- Add CPU, memory and PID limits to all services in config/main.yml to prevent OOM - Replace old LDAP admin bootstrap with new 02_admin.yml using OPENPROJECT_ADMINISTRATOR_* vars - Standardize variable names (uppercase convention) - Fix HTTPS/HSTS port check (443 instead of 433) - Allow docker_restart_policy override in base.yml.j2 - Cleanup redundant LDAP admin runner in 01_ldap.yml See: https://chatgpt.com/share/68d40c6e-ab9c-800f-a4a0-d9338d8c1b32
Docker Container
Description
This Ansible role supplies common Jinja2 snippets for composing Docker services consistently. Rather than repeating the same YAML blocks, you include one or more of the provided templates in your docker-compose.yml.j2
.
Overview
The following templates are available under roles/docker-container/templates/
:
-
base.yml.j2
Common service settings:restart
,env_file
,logging
. -
networks.yml.j2
Conditional network attachments:central_<database_type>
whencentral_database
feature is enabledcentral_ldap
when LDAP feature and network are enableddefault
-
depends_on_dmbs.yml.j2
Builds adepends_on:
block automatically:- If
central_database
is off, renders an empty listdepends_on: []
- Otherwise, includes
database
and/orredis
with healthcheck conditions
- If
-
healthcheck/
Four strategies:curl.yml.j2
(HTTP viacurl -f
)wget.yml.j2
(HTTP viawget --spider
)tcp.yml.j2
(TCP socket test)msmtp_curl.yml.j2
(SMTP first, then HTTP viacurl
; avoids duplicate emails)
Include whichever snippets your service requires to keep your Compose files DRY and maintainable.
Features
-
Modular templates
Mix only the blocks you need. -
Feature‐driven logic
Networks and dependencies adjust automatically based on yourapplications
variables. -
Multiple healthcheck options
Pick the probe that works best for your container’s protocol and requirements.