From 94ada8bfc9a3f810db483aa4c45d9bc70fef69c2 Mon Sep 17 00:00:00 2001 From: penghanyuan Date: Tue, 27 Jan 2026 23:18:53 +0100 Subject: [PATCH] =?UTF-8?q?chore:=20=E6=B3=A8=E9=87=8A=E6=8E=89Docker=20Co?= =?UTF-8?q?mpose=E4=B8=AD=E7=9A=84=E7=AB=AF=E5=8F=A3=E6=98=A0=E5=B0=84?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit - 在docker-compose.yml中注释掉Postgres和Redis服务的端口映射,以限制对宿主机的访问,仅允许在Docker网络内部访问。 --- api/docker-compose.yml | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/api/docker-compose.yml b/api/docker-compose.yml index c696ef5..666d831 100644 --- a/api/docker-compose.yml +++ b/api/docker-compose.yml @@ -5,8 +5,8 @@ services: postgres: image: postgres:17-alpine container_name: life-echo-postgres - ports: - - "5432:5432" + # ports: + # - "5432:5432" # 不暴露到宿主机,仅在 Docker 网络内部访问 environment: POSTGRES_USER: ${POSTGRES_USER:-postgres} POSTGRES_PASSWORD: ${POSTGRES_PASSWORD:-postgres} @@ -31,8 +31,8 @@ services: redis: image: redis:7-alpine container_name: life-echo-redis - ports: - - "6379:6379" + # ports: + # - "6379:6379" # 不暴露到宿主机,仅在 Docker 网络内部访问 volumes: - redis_data:/data command: redis-server --appendonly yes --maxmemory 256mb --maxmemory-policy allkeys-lru