Files
haproxy-openmanager/docker-compose.yml
T
taylanbakircioglu 93d7ad8fdb feat: add ACME Auto SSL with Let's Encrypt integration (v1.1.0)
Add automated SSL certificate management via ACME protocol (RFC 8555):
- Full ACME client implementation (account registration, HTTP-01 challenges, certificate issuance/renewal)
- Configurable ACME providers (Let's Encrypt, ZeroSSL, custom CA) via Settings UI
- Auto-renewal scheduler with PENDING -> Apply -> APPLIED flow alignment
- ACME account management (register, deactivate) from UI
- Certificate request wizard with domain validation and cluster targeting
- Zero changes to HAProxy agent scripts - challenges routed through existing architecture
- Comprehensive security hardening (no private key exposure in API responses)
- Full backward compatibility with existing SSL, Apply, Rollback, and Restore workflows
- Updated README, API documentation, and Kubernetes deployment notes
- Version management embedded in code (v1.1.0)
- UI messaging improvements for agent-pull architecture accuracy

Made-with: Cursor
2026-04-02 00:25:50 +03:00

161 lines
4.2 KiB
YAML

services:
# PostgreSQL Database
postgres:
image: postgres:15-alpine
container_name: haproxy-openmanager-db
environment:
POSTGRES_DB: haproxy_openmanager
POSTGRES_USER: haproxy_user
POSTGRES_PASSWORD: haproxy_pass
PGDATA: /var/lib/postgresql/data/pgdata
volumes:
- postgres_data:/var/lib/postgresql/data
ports:
- "5432:5432"
networks:
- haproxy-network
healthcheck:
test: ["CMD-SHELL", "pg_isready -U haproxy_user -d haproxy_openmanager"]
interval: 10s
timeout: 5s
retries: 5
# Redis Cache
redis:
image: redis:7-alpine
container_name: haproxy-openmanager-redis
command: redis-server --maxmemory 2gb --maxmemory-policy volatile-lru --save ""
ports:
- "6379:6379"
networks:
- haproxy-network
healthcheck:
test: ["CMD", "redis-cli", "ping"]
interval: 10s
timeout: 3s
retries: 5
# Backend API - pulls from Docker Hub by default
# To build locally instead, uncomment the build section and run: docker compose build backend
backend:
image: taylanbakircioglu/haproxy-openmanager-backend:latest
# build:
# context: ./backend
# dockerfile: Dockerfile
container_name: haproxy-openmanager-backend
environment:
- DATABASE_URL=postgresql://haproxy_user:haproxy_pass@postgres:5432/haproxy_openmanager
- REDIS_URL=redis://redis:6379
- SECRET_KEY=your-secret-key-change-this-in-production
- DEBUG=False
- LOG_LEVEL=INFO
- PUBLIC_URL=http://localhost:8080
- MANAGEMENT_BASE_URL=http://localhost:8080
volumes:
- haproxy_configs:/etc/haproxy
expose:
- "8000"
depends_on:
postgres:
condition: service_healthy
redis:
condition: service_healthy
networks:
- haproxy-network
healthcheck:
test: ["CMD", "python", "-c", "import urllib.request; urllib.request.urlopen('http://localhost:8000/api/health')"]
interval: 30s
timeout: 10s
retries: 3
start_period: 40s
# Frontend React App - pulls from Docker Hub by default
# To build locally instead, uncomment the build section and run: docker compose build frontend
frontend:
image: taylanbakircioglu/haproxy-openmanager-frontend:latest
# build:
# context: ./frontend
# dockerfile: Dockerfile
container_name: haproxy-openmanager-frontend
environment:
- REACT_APP_API_URL=
- NODE_ENV=production
expose:
- "3000"
depends_on:
- backend
networks:
- haproxy-network
healthcheck:
test: ["CMD", "wget", "--no-verbose", "--tries=1", "--spider", "http://localhost:3000"]
interval: 30s
timeout: 10s
retries: 3
# Nginx Reverse Proxy
nginx:
image: nginx:alpine
container_name: haproxy-openmanager-nginx
volumes:
- ./nginx/nginx.conf:/etc/nginx/nginx.conf:ro
ports:
- "8080:8080"
depends_on:
- frontend
- backend
networks:
- haproxy-network
healthcheck:
test: ["CMD", "wget", "--no-verbose", "--tries=1", "--spider", "http://localhost:8080/health"]
interval: 30s
timeout: 10s
retries: 3
# HAProxy Instance (for testing)
haproxy:
image: haproxy:2.8-alpine
container_name: haproxy-instance
volumes:
- ./haproxy/haproxy-simple.cfg:/usr/local/etc/haproxy/haproxy.cfg:ro
ports:
- "80:80"
- "8404:8404"
networks:
- haproxy-network
# Remote HAProxy Instance 1 (Production)
haproxy-remote1:
image: haproxy:2.8-alpine
container_name: haproxy-remote1
volumes:
- ./haproxy/haproxy-simple.cfg:/usr/local/etc/haproxy/haproxy.cfg:ro
ports:
- "8001:80"
- "8405:8404"
networks:
- haproxy-network
environment:
- HAPROXY_ENV=production
# Remote HAProxy Instance 2 (Staging)
haproxy-remote2:
image: haproxy:2.8-alpine
container_name: haproxy-remote2
volumes:
- ./haproxy/haproxy-simple.cfg:/usr/local/etc/haproxy/haproxy.cfg:ro
ports:
- "8002:80"
- "8406:8404"
networks:
- haproxy-network
environment:
- HAPROXY_ENV=staging
volumes:
postgres_data:
haproxy_configs:
networks:
haproxy-network:
driver: bridge