You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

app.ini.sample 35KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908
  1. ; This file lists the default values used by Gitea
  2. ; Copy required sections to your own app.ini (default is custom/conf/app.ini)
  3. ; and modify as needed.
  4. ; see https://docs.gitea.io/en-us/config-cheat-sheet/ for additional documentation.
  5. ; App name that shows in every page title
  6. APP_NAME = Gitea: Git with a cup of tea
  7. ; Change it if you run locally
  8. RUN_USER = git
  9. ; Either "dev", "prod" or "test", default is "dev"
  10. RUN_MODE = dev
  11. [repository]
  12. ROOT =
  13. SCRIPT_TYPE = bash
  14. ; Default ANSI charset
  15. ANSI_CHARSET =
  16. ; Force every new repository to be private
  17. FORCE_PRIVATE = false
  18. ; Default privacy setting when creating a new repository, allowed values: last, private, public. Default is last which means the last setting used.
  19. DEFAULT_PRIVATE = last
  20. ; Global limit of repositories per user, applied at creation time. -1 means no limit
  21. MAX_CREATION_LIMIT = -1
  22. ; Mirror sync queue length, increase if mirror syncing starts hanging
  23. MIRROR_QUEUE_LENGTH = 1000
  24. ; Patch test queue length, increase if pull request patch testing starts hanging
  25. PULL_REQUEST_QUEUE_LENGTH = 1000
  26. ; Preferred Licenses to place at the top of the List
  27. ; The name here must match the filename in conf/license or custom/conf/license
  28. PREFERRED_LICENSES = Apache License 2.0,MIT License
  29. ; Disable the ability to interact with repositories using the HTTP protocol
  30. DISABLE_HTTP_GIT = false
  31. ; Value for Access-Control-Allow-Origin header, default is not to present
  32. ; WARNING: This maybe harmful to you website if you do not give it a right value.
  33. ACCESS_CONTROL_ALLOW_ORIGIN =
  34. ; Force ssh:// clone url instead of scp-style uri when default SSH port is used
  35. USE_COMPAT_SSH_URI = false
  36. ; Close issues as long as a commit on any branch marks it as fixed
  37. DEFAULT_CLOSE_ISSUES_VIA_COMMITS_IN_ANY_BRANCH = false
  38. [repository.editor]
  39. ; List of file extensions for which lines should be wrapped in the CodeMirror editor
  40. ; Separate extensions with a comma. To line wrap files without an extension, just put a comma
  41. LINE_WRAP_EXTENSIONS = .txt,.md,.markdown,.mdown,.mkd,
  42. ; Valid file modes that have a preview API associated with them, such as api/v1/markdown
  43. ; Separate the values by commas. The preview tab in edit mode won't be displayed if the file extension doesn't match
  44. PREVIEWABLE_FILE_MODES = markdown
  45. [repository.local]
  46. ; Path for local repository copy. Defaults to `tmp/local-repo`
  47. LOCAL_COPY_PATH = tmp/local-repo
  48. ; Path for local wiki copy. Defaults to `tmp/local-wiki`
  49. LOCAL_WIKI_PATH = tmp/local-wiki
  50. [repository.upload]
  51. ; Whether repository file uploads are enabled. Defaults to `true`
  52. ENABLED = true
  53. ; Path for uploads. Defaults to `data/tmp/uploads` (tmp gets deleted on gitea restart)
  54. TEMP_PATH = data/tmp/uploads
  55. ; One or more allowed types, e.g. image/jpeg|image/png. Nothing means any file type
  56. ALLOWED_TYPES =
  57. ; Max size of each file in megabytes. Defaults to 3MB
  58. FILE_MAX_SIZE = 3
  59. ; Max number of files per upload. Defaults to 5
  60. MAX_FILES = 5
  61. [repository.pull-request]
  62. ; List of prefixes used in Pull Request title to mark them as Work In Progress
  63. WORK_IN_PROGRESS_PREFIXES=WIP:,[WIP]
  64. ; List of keywords used in Pull Request comments to automatically close a related issue
  65. CLOSE_KEYWORDS=close,closes,closed,fix,fixes,fixed,resolve,resolves,resolved
  66. ; List of keywords used in Pull Request comments to automatically reopen a related issue
  67. REOPEN_KEYWORDS=reopen,reopens,reopened
  68. [repository.issue]
  69. ; List of reasons why a Pull Request or Issue can be locked
  70. LOCK_REASONS=Too heated,Off-topic,Resolved,Spam
  71. [repository.signing]
  72. ; GPG key to use to sign commits, Defaults to the default - that is the value of git config --get user.signingkey
  73. ; run in the context of the RUN_USER
  74. ; Switch to none to stop signing completely
  75. SIGNING_KEY = default
  76. ; If a SIGNING_KEY ID is provided and is not set to default, use the provided Name and Email address as the signer.
  77. ; These should match a publicized name and email address for the key. (When SIGNING_KEY is default these are set to
  78. ; the results of git config --get user.name and git config --get user.email respectively and can only be overrided
  79. ; by setting the SIGNING_KEY ID to the correct ID.)
  80. SIGNING_NAME =
  81. SIGNING_EMAIL =
  82. ; Determines when gitea should sign the initial commit when creating a repository
  83. ; Either:
  84. ; - never
  85. ; - pubkey: only sign if the user has a pubkey
  86. ; - twofa: only sign if the user has logged in with twofa
  87. ; - always
  88. ; options other than none and always can be combined as comma separated list
  89. INITIAL_COMMIT = always
  90. ; Determines when to sign for CRUD actions
  91. ; - as above
  92. ; - parentsigned: requires that the parent commit is signed.
  93. CRUD_ACTIONS = pubkey, twofa, parentsigned
  94. ; Determines when to sign Wiki commits
  95. ; - as above
  96. WIKI = never
  97. ; Determines when to sign on merges
  98. ; - basesigned: require that the parent of commit on the base repo is signed.
  99. ; - commitssigned: require that all the commits in the head branch are signed.
  100. MERGES = pubkey, twofa, basesigned, commitssigned
  101. [cors]
  102. ; More information about CORS can be found here: https://developer.mozilla.org/en-US/docs/Web/HTTP/CORS#The_HTTP_response_headers
  103. ; enable cors headers (disabled by default)
  104. ENABLED=false
  105. ; scheme of allowed requests
  106. SCHEME=http
  107. ; list of requesting domains that are allowed
  108. ALLOW_DOMAIN=*
  109. ; allow subdomains of headers listed above to request
  110. ALLOW_SUBDOMAIN=false
  111. ; list of methods allowed to request
  112. METHODS=GET,HEAD,POST,PUT,PATCH,DELETE,OPTIONS
  113. ; max time to cache response
  114. MAX_AGE=10m
  115. ; allow request with credentials
  116. ALLOW_CREDENTIALS=false
  117. [ui]
  118. ; Number of repositories that are displayed on one explore page
  119. EXPLORE_PAGING_NUM = 20
  120. ; Number of issues that are displayed on one page
  121. ISSUE_PAGING_NUM = 10
  122. ; Number of maximum commits displayed in one activity feed
  123. FEED_MAX_COMMIT_NUM = 5
  124. ; Number of maximum commits displayed in commit graph.
  125. GRAPH_MAX_COMMIT_NUM = 100
  126. ; Number of line of codes shown for a code comment
  127. CODE_COMMENT_LINES = 4
  128. ; Value of `theme-color` meta tag, used by Android >= 5.0
  129. ; An invalid color like "none" or "disable" will have the default style
  130. ; More info: https://developers.google.com/web/updates/2014/11/Support-for-theme-color-in-Chrome-39-for-Android
  131. THEME_COLOR_META_TAG = `#6cc644`
  132. ; Max size of files to be displayed (default is 8MiB)
  133. MAX_DISPLAY_FILE_SIZE = 8388608
  134. ; Whether the email of the user should be shown in the Explore Users page
  135. SHOW_USER_EMAIL = true
  136. ; Set the default theme for the Gitea install
  137. DEFAULT_THEME = gitea
  138. ; All available themes. Allow users select personalized themes regardless of the value of `DEFAULT_THEME`.
  139. THEMES = gitea,arc-green
  140. ; All available reactions. Allow users react with different emoji's
  141. : For the whole list look at https://gitea.com/gitea/gitea.com/issues/8
  142. REACTIONS = +1, -1, laugh, hooray, confused, heart, rocket, eyes
  143. ; Whether the full name of the users should be shown where possible. If the full name isn't set, the username will be used.
  144. DEFAULT_SHOW_FULL_NAME = false
  145. ; Whether to search within description at repository search on explore page.
  146. SEARCH_REPO_DESCRIPTION = true
  147. ; Whether to enable a Service Worker to cache frontend assets
  148. USE_SERVICE_WORKER = true
  149. [ui.admin]
  150. ; Number of users that are displayed on one page
  151. USER_PAGING_NUM = 50
  152. ; Number of repos that are displayed on one page
  153. REPO_PAGING_NUM = 50
  154. ; Number of notices that are displayed on one page
  155. NOTICE_PAGING_NUM = 25
  156. ; Number of organizations that are displayed on one page
  157. ORG_PAGING_NUM = 50
  158. [ui.user]
  159. ; Number of repos that are displayed on one page
  160. REPO_PAGING_NUM = 15
  161. [ui.meta]
  162. AUTHOR = Gitea - Git with a cup of tea
  163. DESCRIPTION = Gitea (Git with a cup of tea) is a painless self-hosted Git service written in Go
  164. KEYWORDS = go,git,self-hosted,gitea
  165. [markdown]
  166. ; Enable hard line break extension
  167. ENABLE_HARD_LINE_BREAK = false
  168. ; Comma separated list of custom URL-Schemes that are allowed as links when rendering Markdown
  169. ; for example git,magnet,ftp (more at https://en.wikipedia.org/wiki/List_of_URI_schemes)
  170. ; URLs starting with http and https are always displayed, whatever is put in this entry.
  171. CUSTOM_URL_SCHEMES =
  172. ; List of file extensions that should be rendered/edited as Markdown
  173. ; Separate the extensions with a comma. To render files without any extension as markdown, just put a comma
  174. FILE_EXTENSIONS = .md,.markdown,.mdown,.mkd
  175. [server]
  176. ; The protocol the server listens on. One of 'http', 'https', 'unix' or 'fcgi'.
  177. PROTOCOL = http
  178. DOMAIN = localhost
  179. ROOT_URL = %(PROTOCOL)s://%(DOMAIN)s:%(HTTP_PORT)s/
  180. ; when STATIC_URL_PREFIX is empty it will follow APP_URL
  181. STATIC_URL_PREFIX =
  182. ; The address to listen on. Either a IPv4/IPv6 address or the path to a unix socket.
  183. HTTP_ADDR = 0.0.0.0
  184. HTTP_PORT = 3000
  185. ; If REDIRECT_OTHER_PORT is true, and PROTOCOL is set to https an http server
  186. ; will be started on PORT_TO_REDIRECT and it will redirect plain, non-secure http requests to the main
  187. ; ROOT_URL. Defaults are false for REDIRECT_OTHER_PORT and 80 for
  188. ; PORT_TO_REDIRECT.
  189. REDIRECT_OTHER_PORT = false
  190. PORT_TO_REDIRECT = 80
  191. ; Permission for unix socket
  192. UNIX_SOCKET_PERMISSION = 666
  193. ; Local (DMZ) URL for Gitea workers (such as SSH update) accessing web service.
  194. ; In most cases you do not need to change the default value.
  195. ; Alter it only if your SSH server node is not the same as HTTP node.
  196. ; Do not set this variable if PROTOCOL is set to 'unix'.
  197. LOCAL_ROOT_URL = %(PROTOCOL)s://%(HTTP_ADDR)s:%(HTTP_PORT)s/
  198. ; Disable SSH feature when not available
  199. DISABLE_SSH = false
  200. ; Whether to use the builtin SSH server or not.
  201. START_SSH_SERVER = false
  202. ; Username to use for the builtin SSH server. If blank, then it is the value of RUN_USER.
  203. BUILTIN_SSH_SERVER_USER =
  204. ; Domain name to be exposed in clone URL
  205. SSH_DOMAIN = %(DOMAIN)s
  206. ; The network interface the builtin SSH server should listen on
  207. SSH_LISTEN_HOST =
  208. ; Port number to be exposed in clone URL
  209. SSH_PORT = 22
  210. ; The port number the builtin SSH server should listen on
  211. SSH_LISTEN_PORT = %(SSH_PORT)s
  212. ; Root path of SSH directory, default is '~/.ssh', but you have to use '/home/git/.ssh'.
  213. SSH_ROOT_PATH =
  214. ; Gitea will create a authorized_keys file by default when it is not using the internal ssh server
  215. ; If you intend to use the AuthorizedKeysCommand functionality then you should turn this off.
  216. SSH_CREATE_AUTHORIZED_KEYS_FILE = true
  217. ; For the built-in SSH server, choose the ciphers to support for SSH connections,
  218. ; for system SSH this setting has no effect
  219. SSH_SERVER_CIPHERS = aes128-ctr, aes192-ctr, aes256-ctr, aes128-gcm@openssh.com, arcfour256, arcfour128
  220. ; For the built-in SSH server, choose the key exchange algorithms to support for SSH connections,
  221. ; for system SSH this setting has no effect
  222. SSH_SERVER_KEY_EXCHANGES = diffie-hellman-group1-sha1, diffie-hellman-group14-sha1, ecdh-sha2-nistp256, ecdh-sha2-nistp384, ecdh-sha2-nistp521, curve25519-sha256@libssh.org
  223. ; For the built-in SSH server, choose the MACs to support for SSH connections,
  224. ; for system SSH this setting has no effect
  225. SSH_SERVER_MACS = hmac-sha2-256-etm@openssh.com, hmac-sha2-256, hmac-sha1, hmac-sha1-96
  226. ; Directory to create temporary files in when testing public keys using ssh-keygen,
  227. ; default is the system temporary directory.
  228. SSH_KEY_TEST_PATH =
  229. ; Path to ssh-keygen, default is 'ssh-keygen' which means the shell is responsible for finding out which one to call.
  230. SSH_KEYGEN_PATH = ssh-keygen
  231. ; Enable SSH Authorized Key Backup when rewriting all keys, default is true
  232. SSH_BACKUP_AUTHORIZED_KEYS = true
  233. ; Enable exposure of SSH clone URL to anonymous visitors, default is false
  234. SSH_EXPOSE_ANONYMOUS = false
  235. ; Indicate whether to check minimum key size with corresponding type
  236. MINIMUM_KEY_SIZE_CHECK = false
  237. ; Disable CDN even in "prod" mode
  238. OFFLINE_MODE = false
  239. DISABLE_ROUTER_LOG = false
  240. ; Generate steps:
  241. ; $ ./gitea cert -ca=true -duration=8760h0m0s -host=myhost.example.com
  242. ;
  243. ; Or from a .pfx file exported from the Windows certificate store (do
  244. ; not forget to export the private key):
  245. ; $ openssl pkcs12 -in cert.pfx -out cert.pem -nokeys
  246. ; $ openssl pkcs12 -in cert.pfx -out key.pem -nocerts -nodes
  247. CERT_FILE = custom/https/cert.pem
  248. KEY_FILE = custom/https/key.pem
  249. ; Root directory containing templates and static files.
  250. ; default is the path where Gitea is executed
  251. STATIC_ROOT_PATH =
  252. ; Default path for App data
  253. APP_DATA_PATH = data
  254. ; Application level GZIP support
  255. ENABLE_GZIP = false
  256. ; Application profiling (memory and cpu)
  257. ; For "web" command it listens on localhost:6060
  258. ; For "serve" command it dumps to disk at PPROF_DATA_PATH as (cpuprofile|memprofile)_<username>_<temporary id>
  259. ENABLE_PPROF = false
  260. ; PPROF_DATA_PATH, use an absolute path when you start gitea as service
  261. PPROF_DATA_PATH = data/tmp/pprof
  262. ; Landing page, can be "home", "explore", or "organizations"
  263. LANDING_PAGE = home
  264. ; Enables git-lfs support. true or false, default is false.
  265. LFS_START_SERVER = false
  266. ; Where your lfs files reside, default is data/lfs.
  267. LFS_CONTENT_PATH = data/lfs
  268. ; LFS authentication secret, change this yourself
  269. LFS_JWT_SECRET =
  270. ; LFS authentication validity period (in time.Duration), pushes taking longer than this may fail.
  271. LFS_HTTP_AUTH_EXPIRY = 20m
  272. ; Allow graceful restarts using SIGHUP to fork
  273. ALLOW_GRACEFUL_RESTARTS = true
  274. ; After a restart the parent will finish ongoing requests before
  275. ; shutting down. Force shutdown if this process takes longer than this delay.
  276. ; set to a negative value to disable
  277. GRACEFUL_HAMMER_TIME = 60s
  278. ; Allows the setting of a startup timeout and waithint for Windows as SVC service
  279. ; 0 disables this.
  280. STARTUP_TIMEOUT = 0
  281. ; Static resources, includes resources on custom/, public/ and all uploaded avatars web browser cache time, default is 6h
  282. STATIC_CACHE_TIME = 6h
  283. ; Define allowed algorithms and their minimum key length (use -1 to disable a type)
  284. [ssh.minimum_key_sizes]
  285. ED25519 = 256
  286. ECDSA = 256
  287. RSA = 2048
  288. DSA = 1024
  289. [database]
  290. ; Either "mysql", "postgres", "mssql" or "sqlite3", it's your choice
  291. DB_TYPE = mysql
  292. HOST = 127.0.0.1:3306
  293. NAME = gitea
  294. USER = root
  295. ; Use PASSWD = `your password` for quoting if you use special characters in the password.
  296. PASSWD =
  297. ; For Postgres, either "disable" (default), "require", or "verify-full"
  298. ; For MySQL, either "false" (default), "true", or "skip-verify"
  299. SSL_MODE = disable
  300. ; For MySQL only, either "utf8" or "utf8mb4", default is "utf8".
  301. ; NOTICE: for "utf8mb4" you must use MySQL InnoDB > 5.6. Gitea is unable to check this.
  302. CHARSET = utf8
  303. ; For "sqlite3" and "tidb", use an absolute path when you start gitea as service
  304. PATH = data/gitea.db
  305. ; For "sqlite3" only. Query timeout
  306. SQLITE_TIMEOUT = 500
  307. ; For iterate buffer, default is 50
  308. ITERATE_BUFFER_SIZE = 50
  309. ; Show the database generated SQL
  310. LOG_SQL = true
  311. ; Maximum number of DB Connect retries
  312. DB_RETRIES = 10
  313. ; Backoff time per DB retry (time.Duration)
  314. DB_RETRY_BACKOFF = 3s
  315. ; Max idle database connections on connnection pool, default is 2
  316. MAX_IDLE_CONNS = 2
  317. ; Database connection max life time, default is 0 or 3s mysql (See #6804 & #7071 for reasoning)
  318. CONN_MAX_LIFETIME = 3s
  319. ; Database maximum number of open connections, default is 0 meaning no maximum
  320. MAX_OPEN_CONNS = 0
  321. [indexer]
  322. ; Issue indexer type, currently support: bleve or db, default is bleve
  323. ISSUE_INDEXER_TYPE = bleve
  324. ; Issue indexer storage path, available when ISSUE_INDEXER_TYPE is bleve
  325. ISSUE_INDEXER_PATH = indexers/issues.bleve
  326. ; Issue indexer queue, currently support: channel, levelqueue or redis, default is levelqueue
  327. ISSUE_INDEXER_QUEUE_TYPE = levelqueue
  328. ; When ISSUE_INDEXER_QUEUE_TYPE is levelqueue, this will be the queue will be saved path,
  329. ; default is indexers/issues.queue
  330. ISSUE_INDEXER_QUEUE_DIR = indexers/issues.queue
  331. ; When `ISSUE_INDEXER_QUEUE_TYPE` is `redis`, this will store the redis connection string.
  332. ISSUE_INDEXER_QUEUE_CONN_STR = "addrs=127.0.0.1:6379 db=0"
  333. ; Batch queue number, default is 20
  334. ISSUE_INDEXER_QUEUE_BATCH_NUMBER = 20
  335. ; Timeout the indexer if it takes longer than this to start.
  336. ; Set to zero to disable timeout.
  337. STARTUP_TIMEOUT=30s
  338. ; repo indexer by default disabled, since it uses a lot of disk space
  339. REPO_INDEXER_ENABLED = false
  340. REPO_INDEXER_PATH = indexers/repos.bleve
  341. UPDATE_BUFFER_LEN = 20
  342. MAX_FILE_SIZE = 1048576
  343. ; A comma separated list of glob patterns (see https://github.com/gobwas/glob) to include
  344. ; in the index; default is empty
  345. REPO_INDEXER_INCLUDE =
  346. ; A comma separated list of glob patterns to exclude from the index; ; default is empty
  347. REPO_INDEXER_EXCLUDE =
  348. [admin]
  349. ; Disallow regular (non-admin) users from creating organizations.
  350. DISABLE_REGULAR_ORG_CREATION = false
  351. ; Default configuration for email notifications for users (user configurable). Options: enabled, onmention, disabled
  352. DEFAULT_EMAIL_NOTIFICATIONS = enabled
  353. [security]
  354. ; Whether the installer is disabled
  355. INSTALL_LOCK = false
  356. ; !!CHANGE THIS TO KEEP YOUR USER DATA SAFE!!
  357. SECRET_KEY = !#@FDEWREWR&*(
  358. ; How long to remember that a user is logged in before requiring relogin (in days)
  359. LOGIN_REMEMBER_DAYS = 7
  360. COOKIE_USERNAME = gitea_awesome
  361. COOKIE_REMEMBER_NAME = gitea_incredible
  362. ; Reverse proxy authentication header name of user name
  363. REVERSE_PROXY_AUTHENTICATION_USER = X-WEBAUTH-USER
  364. REVERSE_PROXY_AUTHENTICATION_EMAIL = X-WEBAUTH-EMAIL
  365. ; The minimum password length for new Users
  366. MIN_PASSWORD_LENGTH = 6
  367. ; Set to true to allow users to import local server paths
  368. IMPORT_LOCAL_PATHS = false
  369. ; Set to true to prevent all users (including admin) from creating custom git hooks
  370. DISABLE_GIT_HOOKS = false
  371. ; Set to false to allow pushes to gitea repositories despite having an incomplete environment - NOT RECOMMENDED
  372. ONLY_ALLOW_PUSH_IF_GITEA_ENVIRONMENT_SET = true
  373. ;Comma separated list of character classes required to pass minimum complexity.
  374. ;If left empty or no valid values are specified, the default values ("lower,upper,digit,spec") will be used.
  375. ;Use "off" to disable checking.
  376. PASSWORD_COMPLEXITY = lower,upper,digit,spec
  377. ; Password Hash algorithm, either "pbkdf2", "argon2", "scrypt" or "bcrypt"
  378. PASSWORD_HASH_ALGO = pbkdf2
  379. ; Set false to allow JavaScript to read CSRF cookie
  380. CSRF_COOKIE_HTTP_ONLY = true
  381. [openid]
  382. ;
  383. ; OpenID is an open, standard and decentralized authentication protocol.
  384. ; Your identity is the address of a webpage you provide, which describes
  385. ; how to prove you are in control of that page.
  386. ;
  387. ; For more info: https://en.wikipedia.org/wiki/OpenID
  388. ;
  389. ; Current implementation supports OpenID-2.0
  390. ;
  391. ; Tested to work providers at the time of writing:
  392. ; - Any GNUSocial node (your.hostname.tld/username)
  393. ; - Any SimpleID provider (http://simpleid.koinic.net)
  394. ; - http://openid.org.cn/
  395. ; - openid.stackexchange.com
  396. ; - login.launchpad.net
  397. ; - <username>.livejournal.com
  398. ;
  399. ; Whether to allow signin in via OpenID
  400. ENABLE_OPENID_SIGNIN = true
  401. ; Whether to allow registering via OpenID
  402. ; Do not include to rely on rhw DISABLE_REGISTRATION setting
  403. ;ENABLE_OPENID_SIGNUP = true
  404. ; Allowed URI patterns (POSIX regexp).
  405. ; Space separated.
  406. ; Only these would be allowed if non-blank.
  407. ; Example value: trusted.domain.org trusted.domain.net
  408. WHITELISTED_URIS =
  409. ; Forbidden URI patterns (POSIX regexp).
  410. ; Space separated.
  411. ; Only used if WHITELISTED_URIS is blank.
  412. ; Example value: loadaverage.org/badguy stackexchange.com/.*spammer
  413. BLACKLISTED_URIS =
  414. [service]
  415. ; Time limit to confirm account/email registration
  416. ACTIVE_CODE_LIVE_MINUTES = 180
  417. ; Time limit to perform the reset of a forgotten password
  418. RESET_PASSWD_CODE_LIVE_MINUTES = 180
  419. ; Whether a new user needs to confirm their email when registering.
  420. REGISTER_EMAIL_CONFIRM = false
  421. ; List of domain names that are allowed to be used to register on a Gitea instance
  422. ; gitea.io,example.com
  423. EMAIL_DOMAIN_WHITELIST=
  424. ; Disallow registration, only allow admins to create accounts.
  425. DISABLE_REGISTRATION = false
  426. ; Allow registration only using third-party services, it works only when DISABLE_REGISTRATION is false
  427. ALLOW_ONLY_EXTERNAL_REGISTRATION = false
  428. ; User must sign in to view anything.
  429. REQUIRE_SIGNIN_VIEW = false
  430. ; Mail notification
  431. ENABLE_NOTIFY_MAIL = false
  432. ; This setting enables gitea to be signed in with HTTP BASIC Authentication using the user's password
  433. ; If you set this to false you will not be able to access the tokens endpoints on the API with your password
  434. ; Please note that setting this to false will not disable OAuth Basic or Basic authentication using a token
  435. ENABLE_BASIC_AUTHENTICATION = true
  436. ; More detail: https://github.com/gogits/gogs/issues/165
  437. ENABLE_REVERSE_PROXY_AUTHENTICATION = false
  438. ENABLE_REVERSE_PROXY_AUTO_REGISTRATION = false
  439. ENABLE_REVERSE_PROXY_EMAIL = false
  440. ; Enable captcha validation for registration
  441. ENABLE_CAPTCHA = false
  442. ; Type of captcha you want to use. Options: image, recaptcha
  443. CAPTCHA_TYPE = image
  444. ; Enable recaptcha to use Google's recaptcha service
  445. ; Go to https://www.google.com/recaptcha/admin to sign up for a key
  446. RECAPTCHA_SECRET =
  447. RECAPTCHA_SITEKEY =
  448. ; Change this to use recaptcha.net or other recaptcha service
  449. RECAPTCHA_URL = https://www.google.com/recaptcha/
  450. ; Default value for KeepEmailPrivate
  451. ; Each new user will get the value of this setting copied into their profile
  452. DEFAULT_KEEP_EMAIL_PRIVATE = false
  453. ; Default value for AllowCreateOrganization
  454. ; Every new user will have rights set to create organizations depending on this setting
  455. DEFAULT_ALLOW_CREATE_ORGANIZATION = true
  456. ; Either "public", "limited" or "private", default is "public"
  457. ; Limited is for signed user only
  458. ; Private is only for member of the organization
  459. ; Public is for everyone
  460. DEFAULT_ORG_VISIBILITY = public
  461. ; Default value for DefaultOrgMemberVisible
  462. ; True will make the membership of the users visible when added to the organisation
  463. DEFAULT_ORG_MEMBER_VISIBLE = false
  464. ; Default value for EnableDependencies
  465. ; Repositories will use dependencies by default depending on this setting
  466. DEFAULT_ENABLE_DEPENDENCIES = true
  467. ; Dependencies can be added from any repository where the user is granted access or only from the current repository depending on this setting.
  468. ALLOW_CROSS_REPOSITORY_DEPENDENCIES = true
  469. ; Enable heatmap on users profiles.
  470. ENABLE_USER_HEATMAP = true
  471. ; Enable Timetracking
  472. ENABLE_TIMETRACKING = true
  473. ; Default value for EnableTimetracking
  474. ; Repositories will use timetracking by default depending on this setting
  475. DEFAULT_ENABLE_TIMETRACKING = true
  476. ; Default value for AllowOnlyContributorsToTrackTime
  477. ; Only users with write permissions can track time if this is true
  478. DEFAULT_ALLOW_ONLY_CONTRIBUTORS_TO_TRACK_TIME = true
  479. ; Default value for the domain part of the user's email address in the git log
  480. ; if he has set KeepEmailPrivate to true. The user's email will be replaced with a
  481. ; concatenation of the user name in lower case, "@" and NO_REPLY_ADDRESS.
  482. NO_REPLY_ADDRESS = noreply.example.org
  483. ; Show Registration button
  484. SHOW_REGISTRATION_BUTTON = true
  485. ; Default value for AutoWatchNewRepos
  486. ; When adding a repo to a team or creating a new repo all team members will watch the
  487. ; repo automatically if enabled
  488. AUTO_WATCH_NEW_REPOS = true
  489. ; Default value for AutoWatchOnChanges
  490. ; Make the user watch a repository When they commit for the first time
  491. AUTO_WATCH_ON_CHANGES = false
  492. [webhook]
  493. ; Hook task queue length, increase if webhook shooting starts hanging
  494. QUEUE_LENGTH = 1000
  495. ; Deliver timeout in seconds
  496. DELIVER_TIMEOUT = 5
  497. ; Allow insecure certification
  498. SKIP_TLS_VERIFY = false
  499. ; Number of history information in each page
  500. PAGING_NUM = 10
  501. ; Proxy server URL, support http://, https//, socks://, blank will follow environment http_proxy/https_proxy
  502. PROXY_URL =
  503. ; Comma separated list of host names requiring proxy. Glob patterns (*) are accepted; use ** to match all hosts.
  504. PROXY_HOSTS =
  505. [mailer]
  506. ENABLED = false
  507. ; Buffer length of channel, keep it as it is if you don't know what it is.
  508. SEND_BUFFER_LEN = 100
  509. ; Prefix displayed before subject in mail
  510. SUBJECT_PREFIX =
  511. ; Mail server
  512. ; Gmail: smtp.gmail.com:587
  513. ; QQ: smtp.qq.com:465
  514. ; Note, if the port ends with "465", SMTPS will be used. Using STARTTLS on port 587 is recommended per RFC 6409. If the server supports STARTTLS it will always be used.
  515. HOST =
  516. ; Disable HELO operation when hostnames are different.
  517. DISABLE_HELO =
  518. ; Custom hostname for HELO operation, if no value is provided, one is retrieved from system.
  519. HELO_HOSTNAME =
  520. ; Do not verify the certificate of the server. Only use this for self-signed certificates
  521. SKIP_VERIFY =
  522. ; Use client certificate
  523. USE_CERTIFICATE = false
  524. CERT_FILE = custom/mailer/cert.pem
  525. KEY_FILE = custom/mailer/key.pem
  526. ; Should SMTP connection use TLS
  527. IS_TLS_ENABLED = false
  528. ; Mail from address, RFC 5322. This can be just an email address, or the `"Name" <email@example.com>` format
  529. FROM =
  530. ; Mailer user name and password
  531. USER =
  532. ; Use PASSWD = `your password` for quoting if you use special characters in the password.
  533. PASSWD =
  534. ; Send mails as plain text
  535. SEND_AS_PLAIN_TEXT = false
  536. ; Set Mailer Type (either SMTP, sendmail or dummy to just send to the log)
  537. MAILER_TYPE = smtp
  538. ; Specify an alternative sendmail binary
  539. SENDMAIL_PATH = sendmail
  540. ; Specify any extra sendmail arguments
  541. SENDMAIL_ARGS =
  542. [cache]
  543. ; Either "memory", "redis", or "memcache", default is "memory"
  544. ADAPTER = memory
  545. ; For "memory" only, GC interval in seconds, default is 60
  546. INTERVAL = 60
  547. ; For "redis" and "memcache", connection host address
  548. ; redis: network=tcp,addr=:6379,password=macaron,db=0,pool_size=100,idle_timeout=180
  549. ; memcache: `127.0.0.1:11211`
  550. HOST =
  551. ; Time to keep items in cache if not used, default is 16 hours.
  552. ; Setting it to 0 disables caching
  553. ITEM_TTL = 16h
  554. [session]
  555. ; Either "memory", "file", or "redis", default is "memory"
  556. PROVIDER = memory
  557. ; Provider config options
  558. ; memory: doesn't have any config yet
  559. ; file: session file path, e.g. `data/sessions`
  560. ; redis: network=tcp,addr=:6379,password=macaron,db=0,pool_size=100,idle_timeout=180
  561. ; mysql: go-sql-driver/mysql dsn config string, e.g. `root:password@/session_table`
  562. PROVIDER_CONFIG = data/sessions
  563. ; Session cookie name
  564. COOKIE_NAME = i_like_gitea
  565. ; If you use session in https only, default is false
  566. COOKIE_SECURE = false
  567. ; Enable set cookie, default is true
  568. ENABLE_SET_COOKIE = true
  569. ; Session GC time interval in seconds, default is 86400 (1 day)
  570. GC_INTERVAL_TIME = 86400
  571. ; Session life time in seconds, default is 86400 (1 day)
  572. SESSION_LIFE_TIME = 86400
  573. [picture]
  574. AVATAR_UPLOAD_PATH = data/avatars
  575. REPOSITORY_AVATAR_UPLOAD_PATH = data/repo-avatars
  576. ; How Gitea deals with missing repository avatars
  577. ; none = no avatar will be displayed; random = random avatar will be displayed; image = default image will be used
  578. REPOSITORY_AVATAR_FALLBACK = none
  579. REPOSITORY_AVATAR_FALLBACK_IMAGE = /img/repo_default.png
  580. ; Max Width and Height of uploaded avatars.
  581. ; This is to limit the amount of RAM used when resizing the image.
  582. AVATAR_MAX_WIDTH = 4096
  583. AVATAR_MAX_HEIGHT = 3072
  584. ; Maximum alloved file size for uploaded avatars.
  585. ; This is to limit the amount of RAM used when resizing the image.
  586. AVATAR_MAX_FILE_SIZE = 1048576
  587. ; Chinese users can choose "duoshuo"
  588. ; or a custom avatar source, like: http://cn.gravatar.com/avatar/
  589. GRAVATAR_SOURCE = gravatar
  590. ; This value will always be true in offline mode.
  591. DISABLE_GRAVATAR = false
  592. ; Federated avatar lookup uses DNS to discover avatar associated
  593. ; with emails, see https://www.libravatar.org
  594. ; This value will always be false in offline mode or when Gravatar is disabled.
  595. ENABLE_FEDERATED_AVATAR = false
  596. [attachment]
  597. ; Whether attachments are enabled. Defaults to `true`
  598. ENABLED = true
  599. ; Path for attachments. Defaults to `data/attachments`
  600. PATH = data/attachments
  601. ; One or more allowed types, e.g. image/jpeg|image/png
  602. ALLOWED_TYPES = image/jpeg|image/png|application/zip|application/gzip
  603. ; Max size of each file. Defaults to 4MB
  604. MAX_SIZE = 4
  605. ; Max number of files per upload. Defaults to 5
  606. MAX_FILES = 5
  607. [time]
  608. ; Specifies the format for fully outputted dates. Defaults to RFC1123
  609. ; Special supported values are ANSIC, UnixDate, RubyDate, RFC822, RFC822Z, RFC850, RFC1123, RFC1123Z, RFC3339, RFC3339Nano, Kitchen, Stamp, StampMilli, StampMicro and StampNano
  610. ; For more information about the format see http://golang.org/pkg/time/#pkg-constants
  611. FORMAT =
  612. ; Location the UI time display i.e. Asia/Shanghai
  613. ; Empty means server's location setting
  614. DEFAULT_UI_LOCATION =
  615. [log]
  616. ROOT_PATH =
  617. ; Either "console", "file", "conn", "smtp" or "database", default is "console"
  618. ; Use comma to separate multiple modes, e.g. "console, file"
  619. MODE = console
  620. ; Buffer length of the channel, keep it as it is if you don't know what it is.
  621. BUFFER_LEN = 10000
  622. REDIRECT_MACARON_LOG = false
  623. MACARON = file
  624. ; Either "Trace", "Debug", "Info", "Warn", "Error", "Critical", default is "Info"
  625. ROUTER_LOG_LEVEL = Info
  626. ROUTER = console
  627. ENABLE_ACCESS_LOG = false
  628. ACCESS_LOG_TEMPLATE = {{.Ctx.RemoteAddr}} - {{.Identity}} {{.Start.Format "[02/Jan/2006:15:04:05 -0700]" }} "{{.Ctx.Req.Method}} {{.Ctx.Req.RequestURI}} {{.Ctx.Req.Proto}}" {{.ResponseWriter.Status}} {{.ResponseWriter.Size}} "{{.Ctx.Req.Referer}}\" \"{{.Ctx.Req.UserAgent}}"
  629. ACCESS = file
  630. ; Either "Trace", "Debug", "Info", "Warn", "Error", "Critical", default is "Trace"
  631. LEVEL = Info
  632. ; Either "Trace", "Debug", "Info", "Warn", "Error", "Critical", default is "None"
  633. STACKTRACE_LEVEL = None
  634. ; Generic log modes
  635. [log.x]
  636. FLAGS = stdflags
  637. EXPRESSION =
  638. PREFIX =
  639. COLORIZE = false
  640. ; For "console" mode only
  641. [log.console]
  642. LEVEL =
  643. STDERR = false
  644. ; For "file" mode only
  645. [log.file]
  646. LEVEL =
  647. ; Set the file_name for the logger. If this is a relative path this
  648. ; will be relative to ROOT_PATH
  649. FILE_NAME =
  650. ; This enables automated log rotate(switch of following options), default is true
  651. LOG_ROTATE = true
  652. ; Max number of lines in a single file, default is 1000000
  653. MAX_LINES = 1000000
  654. ; Max size shift of a single file, default is 28 means 1 << 28, 256MB
  655. MAX_SIZE_SHIFT = 28
  656. ; Segment log daily, default is true
  657. DAILY_ROTATE = true
  658. ; delete the log file after n days, default is 7
  659. MAX_DAYS = 7
  660. ; compress logs with gzip
  661. COMPRESS = true
  662. ; compression level see godoc for compress/gzip
  663. COMPRESSION_LEVEL = -1
  664. ; For "conn" mode only
  665. [log.conn]
  666. LEVEL =
  667. ; Reconnect host for every single message, default is false
  668. RECONNECT_ON_MSG = false
  669. ; Try to reconnect when connection is lost, default is false
  670. RECONNECT = false
  671. ; Either "tcp", "unix" or "udp", default is "tcp"
  672. PROTOCOL = tcp
  673. ; Host address
  674. ADDR =
  675. ; For "smtp" mode only
  676. [log.smtp]
  677. LEVEL =
  678. ; Name displayed in mail title, default is "Diagnostic message from server"
  679. SUBJECT = Diagnostic message from server
  680. ; Mail server
  681. HOST =
  682. ; Mailer user name and password
  683. USER =
  684. ; Use PASSWD = `your password` for quoting if you use special characters in the password.
  685. PASSWD =
  686. ; Receivers, can be one or more, e.g. 1@example.com,2@example.com
  687. RECEIVERS =
  688. [cron]
  689. ; Enable running cron tasks periodically.
  690. ENABLED = true
  691. ; Run cron tasks when Gitea starts.
  692. RUN_AT_START = false
  693. ; Update mirrors
  694. [cron.update_mirrors]
  695. SCHEDULE = @every 10m
  696. ; Repository health check
  697. [cron.repo_health_check]
  698. SCHEDULE = @every 24h
  699. TIMEOUT = 60s
  700. ; Arguments for command 'git fsck', e.g. "--unreachable --tags"
  701. ; see more on http://git-scm.com/docs/git-fsck
  702. ARGS =
  703. ; Check repository statistics
  704. [cron.check_repo_stats]
  705. RUN_AT_START = true
  706. SCHEDULE = @every 24h
  707. ; Clean up old repository archives
  708. [cron.archive_cleanup]
  709. ; Whether to enable the job
  710. ENABLED = true
  711. ; Whether to always run at least once at start up time (if ENABLED)
  712. RUN_AT_START = true
  713. ; Time interval for job to run
  714. SCHEDULE = @every 24h
  715. ; Archives created more than OLDER_THAN ago are subject to deletion
  716. OLDER_THAN = 24h
  717. ; Synchronize external user data (only LDAP user synchronization is supported)
  718. [cron.sync_external_users]
  719. ; Synchronize external user data when starting server (default false)
  720. RUN_AT_START = false
  721. ; Interval as a duration between each synchronization (default every 24h)
  722. SCHEDULE = @every 24h
  723. ; Create new users, update existing user data and disable users that are not in external source anymore (default)
  724. ; or only create new users if UPDATE_EXISTING is set to false
  725. UPDATE_EXISTING = true
  726. ; Update migrated repositories' issues and comments' posterid, it will always attempt synchronization when the instance starts.
  727. [cron.update_migration_post_id]
  728. ; Interval as a duration between each synchronization. (default every 24h)
  729. SCHEDULE = @every 24h
  730. [git]
  731. ; The path of git executable. If empty, Gitea searches through the PATH environment.
  732. PATH =
  733. ; Disables highlight of added and removed changes
  734. DISABLE_DIFF_HIGHLIGHT = false
  735. ; Max number of lines allowed in a single file in diff view
  736. MAX_GIT_DIFF_LINES = 1000
  737. ; Max number of allowed characters in a line in diff view
  738. MAX_GIT_DIFF_LINE_CHARACTERS = 5000
  739. ; Max number of files shown in diff view
  740. MAX_GIT_DIFF_FILES = 100
  741. ; Arguments for command 'git gc', e.g. "--aggressive --auto"
  742. ; see more on http://git-scm.com/docs/git-gc/
  743. GC_ARGS =
  744. ; If use git wire protocol version 2 when git version >= 2.18, default is true, set to false when you always want git wire protocol version 1
  745. EnableAutoGitWireProtocol = true
  746. ; Operation timeout in seconds
  747. [git.timeout]
  748. DEFAULT = 360
  749. MIGRATE = 600
  750. MIRROR = 300
  751. CLONE = 300
  752. PULL = 300
  753. GC = 60
  754. [mirror]
  755. ; Default interval as a duration between each check
  756. DEFAULT_INTERVAL = 8h
  757. ; Min interval as a duration must be > 1m
  758. MIN_INTERVAL = 10m
  759. [api]
  760. ; Enables Swagger. True or false; default is true.
  761. ENABLE_SWAGGER = true
  762. ; Max number of items in a page
  763. MAX_RESPONSE_ITEMS = 50
  764. ; Default paging number of api
  765. DEFAULT_PAGING_NUM = 30
  766. ; Default and maximum number of items per page for git trees api
  767. DEFAULT_GIT_TREES_PER_PAGE = 1000
  768. ; Default size of a blob returned by the blobs API (default is 10MiB)
  769. DEFAULT_MAX_BLOB_SIZE = 10485760
  770. [oauth2]
  771. ; Enables OAuth2 provider
  772. ENABLE = true
  773. ; Lifetime of an OAuth2 access token in seconds
  774. ACCESS_TOKEN_EXPIRATION_TIME=3600
  775. ; Lifetime of an OAuth2 access token in hours
  776. REFRESH_TOKEN_EXPIRATION_TIME=730
  777. ; Check if refresh token got already used
  778. INVALIDATE_REFRESH_TOKENS=false
  779. ; OAuth2 authentication secret for access and refresh tokens, change this to a unique string.
  780. JWT_SECRET=Bk0yK7Y9g_p56v86KaHqjSbxvNvu3SbKoOdOt2ZcXvU
  781. [i18n]
  782. LANGS = en-US,zh-CN,zh-HK,zh-TW,de-DE,fr-FR,nl-NL,lv-LV,ru-RU,uk-UA,ja-JP,es-ES,pt-BR,pl-PL,bg-BG,it-IT,fi-FI,tr-TR,cs-CZ,sr-SP,sv-SE,ko-KR
  783. NAMES = English,简体中文,繁體中文(香港),繁體中文(台灣),Deutsch,français,Nederlands,latviešu,русский,Українська,日本語,español,português do Brasil,polski,български,italiano,suomi,Türkçe,čeština,српски,svenska,한국어
  784. ; Used for datetimepicker
  785. [i18n.datelang]
  786. en-US = en
  787. zh-CN = zh
  788. zh-HK = zh-HK
  789. zh-TW = zh-TW
  790. de-DE = de
  791. fr-FR = fr
  792. nl-NL = nl
  793. lv-LV = lv
  794. ru-RU = ru
  795. uk-UA = uk
  796. ja-JP = ja
  797. es-ES = es
  798. pt-BR = pt-BR
  799. pl-PL = pl
  800. bg-BG = bg
  801. it-IT = it
  802. fi-FI = fi
  803. tr-TR = tr
  804. cs-CZ = cs-CZ
  805. sr-SP = sr
  806. sv-SE = sv
  807. ko-KR = ko
  808. [U2F]
  809. ; NOTE: THE DEFAULT VALUES HERE WILL NEED TO BE CHANGED
  810. ; Two Factor authentication with security keys
  811. ; https://developers.yubico.com/U2F/App_ID.html
  812. ;APP_ID = http://localhost:3000/
  813. ; Comma seperated list of trusted facets
  814. ;TRUSTED_FACETS = http://localhost:3000/
  815. ; Extension mapping to highlight class
  816. ; e.g. .toml=ini
  817. [highlight.mapping]
  818. [other]
  819. SHOW_FOOTER_BRANDING = false
  820. ; Show version information about Gitea and Go in the footer
  821. SHOW_FOOTER_VERSION = true
  822. ; Show template execution time in the footer
  823. SHOW_FOOTER_TEMPLATE_LOAD_TIME = true
  824. [markup.asciidoc]
  825. ENABLED = false
  826. ; List of file extensions that should be rendered by an external command
  827. FILE_EXTENSIONS = .adoc,.asciidoc
  828. ; External command to render all matching extensions
  829. RENDER_COMMAND = "asciidoc --out-file=- -"
  830. ; Don't pass the file on STDIN, pass the filename as argument instead.
  831. IS_INPUT_FILE = false
  832. [metrics]
  833. ; Enables metrics endpoint. True or false; default is false.
  834. ENABLED = false
  835. ; If you want to add authorization, specify a token here
  836. TOKEN =
  837. [task]
  838. ; Task queue type, could be `channel` or `redis`.
  839. QUEUE_TYPE = channel
  840. ; Task queue length, available only when `QUEUE_TYPE` is `channel`.
  841. QUEUE_LENGTH = 1000
  842. ; Task queue connection string, available only when `QUEUE_TYPE` is `redis`.
  843. ; If there is a password of redis, use `addrs=127.0.0.1:6379 password=123 db=0`.
  844. QUEUE_CONN_STR = "addrs=127.0.0.1:6379 db=0"
  845. [migrations]
  846. ; Max attempts per http/https request on migrations.
  847. MAX_ATTEMPTS = 3
  848. ; Backoff time per http/https request retry (seconds)
  849. RETRY_BACKOFF = 3