Przeglądaj źródła

Merge pull request #487 from bam80/podman

add support for unprivileged podman container
pull/474/merge
Sergei Arkhipov 1 dzień temu
rodzic
commit
c8cc317b48
No account linked to committer's email address
1 zmienionych plików z 6 dodań i 4 usunięć
  1. 6
    4
      contrib/sni-router/docker-compose.yml

+ 6
- 4
contrib/sni-router/docker-compose.yml Wyświetl plik

23
       - "443:443"
23
       - "443:443"
24
       - "80:80"
24
       - "80:80"
25
     volumes:
25
     volumes:
26
-      - ./haproxy.cfg:/usr/local/etc/haproxy/haproxy.cfg:ro
26
+      - ./haproxy.cfg:/usr/local/etc/haproxy/haproxy.cfg:ro,Z
27
     depends_on:
27
     depends_on:
28
       - mtg
28
       - mtg
29
       - web
29
       - web
30
     restart: unless-stopped
30
     restart: unless-stopped
31
+    sysctls:
32
+      - net.ipv4.ip_unprivileged_port_start=80
31
 
33
 
32
   mtg:
34
   mtg:
33
     image: nineseconds/mtg:2
35
     image: nineseconds/mtg:2
34
     volumes:
36
     volumes:
35
-      - ./mtg-config.toml:/config/config.toml:ro
37
+      - ./mtg-config.toml:/config/config.toml:ro,Z
36
     expose:
38
     expose:
37
       - "3128"
39
       - "3128"
38
     restart: unless-stopped
40
     restart: unless-stopped
42
   web:
44
   web:
43
     image: caddy:alpine
45
     image: caddy:alpine
44
     volumes:
46
     volumes:
45
-      - ./Caddyfile:/etc/caddy/Caddyfile:ro
47
+      - ./Caddyfile:/etc/caddy/Caddyfile:ro,Z
46
       - caddy_data:/data
48
       - caddy_data:/data
47
-      - ./www:/srv:ro
49
+      - ./www:/srv:ro,Z
48
     expose:
50
     expose:
49
       - "80"
51
       - "80"
50
       - "8443"
52
       - "8443"

Ładowanie…
Anuluj
Zapisz