Compare commits

..
Author SHA1 Message Date
autonomic-bot 87814282d1 chore: upgrade db to 10.11.19 (mariadb overlay) 2026-09-14 19:15:52 +00:00
cas 59e0965cd0 Add Anubis config from Forgejo. 2026-09-01 10:07:16 -07:00
notplants e6a1cc79e9 Merge pull request 'change deploy logic to stop-first instead of start-first' (#53) from stop-first into master
Reviewed-on: https://git.coopcloud.tech/coop-cloud/gitea/pulls/53
2026-06-04 16:47:00 +00:00
notplants 34dd04ac99 Merge branch 'master' into stop-first 2026-06-04 16:46:28 +00:00
ammaratef45 6aa52c1e73 fix abra command in documentation 2026-05-19 03:43:34 +00:00
notplants e7c4999f78 bump version number to 3.5.3 2026-05-18 12:59:07 -04:00
notplants c63e1cdd04 change deploy logic to stop-first instead of start-first 2026-05-18 12:51:20 -04:00
3wc db92e97071 docs: Fix broken README links, appease markdown linter 2026-01-08 21:29:48 -05:00
p4u1 d86d742ed1 Adds missing access controll headers 2025-10-27 18:29:54 +01:00
f 989294173e chore: publish 3.5.2+1.24.2-rootless release 2025-09-01 07:44:54 -03:00
f 4e789bf977 fix: forgejo 12.0.2 2025-09-01 07:38:52 -03:00
f 485fa32512 chore: publish 3.5.1+1.24.2-rootless release 2025-07-26 01:35:54 -03:00
f 54fd30f38a fix: forgejo 12.0.1 2025-07-26 01:33:48 -03:00
f 6d586f6ad3 chore: publish 3.5.0+1.24.2-rootless release 2025-07-19 11:42:35 -03:00
f 8c9793ace9 feat: upgrade to forgejo 12 2025-07-19 11:41:41 -03:00
3wordchant 4cfc2ac2e0 chore: publish 3.4.0+1.24.2-rootless release 2025-06-25 18:34:34 +01:00
f ca4733a0b0 fix: upgrade forgejo to 11.0.2 2025-06-19 10:26:08 -03:00
fauno 5a65ef04c5 Merge pull request 'feat: forgejo 11' (#45) from forgejo into master
Reviewed-on: https://git.coopcloud.tech/coop-cloud/gitea/pulls/45
2025-06-19 13:21:57 +00:00
3wordchant 270ed7bb93 chore: publish 3.3.1+1.23.8-rootless release 2025-05-16 20:54:29 +02:00
3wordchant b2c9d95e60 Merge pull request 'fix: security release' (#44) from upgrade into master
Reviewed-on: https://git.coopcloud.tech/coop-cloud/gitea/pulls/44
2025-05-16 18:53:40 +00:00
3wordchant 88b226f713 Merge branch 'master' into upgrade 2025-05-16 18:53:32 +00:00
f 94af9cea9e feat: forgejo 11 2025-05-15 14:36:29 -03:00
fauno 85dcf3a0b1 Merge pull request 'forgejo upgrade' (#41) from forgejo into master
Reviewed-on: https://git.coopcloud.tech/coop-cloud/gitea/pulls/41
Reviewed-by: decentral1se <decentral1se@noreply.git.coopcloud.tech>
2025-05-15 17:27:24 +00:00
f 3840e87f2f fix: security release
https://blog.gitea.com/release-of-1.23.8/
2025-05-15 14:24:52 -03:00
f 777aad5da4 Merge branch 'master' into forgejo 2025-05-15 14:22:53 -03:00
fauno 5350ce207f Merge pull request 'feat: lfs server' (#42) from lfs into master
Reviewed-on: https://git.coopcloud.tech/coop-cloud/gitea/pulls/42
2025-05-15 17:22:06 +00:00
cas 2bfec14654 Update .drone.yml 2025-04-10 10:50:49 -07:00
f b44e18f063 feat: configuration by forge 2025-02-20 09:17:58 -03:00
f 77624221b4 feat: lfs server 2025-02-18 15:44:59 -03:00
f ce632c8e5f Merge branch 'master' of https://git.coopcloud.tech/coop-cloud/gitea 2025-02-13 12:29:31 -03:00
f cac5c8d694 feat: upgrade to forgejo 10.0.1 2025-02-13 12:29:09 -03:00
10 changed files with 54 additions and 15 deletions
+1 -1
View File
@@ -51,7 +51,7 @@ steps:
from_secret: drone_abra-bot_token from_secret: drone_abra-bot_token
fork: true fork: true
repositories: repositories:
- coop-cloud/auto-recipes-catalogue-json - toolshed/auto-recipes-catalogue-json
trigger: trigger:
event: tag event: tag
+5
View File
@@ -10,6 +10,10 @@ COMPOSE_FILE="$COMPOSE_FILE:compose.mariadb.yml"
# Enable to use forgejo instead of gitea # Enable to use forgejo instead of gitea
# COMPOSE_FILE="$COMPOSE_FILE:compose.forgejo.yml" # COMPOSE_FILE="$COMPOSE_FILE:compose.forgejo.yml"
# SECRET_LFS_JWT_SECRET_VERSION=v1 # length=43
# Anubis
# COMPOSE_FILE="$COMPOSE_FILE:compose.anubis.yml"
GITEA_DOMAIN=git.example.com GITEA_DOMAIN=git.example.com
GITEA_ALLOW_ONLY_EXTERNAL_REGISTRATION=true GITEA_ALLOW_ONLY_EXTERNAL_REGISTRATION=true
@@ -33,6 +37,7 @@ GITEA_DEFAULT_ORG_VISIBILITY=limited
GITEA_REQUIRE_SIGNIN_VIEW=true GITEA_REQUIRE_SIGNIN_VIEW=true
GITEA_ENABLE_PUSH_CREATE_USER=false GITEA_ENABLE_PUSH_CREATE_USER=false
GITEA_ENABLE_PUSH_CREATE_ORG=false GITEA_ENABLE_PUSH_CREATE_ORG=false
GITEA_LFS_START_SERVER=false
GITEA_REPO_UPLOAD_ENABLED=true GITEA_REPO_UPLOAD_ENABLED=true
GITEA_REPO_UPLOAD_ALLOWED_TYPES=*/* GITEA_REPO_UPLOAD_ALLOWED_TYPES=*/*
+19 -7
View File
@@ -15,7 +15,7 @@
## Basic usage ## Basic usage
1. Set up Docker Swarm and [`abra`][abra] 1. [Set up Docker Swarm and `abra`][operators-tutorial]
2. Deploy [`coop-cloud/traefik`][cc-traefik] 2. Deploy [`coop-cloud/traefik`][cc-traefik]
3. `abra app new gitea --secrets` (optionally with `--pass` if you'd like 3. `abra app new gitea --secrets` (optionally with `--pass` if you'd like
to save secrets in `pass`) to save secrets in `pass`)
@@ -23,12 +23,15 @@
your Docker swarm box your Docker swarm box
5. `abra app deploy YOURAPPDOMAIN` 5. `abra app deploy YOURAPPDOMAIN`
[operators-tutorial]: https://docs.coopcloud.tech/operators/tutorial/
[cc-traefik]: https://git.coopcloud.tech/coop-cloud/traefik/
## Create first user ## Create first user
Run Run
```bash ```bash
abra app run YOURAPPNAME app gitea -c /etc/gitea/app.ini admin user create --username USERNAME --admin --random-password --email EMAIL abra app run YOURAPPNAME app -- gitea -c /etc/gitea/app.ini admin user create --username USERNAME --admin --random-password --email EMAIL
``` ```
See the [Gitea command-line documentation](https://docs.gitea.io/en-us/command-line/) for more options. Make sure not to forget the `-c /etc/gitea/app.ini`. See the [Gitea command-line documentation](https://docs.gitea.io/en-us/command-line/) for more options. Make sure not to forget the `-c /etc/gitea/app.ini`.
@@ -36,25 +39,34 @@ See the [Gitea command-line documentation](https://docs.gitea.io/en-us/command-l
## Enable SSH ## Enable SSH
You most certainly want to be able to access your repository over SSH. To do so, make sure you uncomment the right lines in the configuration for `traefik`. You most certainly want to be able to access your repository over SSH. To do so, make sure you uncomment the right lines in the configuration for `traefik`.
```
```sh
abra app config YOURTRAEFIKAPP abra app config YOURTRAEFIKAPP
``` ```
There uncomment or add these lines: There uncomment or add these lines:
```
```sh
GITEA_SSH_ENABLED=1 GITEA_SSH_ENABLED=1
COMPOSE_FILE="compose.yml:compose.gitea.yml" COMPOSE_FILE="compose.yml:compose.gitea.yml"
``` ```
Then redeploy traefik: Then redeploy traefik:
```
```sh
abra app undeploy YOURTRAEFIKAPP abra app undeploy YOURTRAEFIKAPP
abra app deploy YOURTRAEFIKAPP abra app deploy YOURTRAEFIKAPP
``` ```
You might need to wait a bit. To check if it worked, you can run You might need to wait a bit. To check if it worked, you can run
```
```sh
telnet my.gitea.example.com 2222 telnet my.gitea.example.com 2222
``` ```
Once you have added a public SSH key, you can check that you can connect to your gitea server with Once you have added a public SSH key, you can check that you can connect to your gitea server with
```
```sh
ssh -T -p 2222 git@my.gitea.example.com ssh -T -p 2222 git@my.gitea.example.com
``` ```
+1 -1
View File
@@ -1,4 +1,4 @@
export APP_INI_VERSION=v20 export APP_INI_VERSION=v21
export DOCKER_SETUP_SH_VERSION=v1 export DOCKER_SETUP_SH_VERSION=v1
export PG_BACKUP_VERSION=v1 export PG_BACKUP_VERSION=v1
+4
View File
@@ -60,6 +60,10 @@ SSH_DOMAIN = {{ env "GITEA_DOMAIN" }}
SSH_LISTEN_PORT = {{ env "GITEA_SSH_PORT" }} SSH_LISTEN_PORT = {{ env "GITEA_SSH_PORT" }}
SSH_PORT = {{ env "GITEA_SSH_PORT" }} SSH_PORT = {{ env "GITEA_SSH_PORT" }}
START_SSH_SERVER = true START_SSH_SERVER = true
LFS_START_SERVER = {{ env "GITEA_LFS_START_SERVER" }}
{{ if eq (env "FORGE") "forgejo" }}
LFS_JWT_SECRET = {{ secret "lfs_jwt_secret" }}
{{ end }}
[security] [security]
INSTALL_LOCK = true INSTALL_LOCK = true
+7
View File
@@ -0,0 +1,7 @@
---
version: "3.8"
services:
app:
deploy:
labels:
- "traefik.http.routers.${STACK_NAME}.middlewares=anubis,${STACK_NAME}_cors"
+9 -1
View File
@@ -2,4 +2,12 @@ version: '3.8'
services: services:
app: app:
image: codeberg.org/forgejo/forgejo:10.0.0-rootless image: codeberg.org/forgejo/forgejo:12.0.2-rootless
environment:
- FORGE=forgejo
secrets:
- lfs_jwt_secret
secrets:
lfs_jwt_secret:
name: ${STACK_NAME}_lfs_jwt_secret_${SECRET_LFS_JWT_SECRET_VERSION}
external: true
+1 -1
View File
@@ -10,7 +10,7 @@ services:
secrets: secrets:
- db_password - db_password
db: db:
image: "mariadb:10.11.2" image: "mariadb:10.11.19"
deploy: deploy:
labels: labels:
backupbot.backup.pre-hook: 'mysqldump --single-transaction -u root -p"$$(cat /run/secrets/db_root_password)" gitea > /var/lib/mysql/backup.sql' backupbot.backup.pre-hook: 'mysqldump --single-transaction -u root -p"$$(cat /run/secrets/db_root_password)" gitea > /var/lib/mysql/backup.sql'
+1 -1
View File
@@ -10,7 +10,7 @@ services:
secrets: secrets:
- db_password - db_password
db: db:
image: postgres:15.10 image: postgres:15.13
deploy: deploy:
labels: labels:
backupbot.backup.pre-hook: "/pg_backup.sh backup" backupbot.backup.pre-hook: "/pg_backup.sh backup"
+6 -3
View File
@@ -3,7 +3,7 @@ version: "3.8"
services: services:
app: app:
image: "gitea/gitea:1.23.1-rootless" image: "gitea/gitea:1.24.2-rootless"
configs: configs:
- source: app_ini - source: app_ini
target: /etc/gitea/app.ini target: /etc/gitea/app.ini
@@ -15,6 +15,7 @@ services:
- jwt_secret - jwt_secret
- secret_key - secret_key
environment: environment:
- FORGE=gitea
- GITEA_ALLOW_ONLY_EXTERNAL_REGISTRATION - GITEA_ALLOW_ONLY_EXTERNAL_REGISTRATION
- GITEA_APP_NAME - GITEA_APP_NAME
- GITEA_AUTO_WATCH_NEW_REPOS - GITEA_AUTO_WATCH_NEW_REPOS
@@ -52,6 +53,7 @@ services:
- GITEA_DEFAULT_ORG_VISIBILITY - GITEA_DEFAULT_ORG_VISIBILITY
- GITEA_REQUIRE_SIGNIN_VIEW - GITEA_REQUIRE_SIGNIN_VIEW
- GITEA__oauth2__REFRESH_TOKEN_EXPIRATION_TIME - GITEA__oauth2__REFRESH_TOKEN_EXPIRATION_TIME
- GITEA_LFS_START_SERVER=${GITEA_LFS_START_SERVER:-false}
volumes: volumes:
- data:/var/lib/gitea - data:/var/lib/gitea
- config:/etc/gitea - config:/etc/gitea
@@ -69,7 +71,7 @@ services:
deploy: deploy:
update_config: update_config:
failure_action: rollback failure_action: rollback
order: start-first order: stop-first
labels: labels:
- "backupbot.backup=${ENABLE_BACKUPS:-true}" - "backupbot.backup=${ENABLE_BACKUPS:-true}"
- "traefik.enable=true" - "traefik.enable=true"
@@ -82,10 +84,11 @@ services:
- "traefik.tcp.services.${STACK_NAME}-ssh.loadbalancer.server.port=${GITEA_SSH_PORT}" - "traefik.tcp.services.${STACK_NAME}-ssh.loadbalancer.server.port=${GITEA_SSH_PORT}"
- "traefik.http.routers.${STACK_NAME}.middlewares=${STACK_NAME}_cors" - "traefik.http.routers.${STACK_NAME}.middlewares=${STACK_NAME}_cors"
- "traefik.http.middlewares.${STACK_NAME}_cors.headers.accesscontrolallowmethods=GET,OPTIONS,PUT" - "traefik.http.middlewares.${STACK_NAME}_cors.headers.accesscontrolallowmethods=GET,OPTIONS,PUT"
- "traefik.http.middlewares.${STACK_NAME}_cors.headers.accesscontrolallowheaders=content-type,authorization"
- "traefik.http.middlewares.${STACK_NAME}_cors.headers.accesscontrolalloworiginlist=https://${GITEA_CORS_ALLOW_DOMAIN}" - "traefik.http.middlewares.${STACK_NAME}_cors.headers.accesscontrolalloworiginlist=https://${GITEA_CORS_ALLOW_DOMAIN}"
- "traefik.http.middlewares.${STACK_NAME}_cors.headers.accesscontrolmaxage=100" - "traefik.http.middlewares.${STACK_NAME}_cors.headers.accesscontrolmaxage=100"
- "traefik.http.middlewares.${STACK_NAME}_cors.headers.addvaryheader=true" - "traefik.http.middlewares.${STACK_NAME}_cors.headers.addvaryheader=true"
- coop-cloud.${STACK_NAME}.version=3.3.0+1.23.1-rootless - coop-cloud.${STACK_NAME}.version=3.5.3+1.24.2-rootless
networks: networks: