#!/bin/bash # modified version of https://github.com/go-gitea/gitea/blob/d7dbe4feebac7805a4ca184f0989f58de8063d96/docker/rootless/usr/local/bin/docker-setup.sh # also see https://github.com/go-gitea/gitea/pull/14762#issuecomment-829224656 # Prepare git folder mkdir -p ${HOME} && chmod 0700 ${HOME} if [ ! -w ${HOME} ]; then echo "${HOME} is not writable"; exit 1; fi # Prepare custom folder mkdir -p ${GITEA_CUSTOM} && chmod 0500 ${GITEA_CUSTOM} # Prepare temp folder mkdir -p ${GITEA_TEMP} && chmod 0700 ${GITEA_TEMP} if [ ! -w ${GITEA_TEMP} ]; then echo "${GITEA_TEMP} is not writable"; exit 1; fi # Seed app.ini into the writable config volume (/etc/gitea) from the read-only swarm config # (mounted at app.ini.init). Gitea persists settings back to app.ini — e.g. it saves the # [oauth2] JWT_SECRET on boot since 1.24 — which crashes if app.ini is the read-only mount itself. # Test `! -s` (empty), not `! -f` (missing): upgrades from the old direct-mount layout leave a # 0-byte app.ini placeholder that still needs seeding. A non-empty app.ini is left untouched. if [ ! -s /etc/gitea/app.ini ]; then cp /etc/gitea/app.ini.init /etc/gitea/app.ini fi chmod 0600 /etc/gitea/app.ini 2>/dev/null || true