forked from mpgirro/docker-pihole-unbound
-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathdocker-compose.yaml
48 lines (44 loc) · 1.46 KB
/
docker-compose.yaml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
version: '3.7'
volumes:
etc_pihole-unbound:
etc_pihole_dnsmasq-unbound:
services:
pihole:
container_name: pihole
image: ghcr.io/zigapovhe/docker-pihole-unbound:master
hostname: ${HOSTNAME}
domainname: ${DOMAIN_NAME}
environment:
FTLCONF_REPLY_ADDR4: ${SERVER_IP}
TZ: ${TZ}
ADMIN_EMAIL: ${ADMIN_EMAIL}
WEBUIBOXEDLAYOUT: ${WEBUIBOXEDLAYOUT}
WEBTHEME: ${WEBTHEME}
TEMPERATUREUNIT: c
WEBPASSWORD: ${WEBPASSWORD}
REV_SERVER: ${REV_SERVER}
REV_SERVER_TARGET: ${REV_SERVER_TARGET}
REV_SERVER_DOMAIN: ${REV_SERVER_DOMAIN}
REV_SERVER_CIDR: ${REV_SERVER_CIDR}
DHCP_ACTIVE: ${DHCP_ACTIVE} #DHCP Server
DHCP_START: ${DHCP_START}
DHCP_END: ${DHCP_END}
DHCP_ROUTER: ${DHCP_ROUTER}
DHCP_LEASETIME: ${DHCP_LEASETIME}
DHCP_IPv6: ${DHCP_IPV6}
PIHOLE_DNS_: 127.0.0.1#5335 # Hardcoded to our Unbound server
DNSSEC: "true" # Enable DNSSEC
DNS_BOGUS_PRIV: "true" #Never forward reverse lookups for private ranges
DNS_FQDN_REQUIRED: "true" #Never forward non-FQDNs
volumes:
- etc_pihole-unbound:/etc/pihole:rw
- etc_pihole_dnsmasq-unbound:/etc/dnsmasq.d:rw
- '${UNBOUND_CONFIG_MOUNT}'
# Recommended but not required (DHCP needs NET_ADMIN)
# https://github.com/pi-hole/docker-pi-hole#note-on-capabilities
cap_add:
- NET_ADMIN
- NET_RAW
- SYS_NICE
network_mode: "host"
restart: unless-stopped