(`${REGISTRY_HOST}`)" | 
|  | 100 | + # - "traefik.http.routers.gitlab-registry.tls=true" | 
|  | 101 | + # - "traefik.http.routers.gitlab-registry.tls.certresolver=letsEncrypt" | 
|  | 102 | + # - "traefik.http.services.gitlab-registry-service.loadbalancer.server.port=5000" | 
|  | 103 | + # - "traefik.docker.network=webproxy" | 
|  | 104 | + volumes: | 
|  | 105 | + - ${SERVICE_DATA}/${SERVICE_NAME}/gitlab/shared/registry:/registry | 
|  | 106 | + - ${SERVICE_DATA}/${SERVICE_NAME}/certs:/certs | 
|  | 107 | + environment: | 
|  | 108 | + - REGISTRY_AUTH_TOKEN_AUTOREDIRECT=false | 
|  | 109 | + - REGISTRY_LOG_LEVEL=debug | 
|  | 110 | + - REGISTRY_STORAGE_FILESYSTEM_ROOTDIRECTORY=/registry | 
|  | 111 | + - REGISTRY_AUTH_TOKEN_REALM=https://${GITLAB_HOST}/jwt/auth | 
|  | 112 | + - REGISTRY_AUTH_TOKEN_SERVICE=container_registry | 
|  | 113 | + - REGISTRY_AUTH_TOKEN_ISSUER=gitlab-issuer | 
|  | 114 | + - REGISTRY_AUTH_TOKEN_ROOTCERTBUNDLE=/certs/registry.crt | 
|  | 115 | + - REGISTRY_STORAGE_DELETE_ENABLED=true | 
|  | 116 | + networks: | 
|  | 117 | + # - webproxy | 
|  | 118 | + - service | 
|  | 119 | + | 
|  | 120 | + postgresql: | 
|  | 121 | + image: ${DOCKER_IMAGE_PGSQL} | 
|  | 122 | + container_name: ${SERVICE_NAME}_${CONTAINER_NAME_PGSQL} | 
|  | 123 | + restart: always | 
|  | 124 | + environment: | 
|  | 125 | + - DB_USER=${DB_USER} | 
|  | 126 | + - DB_PASS=${DB_PASS} | 
|  | 127 | + - DB_NAME=${DB_NAME} | 
|  | 128 | + - DB_EXTENSION=pg_trgm | 
|  | 129 | + volumes: | 
|  | 130 | + - ${SERVICE_DATA}/${SERVICE_NAME}/postgresql:/var/lib/postgresql:Z | 
|  | 131 | + networks: | 
|  | 132 | + - service | 
|  | 133 | + | 
|  | 134 | + redis: | 
|  | 135 | + restart: always | 
|  | 136 | + image: ${DOCKER_IMAGE_REDIS} | 
|  | 137 | + container_name: ${SERVICE_NAME}_${CONTAINER_NAME_REDIS} | 
|  | 138 | + command: | 
|  | 139 | + - --loglevel warning | 
|  | 140 | + volumes: | 
|  | 141 | + - ${SERVICE_DATA}/${SERVICE_NAME}/redis:/var/lib/redis:Z | 
|  | 142 | + networks: | 
|  | 143 | + - service | 
|  | 144 | + | 
|  | 145 | + runner_1: | 
|  | 146 | + image: ${DOCKER_IMAGE_RUNNER} | 
|  | 147 | + container_name: ${SERVICE_NAME}_${CONTAINER_NAME_RUNNER}_1 | 
|  | 148 | + restart: always | 
|  | 149 | + depends_on: | 
|  | 150 | + - gitlab | 
|  | 151 | + volumes: | 
|  | 152 | + - ${SERVICE_DATA}/${SERVICE_NAME}/gitlab-runner_1:/etc/gitlab-runner | 
|  | 153 | + - /var/run/docker.sock:/var/run/docker.sock | 
|  | 154 | + command: --debug run --user=gitlab-runner --working-directory=/home/gitlab-runner | 
|  | 155 | + environment: | 
|  | 156 | + - CI_SERVER_URL=https://${GITLAB_HOST} | 
|  | 157 | + - CI_SERVER_LOCAL_IP=${CI_SERVER_LOCAL_IP} | 
|  | 158 | + - CI_SERVER_WITH_RUNNER=${CI_SERVER_WITH_RUNNER} | 
|  | 159 | + - RUNNER_TOKEN=${RUNNER_TOKEN} | 
|  | 160 | + - RUNNER_DESCRIPTION=gitab-runner_1 | 
|  | 161 | + - RUNNER_EXECUTOR=docker | 
|  | 162 | + - DOCKER_IMAGE=gitlab/gitlab-runner-helper:x86_64-latest | 
|  | 163 | + networks: | 
|  | 164 | + - service | 
|  | 165 | + | 
|  | 166 | + runner_2: | 
|  | 167 | + image: ${DOCKER_IMAGE_RUNNER} | 
|  | 168 | + container_name: ${SERVICE_NAME}_${CONTAINER_NAME_RUNNER}_2 | 
|  | 169 | + restart: always | 
|  | 170 | + depends_on: | 
|  | 171 | + - gitlab | 
|  | 172 | + volumes: | 
|  | 173 | + - ${SERVICE_DATA}/${SERVICE_NAME}/gitlab-runner_2:/etc/gitlab-runner | 
|  | 174 | + - /var/run/docker.sock:/var/run/docker.sock | 
|  | 175 | + command: --debug run --user=gitlab-runner --working-directory=/home/gitlab-runner | 
|  | 176 | + environment: | 
|  | 177 | + - CI_SERVER_URL=https://${GITLAB_HOST} | 
|  | 178 | + - CI_SERVER_WITH_RUNNER=${CI_SERVER_WITH_RUNNER} | 
|  | 179 | + - CI_SERVER_LOCAL_IP=${CI_SERVER_LOCAL_IP} | 
|  | 180 | + - RUNNER_TOKEN=${RUNNER_TOKEN} | 
|  | 181 | + - RUNNER_DESCRIPTION=gitab-runner_2 | 
|  | 182 | + - RUNNER_EXECUTOR=docker | 
|  | 183 | + - DOCKER_IMAGE=gitlab/gitlab-runner-helper:x86_64-latest | 
|  | 184 | + networks: | 
|  | 185 | + - service | 
|  | 186 | + | 
|  | 187 | + runner_3: | 
|  | 188 | + image: ${DOCKER_IMAGE_RUNNER} | 
|  | 189 | + container_name: ${SERVICE_NAME}_${CONTAINER_NAME_RUNNER}_3 | 
|  | 190 | + restart: always | 
|  | 191 | + depends_on: | 
|  | 192 | + - gitlab | 
|  | 193 | + volumes: | 
|  | 194 | + - ${SERVICE_DATA}/${SERVICE_NAME}/gitlab-runner_3:/etc/gitlab-runner | 
|  | 195 | + - /var/run/docker.sock:/var/run/docker.sock | 
|  | 196 | + command: --debug run --user=gitlab-runner --working-directory=/home/gitlab-runner | 
|  | 197 | + environment: | 
|  | 198 | + - CI_SERVER_URL=https://${GITLAB_HOST} | 
|  | 199 | + - CI_SERVER_WITH_RUNNER=${CI_SERVER_WITH_RUNNER} | 
|  | 200 | + - CI_SERVER_LOCAL_IP=${CI_SERVER_LOCAL_IP} | 
|  | 201 | + - RUNNER_TOKEN=${RUNNER_TOKEN} | 
|  | 202 | + - RUNNER_DESCRIPTION=gitab-runner_3 | 
|  | 203 | + - RUNNER_EXECUTOR=docker | 
|  | 204 | + - DOCKER_IMAGE=gitlab/gitlab-runner-helper:x86_64-latest | 
|  | 205 | + networks: | 
|  | 206 | + - service | 
|  | 207 | + | 
|  | 208 | + runner_4: | 
|  | 209 | + image: ${DOCKER_IMAGE_RUNNER} | 
|  | 210 | + container_name: ${SERVICE_NAME}_${CONTAINER_NAME_RUNNER}_4 | 
|  | 211 | + restart: always | 
|  | 212 | + depends_on: | 
|  | 213 | + - gitlab | 
|  | 214 | + volumes: | 
|  | 215 | + - ${SERVICE_DATA}/${SERVICE_NAME}/gitlab-runner_4:/etc/gitlab-runner | 
|  | 216 | + - /var/run/docker.sock:/var/run/docker.sock | 
|  | 217 | + command: --debug run --user=gitlab-runner --working-directory=/home/gitlab-runner | 
|  | 218 | + environment: | 
|  | 219 | + - CI_SERVER_URL=https://${GITLAB_HOST} | 
|  | 220 | + - CI_SERVER_WITH_RUNNER=${CI_SERVER_WITH_RUNNER} | 
|  | 221 | + - CI_SERVER_LOCAL_IP=${CI_SERVER_LOCAL_IP} | 
|  | 222 | + - RUNNER_TOKEN=${RUNNER_TOKEN} | 
|  | 223 | + - RUNNER_DESCRIPTION=gitab-runner_4 | 
|  | 224 | + - RUNNER_EXECUTOR=docker | 
|  | 225 | + - DOCKER_IMAGE=gitlab/gitlab-runner-helper:x86_64-latest | 
|  | 226 | + networks: | 
|  | 227 | + - service | 
|  | 228 | + | 
|  | 229 | +networks: | 
|  | 230 | + service: | 
|  | 231 | + name: ${SERVICE_NAME} | 
|  | 232 | + # webproxy: | 
|  | 233 | + # external: | 
|  | 234 | + # name: ${WEBPROXY_NETWORK} | 
0 commit comments