-
Notifications
You must be signed in to change notification settings - Fork 65
Expand file tree
/
Copy pathdocker-compose.yaml
More file actions
128 lines (128 loc) · 3.18 KB
/
Copy pathdocker-compose.yaml
File metadata and controls
128 lines (128 loc) · 3.18 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
---
# Ports `8080` for relayer server, `6379`for redis server.
services:
relayer:
build:
context: ../../
dockerfile: Dockerfile.development
ports:
- 8080:8080/tcp
secrets:
- api_key
- webhook_signing_key
- keystore_passphrase
environment:
METRICS_PORT: 8081
REDIS_URL: ${REDIS_URL}
RATE_LIMIT_REQUESTS_PER_SECOND: 10
RATE_LIMIT_BURST: 30
METRICS_ENABLED: true
WEBHOOK_SIGNING_KEY: ${WEBHOOK_SIGNING_KEY}
API_KEY: ${API_KEY}
KEYSTORE_PASSPHRASE: ${KEYSTORE_PASSPHRASE}
depends_on:
- redis
restart: on-failure:5
mem_swappiness: 0
security_opt:
- no-new-privileges
volumes:
- ./config:/app/config/
- ../../config/networks:/app/config/networks
# Default: writes to stdout/console
- ${LOGS_DATA_DIR:-./logs}:/app/logs
networks:
- relayer-network
- metrics-network
redis:
image: redis:bookworm
security_opt:
- no-new-privileges
volumes:
- redis_data:/data
command:
- redis-server
- --appendonly
- 'yes'
- --save
- '60'
- '1'
networks:
- relayer-network
- metrics-network
restart: on-failure:5
redis-exporter:
image: oliver006/redis_exporter:v1.67.0
environment:
- REDIS_ADDR=redis://redis:6379
security_opt:
- no-new-privileges
profiles:
- metrics
depends_on:
- redis
networks:
- metrics-network
restart: on-failure:5
prometheus:
container_name: openzeppelin-relayer-prometheus
image: prom/prometheus:v3.1.0
user: 65534:65534
read_only: true
security_opt:
- no-new-privileges
command: --log.level=warn --config.file=/etc/prometheus/prometheus.yml --storage.tsdb.path=/prometheus --storage.tsdb.retention.time=30d --web.console.libraries=/usr/share/prometheus/console_libraries --web.console.templates=/usr/share/prometheus/consoles
ports:
- 9090:9090/tcp
networks:
- metrics-network
- relayer-network
volumes:
- ../../cmd/prometheus/prometheus.yml:/etc/prometheus/prometheus.yml:ro
- prometheus_data:/prometheus
tmpfs:
- /tmp
restart: on-failure:5
profiles:
- metrics
grafana:
image: grafana/grafana:11.5.1
user: 472:472
read_only: true
security_opt:
- no-new-privileges
ports:
- 3000:3000/tcp
networks:
- metrics-network
- relayer-network
volumes:
- ../../cmd/prometheus/grafana.ini:/etc/grafana/grafana.ini:ro
- ../../cmd/prometheus/datasources:/etc/grafana/provisioning/datasources:ro
- ../../cmd/prometheus/dashboards:/etc/grafana/provisioning/dashboards:ro
- grafana_data:/var/lib/grafana
tmpfs:
- /tmp
- /var/log/grafana
restart: on-failure:5
profiles:
- metrics
networks:
metrics-network:
internal: true
relayer-network:
driver: bridge
volumes:
redis_data:
driver: local
prometheus_data:
driver: local
grafana_data:
driver: local
secrets:
api_key:
environment: API_KEY
webhook_signing_key:
environment: WEBHOOK_SIGNING_KEY
keystore_passphrase:
environment: KEYSTORE_PASSPHRASE