This PR contains the following updates: | Package | Update | Change | |---|---|---| | [jc21/nginx-proxy-manager](https://togithub.com/jc21/nginx-proxy-manager) | minor | `2.10.4` -> `2.11.0` | --- > [!WARNING] > Some dependencies could not be looked up. Check the Dependency Dashboard for more information. --- ### Release Notes <details> <summary>jc21/nginx-proxy-manager (jc21/nginx-proxy-manager)</summary> ### [`v2.11.0`](https://togithub.com/NginxProxyManager/nginx-proxy-manager/releases/tag/v2.11.0) [Compare Source](https://togithub.com/jc21/nginx-proxy-manager/compare/v2.10.4...v2.11.0) **Important: Back up your entire instance before using this new version! As with any new version, there may be breaking changes.** 1. Bring your docker instance down 2. Zip or copy your `data` and `letsencrypt` folders 3. Pull this new image `jc21/nginx-proxy-manager:2.11.0` 4. Bring up your docker stack and check for any problems in the logs 5. Renew your DNS certs manually 6. Check some or all of your hosts for expected behaviour #### Changes - Use nginxproxymanager/nginx-full image base [#​3444](https://togithub.com/jc21/nginx-proxy-manager/issues/3444) - debian bookworm - python v3.11 - certbot v2.8.0 - Refactor certbot plugins install, updated some plugins, remove packages that don't exist anymore - Update mariadb example to auto upgrade from latest image - [@​FibreTTP](https://togithub.com/FibreTTP): Make logrotate use the proper user and group [#​3219](https://togithub.com/jc21/nginx-proxy-manager/issues/3219) - [@​AngusC222](https://togithub.com/AngusC222): minimum/maximum ports added on frontend [#​3188](https://togithub.com/jc21/nginx-proxy-manager/issues/3188) - [@​benhubert](https://togithub.com/benhubert): added support for dns.he.net certbot plugin [#​2153](https://togithub.com/jc21/nginx-proxy-manager/issues/2153) - [@​devedse](https://togithub.com/devedse): Added force renewal + --dns-duckdns-no-txt-restore [#​3155](https://togithub.com/jc21/nginx-proxy-manager/issues/3155) - [@​OpenSourceSimon](https://togithub.com/OpenSourceSimon): Add robots noindex meta tag to prevent indexing [#​3190](https://togithub.com/jc21/nginx-proxy-manager/issues/3190) - [@​zhzy0077](https://togithub.com/zhzy0077): certbot-dns-tencentcloud should be 2.0.2 or above. [#​3194](https://togithub.com/jc21/nginx-proxy-manager/issues/3194) - [@​FlixMa](https://togithub.com/FlixMa): Strato Certbot Plugin: 2FA and International Site Support [#​3212](https://togithub.com/jc21/nginx-proxy-manager/issues/3212) - [@​xiaoxinpro](https://togithub.com/xiaoxinpro): Replace the description string on the default-site page with i18n [#​3293](https://togithub.com/jc21/nginx-proxy-manager/issues/3293) - [@​AngusC222](https://togithub.com/AngusC222): min/max ports added for Streams [#​3312](https://togithub.com/jc21/nginx-proxy-manager/issues/3312) - [@​jlesage](https://togithub.com/jlesage): Fixed issue where the HTTP2 support was always enabled in nginx config [#​3377](https://togithub.com/jc21/nginx-proxy-manager/issues/3377) - [@​r3na](https://togithub.com/r3na): fix: increasing maxOptions (amount of domains) to 30 [#​3382](https://togithub.com/jc21/nginx-proxy-manager/issues/3382) - [@​clord](https://togithub.com/clord): bump version of vultr certbot [#​3387](https://togithub.com/jc21/nginx-proxy-manager/issues/3387) - [@​jlesage](https://togithub.com/jlesage): Fixes for the server reachability test [#​3388](https://togithub.com/jc21/nginx-proxy-manager/issues/3388) - [@​JeremieA](https://togithub.com/JeremieA): Update certbot-dns-plugins.js for gandi [#​3401](https://togithub.com/jc21/nginx-proxy-manager/issues/3401) - [@​arussell](https://togithub.com/arussell): Add support for certbot-dns-plesk [#​3408](https://togithub.com/jc21/nginx-proxy-manager/issues/3408) - [@​Encephala](https://togithub.com/Encephala): Add documentation on customising logrotate config [#​3422](https://togithub.com/jc21/nginx-proxy-manager/issues/3422) - [@​Encephala](https://togithub.com/Encephala): Update year to 2024 in footer [#​3427](https://togithub.com/jc21/nginx-proxy-manager/issues/3427) - [@​DarioViva42](https://togithub.com/DarioViva42): only add hsts header with https. [#​3360](https://togithub.com/jc21/nginx-proxy-manager/issues/3360) - [@​timob](https://togithub.com/timob): Improve container startup time [#​3361](https://togithub.com/jc21/nginx-proxy-manager/issues/3361) - [@​Encephala](https://togithub.com/Encephala): Fix typo in logrotate config path [#​3437](https://togithub.com/jc21/nginx-proxy-manager/issues/3437) - [@​ej52](https://togithub.com/ej52): update Proxmox Scripts link [#​3367](https://togithub.com/jc21/nginx-proxy-manager/issues/3367) - [@​benhubert](https://togithub.com/benhubert): added support for dns.he.net certbot plugin [#​2153](https://togithub.com/jc21/nginx-proxy-manager/issues/2153) [#​2924](https://togithub.com/jc21/nginx-proxy-manager/issues/2924) - [@​tilalx](https://togithub.com/tilalx): Update the vuepress config.js to fix [#​3395](https://togithub.com/jc21/nginx-proxy-manager/issues/3395) [#​3445](https://togithub.com/jc21/nginx-proxy-manager/issues/3445) - [@​tilalx](https://togithub.com/tilalx): upgrade docs to vuepress v2.0.0-rc and implement dark mode [#​3395](https://togithub.com/jc21/nginx-proxy-manager/issues/3395) - [@​stevecrozz](https://togithub.com/stevecrozz): Make auto-renew use built-in renew function [#​3392](https://togithub.com/jc21/nginx-proxy-manager/issues/3392) - [@​existful](https://togithub.com/existful): certbot-dns-cloudns update 0.6.0 [#​3459](https://togithub.com/jc21/nginx-proxy-manager/issues/3459) - [@​iBobik](https://togithub.com/iBobik): Removed /etc/letsencrypt from explicit volumes [#​3258](https://togithub.com/jc21/nginx-proxy-manager/issues/3258) #### Docker images - [jc21/nginx-proxy-manager:latest](https://hub.docker.com/layers/jc21/nginx-proxy-manager/latest/images/sha256-a3a54016e85fd56823cebf4015bef5cada617328bf5e66b80459a4e438ba828f?context=explore) - [jc21/nginx-proxy-manager:2](https://hub.docker.com/layers/jc21/nginx-proxy-manager/2/images/sha256-a3a54016e85fd56823cebf4015bef5cada617328bf5e66b80459a4e438ba828f?context=explore) - [jc21/nginx-proxy-manager:2.11.0](https://hub.docker.com/layers/jc21/nginx-proxy-manager/2.11.0/images/sha256-a3a54016e85fd56823cebf4015bef5cada617328bf5e66b80459a4e438ba828f?context=explore) </details> --- ### Configuration 📅 **Schedule**: Branch creation - "before 10pm on monday" in timezone Europe/Amsterdam, Automerge - At any time (no schedule defined). 🚦 **Automerge**: Enabled. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR has been generated by [Renovate Bot](https://togithub.com/renovatebot/renovate). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiIzNy4xNDAuOSIsInVwZGF0ZWRJblZlciI6IjM3LjE0MC45IiwidGFyZ2V0QnJhbmNoIjoibWFzdGVyIn0=-->
92 lines
2.1 KiB
YAML
92 lines
2.1 KiB
YAML
image:
|
|
repository: jc21/nginx-proxy-manager
|
|
pullPolicy: IfNotPresent
|
|
tag: 2.11.0@sha256:2ee1f82ffc6010b08801701f7ec4e796072be11a165f3013c1466338855beba7
|
|
service:
|
|
main:
|
|
ports:
|
|
main:
|
|
targetPort: 81
|
|
protocol: http
|
|
port: 10582
|
|
web:
|
|
enabled: true
|
|
ports:
|
|
web:
|
|
enabled: true
|
|
targetPort: 80
|
|
protocol: http
|
|
port: 10583
|
|
websecure:
|
|
enabled: true
|
|
ports:
|
|
websecure:
|
|
enabled: true
|
|
targetPort: 443
|
|
protocol: https
|
|
port: 10584
|
|
persistence:
|
|
data:
|
|
enabled: true
|
|
mountPath: /data
|
|
size: 256Gi
|
|
letsencrypt:
|
|
enabled: true
|
|
mountPath: /etc/letsencrypt
|
|
size: 256Gi
|
|
mariadb:
|
|
enabled: true
|
|
mariadbUsername: npm
|
|
mariadbDatabase: npm
|
|
portal:
|
|
open:
|
|
enabled: true
|
|
securityContext:
|
|
container:
|
|
runAsNonRoot: false
|
|
readOnlyRootFilesystem: false
|
|
runAsUser: 0
|
|
runAsGroup: 0
|
|
workload:
|
|
main:
|
|
podSpec:
|
|
containers:
|
|
main:
|
|
probes:
|
|
liveness:
|
|
enabled: true
|
|
custom: true
|
|
spec:
|
|
exec:
|
|
command:
|
|
- /bin/check-health
|
|
readiness:
|
|
enabled: true
|
|
custom: true
|
|
spec:
|
|
exec:
|
|
command:
|
|
- /bin/check-health
|
|
startup:
|
|
enabled: true
|
|
custom: true
|
|
spec:
|
|
exec:
|
|
command:
|
|
- /bin/check-health
|
|
env:
|
|
DISABLE_IPV6: true
|
|
DB_MYSQL_PORT: 3306
|
|
DB_MYSQL_NAME: "{{ .Values.mariadb.mariadbDatabase }}"
|
|
DB_MYSQL_USER: "{{ .Values.mariadb.mariadbUsername }}"
|
|
DB_MYSQL_HOST:
|
|
secretKeyRef:
|
|
expandObjectName: false
|
|
name: '{{ printf "%s-%s" .Release.Name "mariadbcreds" }}'
|
|
key: plainhost
|
|
DB_MYSQL_PASSWORD:
|
|
secretKeyRef:
|
|
expandObjectName: false
|
|
name: '{{ printf "%s-%s" .Release.Name "mariadbcreds" }}'
|
|
key: mariadb-password
|