Some checks failed
Deploy to Production / Run Tests (push) Failing after 16m35s
Deploy to Production / Security Scan (push) Has been skipped
Deploy to Production / Build Docker Image (push) Has been skipped
Deploy to Production / Deploy to Staging (push) Has been skipped
Deploy to Production / Deploy to Production (push) Has been skipped
Deploy to Production / Notify Results (push) Successful in 31s
✨ 新功能: - SQLite数据库集成和持久化存储 - 数据库迁移系统和版本管理 - API分页功能和高效查询 - 用户搜索和过滤机制 - 完整的RBAC角色权限系统 - 结构化日志记录和系统监控 - API限流和多层安全防护 - Docker容器化和生产部署配置 🔒 安全特性: - JWT认证和授权 - 限流和防暴力破解 - 安全头和CORS配置 - 输入验证和XSS防护 - 审计日志和安全监控 📊 监控和运维: - Prometheus指标收集 - 健康检查和系统监控 - 自动化备份和恢复 - 完整的运维文档和脚本 - CI/CD流水线配置 🚀 部署支持: - 多环境Docker配置 - 生产环境部署指南 - 性能优化和安全加固 - 故障排除和应急响应 - 自动化运维脚本 📚 文档完善: - API使用文档 - 部署检查清单 - 运维操作手册 - 性能和安全指南 - 故障排除指南
87 lines
2.1 KiB
YAML
87 lines
2.1 KiB
YAML
version: '3.8'
|
|
|
|
services:
|
|
# 主应用服务
|
|
rust-user-api:
|
|
build:
|
|
context: .
|
|
dockerfile: Dockerfile
|
|
container_name: rust-user-api
|
|
ports:
|
|
- "3000:3000"
|
|
environment:
|
|
- RUST_LOG=info
|
|
- DATABASE_URL=sqlite:///app/data/users.db?mode=rwc
|
|
- SERVER_HOST=0.0.0.0
|
|
- SERVER_PORT=3000
|
|
- LOG_LEVEL=info
|
|
- LOG_FORMAT=pretty
|
|
- LOG_TO_CONSOLE=true
|
|
- LOG_TO_FILE=false
|
|
volumes:
|
|
- api_data:/app/data
|
|
- ./logs:/app/logs
|
|
restart: unless-stopped
|
|
healthcheck:
|
|
test: ["CMD", "curl", "-f", "http://localhost:3000/health"]
|
|
interval: 30s
|
|
timeout: 10s
|
|
retries: 3
|
|
start_period: 40s
|
|
networks:
|
|
- rust-api-network
|
|
|
|
# Prometheus 监控(可选)
|
|
prometheus:
|
|
image: prom/prometheus:latest
|
|
container_name: rust-api-prometheus
|
|
ports:
|
|
- "9090:9090"
|
|
volumes:
|
|
- ./monitoring/prometheus.yml:/etc/prometheus/prometheus.yml:ro
|
|
- prometheus_data:/prometheus
|
|
command:
|
|
- '--config.file=/etc/prometheus/prometheus.yml'
|
|
- '--storage.tsdb.path=/prometheus'
|
|
- '--web.console.libraries=/etc/prometheus/console_libraries'
|
|
- '--web.console.templates=/etc/prometheus/consoles'
|
|
- '--storage.tsdb.retention.time=200h'
|
|
- '--web.enable-lifecycle'
|
|
restart: unless-stopped
|
|
networks:
|
|
- rust-api-network
|
|
profiles:
|
|
- monitoring
|
|
|
|
# Grafana 仪表板(可选)
|
|
grafana:
|
|
image: grafana/grafana:latest
|
|
container_name: rust-api-grafana
|
|
ports:
|
|
- "3001:3000"
|
|
environment:
|
|
- GF_SECURITY_ADMIN_PASSWORD=admin123
|
|
- GF_USERS_ALLOW_SIGN_UP=false
|
|
volumes:
|
|
- grafana_data:/var/lib/grafana
|
|
- ./monitoring/grafana/dashboards:/etc/grafana/provisioning/dashboards:ro
|
|
- ./monitoring/grafana/datasources:/etc/grafana/provisioning/datasources:ro
|
|
depends_on:
|
|
- prometheus
|
|
restart: unless-stopped
|
|
networks:
|
|
- rust-api-network
|
|
profiles:
|
|
- monitoring
|
|
|
|
volumes:
|
|
api_data:
|
|
driver: local
|
|
prometheus_data:
|
|
driver: local
|
|
grafana_data:
|
|
driver: local
|
|
|
|
networks:
|
|
rust-api-network:
|
|
driver: bridge |