The webhook front door for Echelon, which plans and runs releases around a task rather than a branch. This image receives provider webhooks, verifies each one, normalizes it and hands it to the broker; the application host picks it up from there.
It exists so the API does not have to be reachable from the internet. The ingress holds no database connection at all - it publishes to RabbitMQ and nothing else, so the only thing you expose is a front door that cannot read your data.
docker run -d --name echelon-ingress -p 8082:8080 \
-e Queue__Host=rabbitmq -e Queue__Username=... -e Queue__Password=... \
-e Webhooks__GitLab__main__Token=... \
-e Webhooks__Tracker__main__Token=... \
frigat/echelon-ingress:latest
main in those two variables is the connection name you gave the GitLab or tracker connection in the
admin PWA, and the routes carry the same name:
POST /webhooks/gitlab/{connectionName} secret in X-Gitlab-Token
POST /webhooks/tracker/{connectionName} secret in X-Tracker-Token
GET /health
GET /metrics
The whole stack, broker included, is a docker compose up away with the compose files in the
repository.
X-Forwarded-For is caller-supplied - see
SECURITY.md.Every setting and environment variable is documented in docs/en/configuration.md.
Content type
Image
Digest
sha256:22e360fde…
Size
96.7 MB
Last updated
about 1 month ago
docker pull frigat/echelon-ingress