updated
This commit is contained in:
@@ -2,7 +2,7 @@ version: '3.8'
|
||||
|
||||
# ============================================================================
|
||||
# Recticel Quality Application - Docker Compose Configuration
|
||||
# Production-ready setup with health checks, logging, and resource limits
|
||||
# Simplified configuration - most settings are in .env file
|
||||
# ============================================================================
|
||||
|
||||
services:
|
||||
@@ -11,39 +11,27 @@ services:
|
||||
# ==========================================================================
|
||||
db:
|
||||
image: mariadb:11.3
|
||||
container_name: trasabilitate-db
|
||||
container_name: quality-app-db
|
||||
restart: unless-stopped
|
||||
|
||||
environment:
|
||||
# Root credentials
|
||||
MYSQL_ROOT_PASSWORD: ${MYSQL_ROOT_PASSWORD:-rootpassword}
|
||||
|
||||
# Application database and user
|
||||
MYSQL_DATABASE: ${DB_NAME:-trasabilitate}
|
||||
MYSQL_USER: ${DB_USER:-trasabilitate}
|
||||
MYSQL_PASSWORD: ${DB_PASSWORD:-Initial01!}
|
||||
|
||||
# Performance tuning
|
||||
MYSQL_INNODB_BUFFER_POOL_SIZE: ${MYSQL_BUFFER_POOL:-256M}
|
||||
MYSQL_MAX_CONNECTIONS: ${MYSQL_MAX_CONNECTIONS:-150}
|
||||
MYSQL_ROOT_PASSWORD: ${MYSQL_ROOT_PASSWORD}
|
||||
MYSQL_DATABASE: ${DB_NAME}
|
||||
MYSQL_USER: ${DB_USER}
|
||||
MYSQL_PASSWORD: ${DB_PASSWORD}
|
||||
MYSQL_INNODB_BUFFER_POOL_SIZE: ${MYSQL_BUFFER_POOL}
|
||||
MYSQL_MAX_CONNECTIONS: ${MYSQL_MAX_CONNECTIONS}
|
||||
|
||||
ports:
|
||||
- "${DB_PORT:-3306}:3306"
|
||||
- "${DB_PORT}:3306"
|
||||
|
||||
volumes:
|
||||
# Persistent database storage
|
||||
- ${DB_DATA_PATH:-/srv/docker-test/mariadb}:/var/lib/mysql
|
||||
|
||||
# Custom initialization scripts
|
||||
- ${DB_DATA_PATH}:/var/lib/mysql
|
||||
- ./init-db.sql:/docker-entrypoint-initdb.d/01-init.sql:ro
|
||||
|
||||
# Custom MariaDB configuration (optional)
|
||||
# - ./my.cnf:/etc/mysql/conf.d/custom.cnf:ro
|
||||
|
||||
networks:
|
||||
- recticel-network
|
||||
- quality-app-network
|
||||
|
||||
# Comprehensive health check
|
||||
healthcheck:
|
||||
test: ["CMD", "healthcheck.sh", "--connect", "--innodb_initialized"]
|
||||
interval: 10s
|
||||
@@ -51,22 +39,20 @@ services:
|
||||
retries: 5
|
||||
start_period: 30s
|
||||
|
||||
# Resource limits (adjust based on your server capacity)
|
||||
deploy:
|
||||
resources:
|
||||
limits:
|
||||
cpus: '2.0'
|
||||
memory: 1G
|
||||
cpus: ${DB_CPU_LIMIT}
|
||||
memory: ${DB_MEMORY_LIMIT}
|
||||
reservations:
|
||||
cpus: '0.5'
|
||||
memory: 256M
|
||||
cpus: ${DB_CPU_RESERVATION}
|
||||
memory: ${DB_MEMORY_RESERVATION}
|
||||
|
||||
# Logging configuration
|
||||
logging:
|
||||
driver: "json-file"
|
||||
driver: json-file
|
||||
options:
|
||||
max-size: "10m"
|
||||
max-file: "3"
|
||||
max-size: ${LOG_MAX_SIZE}
|
||||
max-file: ${DB_LOG_MAX_FILES}
|
||||
|
||||
# ==========================================================================
|
||||
# Flask Web Application Service
|
||||
@@ -76,101 +62,67 @@ services:
|
||||
context: .
|
||||
dockerfile: Dockerfile
|
||||
args:
|
||||
BUILD_DATE: ${BUILD_DATE:-}
|
||||
VERSION: ${VERSION:-1.0.0}
|
||||
VCS_REF: ${VCS_REF:-}
|
||||
BUILD_DATE: ${BUILD_DATE}
|
||||
VERSION: ${VERSION}
|
||||
VCS_REF: ${VCS_REF}
|
||||
|
||||
image: recticel-quality-app:${VERSION:-latest}
|
||||
container_name: recticel-app
|
||||
image: trasabilitate-quality-app:${VERSION}
|
||||
container_name: quality-app
|
||||
restart: unless-stopped
|
||||
|
||||
# Wait for database to be healthy before starting
|
||||
depends_on:
|
||||
db:
|
||||
condition: service_healthy
|
||||
|
||||
environment:
|
||||
# ======================================================================
|
||||
# Database Connection Settings
|
||||
# ======================================================================
|
||||
DB_HOST: db
|
||||
DB_PORT: ${DB_PORT:-3306}
|
||||
DB_NAME: ${DB_NAME:-trasabilitate}
|
||||
DB_USER: ${DB_USER:-trasabilitate}
|
||||
DB_PASSWORD: ${DB_PASSWORD:-Initial01!}
|
||||
# Database connection
|
||||
DB_HOST: ${DB_HOST}
|
||||
DB_PORT: ${DB_PORT}
|
||||
DB_NAME: ${DB_NAME}
|
||||
DB_USER: ${DB_USER}
|
||||
DB_PASSWORD: ${DB_PASSWORD}
|
||||
DB_MAX_RETRIES: ${DB_MAX_RETRIES}
|
||||
DB_RETRY_INTERVAL: ${DB_RETRY_INTERVAL}
|
||||
|
||||
# Database connection tuning
|
||||
DB_MAX_RETRIES: ${DB_MAX_RETRIES:-60}
|
||||
DB_RETRY_INTERVAL: ${DB_RETRY_INTERVAL:-2}
|
||||
|
||||
# ======================================================================
|
||||
# Flask Application Settings
|
||||
# ======================================================================
|
||||
FLASK_ENV: ${FLASK_ENV:-production}
|
||||
# Flask settings
|
||||
FLASK_ENV: ${FLASK_ENV}
|
||||
FLASK_APP: run.py
|
||||
SECRET_KEY: ${SECRET_KEY:-change-this-in-production}
|
||||
SECRET_KEY: ${SECRET_KEY}
|
||||
|
||||
# ======================================================================
|
||||
# Gunicorn Configuration (override defaults)
|
||||
# ======================================================================
|
||||
GUNICORN_WORKERS: ${GUNICORN_WORKERS:-}
|
||||
GUNICORN_WORKER_CLASS: ${GUNICORN_WORKER_CLASS:-sync}
|
||||
GUNICORN_TIMEOUT: ${GUNICORN_TIMEOUT:-120}
|
||||
GUNICORN_BIND: ${GUNICORN_BIND:-0.0.0.0:8781}
|
||||
GUNICORN_LOG_LEVEL: ${GUNICORN_LOG_LEVEL:-info}
|
||||
GUNICORN_PRELOAD_APP: ${GUNICORN_PRELOAD_APP:-true}
|
||||
GUNICORN_MAX_REQUESTS: ${GUNICORN_MAX_REQUESTS:-1000}
|
||||
# Gunicorn settings
|
||||
GUNICORN_WORKERS: ${GUNICORN_WORKERS}
|
||||
GUNICORN_WORKER_CLASS: ${GUNICORN_WORKER_CLASS}
|
||||
GUNICORN_TIMEOUT: ${GUNICORN_TIMEOUT}
|
||||
GUNICORN_BIND: ${GUNICORN_BIND}
|
||||
GUNICORN_LOG_LEVEL: ${GUNICORN_LOG_LEVEL}
|
||||
GUNICORN_PRELOAD_APP: ${GUNICORN_PRELOAD_APP}
|
||||
GUNICORN_MAX_REQUESTS: ${GUNICORN_MAX_REQUESTS}
|
||||
|
||||
# For Docker logging to stdout/stderr, set these to "-"
|
||||
# GUNICORN_ACCESS_LOG: "-"
|
||||
# GUNICORN_ERROR_LOG: "-"
|
||||
# Initialization flags
|
||||
INIT_DB: ${INIT_DB}
|
||||
SEED_DB: ${SEED_DB}
|
||||
IGNORE_DB_INIT_ERRORS: ${IGNORE_DB_INIT_ERRORS}
|
||||
IGNORE_SEED_ERRORS: ${IGNORE_SEED_ERRORS}
|
||||
SKIP_HEALTH_CHECK: ${SKIP_HEALTH_CHECK}
|
||||
|
||||
# ======================================================================
|
||||
# Initialization Flags
|
||||
# ======================================================================
|
||||
# Set to "false" after first successful deployment
|
||||
INIT_DB: ${INIT_DB:-true}
|
||||
SEED_DB: ${SEED_DB:-true}
|
||||
# Localization
|
||||
TZ: ${TZ}
|
||||
LANG: ${LANG}
|
||||
|
||||
# Error handling
|
||||
IGNORE_DB_INIT_ERRORS: ${IGNORE_DB_INIT_ERRORS:-false}
|
||||
IGNORE_SEED_ERRORS: ${IGNORE_SEED_ERRORS:-false}
|
||||
|
||||
# Skip health check (for faster startup in dev)
|
||||
SKIP_HEALTH_CHECK: ${SKIP_HEALTH_CHECK:-false}
|
||||
|
||||
# ======================================================================
|
||||
# Timezone and Locale
|
||||
# ======================================================================
|
||||
TZ: ${TZ:-Europe/Bucharest}
|
||||
LANG: ${LANG:-en_US.UTF-8}
|
||||
|
||||
# ======================================================================
|
||||
# Backup Configuration
|
||||
# ======================================================================
|
||||
BACKUP_PATH: ${BACKUP_PATH:-/srv/quality_recticel/backups}
|
||||
# Backup path
|
||||
BACKUP_PATH: ${BACKUP_PATH}
|
||||
|
||||
ports:
|
||||
- "${APP_PORT:-8781}:8781"
|
||||
- "${APP_PORT}:8781"
|
||||
|
||||
volumes:
|
||||
# Persistent logs directory
|
||||
- ${LOGS_PATH:-/srv/docker-test/logs}:/srv/quality_recticel/logs
|
||||
|
||||
# Instance configuration directory
|
||||
- ${INSTANCE_PATH:-/srv/docker-test/instance}:/app/instance
|
||||
|
||||
# Database backups directory
|
||||
- ${BACKUP_PATH:-/srv/docker-test/backups}:/srv/quality_recticel/backups
|
||||
|
||||
# ⚠️ DEVELOPMENT ONLY: Mount application code for live updates
|
||||
# DISABLE IN PRODUCTION - causes configuration and security issues
|
||||
# - ./py_app:/app
|
||||
- ${LOGS_PATH}:/srv/quality_app/logs
|
||||
- ${INSTANCE_PATH}:/app/instance
|
||||
- ${BACKUP_PATH}:/srv/quality_app/backups
|
||||
|
||||
networks:
|
||||
- recticel-network
|
||||
- quality-app-network
|
||||
|
||||
# Application health check
|
||||
healthcheck:
|
||||
test: ["CMD", "curl", "-f", "http://localhost:8781/"]
|
||||
interval: 30s
|
||||
@@ -178,62 +130,42 @@ services:
|
||||
retries: 3
|
||||
start_period: 60s
|
||||
|
||||
# Resource limits (adjust based on your application needs)
|
||||
deploy:
|
||||
resources:
|
||||
limits:
|
||||
cpus: '2.0'
|
||||
memory: 1G
|
||||
cpus: ${APP_CPU_LIMIT}
|
||||
memory: ${APP_MEMORY_LIMIT}
|
||||
reservations:
|
||||
cpus: '0.5'
|
||||
memory: 256M
|
||||
cpus: ${APP_CPU_RESERVATION}
|
||||
memory: ${APP_MEMORY_RESERVATION}
|
||||
|
||||
# Logging configuration
|
||||
logging:
|
||||
driver: "json-file"
|
||||
driver: json-file
|
||||
options:
|
||||
max-size: "10m"
|
||||
max-file: "5"
|
||||
max-size: ${LOG_MAX_SIZE}
|
||||
max-file: ${LOG_MAX_FILES}
|
||||
compress: "true"
|
||||
|
||||
# ============================================================================
|
||||
# Network Configuration
|
||||
# ============================================================================
|
||||
networks:
|
||||
recticel-network:
|
||||
quality-app-network:
|
||||
driver: bridge
|
||||
ipam:
|
||||
config:
|
||||
- subnet: ${NETWORK_SUBNET:-172.20.0.0/16}
|
||||
- subnet: ${NETWORK_SUBNET}
|
||||
|
||||
# ============================================================================
|
||||
# NOTES:
|
||||
# USAGE NOTES
|
||||
# ============================================================================
|
||||
# 1. Environment Variables:
|
||||
# - Create a .env file in the same directory for custom configuration
|
||||
# - See .env.example for available options
|
||||
#
|
||||
# 2. First-Time Setup:
|
||||
# - Set INIT_DB=true and SEED_DB=true for initial deployment
|
||||
# - After successful setup, set them to false to avoid re-initialization
|
||||
#
|
||||
# 3. Volumes:
|
||||
# - Using bind mounts to /srv/docker-test/ for easy access
|
||||
# - Ensure the host directories exist and have proper permissions
|
||||
#
|
||||
# 4. Security:
|
||||
# - Change default passwords in production
|
||||
# - Set a secure SECRET_KEY
|
||||
# - Use secrets management for sensitive data
|
||||
#
|
||||
# 5. Scaling:
|
||||
# - Adjust resource limits based on your server capacity
|
||||
# - Use 'docker-compose up --scale web=3' to run multiple app instances
|
||||
# (requires load balancer setup)
|
||||
#
|
||||
# 6. Commands:
|
||||
# - Start: docker-compose up -d
|
||||
# - Stop: docker-compose down
|
||||
# - Logs: docker-compose logs -f web
|
||||
# - Rebuild: docker-compose up -d --build
|
||||
# 1. Copy .env.example to .env and customize all values
|
||||
# 2. Set INIT_DB=true and SEED_DB=true for first deployment only
|
||||
# 3. Change default passwords and SECRET_KEY in production
|
||||
# 4. Ensure all volume paths exist with proper permissions:
|
||||
# mkdir -p /srv/quality_app/{mariadb,logs,backups}
|
||||
# 5. Start: docker-compose up -d
|
||||
# 6. Stop: docker-compose down
|
||||
# 7. Logs: docker-compose logs -f web
|
||||
# 8. Rebuild: docker-compose up -d --build
|
||||
# ============================================================================
|
||||
|
||||
Reference in New Issue
Block a user