feat(local-secrets): introduce unified local secrets management and documentation

- Add example secret files for `app_key`, `db_user_password`, and `redis_password`.
- Introduce `local.vault.yml.example` for Ansible Vault encryption of local secrets.
- Create migration and setup scripts for transitioning from `.env.local` to secrets files.
- Update `docker-compose.local.yml` to adopt Docker Secrets and `_FILE` pattern for local configurations.
- Add deployment playbooks and enhanced logging configurations for local development.
This commit is contained in:
2025-11-04 11:06:21 +01:00
parent 12afbe874d
commit 02e4dc9338
15 changed files with 1043 additions and 11 deletions

View File

@@ -75,6 +75,7 @@ COPY docker/php/php.${ENV}.ini /usr/local/etc/php/php.ini
# Kopiere PHP-FPM Pool-Konfiguration
COPY docker/php/zz-docker.conf /usr/local/etc/php-fpm.d/zz-docker.conf
COPY docker/php/zzzz-override.conf /usr/local/etc/php-fpm.d/zzzz-override.conf
# Xdebug-Konfiguration nur wenn dev
RUN if [ "$ENV" = "dev" ] && [ -f docker/php/xdebug.ini ]; then \

View File

@@ -8,7 +8,8 @@ user = appuser
group = appuser
; The address on which to accept FastCGI requests.
listen = 9000
; Use 0.0.0.0:9000 to listen on all interfaces (required for Docker networking)
listen = 0.0.0.0:9000
; Clear environment in FPM workers
clear_env = no

View File

@@ -0,0 +1,4 @@
[www]
; Override listen address to listen on all interfaces (required for Docker networking)
; This file is loaded last (alphabetically) to override www.conf
listen = 0.0.0.0:9000