Kyle Spearrin
4673e3bbc9
nginx preserve upstream header values, fix ip ( #2847 )
3 years ago
Joseph Flinn
630376400f
Dependency updates ( #1681 )
...
* fix: util/Nginx/Dockerfile to reduce vulnerabilities
The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-DEBIAN10-LIBXML2-1277346
- https://snyk.io/vuln/SNYK-DEBIAN10-LIBXML2-1277349
- https://snyk.io/vuln/SNYK-DEBIAN10-LIBXML2-1277350
- https://snyk.io/vuln/SNYK-DEBIAN10-OPENSSL-1569403
- https://snyk.io/vuln/SNYK-DEBIAN10-OPENSSL-1569406
* fix: util/Nginx/Dockerfile-k8s to reduce vulnerabilities
The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-DEBIAN10-LIBXML2-1277346
- https://snyk.io/vuln/SNYK-DEBIAN10-LIBXML2-1277349
- https://snyk.io/vuln/SNYK-DEBIAN10-LIBXML2-1277350
- https://snyk.io/vuln/SNYK-DEBIAN10-OPENSSL-1569403
- https://snyk.io/vuln/SNYK-DEBIAN10-OPENSSL-1569406
Co-authored-by: snyk-bot <snyk-bot@snyk.io>
4 years ago
Joseph Flinn
ee7b608a46
revamping the build scripts ( #1620 )
4 years ago
Thomas Rittson
b1ed6d2c21
Fix upload limits for direct uploads (again) ( #1479 )
...
* Use constants to represent file size limits
* Allow uploads of up to 500mb for self-hosted
* Set nginx max body size to 505mb
* Add reminder about updating nginx/proxy.conf
4 years ago
Joseph Flinn
7bb26a7203
K8s Proxy CI Build ( #1233 )
...
* adding the new k8s-proxy container to the server build
* updating the file path fore the new dockerfile
5 years ago
Jungley
7065bba56f
支持更多的 nginx 配置 ( #1136 )
5 years ago
Kai Bröker
9bb63b86f0
Update Dockerfile ( #1040 )
5 years ago
Kyle Spearrin
00aaa64285
accept larger headers
5 years ago
Kyle Spearrin
6e0921dcc1
proxy_buffers
5 years ago
François Van Ingelgom
aab6095073
Add support building from path that contains space ( #815 )
6 years ago
Mart124
330ff7cd80
Fix sleep calculation ( #719 )
...
* Fix sleep calculation
* Fix sleep calculation
6 years ago
Mart124
9bb6476f53
Typo ( #613 )
...
* Update logrotate.sh
* Update backup-db.sh
6 years ago
Mart124
8b5e37d349
Update .dockerignore ( #612 )
6 years ago
Kyle Spearrin
2cf8b88fbb
dont exec
6 years ago
Kyle Spearrin
980e19884d
exec gosu
6 years ago
Mart124
47bda1e6d0
Rotate nginx logs ( #601 )
...
* Rotate nginx logs
* Create logrotate.sh
* Update Dockerfile
* Update entrypoint.sh
* Update Dockerfile
* Update logrotate.sh
* No reason to disable logrotate
* Update logrotate.sh
* Update entrypoint.sh
* typo
* Avoid useless output
* Use gosu
6 years ago
Kyle Spearrin
dfeb2aad5c
no server port test
6 years ago
Kyle Spearrin
b040229933
add server_port to host proxy header
6 years ago
Kyle Spearrin
8dabba984d
fix nginx healthcheck
6 years ago
Kyle Spearrin
310e0115d5
add port to health check
6 years ago
Kyle Spearrin
2ea244c723
healthcheck cmd
6 years ago
Kyle Spearrin
b7f3fa0087
try fixing curl install again
6 years ago
Kyle Spearrin
82a8249a69
fix curl error
6 years ago
Kyle Spearrin
bba0206bb7
alive check for nginx
6 years ago
Cédric Laubacher
afdf29da78
Update NGINX Dockerfile to latest stable version ( #490 )
7 years ago
Kyle Spearrin
acfacf69a2
Revert "--with-http_realip_module"
...
This reverts commit f951304f11 .
7 years ago
Kyle Spearrin
f951304f11
--with-http_realip_module
7 years ago
gruzilla
e83325dd09
adds EXPOSE 8080 to Dockerfile to be coherent to nginx default config ( #403 )
...
* adds EXPOSE 8080 to Dockerfile to be coherent to nginx default config
* adds EXPOSE 8443 to Dockerfile to be coherent to nginx default SSL config
7 years ago
Kyle Spearrin
6b8fdc1a98
add X-Frame-Options specifically
7 years ago
Kyle Spearrin
b2d63b2383
reassign security headers
7 years ago
Kyle Spearrin
9eae04a9c7
dont ignore new security header conf
7 years ago
Kyle Spearrin
aeca706302
include security headers
7 years ago
Ndr
f0ca4450d7
Move nginx.pid to directory with write permission ( #350 )
...
* Moving nginx.pid in /var/run/nginx
/var/run/nginx is owned by our application user, allowing it to delete nginx.pid
* Update nginx.pid filepath
7 years ago
Kyle Spearrin
3f0186f17a
update mssql and nginx deps
7 years ago
Kyle Spearrin
1052951a96
restore on build. remove ps1 build scripts
7 years ago
Mart124
b3c48fd3fa
Add a bitwarden label to docker images ( #305 )
...
* Add a bitwarden label to docker images
* Prefix label with reverse DNS
8 years ago
Mart124
92b08e6cf1
Rework service user ( #299 )
...
* Use user primary group if not root
* Do not run getent on MacOS
* Simplify UID/GID management
* Make uid.env backward compatible in run.sh
* Merge install.sh with run.sh to avoid duplicating code
Especially the UID/GID management one
* Generate correct OS name
* Be sure to keep old behavior for backward compatiblilty
* Get the colors back from install.sh
8 years ago
Kyle Spearrin
0f675d8ccb
Revert "Use user primary group if not root ( #292 )"
...
This reverts commit ec89c36ca0 .
8 years ago
Mart124
ec89c36ca0
Use user primary group if not root ( #292 )
...
* Use user primary group if not root
* Do not run getent on MacOS
* Simplify UID/GID management
* Create uid.env if it does not exist
* Populate uid.env if it's empty
8 years ago
Kyle Spearrin
ce92462041
fix uid comparisons
8 years ago
Kyle Spearrin
1dce0ccb83
fix if when no currentid
8 years ago
Kyle Spearrin
b7a2e47bd9
map host docker group id to containers
8 years ago
Kyle Spearrin
d1a47ba808
make user homedir with helper
8 years ago
Kyle Spearrin
a3b522a6b0
Revert "make bitwarden user home dir"
...
This reverts commit 40242a78e5 .
8 years ago
Kyle Spearrin
40242a78e5
make bitwarden user home dir
8 years ago
Kyle Spearrin
95b25246f1
step down from host root LUID
8 years ago
Kyle Spearrin
d6e84a1212
chown nginx logs and data protect admin
8 years ago
Kyle Spearrin
02403596b5
bash
8 years ago
Kyle Spearrin
2c2496d28f
fix syntax for entrypoint ands
8 years ago
Kyle Spearrin
62535ae750
upsert bitwarden user
8 years ago