Systemd un konteineri
Izmanto systemd native hostiem vai rootless konteinerus izolētiem deploymentiem.
Rootless Podman konteineris konteineris
podman run --name fluxheim --replace \
-p 8080:8080 \
-v ./fluxheim.toml:/etc/fluxheim/fluxheim.toml:ro \
-v ./site:/srv/site:ro \
-v fluxheim-cache:/var/cache/fluxheim \
ghcr.io/valkyoth/fluxheim:v1.6.30
Konteineru mounti
| Mount punkts punkts | Recommended mode |
|---|---|
| Konfigurācija | Tikai lasāms bind mount. |
| Statisks saturs | Tikai lasāms bind mount. |
| ACME stāvoklis | Pastāvīgs rakstāms volume. |
| Disk cache | Persistent writable volume sized for the cache policy. |
| Slepenie dati | Container secret vai credentials directory, nevis publisks fails. |
Systemd plūsma
fluxheim --config /etc/fluxheim/fluxheim.toml --check-config
sudo systemctl restart fluxheim
sudo systemctl status fluxheim
journalctl -u fluxheim -n 100 --no-pager
Production kontrolsaraksts
- Piespraud release versijas vai image digestus.
- Mount punkts punktsē config un saturu read-only.
- Keep ACME and cache state on persistent volumes.
- Valideē config pret profilu, kuru plāno palaist.
- Pirms traffic maiņas turi gatavus health check un rollback komandas.