
一 、docker 部署 dufs 文件服务
原项目仓库地址:https://github.com/sigoden/dufs
1 、创建 docker-compose.yml
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21
| mkdir -p /vol1/1000/home/dufs && \ cd /vol1/1000/home/dufs && \ touch docker-compose.yml && \ cat > docker-compose.yml <<'EOF' services: dufs: command: /data -A container_name: dufs image: sigoden/dufs ports: - 5000:5000 volumes: - ./data:/data - ./README.md:/data/README.md - /vol2/1000/阿里云盘:/data/阿里云盘 - /vol2/1000/downloads:/data/downloads - /vol2/1000/file:/data/file - /vol2/1000/media:/data/media EOF
docker-compose up -d
|
2 、拉取并运行
1 2
| cd /vol1/1000/compose/dufs && \ docker-compose up -d
|
3 、停止并删除
1 2
| cd /vol1/1000/compose/dufs && \ docker-compose down
|
4 、拉取镜像
1 2
| cd /vol1/1000/compose/dufs && \ docker-compose pull
|
5 、容器升级
1 2 3 4 5
| cd /vol1/1000/compose/dufs && \ docker-compose down && \ docker-compose pull && \ docker-compose up -d && \ docker image prune -f
|
6 、查看容器日志
二 、容器维护命令
1 、查看所有运行容器的名称
1
| docker ps -a --format "{{.Names}}"
|
2 、停止 dufs 容器
3 、启动 dufs 容器
4 、重启 dufs 容器
5 、进入 dufs 容器
1 2 3
|
docker exec -it dufs bash
|
6 、查看 dufs 配置文件
1
| cat /vol1/1000/compose/dufs/docker-compose.yml
|
Nginx 配置
后台地址:https://dufs.example.com:666
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85
| mkdir -pm 755 /etc/nginx/conf.d && \ touch /etc/nginx/conf.d/dufs.conf && \ cat <<'EOF' | sed '1!{/^[[:space:]]*#/d;/^[[:space:]]*$/d}' > /etc/nginx/conf.d/dufs.conf
server { listen 666 ssl; listen [::]:666 ssl; http2 on;
server_name dufs.mobufan.eu.org;
ssl_certificate /etc/nginx/keyfile/cert.pem; ssl_certificate_key /etc/nginx/keyfile/key.pem;
ssl_protocols TLSv1.2 TLSv1.3; ssl_prefer_server_ciphers on; ssl_ciphers ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305;
ssl_session_cache shared:SSL:10m; ssl_session_timeout 1d; ssl_session_tickets on;
add_header Strict-Transport-Security "max-age=31536000; includeSubDomains" always; add_header X-Content-Type-Options nosniff always; add_header X-Frame-Options "SAMEORIGIN" always; add_header X-XSS-Protection "1; mode=block" always;
sendfile on; tcp_nopush on; tcp_nodelay on; keepalive_timeout 65; keepalive_requests 1000;
client_max_body_size 10G; proxy_max_temp_file_size 0;
error_page 404 500 502 503 504 /50x.html; location = /50x.html { root /var/www/html; }
location / { proxy_pass http://10.10.10.251:5000;
proxy_set_header Host $http_host; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header X-Forwarded-Proto $scheme;
proxy_set_header Range $http_range; proxy_set_header If-Range $http_if_range;
proxy_http_version 1.1; proxy_read_timeout 300s; proxy_connect_timeout 300s; proxy_send_timeout 300s;
proxy_set_header Upgrade ""; proxy_set_header Connection "";
proxy_buffering on; proxy_buffer_size 128k; proxy_buffers 4 256k; proxy_busy_buffers_size 256k;
gzip off; } } EOF
sudo systemctl restart nginx
|