- Nouveau service one-shot db-sync : à chaque démarrage de la stack, il réaligne le mot de passe du rôle sbc_app sur APP_DB_PASSWORD (corrige « password authentication failed » quand le volume a été initialisé avec une ancienne valeur) ; l'app démarre après sa réussite - Port hôte PostgreSQL : 56432 → 58412 (conflit avec un service existant), toujours en loopback uniquement - Note de dépannage dans le README Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_01Fkg15RCxNgUys4ru73He2o
36 lines
1.4 KiB
Bash
36 lines
1.4 KiB
Bash
# OPTIONAL: the stack starts without any .env thanks to preconfigured
|
|
# defaults in docker-compose.yml. For production, copy this file to .env
|
|
# (or set the variables in Portainer) and override everything below.
|
|
# openssl rand -hex 32 # use for JWT_SECRET
|
|
# openssl rand -hex 24 # use for each DB password
|
|
|
|
# PostgreSQL superuser password (used only inside the db container)
|
|
POSTGRES_PASSWORD=change-me-postgres-superuser
|
|
|
|
# Password of the restricted application role (sbc_app) the API connects with
|
|
APP_DB_PASSWORD=change-me-app-db-password
|
|
|
|
# Secret used to sign session tokens (JWT), at least 32 characters.
|
|
# If unset, the app generates a random one at startup (sessions are then
|
|
# invalidated whenever the container restarts).
|
|
JWT_SECRET=change-me-64-hex-chars-min
|
|
|
|
# Initial password of the admin account (admin@sluc-businessclub.fr).
|
|
# Applied/updated at API startup. Change it after first login.
|
|
ADMIN_INITIAL_PASSWORD=ChangeMe-Admin-2026!
|
|
|
|
# Initial password given to every seeded member account (demo data only)
|
|
MEMBER_INITIAL_PASSWORD=ChangeMe-Membre-2026!
|
|
|
|
# Set to "true" when serving over HTTPS (adds Secure flag on cookies)
|
|
COOKIE_SECURE=false
|
|
|
|
# Set to "true" only when running behind a reverse proxy (TLS termination)
|
|
TRUST_PROXY=false
|
|
|
|
# Uncommon ports to avoid collisions with other services
|
|
# Application (public web port)
|
|
APP_PORT=8321
|
|
# PostgreSQL, bound to 127.0.0.1 only (local admin access)
|
|
DB_PORT=58412
|