SMB (smbclient) and FTP/FTPS (curl with netrc) targets with encrypted credentials and connection test; strategies with cron schedule, retention, optional openssl AES-256 encryption; sources: PVC hostpath tar, pg_dumpall in the Postgres pod, namespace manifests, host directory. Backup job collects, encrypts, uploads, verifies size, records sha256 and applies retention on the target; scheduler starts due strategies. Backups page with target/strategy forms, run now and history. Restore guide in docs. Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
21 lines
941 B
Plaintext
21 lines
941 B
Plaintext
# Backend configuration (copy to backend/.env for local development)
|
|
DATABASE_URL=sqlite://data/monitoring.db?mode=rwc
|
|
JWT_SECRET=change-me-to-a-long-random-string
|
|
# 64 hex characters (openssl rand -hex 32); encrypts stored secrets such as SMTP passwords
|
|
MASTER_KEY=change-me-64-hex-characters
|
|
# true on dev machines without apt/kubectl: uses fake host adapters with sample data
|
|
FAKE_HOST=false
|
|
BIND=127.0.0.1:8080
|
|
# Created on first start if no user exists
|
|
BOOTSTRAP_ADMIN_EMAIL=admin@example.com
|
|
BOOTSTRAP_ADMIN_PASSWORD=change-me-min-12-chars
|
|
# Set to true behind HTTPS so the refresh cookie is marked Secure
|
|
COOKIE_SECURE=false
|
|
# Directory with the built frontend (served as SPA fallback)
|
|
FRONTEND_DIR=../frontend/dist
|
|
RUST_LOG=info,sqlx=warn
|
|
# kubectl invocation used for backups (default: microk8s kubectl if present)
|
|
#KUBECTL=/snap/bin/microk8s kubectl
|
|
# scratch directory for backup archives (default: data/work)
|
|
#WORK_DIR=data/work
|