seafile-containerized/README.md
2021-01-23 15:28:58 +01:00

1.3 KiB

Containerized Seafile Deployment

A fully containerized deployment of Seafile for Docker and Docker Swarm.

Features

  • Complete redesign of the official Docker deployment with container virtualization best-practices in mind.
  • Runs Seahub (frontend) and Seafile Server (backend) in separate containers.
  • Frontend Clustering without Professional edition.
  • Completely removed self-implemented Nginx and Let's Encrypt and replaced it with two caddy services. The first one functioning as a reverse proxy, which forwards traffic to the respective endpoints. The second one functioning as a webserver for static content (/media path).
  • Seahub and Seafile Server normally communicate over a UNIX socket. This deployment contains socat, which basically translates the UNIX socket to a TCP stream.
  • Increased Security:
    • The caddy reverse proxy serves as a single entry point to the stack. Everything else runs in an isolated network.
    • Using Alpine Linux based images for the frontend, which is designed with security in mind and comes with proactive security features.
  • Reworked Dockerfiles featuring multi-stage builds, allowing for smaller images and faster builds.