13 lines
827 B
YAML
13 lines
827 B
YAML
# Select this override only for an SSH Git remote. The host-only source files must be absolute,
|
|
# normalized paths; strict host-key checking is mandatory for read-only repository fetch and pull.
|
|
# Active-snapshot workspace-maintenance operations intentionally receive no Git credential mounts.
|
|
x-thoth-git-transport: ssh
|
|
|
|
services:
|
|
core:
|
|
environment:
|
|
GIT_SSH_COMMAND: ssh -i /run/secrets/workspace-registry-git-ssh-key -o IdentitiesOnly=yes -o StrictHostKeyChecking=yes -o UserKnownHostsFile=/run/secrets/workspace-registry-git-known-hosts
|
|
volumes:
|
|
- ${THT_WORKSPACE_GIT_SSH_KEY_FILE:?set THT_WORKSPACE_GIT_SSH_KEY_FILE}:/run/secrets/workspace-registry-git-ssh-key:ro
|
|
- ${THT_WORKSPACE_GIT_KNOWN_HOSTS_FILE:?set THT_WORKSPACE_GIT_KNOWN_HOSTS_FILE}:/run/secrets/workspace-registry-git-known-hosts:ro
|