Compare commits
201 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
967ef4e440
|
|||
|
d9285e4bec
|
|||
|
17949255d3
|
|||
|
c6e5eaf3a1
|
|||
|
0e220c0cf0
|
|||
|
ebfe4339dc
|
|||
|
0d3ca5382b
|
|||
|
4477af601a
|
|||
|
3b27300249
|
|||
|
47c4f4816c
|
|||
|
95fdd8cf45
|
|||
|
f7f6dcae12
|
|||
|
62a917677d
|
|||
|
717e651cf9
|
|||
|
25688e1f03
|
|||
|
050a4f2b39
|
|||
|
36093f0fb5
|
|||
|
b9d5683d22
|
|||
|
0b95587f53
|
|||
|
486ef52745
|
|||
|
ca6a6a9ab3
|
|||
|
676124f23e
|
|||
|
d25755775e
|
|||
|
71904a53d9
|
|||
|
3dd7ccdcdc
|
|||
|
c8e08ef567
|
|||
|
cfad224c8d
|
|||
|
43dcdf4e6a
|
|||
|
9e3f7e2714
|
|||
|
4982175342
|
|||
|
65ff23e406
|
|||
|
a07e4ad9cc
|
|||
|
4d813c6c2c
|
|||
|
9b0b9baf16
|
|||
|
9edbcc0bc2
|
|||
|
12bff5848a
|
|||
|
1bb5151fce
|
|||
|
75c6af122f
|
|||
|
da36606af3
|
|||
|
c3a689a007
|
|||
|
b0ed748712
|
|||
|
08a5b44660
|
|||
|
c80856f3c5
|
|||
|
70737658c7
|
|||
|
ebf0c6d970
|
|||
|
c92cefa903
|
|||
|
63e4270c89
|
|||
|
721edb71a1
|
|||
|
8f20452e1a
|
|||
|
de58630958
|
|||
|
f61b2b4535
|
|||
|
6863d64112
|
|||
|
aa52473f90
|
|||
|
465e47fc10
|
|||
|
3a721987dd
|
|||
|
2792753d3d
|
|||
|
af6184d581
|
|||
|
40a3cdabc9
|
|||
|
08e6af2eae
|
|||
|
09332aca24
|
|||
| b161f926a9 | |||
|
c406d6226c
|
|||
| 74fd2bf32c | |||
|
377300d288
|
|||
|
83cc9be24c
|
|||
| 4eaf354912 | |||
|
c9a8e0746a
|
|||
|
07cca921bf
|
|||
| cd980f2af9 | |||
|
0e02c8ab15
|
|||
|
01cb2818ff
|
|||
| 67c84a7254 | |||
| 5b15fcd60f | |||
|
1e1eac9dd6
|
|||
| 0d2ffe0f54 | |||
|
991dc32ce4
|
|||
|
d6a72ace83
|
|||
|
7a0d5dc48c
|
|||
|
4ed4b6e5f4
|
|||
|
4499e20e77
|
|||
|
fbc1e55e5c
|
|||
|
653fc7d52f
|
|||
|
84881edb61
|
|||
|
c8b1b72694
|
|||
|
73cd1d794a
|
|||
|
28ac23d8f2
|
|||
|
71b7519a53
|
|||
|
28ee1a9d1e
|
|||
|
f327c6e06e
|
|||
|
799ff00f9c
|
|||
|
369e3f4b5c
|
|||
|
3788de2609
|
|||
|
0f9aafe418
|
|||
|
13b90e9ee6
|
|||
|
6e19a6217d
|
|||
|
34fd4e7304
|
|||
|
5e04012aa4
|
|||
|
e8f2928543
|
|||
|
91a3b2fabf
|
|||
|
964b9a03ef
|
|||
|
bf693645d4
|
|||
|
082b4826c2
|
|||
|
e68c3002d8
|
|||
|
30d2f4a644
|
|||
|
875a45f2b8
|
|||
|
6bf7afbe09
|
|||
|
5c94dbbff5
|
|||
|
cb44eb1fab
|
|||
|
df63d7947f
|
|||
|
01a5ff907c
|
|||
|
e22e3d8bc3
|
|||
|
efecd78355
|
|||
|
ed4246ba0e
|
|||
|
4acc228fe3
|
|||
|
42279b0592
|
|||
|
e417ab64d8
|
|||
|
93b11c3a35
|
|||
|
1ef2c4919e
|
|||
|
6ff8f74317
|
|||
|
bf70ca98f3
|
|||
|
52e5befd93
|
|||
|
a047b49073
|
|||
|
59b20578bb
|
|||
|
cdd6c6a72a
|
|||
|
1d16473d2d
|
|||
|
cd2bef9811
|
|||
|
62118b6d64
|
|||
|
8290b332fb
|
|||
|
61236719f4
|
|||
|
aa699d5009
|
|||
|
9a4f9cdf4c
|
|||
|
5532fc51a9
|
|||
|
99db648a36
|
|||
|
adcab6afcb
|
|||
|
8e40c0a06c
|
|||
|
db5e4858b8
|
|||
|
d800311ae7
|
|||
|
32fdde5d90
|
|||
|
2eacdaeece
|
|||
|
827bce6e1b
|
|||
|
50c74fdb71
|
|||
|
42f091489e
|
|||
|
995dd9a015
|
|||
|
5b0c9ba72d
|
|||
|
d745869cc0
|
|||
|
e6389d8b9b
|
|||
|
47f1bdf485
|
|||
|
bc96664b7c
|
|||
|
04ec6e2de3
|
|||
|
ba31f4b8be
|
|||
|
d5f9bc4d05
|
|||
|
ad9ffc89b5
|
|||
|
f482750d08
|
|||
|
7b77df0c4c
|
|||
|
8ee5d627aa
|
|||
|
775dd60b56
|
|||
|
b3365607c5
|
|||
|
96058995be
|
|||
|
1d43b78590
|
|||
|
243682758a
|
|||
|
695c4d84e8
|
|||
|
25908dd9d7
|
|||
|
34a28b8134
|
|||
|
7e1f9a1f33
|
|||
|
f0ba205a58
|
|||
|
1a717cd83e
|
|||
|
1e932d97c8
|
|||
|
d879de2a6b
|
|||
|
34e3eb04af
|
|||
|
ff5f88588e
|
|||
|
ac5c09b7da
|
|||
|
d1b42fe79f
|
|||
|
3d32c77bd1
|
|||
|
8e077810f5
|
|||
|
5e0621e37d
|
|||
|
e6f9f9b523
|
|||
|
1c5fdabca6
|
|||
|
7bbb4bb036
|
|||
|
159f87d07e
|
|||
|
244db86113
|
|||
|
00d9a4f734
|
|||
|
b7a3c12eff
|
|||
|
8e263d7ace
|
|||
|
641cbcfd47
|
|||
|
8af84d42e5
|
|||
|
d31a47f46c
|
|||
|
ddb8ad0948
|
|||
|
73cb0c23f5
|
|||
|
59738f5711
|
|||
|
f3ff19098b
|
|||
|
8bc852fa7d
|
|||
|
8e06b98695
|
|||
|
809255baa6
|
|||
|
21e80ca883
|
|||
|
cfb7c7e453
|
|||
|
82498e7714
|
|||
|
87a611459a
|
|||
|
0a09208766
|
|||
|
99ce364dc4
|
|||
|
2daa33f3ac
|
|||
|
2814c6820b
|
231
.drone.yml
231
.drone.yml
@@ -3,30 +3,26 @@ type: docker
|
|||||||
name: Test Pipeline
|
name: Test Pipeline
|
||||||
|
|
||||||
workspace:
|
workspace:
|
||||||
path: /drone/grow
|
path: /drone/auth
|
||||||
|
|
||||||
steps:
|
steps:
|
||||||
- name: yarn install
|
- name: yarn install
|
||||||
image: node:latest
|
image: node:latest
|
||||||
commands:
|
commands:
|
||||||
- yarn install
|
- yarn install
|
||||||
|
|
||||||
- name: Code Style Checks
|
- name: Code Style Checks
|
||||||
image: node:latest
|
image: node:latest
|
||||||
commands:
|
commands:
|
||||||
- yarn prettier
|
- yarn prettier
|
||||||
|
|
||||||
- name: Lint
|
- name: Lint
|
||||||
image: node:latest
|
image: node:latest
|
||||||
commands:
|
commands:
|
||||||
- yarn lint
|
- yarn lint
|
||||||
|
|
||||||
- name: Unit Tests
|
- name: Unit Tests
|
||||||
image: node:latest
|
image: node:latest
|
||||||
commands:
|
commands:
|
||||||
- yarn test
|
- yarn test
|
||||||
|
- name: Send Test Status Notification
|
||||||
- name: Send Status Notification
|
|
||||||
image: plugins/webhook
|
image: plugins/webhook
|
||||||
settings:
|
settings:
|
||||||
urls: https://lab.mifi.dev/hooks/9p65zpagctgkmndo8nwwm4199r
|
urls: https://lab.mifi.dev/hooks/9p65zpagctgkmndo8nwwm4199r
|
||||||
@@ -41,34 +37,14 @@ steps:
|
|||||||
status:
|
status:
|
||||||
- success
|
- success
|
||||||
- failure
|
- failure
|
||||||
|
|
||||||
trigger:
|
|
||||||
event:
|
|
||||||
- push
|
|
||||||
|
|
||||||
---
|
|
||||||
kind: pipeline
|
|
||||||
type: docker
|
|
||||||
name: Build Pipeline
|
|
||||||
|
|
||||||
workspace:
|
|
||||||
path: /drone/grow
|
|
||||||
|
|
||||||
steps:
|
|
||||||
- name: yarn install
|
|
||||||
image: node:latest
|
|
||||||
commands:
|
|
||||||
- yarn install
|
|
||||||
|
|
||||||
- name: Build
|
- name: Build
|
||||||
image: node:latest
|
image: node:latest
|
||||||
commands:
|
commands:
|
||||||
- yarn build
|
- yarn build
|
||||||
|
- name: Send Build Status Notifications
|
||||||
- name: Send Status Notifications
|
|
||||||
image: plugins/webhook
|
image: plugins/webhook
|
||||||
settings:
|
settings:
|
||||||
urls: https://lab.mifi.dev/hooks/ccw34hdf7tgbjmzp96nptn938r
|
urls: https://lab.mifi.dev/hooks/9p65zpagctgkmndo8nwwm4199r
|
||||||
content_type: application/json
|
content_type: application/json
|
||||||
template: |
|
template: |
|
||||||
{
|
{
|
||||||
@@ -81,14 +57,12 @@ steps:
|
|||||||
- success
|
- success
|
||||||
- failure
|
- failure
|
||||||
|
|
||||||
depends_on:
|
|
||||||
- Test Pipeline
|
|
||||||
|
|
||||||
trigger:
|
trigger:
|
||||||
branch:
|
branch:
|
||||||
- main
|
- main
|
||||||
|
- develop
|
||||||
event:
|
event:
|
||||||
- push
|
- pull_request
|
||||||
|
|
||||||
---
|
---
|
||||||
kind: pipeline
|
kind: pipeline
|
||||||
@@ -96,39 +70,23 @@ type: docker
|
|||||||
name: Publish Pipeline
|
name: Publish Pipeline
|
||||||
|
|
||||||
workspace:
|
workspace:
|
||||||
path: /drone/grow
|
path: /drone/auth
|
||||||
|
|
||||||
steps:
|
steps:
|
||||||
- name: Build Service
|
- name: Build Package
|
||||||
image: node:latest
|
image: node:latest
|
||||||
commands:
|
commands:
|
||||||
- cp /drone/grow/package.json ./
|
- yarn install
|
||||||
- cp /drone/grow/yarn.lock ./
|
|
||||||
- yarn install --frozen-lockfile
|
|
||||||
- cp -r /drone/grow/* .
|
|
||||||
- yarn build
|
- yarn build
|
||||||
- name: Publish NPM
|
- name: Publish NPM
|
||||||
image: plugins/npm
|
image: node:20-alpine
|
||||||
settings:
|
failure: ignore
|
||||||
username: mifi
|
commands:
|
||||||
registry: git.mifi.dev
|
- yarn publish -t ${DRONE_TAG}
|
||||||
token:
|
|
||||||
- from_secret: gitea_token
|
|
||||||
- name: Publish Image
|
|
||||||
image: plugins/docker
|
|
||||||
settings:
|
|
||||||
auto_tag: true
|
|
||||||
squash: true
|
|
||||||
repo: git.mifi.dev/mifi/auth
|
|
||||||
registry: git.mifi.dev
|
|
||||||
ssh-agent-key:
|
|
||||||
from_secret: gitea_token
|
|
||||||
volumes:
|
volumes:
|
||||||
- name: dockersock
|
- name: npmrc
|
||||||
Path: /var/run/docker.sock
|
path: /drone/auth/.npmrc
|
||||||
- name: dockerconfig
|
- name: Report NPM Publish Status
|
||||||
Path: /.docker/config.json
|
|
||||||
- name: Send Status Notifications
|
|
||||||
image: plugins/webhook
|
image: plugins/webhook
|
||||||
settings:
|
settings:
|
||||||
urls: https://lab.mifi.dev/hooks/ccw34hdf7tgbjmzp96nptn938r
|
urls: https://lab.mifi.dev/hooks/ccw34hdf7tgbjmzp96nptn938r
|
||||||
@@ -136,7 +94,35 @@ steps:
|
|||||||
template: |
|
template: |
|
||||||
{
|
{
|
||||||
"icon_url":"https://emojipedia-us.s3.dualstack.us-west-1.amazonaws.com/thumbs/120/apple/198/freezing-face_1f976.png",
|
"icon_url":"https://emojipedia-us.s3.dualstack.us-west-1.amazonaws.com/thumbs/120/apple/198/freezing-face_1f976.png",
|
||||||
"text": "[{{ repo.name }} - New tagged docker image release {{tag}} from # {{ build.number }}] Deploy {{ build.status }} {{#success build.status}}:tada:{{else}}:poop:{{/success}}",
|
"text": "[{{ repo.name }} - New npm package release {{tag}} from # {{ build.number }}] Deploy {{ build.status }} {{#success build.status}}:tada:{{else}}:poop:{{/success}}",
|
||||||
|
"username":"DroneBot"
|
||||||
|
}
|
||||||
|
when:
|
||||||
|
status:
|
||||||
|
- success
|
||||||
|
- failure
|
||||||
|
- name: Publish Image
|
||||||
|
image: plugins/docker
|
||||||
|
settings:
|
||||||
|
auto_tag: true
|
||||||
|
repo: git.mifi.dev/mifi/mifi/auth
|
||||||
|
registry: git.mifi.dev
|
||||||
|
debug: true
|
||||||
|
ssh-agent-key:
|
||||||
|
from_secret: reg_token
|
||||||
|
username: <token>
|
||||||
|
password:
|
||||||
|
from_secret: reg_token
|
||||||
|
secrets: [reg_token]
|
||||||
|
- name: Report Image Publish Status
|
||||||
|
image: plugins/webhook
|
||||||
|
settings:
|
||||||
|
urls: https://lab.mifi.dev/hooks/ccw34hdf7tgbjmzp96nptn938r
|
||||||
|
content_type: application/json
|
||||||
|
template: |
|
||||||
|
{
|
||||||
|
"icon_url":"https://emojipedia-us.s3.dualstack.us-west-1.amazonaws.com/thumbs/120/apple/198/freezing-face_1f976.png",
|
||||||
|
"text": "[{{ repo.name }} - New docker image release {{tag}} from # {{ build.number }}] Deploy {{ build.status }} {{#success build.status}}:tada:{{else}}:poop:{{/success}}",
|
||||||
"username":"DroneBot"
|
"username":"DroneBot"
|
||||||
}
|
}
|
||||||
when:
|
when:
|
||||||
@@ -145,13 +131,18 @@ steps:
|
|||||||
- failure
|
- failure
|
||||||
|
|
||||||
volumes:
|
volumes:
|
||||||
- name: dockersock
|
|
||||||
path: /var/run/docker.sock
|
|
||||||
- name: dockerconfig
|
- name: dockerconfig
|
||||||
path: /volume1/docker/labs/grow-auth/dockerconfig.json
|
host:
|
||||||
|
path: /volume1/docker/dockerconfig.json
|
||||||
|
- name: dockersock
|
||||||
|
host:
|
||||||
|
path: /var/run/docker.sock
|
||||||
|
- name: npmrc
|
||||||
|
host:
|
||||||
|
path: /volume1/docker/beethoven/labs-auth/.npmrc
|
||||||
|
|
||||||
depends_on:
|
depends_on:
|
||||||
- Build Pipeline
|
- Test Pipeline
|
||||||
|
|
||||||
trigger:
|
trigger:
|
||||||
event:
|
event:
|
||||||
@@ -160,29 +151,33 @@ trigger:
|
|||||||
---
|
---
|
||||||
kind: pipeline
|
kind: pipeline
|
||||||
type: docker
|
type: docker
|
||||||
name: Deploy Pipeline
|
name: Staging Deploy Pipeline
|
||||||
|
|
||||||
workspace:
|
workspace:
|
||||||
path: /drone/grow
|
path: /drone/auth
|
||||||
|
|
||||||
# image_pull_secrets:
|
|
||||||
# - from_secret: gitea_token
|
|
||||||
|
|
||||||
steps:
|
steps:
|
||||||
- name: Deploy Container
|
- name: Deploy Container
|
||||||
image: docker
|
image: docker
|
||||||
|
privileged: true
|
||||||
|
environment:
|
||||||
|
CONTAINER_PREFIX: staging
|
||||||
|
HOST: area51.mifi.dev
|
||||||
|
ROUTE_PREFIX: /auth
|
||||||
|
PORT: 9001
|
||||||
commands:
|
commands:
|
||||||
- compose build .
|
- docker compose -f docker-compose.staging-build.yml build --pull --no-cache
|
||||||
- compose up --wait
|
- docker compose -f docker-compose.staging-build.yml up --remove-orphans --force-recreate --wait
|
||||||
volumes:
|
volumes:
|
||||||
- name: env
|
- name: env-secrets
|
||||||
path: /.env
|
path: /drone/auth/staging.env
|
||||||
- name: dockersock
|
- name: dockersock
|
||||||
Path: /var/run/docker.sock
|
path: /var/run/docker.sock
|
||||||
- name: dockerconfig
|
- name: dockerconfig
|
||||||
Path: /.docker/config.json
|
path: /drone/auth/.docker/config.json
|
||||||
- name: Send Status Notifications
|
- name: Send Status Notifications
|
||||||
image: plugins/webhook
|
image: plugins/webhook
|
||||||
|
privileged: true
|
||||||
settings:
|
settings:
|
||||||
urls: https://lab.mifi.dev/hooks/ccw34hdf7tgbjmzp96nptn938r
|
urls: https://lab.mifi.dev/hooks/ccw34hdf7tgbjmzp96nptn938r
|
||||||
content_type: application/json
|
content_type: application/json
|
||||||
@@ -198,16 +193,90 @@ steps:
|
|||||||
- failure
|
- failure
|
||||||
|
|
||||||
volumes:
|
volumes:
|
||||||
- name: env
|
|
||||||
path: /volume1/docker/labs/grow-auth/.env
|
|
||||||
- name: dockersock
|
|
||||||
path: /var/run/docker.sock
|
|
||||||
- name: dockerconfig
|
- name: dockerconfig
|
||||||
path: /volume1/docker/labs/grow-auth/dockerconfig.json
|
host:
|
||||||
|
path: /volume1/docker/dockerconfig.json
|
||||||
|
- name: dockersock
|
||||||
|
host:
|
||||||
|
path: /var/run/docker.sock
|
||||||
|
- name: env-secrets
|
||||||
|
host:
|
||||||
|
path: /volume1/docker/beethoven/labs-auth/staging.env
|
||||||
|
|
||||||
depends_on:
|
depends_on:
|
||||||
- Build Pipeline
|
- Test Pipeline
|
||||||
|
|
||||||
|
trigger:
|
||||||
|
branch:
|
||||||
|
- develop
|
||||||
|
event:
|
||||||
|
- push
|
||||||
|
|
||||||
|
---
|
||||||
|
kind: pipeline
|
||||||
|
type: docker
|
||||||
|
name: Production Deploy Pipeline
|
||||||
|
|
||||||
|
workspace:
|
||||||
|
path: /drone/auth
|
||||||
|
|
||||||
|
clone:
|
||||||
|
disable: true
|
||||||
|
|
||||||
|
steps:
|
||||||
|
- name: Deploy Container
|
||||||
|
image: docker
|
||||||
|
privileged: true
|
||||||
|
environment:
|
||||||
|
CONTAINER_PREFIX: staging
|
||||||
|
HOST: area51.mifi.dev
|
||||||
|
ROUTE_PREFIX: /auth
|
||||||
|
PORT: 9001
|
||||||
|
commands:
|
||||||
|
- docker compose -f docker-compose.production-build.yml pull
|
||||||
|
- docker compose -f docker-compose.production-build.yml build --no-cache
|
||||||
|
- docker compose -f docker-compose.production-build.yml rm --stop
|
||||||
|
- docker compose -f docker-compose.production-build.yml up --wait
|
||||||
|
volumes:
|
||||||
|
- name: env-secrets
|
||||||
|
path: /drone/auth/production.env
|
||||||
|
- name: dockersock
|
||||||
|
path: /var/run/docker.sock
|
||||||
|
- name: dockerconfig
|
||||||
|
path: /drone/auth/.docker/config.json
|
||||||
|
- name: Send Status Notifications
|
||||||
|
image: plugins/webhook
|
||||||
|
privileged: true
|
||||||
|
settings:
|
||||||
|
urls: https://lab.mifi.dev/hooks/ccw34hdf7tgbjmzp96nptn938r
|
||||||
|
content_type: application/json
|
||||||
|
template: |
|
||||||
|
{
|
||||||
|
"icon_url":"https://emojipedia-us.s3.dualstack.us-west-1.amazonaws.com/thumbs/120/apple/198/freezing-face_1f976.png",
|
||||||
|
"text": "[{{ repo.name }} - Build # {{ build.number }}] Deploy {{ build.status }} {{#success build.status}}:tada:{{else}}:poop:{{/success}}",
|
||||||
|
"username":"DroneBot"
|
||||||
|
}
|
||||||
|
when:
|
||||||
|
status:
|
||||||
|
- success
|
||||||
|
- failure
|
||||||
|
|
||||||
|
volumes:
|
||||||
|
- name: dockerconfig
|
||||||
|
host:
|
||||||
|
path: /volume1/docker/dockerconfig.json
|
||||||
|
- name: dockersock
|
||||||
|
host:
|
||||||
|
path: /var/run/docker.sock
|
||||||
|
- name: env-secrets
|
||||||
|
host:
|
||||||
|
path: /volume1/docker/beethoven/labs-auth/staging.env
|
||||||
|
|
||||||
|
depends_on:
|
||||||
|
- Test Pipeline
|
||||||
|
|
||||||
trigger:
|
trigger:
|
||||||
event:
|
event:
|
||||||
- tag
|
- promote
|
||||||
|
target:
|
||||||
|
- production
|
||||||
31
.env.dev
Normal file
31
.env.dev
Normal file
@@ -0,0 +1,31 @@
|
|||||||
|
HOST=localhost
|
||||||
|
PORT=9001
|
||||||
|
|
||||||
|
ROUTE_PREFIX=/auth
|
||||||
|
|
||||||
|
LOGIN_ROUTE=/login
|
||||||
|
RESET_ROUTE=/reset
|
||||||
|
|
||||||
|
# DB_ADMIN_USERNAME=root
|
||||||
|
# DB_ADMIN_PASSWORD=password
|
||||||
|
DB_USERNAME=user
|
||||||
|
DB_PASSWORD=password
|
||||||
|
DB_NAME=auth
|
||||||
|
|
||||||
|
MONGO_INITDB_ROOT_USERNAME=$DB_USERNAME
|
||||||
|
MONGO_INITDB_ROOT_PASSWORD=$DB_PASSWORD
|
||||||
|
MONGO_INITDB_DATABASE=$DB_NAME
|
||||||
|
|
||||||
|
SESSION_KEY=shjhakjfhfjdshjksdhfdshfhfduyeyb73te4
|
||||||
|
|
||||||
|
JWT_AUDIENCE=Grow.io
|
||||||
|
JWT_ISSUER=Grow Latch
|
||||||
|
JWT_SECRET=Th!sIs a d3v3lopm3nt server SEcr¢T.
|
||||||
|
|
||||||
|
LOGIN_VALID_TIME=12H
|
||||||
|
RESET_VALID_MINUTES=15
|
||||||
|
DEFAULT_TOKEN_DAYS=1
|
||||||
|
|
||||||
|
CONTAINER_PREFIX=dev
|
||||||
|
SERVICE_NAME=auth-service
|
||||||
|
ENV=development
|
||||||
25
Dockerfile
25
Dockerfile
@@ -1,27 +1,28 @@
|
|||||||
# FROM node:20-alpine AS build
|
ARG ENV=production
|
||||||
# RUN mkdir -p /home/node/app/node_modules && chown -R node:node /home/node/app
|
ARG MONGO_VERSION=latest
|
||||||
# WORKDIR /home/node/app
|
ARG PORT=9001
|
||||||
# COPY package*.json .
|
|
||||||
# COPY dist/lib .
|
|
||||||
# USER node
|
|
||||||
# RUN yarn install --frozen-lockfile --production
|
|
||||||
# COPY --chown=node:node node_modules ./node_modules
|
|
||||||
# CMD ["node", "dist/lib/server/index.js"]
|
|
||||||
|
|
||||||
|
## mongo build stage
|
||||||
|
FROM mongo:$MONGO_VERSION AS database
|
||||||
|
COPY mongo-init.sh /docker-entrypoint-initdb.d
|
||||||
|
|
||||||
|
## stage one, build the service
|
||||||
FROM node:20-alpine AS build
|
FROM node:20-alpine AS build
|
||||||
|
ENV NODE_ENV development
|
||||||
WORKDIR /home/node/app
|
WORKDIR /home/node/app
|
||||||
COPY package*.json ./
|
COPY package*.json ./
|
||||||
COPY tsconfig.json ./
|
COPY tsconfig.json ./
|
||||||
COPY lib ./lib
|
COPY lib ./lib
|
||||||
RUN ls -a
|
RUN ls -a
|
||||||
RUN yarn install
|
RUN yarn install
|
||||||
RUN yarn build:production
|
RUN yarn build
|
||||||
|
|
||||||
## this is stage two , where the app actually runs
|
## this is stage two , where the app actually runs
|
||||||
FROM node:20-alpine AS containerize
|
FROM node:20-alpine AS containerize
|
||||||
|
ENV NODE_ENV $ENV
|
||||||
WORKDIR /home/node/app
|
WORKDIR /home/node/app
|
||||||
COPY package*.json ./
|
COPY package*.json ./
|
||||||
RUN yarn install --frozen-lockfile --production
|
RUN yarn install --frozen-lockfile --production
|
||||||
COPY --from=0 /home/node/app/dist .
|
COPY --from=build /home/node/app/dist .
|
||||||
EXPOSE 80
|
EXPOSE $PORT
|
||||||
CMD ["node","server/index.js"]
|
CMD ["node","server/index.js"]
|
||||||
|
|||||||
41
docker-compose.dev.yml
Normal file
41
docker-compose.dev.yml
Normal file
@@ -0,0 +1,41 @@
|
|||||||
|
version: '3.8'
|
||||||
|
|
||||||
|
services:
|
||||||
|
auth-service_mongo:
|
||||||
|
env_file: .env.dev
|
||||||
|
container_name: ${CONTAINER_PREFIX}-auth-service_mongo
|
||||||
|
ports:
|
||||||
|
- 27017:27017
|
||||||
|
networks:
|
||||||
|
- backend
|
||||||
|
volumes:
|
||||||
|
- auth-db:/data/db
|
||||||
|
- auth-db:/data/configdb
|
||||||
|
restart: unless-stopped
|
||||||
|
image: mongo:latest
|
||||||
|
auth-service:
|
||||||
|
env_file: .env.dev
|
||||||
|
build:
|
||||||
|
context: .
|
||||||
|
args:
|
||||||
|
- PORT
|
||||||
|
- ENV
|
||||||
|
container_name: ${CONTAINER_PREFIX}-auth-service
|
||||||
|
ports:
|
||||||
|
- 9001:9001
|
||||||
|
environment:
|
||||||
|
- DB_HOST=${CONTAINER_PREFIX}-auth-service_mongo
|
||||||
|
networks:
|
||||||
|
- labs-net
|
||||||
|
- backend
|
||||||
|
restart: unless-stopped
|
||||||
|
image: node:20-alpine
|
||||||
|
depends_on:
|
||||||
|
- auth-service_mongo
|
||||||
|
networks:
|
||||||
|
labs-net:
|
||||||
|
name: labs-net
|
||||||
|
|
||||||
|
volumes:
|
||||||
|
auth-db:
|
||||||
|
external: true
|
||||||
58
docker-compose.staging-build.yml
Normal file
58
docker-compose.staging-build.yml
Normal file
@@ -0,0 +1,58 @@
|
|||||||
|
version: '3.8'
|
||||||
|
|
||||||
|
services:
|
||||||
|
auth-service_mongo:
|
||||||
|
container_name: ${CONTAINER_PREFIX}-auth-service_mongo
|
||||||
|
env_file:
|
||||||
|
- staging.env
|
||||||
|
build:
|
||||||
|
context: .
|
||||||
|
target: database
|
||||||
|
args:
|
||||||
|
MONGO_VERSION: 4.4
|
||||||
|
networks:
|
||||||
|
- auth-backend
|
||||||
|
volumes:
|
||||||
|
- 'auth-db:/data/db'
|
||||||
|
- 'auth-db:/data/configdb'
|
||||||
|
restart: unless-stopped
|
||||||
|
image: mongo:4.4
|
||||||
|
auth-service:
|
||||||
|
container_name: ${CONTAINER_PREFIX}-auth-service
|
||||||
|
env_file:
|
||||||
|
- staging.env
|
||||||
|
build:
|
||||||
|
context: .
|
||||||
|
target: containerize
|
||||||
|
args:
|
||||||
|
- PORT
|
||||||
|
- ENV
|
||||||
|
environment:
|
||||||
|
- DB_HOST=${CONTAINER_PREFIX}-auth-service_mongo
|
||||||
|
labels:
|
||||||
|
- 'traefik.enable=true'
|
||||||
|
- 'traefik.docker.network=docknet'
|
||||||
|
- 'traefik.http.routers.labs-auth.rule=Host(`${HOST}`) && Path(`${ROUTE_PREFIX}`)'
|
||||||
|
- 'traefik.http.routers.labs-auth.entrypoints=websecure'
|
||||||
|
- 'traefik.http.routers.labs-auth.tls=true'
|
||||||
|
- 'traefik.http.routers.labs-auth.tls.certresolver=letsencrypt'
|
||||||
|
- 'traefik.http.routers.labs-auth.service=labs-auth-service'
|
||||||
|
- 'traefik.http.services.labs-auth-service.loadbalancer.server.port=${PORT}'
|
||||||
|
networks:
|
||||||
|
- auth-backend
|
||||||
|
- docknet
|
||||||
|
restart: unless-stopped
|
||||||
|
image: node:20-alpine
|
||||||
|
depends_on:
|
||||||
|
- auth-service_mongo
|
||||||
|
networks:
|
||||||
|
auth-backend:
|
||||||
|
driver: bridge
|
||||||
|
external: false
|
||||||
|
docknet:
|
||||||
|
name: docknet
|
||||||
|
external: true
|
||||||
|
|
||||||
|
volumes:
|
||||||
|
auth-db:
|
||||||
|
external: false
|
||||||
43
docker-compose.staging-image.yml
Normal file
43
docker-compose.staging-image.yml
Normal file
@@ -0,0 +1,43 @@
|
|||||||
|
version: '3.8'
|
||||||
|
|
||||||
|
services:
|
||||||
|
auth-service_mongo:
|
||||||
|
container_name: ${CONTAINER_PREFIX}-auth-service_mongo
|
||||||
|
env_file:
|
||||||
|
- staging.env
|
||||||
|
networks:
|
||||||
|
- docknet
|
||||||
|
volumes:
|
||||||
|
- auth-db:/data
|
||||||
|
- ./mongo-init.js:/docker-entrypoint-initdb.d/mongo-init.js:ro
|
||||||
|
restart: unless-stopped
|
||||||
|
image: mongo:4.4
|
||||||
|
auth-service:
|
||||||
|
env_file:
|
||||||
|
- staging.env
|
||||||
|
container_name: ${CONTAINER_PREFIX}-auth-service
|
||||||
|
environment:
|
||||||
|
- DB_HOST=${CONTAINER_PREFIX}-auth-service_mongo
|
||||||
|
labels:
|
||||||
|
- 'traefik.enable=true'
|
||||||
|
- 'traefik.http.routers.grow.rule=Host(`${HOST}`) && Path(`${ROUTE_PREFIX}`)'
|
||||||
|
- 'traefik.http.routers.grow.entrypoints=websecure'
|
||||||
|
- 'traefik.http.routers.grow.tls=true'
|
||||||
|
- 'traefik.http.routers.grow.tls.certresolver=letsencrypt'
|
||||||
|
- 'traefik.http.routers.grow.service=grow-service'
|
||||||
|
- 'traefik.http.services.grow-service.loadbalancer.server.port=${PORT}'
|
||||||
|
networks:
|
||||||
|
- docknet
|
||||||
|
restart: unless-stopped
|
||||||
|
depends_on:
|
||||||
|
- auth-service_mongo
|
||||||
|
image: git.mifi.dev/mifi/mifi/auth:latest
|
||||||
|
|
||||||
|
networks:
|
||||||
|
docknet:
|
||||||
|
name: docknet
|
||||||
|
external: true
|
||||||
|
|
||||||
|
volumes:
|
||||||
|
auth-db:
|
||||||
|
external: false
|
||||||
@@ -1,56 +0,0 @@
|
|||||||
version: '3.8'
|
|
||||||
|
|
||||||
services:
|
|
||||||
auth-service_mongo:
|
|
||||||
container_name: ${CONTAINER_PREFIX}${SERVICE_NAME}_${DB_TYPE}
|
|
||||||
environment:
|
|
||||||
- ALLOW_EMPTY_PASSWORD=yes
|
|
||||||
- MONGO_INITDB_ROOT_USERNAME=${DB_USER}
|
|
||||||
- MONGO_INITDB_ROOT_PASSWORD=${DB_PASS}
|
|
||||||
- MONGO_INITDB_DATABASE=${DB_NAME}
|
|
||||||
networks:
|
|
||||||
- docknet
|
|
||||||
volumes:
|
|
||||||
- '/volume1/docker/labs/grow-auth/mongo:/data/db'
|
|
||||||
restart: unless-stopped
|
|
||||||
image: mongo
|
|
||||||
auth-service:
|
|
||||||
build: .
|
|
||||||
container_name: ${CONTAINER_PREFIX}-${SERVICE_NAME}
|
|
||||||
environment:
|
|
||||||
- PORT=${PORT}
|
|
||||||
- ROUTE_PREFIX=${ROUTE_PREFIX}
|
|
||||||
- LOGIN_ROUTE=${LOGIN_ROUTE}
|
|
||||||
- RESET_ROUTE=${RESET_ROUTE}
|
|
||||||
- DB_HOST=${CONTAINER_PREFIX}-${SERVICE_NAME}_${DB_TYPE}
|
|
||||||
- DB_USER=${DB_USER}
|
|
||||||
- DB_PASS=${DB_PASS}
|
|
||||||
- DB_NAME=${DB_NAME}
|
|
||||||
- SESSION_KEY=${SESSION_KEY}
|
|
||||||
- JWT_AUDIENCE=${JWT_AUDIENCE}
|
|
||||||
- JWT_ISSUER=${JWT_ISSUER}
|
|
||||||
- JWT_SECRET=${JWT_SECRET}
|
|
||||||
- LOGIN_VALID_TIME=${LOGIN_VALID_TIME}
|
|
||||||
- RESET_VALID_MINUTES=${RESET_VALID_MINUTES}
|
|
||||||
- DEFAULT_TOKEN_DAYS=${DEFAULT_TOKEN_DAYS}
|
|
||||||
labels:
|
|
||||||
- 'traefik.enable=true'
|
|
||||||
- 'traefik.http.routers.grow.rule=Host(`${HOST}`)'
|
|
||||||
- 'traefik.http.routers.grow.rule=Path(`${ROUTE_PREFIX}`)'
|
|
||||||
- 'traefik.http.routers.grow.entrypoints=websecure'
|
|
||||||
- 'traefik.http.routers.grow.tls=true'
|
|
||||||
- 'traefik.http.routers.grow.tls.certresolver=letsencrypt'
|
|
||||||
- 'traefik.http.routers.grow.service=gitea'
|
|
||||||
- 'traefik.http.services.gitea.loadbalancer.server.port=${PORT}'
|
|
||||||
networks:
|
|
||||||
- docknet
|
|
||||||
volumes:
|
|
||||||
- '/Volume1/docker/.yarnrc.yml:/.yarnrc.yml'
|
|
||||||
- '/Volume1/docker/labs/grow-auth/.env:/.env'
|
|
||||||
restart: unless-stopped
|
|
||||||
image: node
|
|
||||||
depends_on:
|
|
||||||
- auth-service_mongo
|
|
||||||
networks:
|
|
||||||
docknet:
|
|
||||||
name: docknet
|
|
||||||
@@ -1,5 +1,5 @@
|
|||||||
export const DB_HOST = process.env.DB_HOST || 'mongodb';
|
export const DB_HOST = process.env.DB_HOST;
|
||||||
export const DB_PORT = process.env.DB_PORT || 27017;
|
export const DB_PORT = process.env.DB_PORT || 27017;
|
||||||
export const DB_USER = process.env.DB_USER || 'test';
|
export const DB_USERNAME = process.env.DB_USERNAME;
|
||||||
export const DB_PASS = process.env.DB_PASSWORD || 'test';
|
export const DB_PASSWORD = process.env.DB_PASSWORD;
|
||||||
export const DB_NAME = process.env.DB_NAME || 'auth';
|
export const DB_NAME = process.env.DB_NAME;
|
||||||
|
|||||||
@@ -1,4 +1,4 @@
|
|||||||
export const PACKAGE_NAME = '@mifi/latch';
|
export const PACKAGE_NAME = '@mifi/auth';
|
||||||
export const PORT = process.env.PORT || 9000;
|
export const PORT = process.env.PORT || 9000;
|
||||||
|
|
||||||
export const SESSION_KEY = process.env.SESSION_KEY || 'secret-key';
|
export const SESSION_KEY = process.env.SESSION_KEY || 'secret-key';
|
||||||
|
|||||||
@@ -1,5 +1,5 @@
|
|||||||
import mongoose from 'mongoose';
|
import mongoose from 'mongoose';
|
||||||
|
|
||||||
import { DB_HOST, DB_NAME, DB_PASS, DB_PORT, DB_USER } from '../constants/db';
|
import { DB_HOST, DB_NAME, DB_PASSWORD, DB_PORT, DB_USERNAME } from '../constants/db';
|
||||||
|
|
||||||
export const connection = mongoose.connect(`mongodb://${DB_USER}:${DB_PASS}@${DB_HOST}:${DB_PORT}/${DB_NAME}`);
|
export const connection = mongoose.connect(`mongodb://${DB_USERNAME}:${DB_PASSWORD}@${DB_HOST}:${DB_PORT}/${DB_NAME}`);
|
||||||
|
|||||||
@@ -7,10 +7,17 @@ import Auth from '../../db/model/auth';
|
|||||||
import { sign } from '../../utils/jwt';
|
import { sign } from '../../utils/jwt';
|
||||||
import passport from '../passport';
|
import passport from '../passport';
|
||||||
import { ErrorCodes, getErrorBody } from '../../constants/errors';
|
import { ErrorCodes, getErrorBody } from '../../constants/errors';
|
||||||
|
import { authenticated } from '../middleware/authenication';
|
||||||
|
|
||||||
const routerOpts: Router.IRouterOptions = { prefix };
|
const routerOpts: Router.IRouterOptions = { prefix };
|
||||||
const router: Router = new Router(routerOpts);
|
const router: Router = new Router(routerOpts);
|
||||||
|
|
||||||
|
router.get('/info', (ctx) => {
|
||||||
|
ctx.body = {
|
||||||
|
service: process.env.SERVICE_NAME,
|
||||||
|
};
|
||||||
|
});
|
||||||
|
|
||||||
router.post('/', async (ctx) => {
|
router.post('/', async (ctx) => {
|
||||||
const data = (await Auth.create(ctx.body)).save();
|
const data = (await Auth.create(ctx.body)).save();
|
||||||
ctx.body = { success: true, data: { ...data, strategies: undefined } };
|
ctx.body = { success: true, data: { ...data, strategies: undefined } };
|
||||||
@@ -37,7 +44,10 @@ router.post(process.env.RESET_ROUTE || RESET_ROUTE, async (ctx, next) => {
|
|||||||
ctx.body = { success: false, ...getErrorBody(ErrorCodes.RESET_REQUEST_DATA) };
|
ctx.body = { success: false, ...getErrorBody(ErrorCodes.RESET_REQUEST_DATA) };
|
||||||
});
|
});
|
||||||
|
|
||||||
router.patch('/:record', (ctx: Koa.Context) => {
|
router.patch('/:record', authenticated(), (ctx: Koa.Context) => {
|
||||||
|
if (ctx.user !== ctx.param.record) {
|
||||||
|
ctx.throw(StatusCodes.UNAUTHORIZED);
|
||||||
|
}
|
||||||
const data = Auth.findOneAndUpdate({ record: ctx.params.record });
|
const data = Auth.findOneAndUpdate({ record: ctx.params.record });
|
||||||
if (!data) {
|
if (!data) {
|
||||||
ctx.throw(StatusCodes.NOT_FOUND);
|
ctx.throw(StatusCodes.NOT_FOUND);
|
||||||
|
|||||||
@@ -1,12 +1,11 @@
|
|||||||
import dotenv from 'dotenv';
|
|
||||||
|
|
||||||
import app from './app';
|
import app from './app';
|
||||||
import { connection } from '../db';
|
import { connection } from '../db';
|
||||||
import { PORT } from '../constants/env';
|
import { PORT } from '../constants/env';
|
||||||
|
|
||||||
dotenv.config();
|
|
||||||
|
|
||||||
connection.then(
|
connection.then(
|
||||||
() => app.listen(PORT),
|
() => {
|
||||||
(err) => console.error('ERROR!', err),
|
app.listen(PORT);
|
||||||
|
console.debug('Server up and listening', { env: process.env });
|
||||||
|
},
|
||||||
|
(err) => console.error('Could not reach database', { err, env: process.env }),
|
||||||
);
|
);
|
||||||
|
|||||||
14
mongo-init.sh
Normal file
14
mongo-init.sh
Normal file
@@ -0,0 +1,14 @@
|
|||||||
|
set -e
|
||||||
|
|
||||||
|
mongo <<EOF
|
||||||
|
use $MONGO_INITDB_DATABASE
|
||||||
|
|
||||||
|
db.createUser({
|
||||||
|
user: '$DB_USERNAME',
|
||||||
|
pwd: '$DB_PASSWORD',
|
||||||
|
roles: [{
|
||||||
|
role: 'readWrite',
|
||||||
|
db: '$MONGO_INITDB_DATABASE'
|
||||||
|
}]
|
||||||
|
})
|
||||||
|
EOF
|
||||||
@@ -1,6 +1,6 @@
|
|||||||
{
|
{
|
||||||
"name": "@mifi/auth",
|
"name": "@mifi/auth",
|
||||||
"version": "0.0.7",
|
"version": "0.0.38",
|
||||||
"author": "mifi (Mike Fitzpatrick)",
|
"author": "mifi (Mike Fitzpatrick)",
|
||||||
"license": "MIT",
|
"license": "MIT",
|
||||||
"scripts": {
|
"scripts": {
|
||||||
|
|||||||
Reference in New Issue
Block a user