• 0 Posts
  • 15 Comments
Joined 28 days ago
cake
Cake day: November 21st, 2025

help-circle
  • This is me.

    For example, /srv/docker/synching contains:

    compose.yml .env ./Sync

    That last one is a directory bound to the container which contains all my sync folders.

    Occasionally it makes more sense to put the mounted folder in /srv like /srv/photos is mounted by /srv/docker/photoprism/compose.yml

    However, thats a rarity. Things mostly accessed by a single compose stack are kept alongside the other files for that stack.













  • fizzle@quokk.autoSelfhosted@lemmy.worldDocker security
    link
    fedilink
    English
    arrow-up
    5
    ·
    11 days ago

    I basically just avoid exposing ports from containers unless I really do want them exposed on the host?

    Most services go through my reverse proxy, traefik.

    Things like databases don’t publish ports on the host because they’re only accessed internally, using their container name.