add cloudflare
This commit is contained in:
1 parent
59c01d9ace
commit
08d4798bf8
3 files changed
+47
-1
No files matched your search
+1
-1
@@ -91,7 +91,7 @@ WATCHTOWER_API_KEY='insecure_watchtower_api_key'
|
||||
# CLOUDFLARE
|
||||
########################
|
||||
|
||||
CF_DNS_API_TOKEN=
|
||||
CF_DNS_API_TOKEN=eyJhIjoiNzJhOTA5MDNiYjI0MGY2Njc5YWFlOTgyZDQ0MzJkOTYiLCJ0IjoiODI5YWJjNjQtNWY3ZS00YzNjLWJmMDctNmU4NjY1ZjAyZWVjIiwicyI6Ik0yRXpPVE01TURNdFptUTNaQzAwTURGbUxXRmlNV010WTJaaU9XSXpNRGRsTTJaaSJ9
|
||||
HTTP_TIMEOUT=
|
||||
POLLING_INTERVAL=
|
||||
PROPAGATION_TIMEOUT=
|
||||
|
||||
@@ -0,0 +1,41 @@
|
||||
services:
|
||||
tunnel:
|
||||
container_name: cloudflared-tunnel
|
||||
hostname: cloudflared-tunnel
|
||||
image: cloudflare/cloudflared:latest
|
||||
restart: unless-stopped
|
||||
command: tunnel run --protocol http2
|
||||
volumes:
|
||||
- "/etc/localtime:/etc/localtime:ro"
|
||||
# - "./config:/home/nonroot/.cloudflared/"
|
||||
networks:
|
||||
- cloudflare_network
|
||||
environment:
|
||||
- TZ=${TIMEZONE}
|
||||
- TUNNEL_TOKEN=${CF_DNS_API_TOKEN}
|
||||
# networks:
|
||||
# macvlan4: # change name to whatever you like
|
||||
# ipv4_address: 10.0.4.20 # change to your IP in your vLAN subnet
|
||||
labels:
|
||||
- "com.centurylinklabs.watchtower.enable=true"
|
||||
security_opt:
|
||||
- no-new-privileges
|
||||
cap_drop:
|
||||
- ALL
|
||||
cap_add:
|
||||
- NET_BIND_SERVICE
|
||||
read_only: true
|
||||
tmpfs:
|
||||
- /tmp
|
||||
deploy:
|
||||
resources:
|
||||
limits:
|
||||
cpus: '0.5'
|
||||
memory: 512M
|
||||
reservations:
|
||||
cpus: '0.25'
|
||||
memory: 256M
|
||||
|
||||
#networks:
|
||||
# macvlan4:
|
||||
# external: true
|
||||
@@ -12,11 +12,16 @@ include:
|
||||
- authentik/docker-compose.yml # Identity Access Management (IAM) + Authentication
|
||||
- crowdsec/docker-compose.yml # IP Banning + Traffic Monitoring
|
||||
- socket-proxy/docker-compose.yml # Security Enchanced Proxy for Docker Socket
|
||||
# NETWORKING
|
||||
- cloudflare-tunnel/docker-compose.yml # Cloudflare Tunnel
|
||||
- traefik/docker-compose.yml # Reverse Proxy
|
||||
# MONITORING
|
||||
- prometheus-grafana/docker-compose.yml # Monitoring
|
||||
# MAINTENANCE
|
||||
- diun/docker-compose.yml # Docker Image Update Notifier
|
||||
- portainer/docker-compose.yml # Container management
|
||||
- watchtower/docker-compose.yml # Container auto-updator
|
||||
# MISC
|
||||
- msmtpd/docker-compose.yml # Container send mail
|
||||
|
||||
networks:
|
||||
|
||||
Reference in new issue
Block a user