您最多选择25个主题 主题必须以字母或数字开头,可以包含连字符 (-),并且长度不得超过35个字符

app.example.ini 55KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278
  1. ; This file lists the default values used by Gitea
  2. ; Copy required sections to your own app.ini (default is custom/conf/app.ini)
  3. ; and modify as needed.
  4. ; Do not copy the whole file as-is, as it contains some invalid sections for illustrative purposes.
  5. ; If you don't know what a setting is you should not set it.
  6. ; see https://docs.gitea.io/en-us/config-cheat-sheet/ for additional documentation.
  7. ; App name that shows in every page title
  8. APP_NAME = Gitea: Git with a cup of tea
  9. ; Change it if you run locally
  10. RUN_USER = git
  11. ; Application run mode, affects performance and debugging. Either "dev", "prod" or "test", default is "prod"
  12. RUN_MODE = prod
  13. [project]
  14. ; Default templates for project boards
  15. PROJECT_BOARD_BASIC_KANBAN_TYPE = To Do, In Progress, Done
  16. PROJECT_BOARD_BUG_TRIAGE_TYPE = Needs Triage, High Priority, Low Priority, Closed
  17. [repository]
  18. ; Root path for storing all repository data. It must be an absolute path. By default it is stored in a sub-directory of `APP_DATA_PATH`.
  19. ROOT =
  20. ; The script type this server supports. Usually this is `bash`, but some users report that only `sh` is available.
  21. SCRIPT_TYPE = bash
  22. ; DETECTED_CHARSETS_ORDER tie-break order for detected charsets.
  23. ; If the charsets have equal confidence, tie-breaking will be done by order in this list
  24. ; with charsets earlier in the list chosen in preference to those later.
  25. ; Adding "defaults" will place the unused charsets at that position.
  26. DETECTED_CHARSETS_ORDER = UTF-8, UTF-16BE, UTF-16LE, UTF-32BE, UTF-32LE, ISO-8859, windows-1252, ISO-8859, windows-1250, ISO-8859, ISO-8859, ISO-8859, windows-1253, ISO-8859, windows-1255, ISO-8859, windows-1251, windows-1256, KOI8-R, ISO-8859, windows-1254, Shift_JIS, GB18030, EUC-JP, EUC-KR, Big5, ISO-2022, ISO-2022, ISO-2022, IBM424_rtl, IBM424_ltr, IBM420_rtl, IBM420_ltr
  27. ; Default ANSI charset to override non-UTF-8 charsets to
  28. ANSI_CHARSET =
  29. ; Force every new repository to be private
  30. FORCE_PRIVATE = false
  31. ; Default privacy setting when creating a new repository, allowed values: last, private, public. Default is last which means the last setting used.
  32. DEFAULT_PRIVATE = last
  33. ; Default private when using push-to-create
  34. DEFAULT_PUSH_CREATE_PRIVATE = true
  35. ; Global limit of repositories per user, applied at creation time. -1 means no limit
  36. MAX_CREATION_LIMIT = -1
  37. ; Mirror sync queue length, increase if mirror syncing starts hanging
  38. MIRROR_QUEUE_LENGTH = 1000
  39. ; Patch test queue length, increase if pull request patch testing starts hanging
  40. PULL_REQUEST_QUEUE_LENGTH = 1000
  41. ; Preferred Licenses to place at the top of the List
  42. ; The name here must match the filename in conf/license or custom/conf/license
  43. PREFERRED_LICENSES = Apache License 2.0,MIT License
  44. ; Disable the ability to interact with repositories using the HTTP protocol
  45. DISABLE_HTTP_GIT = false
  46. ; Value for Access-Control-Allow-Origin header, default is not to present
  47. ; WARNING: This maybe harmful to you website if you do not give it a right value.
  48. ACCESS_CONTROL_ALLOW_ORIGIN =
  49. ; Force ssh:// clone url instead of scp-style uri when default SSH port is used
  50. USE_COMPAT_SSH_URI = false
  51. ; Close issues as long as a commit on any branch marks it as fixed
  52. DEFAULT_CLOSE_ISSUES_VIA_COMMITS_IN_ANY_BRANCH = false
  53. ; Allow users to push local repositories to Gitea and have them automatically created for a user or an org
  54. ENABLE_PUSH_CREATE_USER = false
  55. ENABLE_PUSH_CREATE_ORG = false
  56. ; Comma separated list of globally disabled repo units. Allowed values: repo.issues, repo.ext_issues, repo.pulls, repo.wiki, repo.ext_wiki
  57. DISABLED_REPO_UNITS =
  58. ; Comma separated list of default repo units. Allowed values: repo.code, repo.releases, repo.issues, repo.pulls, repo.wiki, repo.projects.
  59. ; Note: Code and Releases can currently not be deactivated. If you specify default repo units you should still list them for future compatibility.
  60. ; External wiki and issue tracker can't be enabled by default as it requires additional settings.
  61. ; Disabled repo units will not be added to new repositories regardless if it is in the default list.
  62. DEFAULT_REPO_UNITS = repo.code,repo.releases,repo.issues,repo.pulls,repo.wiki,repo.projects
  63. ; Prefix archive files by placing them in a directory named after the repository
  64. PREFIX_ARCHIVE_FILES = true
  65. ; Disable the creation of new mirrors. Pre-existing mirrors remain valid.
  66. DISABLE_MIRRORS = false
  67. ; Disable migrating feature.
  68. DISABLE_MIGRATIONS = false
  69. ; The default branch name of new repositories
  70. DEFAULT_BRANCH = master
  71. ; Allow adoption of unadopted repositories
  72. ALLOW_ADOPTION_OF_UNADOPTED_REPOSITORIES = false
  73. ; Allow deletion of unadopted repositories
  74. ALLOW_DELETION_OF_UNADOPTED_REPOSITORIES = false
  75. [repository.editor]
  76. ; List of file extensions for which lines should be wrapped in the Monaco editor
  77. ; Separate extensions with a comma. To line wrap files without an extension, just put a comma
  78. LINE_WRAP_EXTENSIONS = .txt,.md,.markdown,.mdown,.mkd,
  79. ; Valid file modes that have a preview API associated with them, such as api/v1/markdown
  80. ; Separate the values by commas. The preview tab in edit mode won't be displayed if the file extension doesn't match
  81. PREVIEWABLE_FILE_MODES = markdown
  82. [repository.local]
  83. ; Path for local repository copy. Defaults to `tmp/local-repo`
  84. LOCAL_COPY_PATH = tmp/local-repo
  85. [repository.upload]
  86. ; Whether repository file uploads are enabled. Defaults to `true`
  87. ENABLED = true
  88. ; Path for uploads. Defaults to `data/tmp/uploads` (tmp gets deleted on gitea restart)
  89. TEMP_PATH = data/tmp/uploads
  90. ; Comma-separated list of allowed file extensions (`.zip`), mime types (`text/plain`) or wildcard type (`image/*`, `audio/*`, `video/*`). Empty value or `*/*` allows all types.
  91. ALLOWED_TYPES =
  92. ; Max size of each file in megabytes. Defaults to 3MB
  93. FILE_MAX_SIZE = 3
  94. ; Max number of files per upload. Defaults to 5
  95. MAX_FILES = 5
  96. [repository.pull-request]
  97. ; List of prefixes used in Pull Request title to mark them as Work In Progress
  98. WORK_IN_PROGRESS_PREFIXES = WIP:,[WIP]
  99. ; List of keywords used in Pull Request comments to automatically close a related issue
  100. CLOSE_KEYWORDS = close,closes,closed,fix,fixes,fixed,resolve,resolves,resolved
  101. ; List of keywords used in Pull Request comments to automatically reopen a related issue
  102. REOPEN_KEYWORDS = reopen,reopens,reopened
  103. ; In the default merge message for squash commits include at most this many commits
  104. DEFAULT_MERGE_MESSAGE_COMMITS_LIMIT = 50
  105. ; In the default merge message for squash commits limit the size of the commit messages to this
  106. DEFAULT_MERGE_MESSAGE_SIZE = 5120
  107. ; In the default merge message for squash commits walk all commits to include all authors in the Co-authored-by otherwise just use those in the limited list
  108. DEFAULT_MERGE_MESSAGE_ALL_AUTHORS = false
  109. ; In default merge messages limit the number of approvers listed as Reviewed-by: to this many
  110. DEFAULT_MERGE_MESSAGE_MAX_APPROVERS = 10
  111. ; In default merge messages only include approvers who are official
  112. DEFAULT_MERGE_MESSAGE_OFFICIAL_APPROVERS_ONLY = true
  113. [repository.issue]
  114. ; List of reasons why a Pull Request or Issue can be locked
  115. LOCK_REASONS = Too heated,Off-topic,Resolved,Spam
  116. [repository.release]
  117. ; Comma-separated list of allowed file extensions (`.zip`), mime types (`text/plain`) or wildcard type (`image/*`, `audio/*`, `video/*`). Empty value or `*/*` allows all types.
  118. ALLOWED_TYPES =
  119. [repository.signing]
  120. ; GPG key to use to sign commits, Defaults to the default - that is the value of git config --get user.signingkey
  121. ; run in the context of the RUN_USER
  122. ; Switch to none to stop signing completely
  123. SIGNING_KEY = default
  124. ; If a SIGNING_KEY ID is provided and is not set to default, use the provided Name and Email address as the signer.
  125. ; These should match a publicized name and email address for the key. (When SIGNING_KEY is default these are set to
  126. ; the results of git config --get user.name and git config --get user.email respectively and can only be overrided
  127. ; by setting the SIGNING_KEY ID to the correct ID.)
  128. SIGNING_NAME =
  129. SIGNING_EMAIL =
  130. ; Sets the default trust model for repositories. Options are: collaborator, committer, collaboratorcommitter
  131. DEFAULT_TRUST_MODEL = collaborator
  132. ; Determines when gitea should sign the initial commit when creating a repository
  133. ; Either:
  134. ; - never
  135. ; - pubkey: only sign if the user has a pubkey
  136. ; - twofa: only sign if the user has logged in with twofa
  137. ; - always
  138. ; options other than none and always can be combined as comma separated list
  139. INITIAL_COMMIT = always
  140. ; Determines when to sign for CRUD actions
  141. ; - as above
  142. ; - parentsigned: requires that the parent commit is signed.
  143. CRUD_ACTIONS = pubkey, twofa, parentsigned
  144. ; Determines when to sign Wiki commits
  145. ; - as above
  146. WIKI = never
  147. ; Determines when to sign on merges
  148. ; - basesigned: require that the parent of commit on the base repo is signed.
  149. ; - commitssigned: require that all the commits in the head branch are signed.
  150. ; - approved: only sign when merging an approved pr to a protected branch
  151. MERGES = pubkey, twofa, basesigned, commitssigned
  152. [cors]
  153. ; More information about CORS can be found here: https://developer.mozilla.org/en-US/docs/Web/HTTP/CORS#The_HTTP_response_headers
  154. ; enable cors headers (disabled by default)
  155. ENABLED = false
  156. ; scheme of allowed requests
  157. SCHEME = http
  158. ; list of requesting domains that are allowed
  159. ALLOW_DOMAIN = *
  160. ; allow subdomains of headers listed above to request
  161. ALLOW_SUBDOMAIN = false
  162. ; list of methods allowed to request
  163. METHODS = GET,HEAD,POST,PUT,PATCH,DELETE,OPTIONS
  164. ; max time to cache response
  165. MAX_AGE = 10m
  166. ; allow request with credentials
  167. ALLOW_CREDENTIALS = false
  168. [ui]
  169. ; Number of repositories that are displayed on one explore page
  170. EXPLORE_PAGING_NUM = 20
  171. ; Number of issues that are displayed on one page
  172. ISSUE_PAGING_NUM = 10
  173. ; Number of maximum commits displayed in one activity feed
  174. FEED_MAX_COMMIT_NUM = 5
  175. ; Number of items that are displayed in home feed
  176. FEED_PAGING_NUM = 20
  177. ; Number of maximum commits displayed in commit graph.
  178. GRAPH_MAX_COMMIT_NUM = 100
  179. ; Number of line of codes shown for a code comment
  180. CODE_COMMENT_LINES = 4
  181. ; Value of `theme-color` meta tag, used by Android >= 5.0
  182. ; An invalid color like "none" or "disable" will have the default style
  183. ; More info: https://developers.google.com/web/updates/2014/11/Support-for-theme-color-in-Chrome-39-for-Android
  184. THEME_COLOR_META_TAG = `#6cc644`
  185. ; Max size of files to be displayed (default is 8MiB)
  186. MAX_DISPLAY_FILE_SIZE = 8388608
  187. ; Whether the email of the user should be shown in the Explore Users page
  188. SHOW_USER_EMAIL = true
  189. ; Set the default theme for the Gitea install
  190. DEFAULT_THEME = gitea
  191. ; All available themes. Allow users select personalized themes regardless of the value of `DEFAULT_THEME`.
  192. THEMES = gitea,arc-green
  193. ;All available reactions users can choose on issues/prs and comments.
  194. ;Values can be emoji alias (:smile:) or a unicode emoji.
  195. ;For custom reactions, add a tightly cropped square image to public/emoji/img/reaction_name.png
  196. REACTIONS = +1, -1, laugh, hooray, confused, heart, rocket, eyes
  197. ; Whether the full name of the users should be shown where possible. If the full name isn't set, the username will be used.
  198. DEFAULT_SHOW_FULL_NAME = false
  199. ; Whether to search within description at repository search on explore page.
  200. SEARCH_REPO_DESCRIPTION = true
  201. ; Whether to enable a Service Worker to cache frontend assets
  202. USE_SERVICE_WORKER = true
  203. [ui.admin]
  204. ; Number of users that are displayed on one page
  205. USER_PAGING_NUM = 50
  206. ; Number of repos that are displayed on one page
  207. REPO_PAGING_NUM = 50
  208. ; Number of notices that are displayed on one page
  209. NOTICE_PAGING_NUM = 25
  210. ; Number of organizations that are displayed on one page
  211. ORG_PAGING_NUM = 50
  212. [ui.user]
  213. ; Number of repos that are displayed on one page
  214. REPO_PAGING_NUM = 15
  215. [ui.meta]
  216. AUTHOR = Gitea - Git with a cup of tea
  217. DESCRIPTION = Gitea (Git with a cup of tea) is a painless self-hosted Git service written in Go
  218. KEYWORDS = go,git,self-hosted,gitea
  219. [ui.notification]
  220. ; Control how often the notification endpoint is polled to update the notification
  221. ; The timeout will increase to MAX_TIMEOUT in TIMEOUT_STEPs if the notification count is unchanged
  222. ; Set MIN_TIMEOUT to 0 to turn off
  223. MIN_TIMEOUT = 10s
  224. MAX_TIMEOUT = 60s
  225. TIMEOUT_STEP = 10s
  226. ; This setting determines how often the db is queried to get the latest notification counts.
  227. ; If the browser client supports EventSource and SharedWorker, a SharedWorker will be used in preference to polling notification. Set to -1 to disable the EventSource
  228. EVENT_SOURCE_UPDATE_TIME = 10s
  229. [ui.svg]
  230. ; Whether to render SVG files as images. If SVG rendering is disabled, SVG files are displayed as text and cannot be embedded in markdown files as images.
  231. ENABLE_RENDER = true
  232. [ui.csv]
  233. ; Maximum allowed file size in bytes to render CSV files as table. (Set to 0 for no limit).
  234. MAX_FILE_SIZE = 524288
  235. [markdown]
  236. ; Render soft line breaks as hard line breaks, which means a single newline character between
  237. ; paragraphs will cause a line break and adding trailing whitespace to paragraphs is not
  238. ; necessary to force a line break.
  239. ; Render soft line breaks as hard line breaks for comments
  240. ENABLE_HARD_LINE_BREAK_IN_COMMENTS = true
  241. ; Render soft line breaks as hard line breaks for markdown documents
  242. ENABLE_HARD_LINE_BREAK_IN_DOCUMENTS = false
  243. ; Comma separated list of custom URL-Schemes that are allowed as links when rendering Markdown
  244. ; for example git,magnet,ftp (more at https://en.wikipedia.org/wiki/List_of_URI_schemes)
  245. ; URLs starting with http and https are always displayed, whatever is put in this entry.
  246. CUSTOM_URL_SCHEMES =
  247. ; List of file extensions that should be rendered/edited as Markdown
  248. ; Separate the extensions with a comma. To render files without any extension as markdown, just put a comma
  249. FILE_EXTENSIONS = .md,.markdown,.mdown,.mkd
  250. [server]
  251. ; The protocol the server listens on. One of 'http', 'https', 'unix' or 'fcgi'.
  252. PROTOCOL = http
  253. DOMAIN = localhost
  254. ROOT_URL = %(PROTOCOL)s://%(DOMAIN)s:%(HTTP_PORT)s/
  255. ; when STATIC_URL_PREFIX is empty it will follow ROOT_URL
  256. STATIC_URL_PREFIX =
  257. ; The address to listen on. Either a IPv4/IPv6 address or the path to a unix socket.
  258. HTTP_ADDR = 0.0.0.0
  259. ; The port to listen on. Leave empty when using a unix socket.
  260. HTTP_PORT = 3000
  261. ; If REDIRECT_OTHER_PORT is true, and PROTOCOL is set to https an http server
  262. ; will be started on PORT_TO_REDIRECT and it will redirect plain, non-secure http requests to the main
  263. ; ROOT_URL. Defaults are false for REDIRECT_OTHER_PORT and 80 for
  264. ; PORT_TO_REDIRECT.
  265. REDIRECT_OTHER_PORT = false
  266. PORT_TO_REDIRECT = 80
  267. ; Permission for unix socket
  268. UNIX_SOCKET_PERMISSION = 666
  269. ; Local (DMZ) URL for Gitea workers (such as SSH update) accessing web service.
  270. ; In most cases you do not need to change the default value.
  271. ; Alter it only if your SSH server node is not the same as HTTP node.
  272. ; Do not set this variable if PROTOCOL is set to 'unix'.
  273. LOCAL_ROOT_URL = %(PROTOCOL)s://%(HTTP_ADDR)s:%(HTTP_PORT)s/
  274. ; Disable SSH feature when not available
  275. DISABLE_SSH = false
  276. ; Whether to use the builtin SSH server or not.
  277. START_SSH_SERVER = false
  278. ; Username to use for the builtin SSH server. If blank, then it is the value of RUN_USER.
  279. BUILTIN_SSH_SERVER_USER =
  280. ; Domain name to be exposed in clone URL
  281. SSH_DOMAIN = %(DOMAIN)s
  282. ; The network interface the builtin SSH server should listen on
  283. SSH_LISTEN_HOST =
  284. ; Port number to be exposed in clone URL
  285. SSH_PORT = 22
  286. ; The port number the builtin SSH server should listen on
  287. SSH_LISTEN_PORT = %(SSH_PORT)s
  288. ; Root path of SSH directory, default is '~/.ssh', but you have to use '/home/git/.ssh'.
  289. SSH_ROOT_PATH =
  290. ; Gitea will create a authorized_keys file by default when it is not using the internal ssh server
  291. ; If you intend to use the AuthorizedKeysCommand functionality then you should turn this off.
  292. SSH_CREATE_AUTHORIZED_KEYS_FILE = true
  293. ; Gitea will create a authorized_principals file by default when it is not using the internal ssh server
  294. ; If you intend to use the AuthorizedPrincipalsCommand functionality then you should turn this off.
  295. SSH_CREATE_AUTHORIZED_PRINCIPALS_FILE = true
  296. ; For the built-in SSH server, choose the ciphers to support for SSH connections,
  297. ; for system SSH this setting has no effect
  298. SSH_SERVER_CIPHERS = aes128-ctr, aes192-ctr, aes256-ctr, aes128-gcm@openssh.com, arcfour256, arcfour128
  299. ; For the built-in SSH server, choose the key exchange algorithms to support for SSH connections,
  300. ; for system SSH this setting has no effect
  301. SSH_SERVER_KEY_EXCHANGES = diffie-hellman-group1-sha1, diffie-hellman-group14-sha1, ecdh-sha2-nistp256, ecdh-sha2-nistp384, ecdh-sha2-nistp521, curve25519-sha256@libssh.org
  302. ; For the built-in SSH server, choose the MACs to support for SSH connections,
  303. ; for system SSH this setting has no effect
  304. SSH_SERVER_MACS = hmac-sha2-256-etm@openssh.com, hmac-sha2-256, hmac-sha1, hmac-sha1-96
  305. ; For the built-in SSH server, choose the keypair to offer as the host key
  306. ; The private key should be at SSH_SERVER_HOST_KEY and the public SSH_SERVER_HOST_KEY.pub
  307. ; relative paths are made absolute relative to the APP_DATA_PATH
  308. SSH_SERVER_HOST_KEYS=ssh/gitea.rsa, ssh/gogs.rsa
  309. ; Directory to create temporary files in when testing public keys using ssh-keygen,
  310. ; default is the system temporary directory.
  311. SSH_KEY_TEST_PATH =
  312. ; Path to ssh-keygen, default is 'ssh-keygen' which means the shell is responsible for finding out which one to call.
  313. SSH_KEYGEN_PATH = ssh-keygen
  314. ; Enable SSH Authorized Key Backup when rewriting all keys, default is true
  315. SSH_AUTHORIZED_KEYS_BACKUP = true
  316. ; Determines which principals to allow
  317. ; - empty: if SSH_TRUSTED_USER_CA_KEYS is empty this will default to off, otherwise will default to email, username.
  318. ; - off: Do not allow authorized principals
  319. ; - email: the principal must match the user's email
  320. ; - username: the principal must match the user's username
  321. ; - anything: there will be no checking on the content of the principal
  322. SSH_AUTHORIZED_PRINCIPALS_ALLOW = email, username
  323. ; Enable SSH Authorized Principals Backup when rewriting all keys, default is true
  324. SSH_AUTHORIZED_PRINCIPALS_BACKUP = true
  325. ; Specifies the public keys of certificate authorities that are trusted to sign user certificates for authentication.
  326. ; Multiple keys should be comma separated.
  327. ; E.g."ssh-<algorithm> <key>". or "ssh-<algorithm> <key1>, ssh-<algorithm> <key2>".
  328. ; For more information see "TrustedUserCAKeys" in the sshd config manpages.
  329. SSH_TRUSTED_USER_CA_KEYS =
  330. ; Absolute path of the `TrustedUserCaKeys` file gitea will manage.
  331. ; Default this `RUN_USER`/.ssh/gitea-trusted-user-ca-keys.pem
  332. ; If you're running your own ssh server and you want to use the gitea managed file you'll also need to modify your
  333. ; sshd_config to point to this file. The official docker image will automatically work without further configuration.
  334. SSH_TRUSTED_USER_CA_KEYS_FILENAME =
  335. ; Enable exposure of SSH clone URL to anonymous visitors, default is false
  336. SSH_EXPOSE_ANONYMOUS = false
  337. ; Indicate whether to check minimum key size with corresponding type
  338. MINIMUM_KEY_SIZE_CHECK = false
  339. ; Disable CDN even in "prod" mode
  340. OFFLINE_MODE = false
  341. DISABLE_ROUTER_LOG = false
  342. ; Generate steps:
  343. ; $ ./gitea cert -ca=true -duration=8760h0m0s -host=myhost.example.com
  344. ;
  345. ; Or from a .pfx file exported from the Windows certificate store (do
  346. ; not forget to export the private key):
  347. ; $ openssl pkcs12 -in cert.pfx -out cert.pem -nokeys
  348. ; $ openssl pkcs12 -in cert.pfx -out key.pem -nocerts -nodes
  349. ; Paths are relative to CUSTOM_PATH
  350. CERT_FILE = https/cert.pem
  351. KEY_FILE = https/key.pem
  352. ; Root directory containing templates and static files.
  353. ; default is the path where Gitea is executed
  354. STATIC_ROOT_PATH =
  355. ; Default path for App data
  356. APP_DATA_PATH = data
  357. ; Enable gzip compression for runtime-generated content, static resources excluded
  358. ENABLE_GZIP = false
  359. ; Application profiling (memory and cpu)
  360. ; For "web" command it listens on localhost:6060
  361. ; For "serve" command it dumps to disk at PPROF_DATA_PATH as (cpuprofile|memprofile)_<username>_<temporary id>
  362. ENABLE_PPROF = false
  363. ; PPROF_DATA_PATH, use an absolute path when you start gitea as service
  364. PPROF_DATA_PATH = data/tmp/pprof
  365. ; Landing page, can be "home", "explore", "organizations" or "login"
  366. ; The "login" choice is not a security measure but just a UI flow change, use REQUIRE_SIGNIN_VIEW to force users to log in.
  367. LANDING_PAGE = home
  368. ; Enables git-lfs support. true or false, default is false.
  369. LFS_START_SERVER = false
  370. ; Where your lfs files reside, default is data/lfs.
  371. LFS_CONTENT_PATH = data/lfs
  372. ; LFS authentication secret, change this yourself
  373. LFS_JWT_SECRET =
  374. ; LFS authentication validity period (in time.Duration), pushes taking longer than this may fail.
  375. LFS_HTTP_AUTH_EXPIRY = 20m
  376. ; Maximum allowed LFS file size in bytes (Set to 0 for no limit).
  377. LFS_MAX_FILE_SIZE = 0
  378. ; Maximum number of locks returned per page
  379. LFS_LOCKS_PAGING_NUM = 50
  380. ; Allow graceful restarts using SIGHUP to fork
  381. ALLOW_GRACEFUL_RESTARTS = true
  382. ; After a restart the parent will finish ongoing requests before
  383. ; shutting down. Force shutdown if this process takes longer than this delay.
  384. ; set to a negative value to disable
  385. GRACEFUL_HAMMER_TIME = 60s
  386. ; Allows the setting of a startup timeout and waithint for Windows as SVC service
  387. ; 0 disables this.
  388. STARTUP_TIMEOUT = 0
  389. ; Static resources, includes resources on custom/, public/ and all uploaded avatars web browser cache time. Note that this cache is disabled when RUN_MODE is "dev". Default is 6h
  390. STATIC_CACHE_TIME = 6h
  391. ; Define allowed algorithms and their minimum key length (use -1 to disable a type)
  392. [ssh.minimum_key_sizes]
  393. ED25519 = 256
  394. ECDSA = 256
  395. RSA = 2048
  396. DSA = -1 ; set to 1024 to switch on
  397. [database]
  398. ; Database to use. Either "mysql", "postgres", "mssql" or "sqlite3".
  399. DB_TYPE = mysql
  400. HOST = 127.0.0.1:3306
  401. NAME = gitea
  402. USER = root
  403. ; Use PASSWD = `your password` for quoting if you use special characters in the password.
  404. PASSWD =
  405. ; For Postgres, schema to use if different from "public". The schema must exist beforehand,
  406. ; the user must have creation privileges on it, and the user search path must be set
  407. ; to the look into the schema first. e.g.:ALTER USER user SET SEARCH_PATH = schema_name,"$user",public;
  408. SCHEMA =
  409. ; For Postgres, either "disable" (default), "require", or "verify-full"
  410. ; For MySQL, either "false" (default), "true", or "skip-verify"
  411. SSL_MODE = disable
  412. ; For MySQL only, either "utf8" or "utf8mb4", default is "utf8mb4".
  413. ; NOTICE: for "utf8mb4" you must use MySQL InnoDB > 5.6. Gitea is unable to check this.
  414. CHARSET = utf8mb4
  415. ; For "sqlite3" and "tidb", use an absolute path when you start gitea as service
  416. PATH = data/gitea.db
  417. ; For "sqlite3" only. Query timeout
  418. SQLITE_TIMEOUT = 500
  419. ; For iterate buffer, default is 50
  420. ITERATE_BUFFER_SIZE = 50
  421. ; Show the database generated SQL
  422. LOG_SQL = true
  423. ; Maximum number of DB Connect retries
  424. DB_RETRIES = 10
  425. ; Backoff time per DB retry (time.Duration)
  426. DB_RETRY_BACKOFF = 3s
  427. ; Max idle database connections on connnection pool, default is 2
  428. MAX_IDLE_CONNS = 2
  429. ; Database connection max life time, default is 0 or 3s mysql (See #6804 & #7071 for reasoning)
  430. CONN_MAX_LIFETIME = 3s
  431. ; Database maximum number of open connections, default is 0 meaning no maximum
  432. MAX_OPEN_CONNS = 0
  433. [indexer]
  434. ; Issue indexer type, currently support: bleve, db or elasticsearch, default is bleve
  435. ISSUE_INDEXER_TYPE = bleve
  436. ; Issue indexer connection string, available when ISSUE_INDEXER_TYPE is elasticsearch
  437. ISSUE_INDEXER_CONN_STR = http://elastic:changeme@localhost:9200
  438. ; Issue indexer name, available when ISSUE_INDEXER_TYPE is elasticsearch
  439. ISSUE_INDEXER_NAME = gitea_issues
  440. ; Issue indexer storage path, available when ISSUE_INDEXER_TYPE is bleve
  441. ISSUE_INDEXER_PATH = indexers/issues.bleve
  442. ; Issue indexer queue, currently support: channel, levelqueue or redis, default is levelqueue
  443. ISSUE_INDEXER_QUEUE_TYPE = levelqueue
  444. ; When ISSUE_INDEXER_QUEUE_TYPE is levelqueue, this will be the path where the queue will be saved.
  445. ; This can be overriden by `ISSUE_INDEXER_QUEUE_CONN_STR`.
  446. ; default is indexers/issues.queue
  447. ISSUE_INDEXER_QUEUE_DIR = indexers/issues.queue
  448. ; When `ISSUE_INDEXER_QUEUE_TYPE` is `redis`, this will store the redis connection string.
  449. ; When `ISSUE_INDEXER_QUEUE_TYPE` is `levelqueue`, this is a directory or additional options of
  450. ; the form `leveldb://path/to/db?option=value&....`, and overrides `ISSUE_INDEXER_QUEUE_DIR`.
  451. ISSUE_INDEXER_QUEUE_CONN_STR = "addrs=127.0.0.1:6379 db=0"
  452. ; Batch queue number, default is 20
  453. ISSUE_INDEXER_QUEUE_BATCH_NUMBER = 20
  454. ; Timeout the indexer if it takes longer than this to start.
  455. ; Set to zero to disable timeout.
  456. STARTUP_TIMEOUT = 30s
  457. ; repo indexer by default disabled, since it uses a lot of disk space
  458. REPO_INDEXER_ENABLED = false
  459. ; Code search engine type, could be `bleve` or `elasticsearch`.
  460. REPO_INDEXER_TYPE = bleve
  461. ; Index file used for code search.
  462. REPO_INDEXER_PATH = indexers/repos.bleve
  463. ; Code indexer connection string, available when `REPO_INDEXER_TYPE` is elasticsearch. i.e. http://elastic:changeme@localhost:9200
  464. REPO_INDEXER_CONN_STR =
  465. ; Code indexer name, available when `REPO_INDEXER_TYPE` is elasticsearch
  466. REPO_INDEXER_NAME = gitea_codes
  467. UPDATE_BUFFER_LEN = 20
  468. MAX_FILE_SIZE = 1048576
  469. ; A comma separated list of glob patterns (see https://github.com/gobwas/glob) to include
  470. ; in the index; default is empty
  471. REPO_INDEXER_INCLUDE =
  472. ; A comma separated list of glob patterns to exclude from the index; ; default is empty
  473. REPO_INDEXER_EXCLUDE =
  474. [queue]
  475. ; Specific queues can be individually configured with [queue.name]. [queue] provides defaults
  476. ;
  477. ; General queue queue type, currently support: persistable-channel, channel, level, redis, dummy
  478. ; default to persistable-channel
  479. TYPE = persistable-channel
  480. ; data-dir for storing persistable queues and level queues, individual queues will be named by their type
  481. DATADIR = queues/
  482. ; Default queue length before a channel queue will block
  483. LENGTH = 20
  484. ; Batch size to send for batched queues
  485. BATCH_LENGTH = 20
  486. ; Connection string for redis queues this will store the redis connection string.
  487. ; When `TYPE` is `persistable-channel`, this provides a directory for the underlying leveldb
  488. ; or additional options of the form `leveldb://path/to/db?option=value&....`, and will override `DATADIR`.
  489. CONN_STR = "addrs=127.0.0.1:6379 db=0"
  490. ; Provides the suffix of the default redis/disk queue name - specific queues can be overriden within in their [queue.name] sections.
  491. QUEUE_NAME = "_queue"
  492. ; Provides the suffix of the default redis/disk unique queue set name - specific queues can be overriden within in their [queue.name] sections.
  493. SET_NAME = "_unique"
  494. ; If the queue cannot be created at startup - level queues may need a timeout at startup - wrap the queue:
  495. WRAP_IF_NECESSARY = true
  496. ; Attempt to create the wrapped queue at max
  497. MAX_ATTEMPTS = 10
  498. ; Timeout queue creation
  499. TIMEOUT = 15m30s
  500. ; Create a pool with this many workers
  501. WORKERS = 1
  502. ; Dynamically scale the worker pool to at this many workers
  503. MAX_WORKERS = 10
  504. ; Add boost workers when the queue blocks for BLOCK_TIMEOUT
  505. BLOCK_TIMEOUT = 1s
  506. ; Remove the boost workers after BOOST_TIMEOUT
  507. BOOST_TIMEOUT = 5m
  508. ; During a boost add BOOST_WORKERS
  509. BOOST_WORKERS = 5
  510. [admin]
  511. ; Disallow regular (non-admin) users from creating organizations.
  512. DISABLE_REGULAR_ORG_CREATION = false
  513. ; Default configuration for email notifications for users (user configurable). Options: enabled, onmention, disabled
  514. DEFAULT_EMAIL_NOTIFICATIONS = enabled
  515. [security]
  516. ; Whether the installer is disabled
  517. INSTALL_LOCK = false
  518. ; !!CHANGE THIS TO KEEP YOUR USER DATA SAFE!!
  519. SECRET_KEY = !#@FDEWREWR&*(
  520. ; How long to remember that a user is logged in before requiring relogin (in days)
  521. LOGIN_REMEMBER_DAYS = 7
  522. COOKIE_USERNAME = gitea_awesome
  523. COOKIE_REMEMBER_NAME = gitea_incredible
  524. ; Reverse proxy authentication header name of user name
  525. REVERSE_PROXY_AUTHENTICATION_USER = X-WEBAUTH-USER
  526. REVERSE_PROXY_AUTHENTICATION_EMAIL = X-WEBAUTH-EMAIL
  527. ; Interpret X-Forwarded-For header or the X-Real-IP header and set this as the remote IP for the request
  528. REVERSE_PROXY_LIMIT = 1
  529. ; List of IP addresses and networks separated by comma of trusted proxy servers. Use `*` to trust all.
  530. REVERSE_PROXY_TRUSTED_PROXIES = 127.0.0.0/8,::1/128
  531. ; The minimum password length for new Users
  532. MIN_PASSWORD_LENGTH = 6
  533. ; Set to true to allow users to import local server paths
  534. IMPORT_LOCAL_PATHS = false
  535. ; Set to false to allow users with git hook privileges to create custom git hooks.
  536. ; Custom git hooks can be used to perform arbitrary code execution on the host operating system.
  537. ; This enables the users to access and modify this config file and the Gitea database and interrupt the Gitea service.
  538. ; By modifying the Gitea database, users can gain Gitea administrator privileges.
  539. ; It also enables them to access other resources available to the user on the operating system that is running the Gitea instance and perform arbitrary actions in the name of the Gitea OS user.
  540. ; WARNING: This maybe harmful to you website or your operating system.
  541. DISABLE_GIT_HOOKS = true
  542. ; Set to true to disable webhooks feature.
  543. DISABLE_WEBHOOKS = false
  544. ; Set to false to allow pushes to gitea repositories despite having an incomplete environment - NOT RECOMMENDED
  545. ONLY_ALLOW_PUSH_IF_GITEA_ENVIRONMENT_SET = true
  546. ;Comma separated list of character classes required to pass minimum complexity.
  547. ;If left empty or no valid values are specified, the default is off (no checking)
  548. ;Classes include "lower,upper,digit,spec"
  549. PASSWORD_COMPLEXITY = off
  550. ; Password Hash algorithm, either "argon2", "pbkdf2", "scrypt" or "bcrypt"
  551. PASSWORD_HASH_ALGO = pbkdf2
  552. ; Set false to allow JavaScript to read CSRF cookie
  553. CSRF_COOKIE_HTTP_ONLY = true
  554. ; Validate against https://haveibeenpwned.com/Passwords to see if a password has been exposed
  555. PASSWORD_CHECK_PWN = false
  556. [openid]
  557. ;
  558. ; OpenID is an open, standard and decentralized authentication protocol.
  559. ; Your identity is the address of a webpage you provide, which describes
  560. ; how to prove you are in control of that page.
  561. ;
  562. ; For more info: https://en.wikipedia.org/wiki/OpenID
  563. ;
  564. ; Current implementation supports OpenID-2.0
  565. ;
  566. ; Tested to work providers at the time of writing:
  567. ; - Any GNUSocial node (your.hostname.tld/username)
  568. ; - Any SimpleID provider (http://simpleid.koinic.net)
  569. ; - http://openid.org.cn/
  570. ; - openid.stackexchange.com
  571. ; - login.launchpad.net
  572. ; - <username>.livejournal.com
  573. ;
  574. ; Whether to allow signin in via OpenID
  575. ENABLE_OPENID_SIGNIN = true
  576. ; Whether to allow registering via OpenID
  577. ; Do not include to rely on rhw DISABLE_REGISTRATION setting
  578. ;ENABLE_OPENID_SIGNUP = true
  579. ; Allowed URI patterns (POSIX regexp).
  580. ; Space separated.
  581. ; Only these would be allowed if non-blank.
  582. ; Example value: trusted.domain.org trusted.domain.net
  583. WHITELISTED_URIS =
  584. ; Forbidden URI patterns (POSIX regexp).
  585. ; Space separated.
  586. ; Only used if WHITELISTED_URIS is blank.
  587. ; Example value: loadaverage.org/badguy stackexchange.com/.*spammer
  588. BLACKLISTED_URIS =
  589. [service]
  590. ; Time limit to confirm account/email registration
  591. ACTIVE_CODE_LIVE_MINUTES = 180
  592. ; Time limit to perform the reset of a forgotten password
  593. RESET_PASSWD_CODE_LIVE_MINUTES = 180
  594. ; Whether a new user needs to confirm their email when registering.
  595. REGISTER_EMAIL_CONFIRM = false
  596. ; Whether a new user needs to be confirmed manually after registration. (Requires `REGISTER_EMAIL_CONFIRM` to be disabled.)
  597. REGISTER_MANUAL_CONFIRM = false
  598. ; List of domain names that are allowed to be used to register on a Gitea instance
  599. ; gitea.io,example.com
  600. EMAIL_DOMAIN_WHITELIST =
  601. ; Comma-separated list of domain names that are not allowed to be used to register on a Gitea instance
  602. EMAIL_DOMAIN_BLOCKLIST =
  603. ; Disallow registration, only allow admins to create accounts.
  604. DISABLE_REGISTRATION = false
  605. ; Allow registration only using third-party services, it works only when DISABLE_REGISTRATION is false
  606. ALLOW_ONLY_EXTERNAL_REGISTRATION = false
  607. ; User must sign in to view anything.
  608. REQUIRE_SIGNIN_VIEW = false
  609. ; Mail notification
  610. ENABLE_NOTIFY_MAIL = false
  611. ; This setting enables gitea to be signed in with HTTP BASIC Authentication using the user's password
  612. ; If you set this to false you will not be able to access the tokens endpoints on the API with your password
  613. ; Please note that setting this to false will not disable OAuth Basic or Basic authentication using a token
  614. ENABLE_BASIC_AUTHENTICATION = true
  615. ; More detail: https://github.com/gogits/gogs/issues/165
  616. ENABLE_REVERSE_PROXY_AUTHENTICATION = false
  617. ENABLE_REVERSE_PROXY_AUTO_REGISTRATION = false
  618. ENABLE_REVERSE_PROXY_EMAIL = false
  619. ; Enable captcha validation for registration
  620. ENABLE_CAPTCHA = false
  621. ; Type of captcha you want to use. Options: image, recaptcha, hcaptcha
  622. CAPTCHA_TYPE = image
  623. ; Enable recaptcha to use Google's recaptcha service
  624. ; Go to https://www.google.com/recaptcha/admin to sign up for a key
  625. RECAPTCHA_SECRET =
  626. RECAPTCHA_SITEKEY =
  627. ; For hCaptcha, create an account at https://accounts.hcaptcha.com/login to get your keys
  628. HCAPTCHA_SECRET =
  629. HCAPTCHA_SITEKEY =
  630. ; Change this to use recaptcha.net or other recaptcha service
  631. RECAPTCHA_URL = https://www.google.com/recaptcha/
  632. ; Default value for KeepEmailPrivate
  633. ; Each new user will get the value of this setting copied into their profile
  634. DEFAULT_KEEP_EMAIL_PRIVATE = false
  635. ; Default value for AllowCreateOrganization
  636. ; Every new user will have rights set to create organizations depending on this setting
  637. DEFAULT_ALLOW_CREATE_ORGANIZATION = true
  638. ; Either "public", "limited" or "private", default is "public"
  639. ; Limited is for signed user only
  640. ; Private is only for member of the organization
  641. ; Public is for everyone
  642. DEFAULT_ORG_VISIBILITY = public
  643. ; Default value for DefaultOrgMemberVisible
  644. ; True will make the membership of the users visible when added to the organisation
  645. DEFAULT_ORG_MEMBER_VISIBLE = false
  646. ; Default value for EnableDependencies
  647. ; Repositories will use dependencies by default depending on this setting
  648. DEFAULT_ENABLE_DEPENDENCIES = true
  649. ; Dependencies can be added from any repository where the user is granted access or only from the current repository depending on this setting.
  650. ALLOW_CROSS_REPOSITORY_DEPENDENCIES = true
  651. ; Enable heatmap on users profiles.
  652. ENABLE_USER_HEATMAP = true
  653. ; Enable Timetracking
  654. ENABLE_TIMETRACKING = true
  655. ; Default value for EnableTimetracking
  656. ; Repositories will use timetracking by default depending on this setting
  657. DEFAULT_ENABLE_TIMETRACKING = true
  658. ; Default value for AllowOnlyContributorsToTrackTime
  659. ; Only users with write permissions can track time if this is true
  660. DEFAULT_ALLOW_ONLY_CONTRIBUTORS_TO_TRACK_TIME = true
  661. ; Value for the domain part of the user's email address in the git log if user
  662. ; has set KeepEmailPrivate to true. The user's email will be replaced with a
  663. ; concatenation of the user name in lower case, "@" and NO_REPLY_ADDRESS. Default
  664. ; value is "noreply." + DOMAIN, where DOMAIN resolves to the value from server.DOMAIN
  665. ; Note: do not use the <DOMAIN> notation below
  666. NO_REPLY_ADDRESS = noreply.<DOMAIN>
  667. ; Show Registration button
  668. SHOW_REGISTRATION_BUTTON = true
  669. ; Show milestones dashboard page - a view of all the user's milestones
  670. SHOW_MILESTONES_DASHBOARD_PAGE = true
  671. ; Default value for AutoWatchNewRepos
  672. ; When adding a repo to a team or creating a new repo all team members will watch the
  673. ; repo automatically if enabled
  674. AUTO_WATCH_NEW_REPOS = true
  675. ; Default value for AutoWatchOnChanges
  676. ; Make the user watch a repository When they commit for the first time
  677. AUTO_WATCH_ON_CHANGES = false
  678. ; Minimum amount of time a user must exist before comments are kept when the user is deleted.
  679. USER_DELETE_WITH_COMMENTS_MAX_TIME = 0
  680. [webhook]
  681. ; Hook task queue length, increase if webhook shooting starts hanging
  682. QUEUE_LENGTH = 1000
  683. ; Deliver timeout in seconds
  684. DELIVER_TIMEOUT = 5
  685. ; Allow insecure certification
  686. SKIP_TLS_VERIFY = false
  687. ; Number of history information in each page
  688. PAGING_NUM = 10
  689. ; Proxy server URL, support http://, https//, socks://, blank will follow environment http_proxy/https_proxy
  690. PROXY_URL =
  691. ; Comma separated list of host names requiring proxy. Glob patterns (*) are accepted; use ** to match all hosts.
  692. PROXY_HOSTS =
  693. [mailer]
  694. ENABLED = false
  695. ; Buffer length of channel, keep it as it is if you don't know what it is.
  696. SEND_BUFFER_LEN = 100
  697. ; Prefix displayed before subject in mail
  698. SUBJECT_PREFIX =
  699. ; Mail server
  700. ; Gmail: smtp.gmail.com:587
  701. ; QQ: smtp.qq.com:465
  702. ; Using STARTTLS on port 587 is recommended per RFC 6409.
  703. ; Note, if the port ends with "465", SMTPS will be used.
  704. HOST =
  705. ; Disable HELO operation when hostnames are different.
  706. DISABLE_HELO =
  707. ; Custom hostname for HELO operation, if no value is provided, one is retrieved from system.
  708. HELO_HOSTNAME =
  709. ; Whether or not to skip verification of certificates; `true` to disable verification. This option is unsafe. Consider adding the certificate to the system trust store instead.
  710. SKIP_VERIFY = false
  711. ; Use client certificate
  712. USE_CERTIFICATE = false
  713. CERT_FILE = custom/mailer/cert.pem
  714. KEY_FILE = custom/mailer/key.pem
  715. ; Should SMTP connect with TLS, (if port ends with 465 TLS will always be used.)
  716. ; If this is false but STARTTLS is supported the connection will be upgraded to TLS opportunistically.
  717. IS_TLS_ENABLED = false
  718. ; Mail from address, RFC 5322. This can be just an email address, or the `"Name" <email@example.com>` format
  719. FROM =
  720. ; Mailer user name and password
  721. ; Please Note: Authentication is only supported when the SMTP server communication is encrypted with TLS (this can be via STARTTLS) or `HOST=localhost`.
  722. USER =
  723. ; Use PASSWD = `your password` for quoting if you use special characters in the password.
  724. PASSWD =
  725. ; Send mails as plain text
  726. SEND_AS_PLAIN_TEXT = false
  727. ; Set Mailer Type (either SMTP, sendmail or dummy to just send to the log)
  728. MAILER_TYPE = smtp
  729. ; Specify an alternative sendmail binary
  730. SENDMAIL_PATH = sendmail
  731. ; Specify any extra sendmail arguments
  732. SENDMAIL_ARGS =
  733. ; Timeout for Sendmail
  734. SENDMAIL_TIMEOUT = 5m
  735. [cache]
  736. ; if the cache enabled
  737. ENABLED = true
  738. ; Either "memory", "redis", or "memcache", default is "memory"
  739. ADAPTER = memory
  740. ; For "memory" only, GC interval in seconds, default is 60
  741. INTERVAL = 60
  742. ; For "redis" and "memcache", connection host address
  743. ; redis: network=tcp,addr=:6379,password=macaron,db=0,pool_size=100,idle_timeout=180
  744. ; memcache: `127.0.0.1:11211`
  745. HOST =
  746. ; Time to keep items in cache if not used, default is 16 hours.
  747. ; Setting it to 0 disables caching
  748. ITEM_TTL = 16h
  749. ; Last commit cache
  750. [cache.last_commit]
  751. ; if the cache enabled
  752. ENABLED = true
  753. ; Time to keep items in cache if not used, default is 8760 hours.
  754. ; Setting it to 0 disables caching
  755. ITEM_TTL = 8760h
  756. ; Only enable the cache when repository's commits count great than
  757. COMMITS_COUNT = 1000
  758. [session]
  759. ; Either "memory", "file", or "redis", default is "memory"
  760. PROVIDER = memory
  761. ; Provider config options
  762. ; memory: doesn't have any config yet
  763. ; file: session file path, e.g. `data/sessions`
  764. ; redis: network=tcp,addr=:6379,password=macaron,db=0,pool_size=100,idle_timeout=180
  765. ; mysql: go-sql-driver/mysql dsn config string, e.g. `root:password@/session_table`
  766. PROVIDER_CONFIG = data/sessions
  767. ; Session cookie name
  768. COOKIE_NAME = i_like_gitea
  769. ; If you use session in https only, default is false
  770. COOKIE_SECURE = false
  771. ; Session GC time interval in seconds, default is 86400 (1 day)
  772. GC_INTERVAL_TIME = 86400
  773. ; Session life time in seconds, default is 86400 (1 day)
  774. SESSION_LIFE_TIME = 86400
  775. ; SameSite settings. Either "none", "lax", or "strict"
  776. SAME_SITE=lax
  777. [picture]
  778. AVATAR_UPLOAD_PATH = data/avatars
  779. REPOSITORY_AVATAR_UPLOAD_PATH = data/repo-avatars
  780. ; How Gitea deals with missing repository avatars
  781. ; none = no avatar will be displayed; random = random avatar will be displayed; image = default image will be used
  782. REPOSITORY_AVATAR_FALLBACK = none
  783. REPOSITORY_AVATAR_FALLBACK_IMAGE = /img/repo_default.png
  784. ; Max Width and Height of uploaded avatars.
  785. ; This is to limit the amount of RAM used when resizing the image.
  786. AVATAR_MAX_WIDTH = 4096
  787. AVATAR_MAX_HEIGHT = 3072
  788. ; Maximum alloved file size for uploaded avatars.
  789. ; This is to limit the amount of RAM used when resizing the image.
  790. AVATAR_MAX_FILE_SIZE = 1048576
  791. ; Chinese users can choose "duoshuo"
  792. ; or a custom avatar source, like: http://cn.gravatar.com/avatar/
  793. GRAVATAR_SOURCE = gravatar
  794. ; This value will always be true in offline mode.
  795. DISABLE_GRAVATAR = false
  796. ; Federated avatar lookup uses DNS to discover avatar associated
  797. ; with emails, see https://www.libravatar.org
  798. ; This value will always be false in offline mode or when Gravatar is disabled.
  799. ENABLE_FEDERATED_AVATAR = false
  800. [attachment]
  801. ; Whether issue and pull request attachments are enabled. Defaults to `true`
  802. ENABLED = true
  803. ; Comma-separated list of allowed file extensions (`.zip`), mime types (`text/plain`) or wildcard type (`image/*`, `audio/*`, `video/*`). Empty value or `*/*` allows all types.
  804. ALLOWED_TYPES = .docx,.gif,.gz,.jpeg,.jpg,.log,.pdf,.png,.pptx,.txt,.xlsx,.zip
  805. ; Max size of each file. Defaults to 4MB
  806. MAX_SIZE = 4
  807. ; Max number of files per upload. Defaults to 5
  808. MAX_FILES = 5
  809. ; Storage type for attachments, `local` for local disk or `minio` for s3 compatible
  810. ; object storage service, default is `local`.
  811. STORAGE_TYPE = local
  812. ; Allows the storage driver to redirect to authenticated URLs to serve files directly
  813. ; Currently, only `minio` is supported.
  814. SERVE_DIRECT = false
  815. ; Path for attachments. Defaults to `data/attachments` only available when STORAGE_TYPE is `local`
  816. PATH = data/attachments
  817. ; Minio endpoint to connect only available when STORAGE_TYPE is `minio`
  818. MINIO_ENDPOINT = localhost:9000
  819. ; Minio accessKeyID to connect only available when STORAGE_TYPE is `minio`
  820. MINIO_ACCESS_KEY_ID =
  821. ; Minio secretAccessKey to connect only available when STORAGE_TYPE is `minio`
  822. MINIO_SECRET_ACCESS_KEY =
  823. ; Minio bucket to store the attachments only available when STORAGE_TYPE is `minio`
  824. MINIO_BUCKET = gitea
  825. ; Minio location to create bucket only available when STORAGE_TYPE is `minio`
  826. MINIO_LOCATION = us-east-1
  827. ; Minio base path on the bucket only available when STORAGE_TYPE is `minio`
  828. MINIO_BASE_PATH = attachments/
  829. ; Minio enabled ssl only available when STORAGE_TYPE is `minio`
  830. MINIO_USE_SSL = false
  831. [time]
  832. ; Specifies the format for fully outputted dates. Defaults to RFC1123
  833. ; Special supported values are ANSIC, UnixDate, RubyDate, RFC822, RFC822Z, RFC850, RFC1123, RFC1123Z, RFC3339, RFC3339Nano, Kitchen, Stamp, StampMilli, StampMicro and StampNano
  834. ; For more information about the format see http://golang.org/pkg/time/#pkg-constants
  835. FORMAT =
  836. ; Location the UI time display i.e. Asia/Shanghai
  837. ; Empty means server's location setting
  838. DEFAULT_UI_LOCATION =
  839. [log]
  840. ROOT_PATH =
  841. ; Either "console", "file", "conn", "smtp" or "database", default is "console"
  842. ; Use comma to separate multiple modes, e.g. "console, file"
  843. MODE = console
  844. ; Buffer length of the channel, keep it as it is if you don't know what it is.
  845. BUFFER_LEN = 10000
  846. ; Either "Trace", "Debug", "Info", "Warn", "Error", "Critical", default is "Info"
  847. ROUTER_LOG_LEVEL = Info
  848. ROUTER = console
  849. ENABLE_ACCESS_LOG = false
  850. ACCESS_LOG_TEMPLATE = {{.Ctx.RemoteAddr}} - {{.Identity}} {{.Start.Format "[02/Jan/2006:15:04:05 -0700]" }} "{{.Ctx.Req.Method}} {{.Ctx.Req.URL.RequestURI}} {{.Ctx.Req.Proto}}" {{.ResponseWriter.Status}} {{.ResponseWriter.Size}} "{{.Ctx.Req.Referer}}\" \"{{.Ctx.Req.UserAgent}}"
  851. ACCESS = file
  852. ; Either "Trace", "Debug", "Info", "Warn", "Error", "Critical", default is "Trace"
  853. LEVEL = Info
  854. ; Either "Trace", "Debug", "Info", "Warn", "Error", "Critical", default is "None"
  855. STACKTRACE_LEVEL = None
  856. ; Generic log modes
  857. [log.x]
  858. FLAGS = stdflags
  859. EXPRESSION =
  860. PREFIX =
  861. COLORIZE = false
  862. ; For "console" mode only
  863. [log.console]
  864. LEVEL =
  865. STDERR = false
  866. ; For "file" mode only
  867. [log.file]
  868. LEVEL =
  869. ; Set the file_name for the logger. If this is a relative path this
  870. ; will be relative to ROOT_PATH
  871. FILE_NAME =
  872. ; This enables automated log rotate(switch of following options), default is true
  873. LOG_ROTATE = true
  874. ; Max size shift of a single file, default is 28 means 1 << 28, 256MB
  875. MAX_SIZE_SHIFT = 28
  876. ; Segment log daily, default is true
  877. DAILY_ROTATE = true
  878. ; delete the log file after n days, default is 7
  879. MAX_DAYS = 7
  880. ; compress logs with gzip
  881. COMPRESS = true
  882. ; compression level see godoc for compress/gzip
  883. COMPRESSION_LEVEL = -1
  884. ; For "conn" mode only
  885. [log.conn]
  886. LEVEL =
  887. ; Reconnect host for every single message, default is false
  888. RECONNECT_ON_MSG = false
  889. ; Try to reconnect when connection is lost, default is false
  890. RECONNECT = false
  891. ; Either "tcp", "unix" or "udp", default is "tcp"
  892. PROTOCOL = tcp
  893. ; Host address
  894. ADDR =
  895. ; For "smtp" mode only
  896. [log.smtp]
  897. LEVEL =
  898. ; Name displayed in mail title, default is "Diagnostic message from server"
  899. SUBJECT = Diagnostic message from server
  900. ; Mail server
  901. HOST =
  902. ; Mailer user name and password
  903. USER =
  904. ; Use PASSWD = `your password` for quoting if you use special characters in the password.
  905. PASSWD =
  906. ; Receivers, can be one or more, e.g. 1@example.com,2@example.com
  907. RECEIVERS =
  908. [cron]
  909. ; Enable running all cron tasks periodically with default settings.
  910. ENABLED = false
  911. ; Run cron tasks when Gitea starts.
  912. RUN_AT_START = false
  913. ; Basic cron tasks - enabled by default
  914. ; Clean up old repository archives
  915. [cron.archive_cleanup]
  916. ; Whether to enable the job
  917. ENABLED = true
  918. ; Whether to always run at least once at start up time (if ENABLED)
  919. RUN_AT_START = true
  920. ; Notice if not success
  921. NO_SUCCESS_NOTICE = false
  922. ; Time interval for job to run
  923. SCHEDULE = @every 24h
  924. ; Archives created more than OLDER_THAN ago are subject to deletion
  925. OLDER_THAN = 24h
  926. ; Update mirrors
  927. [cron.update_mirrors]
  928. SCHEDULE = @every 10m
  929. ; Enable running Update mirrors task periodically.
  930. ENABLED = true
  931. ; Run Update mirrors task when Gitea starts.
  932. RUN_AT_START = false
  933. ; Notice if not success
  934. NO_SUCCESS_NOTICE = true
  935. ; Repository health check
  936. [cron.repo_health_check]
  937. SCHEDULE = @every 24h
  938. ; Enable running Repository health check task periodically.
  939. ENABLED = true
  940. ; Run Repository health check task when Gitea starts.
  941. RUN_AT_START = false
  942. ; Notice if not success
  943. NO_SUCCESS_NOTICE = false
  944. TIMEOUT = 60s
  945. ; Arguments for command 'git fsck', e.g. "--unreachable --tags"
  946. ; see more on http://git-scm.com/docs/git-fsck
  947. ARGS =
  948. ; Check repository statistics
  949. [cron.check_repo_stats]
  950. ; Enable running check repository statistics task periodically.
  951. ENABLED = true
  952. ; Run check repository statistics task when Gitea starts.
  953. RUN_AT_START = true
  954. ; Notice if not success
  955. NO_SUCCESS_NOTICE = false
  956. SCHEDULE = @every 24h
  957. [cron.update_migration_poster_id]
  958. ; Update migrated repositories' issues and comments' posterid, it will always attempt synchronization when the instance starts.
  959. ENABLED = true
  960. ; Update migrated repositories' issues and comments' posterid when starting server (default true)
  961. RUN_AT_START = true
  962. ; Notice if not success
  963. NO_SUCCESS_NOTICE = false
  964. ; Interval as a duration between each synchronization. (default every 24h)
  965. SCHEDULE = @every 24h
  966. ; Synchronize external user data (only LDAP user synchronization is supported)
  967. [cron.sync_external_users]
  968. ENABLED = true
  969. ; Synchronize external user data when starting server (default false)
  970. RUN_AT_START = false
  971. ; Notice if not success
  972. NO_SUCCESS_NOTICE = false
  973. ; Interval as a duration between each synchronization (default every 24h)
  974. SCHEDULE = @every 24h
  975. ; Create new users, update existing user data and disable users that are not in external source anymore (default)
  976. ; or only create new users if UPDATE_EXISTING is set to false
  977. UPDATE_EXISTING = true
  978. ; Clean-up deleted branches
  979. [cron.deleted_branches_cleanup]
  980. ENABLED = true
  981. ; Clean-up deleted branches when starting server (default true)
  982. RUN_AT_START = true
  983. ; Notice if not success
  984. NO_SUCCESS_NOTICE = false
  985. ; Interval as a duration between each synchronization (default every 24h)
  986. SCHEDULE = @every 24h
  987. ; deleted branches than OLDER_THAN ago are subject to deletion
  988. OLDER_THAN = 24h
  989. ; Cleanup hook_task table
  990. [cron.cleanup_hook_task_table]
  991. ; Whether to enable the job
  992. ENABLED = true
  993. ; Whether to always run at start up time (if ENABLED)
  994. RUN_AT_START = false
  995. ; Time interval for job to run
  996. SCHEDULE = @every 24h
  997. ; OlderThan or PerWebhook. How the records are removed, either by age (i.e. how long ago hook_task record was delivered) or by the number to keep per webhook (i.e. keep most recent x deliveries per webhook).
  998. CLEANUP_TYPE = OlderThan
  999. ; If CLEANUP_TYPE is set to OlderThan, then any delivered hook_task records older than this expression will be deleted.
  1000. OLDER_THAN = 168h
  1001. ; If CLEANUP_TYPE is set to PerWebhook, this is number of hook_task records to keep for a webhook (i.e. keep the most recent x deliveries).
  1002. NUMBER_TO_KEEP = 10
  1003. ; Extended cron task - not enabled by default
  1004. ; Delete all unactivated accounts
  1005. [cron.delete_inactive_accounts]
  1006. ENABLED = false
  1007. RUN_AT_START = false
  1008. NO_SUCCESS_NOTICE = false
  1009. SCHEDULE = @annually
  1010. OLDER_THAN = 168h
  1011. ; Delete all repository archives
  1012. [cron.delete_repo_archives]
  1013. ENABLED = false
  1014. RUN_AT_START = false
  1015. NO_SUCCESS_NOTICE = false
  1016. SCHEDULE = @annually
  1017. ; Garbage collect all repositories
  1018. [cron.git_gc_repos]
  1019. ENABLED = false
  1020. RUN_AT_START = false
  1021. NO_SUCCESS_NOTICE = false
  1022. SCHEDULE = @every 72h
  1023. TIMEOUT = 60s
  1024. ; Arguments for command 'git gc'
  1025. ; The default value is same with [git] -> GC_ARGS
  1026. ARGS =
  1027. ; Update the '.ssh/authorized_keys' file with Gitea SSH keys
  1028. [cron.resync_all_sshkeys]
  1029. ENABLED = false
  1030. RUN_AT_START = false
  1031. NO_SUCCESS_NOTICE = false
  1032. SCHEDULE = @every 72h
  1033. ; Resynchronize pre-receive, update and post-receive hooks of all repositories.
  1034. [cron.resync_all_hooks]
  1035. ENABLED = false
  1036. RUN_AT_START = false
  1037. NO_SUCCESS_NOTICE = false
  1038. SCHEDULE = @every 72h
  1039. ; Reinitialize all missing Git repositories for which records exist
  1040. [cron.reinit_missing_repos]
  1041. ENABLED = false
  1042. RUN_AT_START = false
  1043. NO_SUCCESS_NOTICE = false
  1044. SCHEDULE = @every 72h
  1045. ; Delete all repositories missing their Git files
  1046. [cron.delete_missing_repos]
  1047. ENABLED = false
  1048. RUN_AT_START = false
  1049. NO_SUCCESS_NOTICE = false
  1050. SCHEDULE = @every 72h
  1051. ; Delete generated repository avatars
  1052. [cron.delete_generated_repository_avatars]
  1053. ENABLED = false
  1054. RUN_AT_START = false
  1055. NO_SUCCESS_NOTICE = false
  1056. SCHEDULE = @every 72h
  1057. [git]
  1058. ; The path of git executable. If empty, Gitea searches through the PATH environment.
  1059. PATH =
  1060. ; Disables highlight of added and removed changes
  1061. DISABLE_DIFF_HIGHLIGHT = false
  1062. ; Max number of lines allowed in a single file in diff view
  1063. MAX_GIT_DIFF_LINES = 1000
  1064. ; Max number of allowed characters in a line in diff view
  1065. MAX_GIT_DIFF_LINE_CHARACTERS = 5000
  1066. ; Max number of files shown in diff view
  1067. MAX_GIT_DIFF_FILES = 100
  1068. ; Set the default commits range size
  1069. COMMITS_RANGE_SIZE = 50
  1070. ; Set the default branches range size
  1071. BRANCHES_RANGE_SIZE = 20
  1072. ; Arguments for command 'git gc', e.g. "--aggressive --auto"
  1073. ; see more on http://git-scm.com/docs/git-gc/
  1074. GC_ARGS =
  1075. ; If use git wire protocol version 2 when git version >= 2.18, default is true, set to false when you always want git wire protocol version 1
  1076. ENABLE_AUTO_GIT_WIRE_PROTOCOL = true
  1077. ; Respond to pushes to a non-default branch with a URL for creating a Pull Request (if the repository has them enabled)
  1078. PULL_REQUEST_PUSH_MESSAGE = true
  1079. ; Operation timeout in seconds
  1080. [git.timeout]
  1081. DEFAULT = 360
  1082. MIGRATE = 600
  1083. MIRROR = 300
  1084. CLONE = 300
  1085. PULL = 300
  1086. GC = 60
  1087. [mirror]
  1088. ; Default interval as a duration between each check
  1089. DEFAULT_INTERVAL = 8h
  1090. ; Min interval as a duration must be > 1m
  1091. MIN_INTERVAL = 10m
  1092. [api]
  1093. ; Enables Swagger. True or false; default is true.
  1094. ENABLE_SWAGGER = true
  1095. ; Max number of items in a page
  1096. MAX_RESPONSE_ITEMS = 50
  1097. ; Default paging number of api
  1098. DEFAULT_PAGING_NUM = 30
  1099. ; Default and maximum number of items per page for git trees api
  1100. DEFAULT_GIT_TREES_PER_PAGE = 1000
  1101. ; Default size of a blob returned by the blobs API (default is 10MiB)
  1102. DEFAULT_MAX_BLOB_SIZE = 10485760
  1103. [oauth2]
  1104. ; Enables OAuth2 provider
  1105. ENABLE = true
  1106. ; Lifetime of an OAuth2 access token in seconds
  1107. ACCESS_TOKEN_EXPIRATION_TIME = 3600
  1108. ; Lifetime of an OAuth2 refresh token in hours
  1109. REFRESH_TOKEN_EXPIRATION_TIME = 730
  1110. ; Check if refresh token got already used
  1111. INVALIDATE_REFRESH_TOKENS = false
  1112. ; OAuth2 authentication secret for access and refresh tokens, change this yourself to a unique string. CLI generate option is helpful in this case. https://docs.gitea.io/en-us/command-line/#generate
  1113. JWT_SECRET =
  1114. ; Maximum length of oauth2 token/cookie stored on server
  1115. MAX_TOKEN_LENGTH = 32767
  1116. [i18n]
  1117. LANGS = en-US,zh-CN,zh-HK,zh-TW,de-DE,fr-FR,nl-NL,lv-LV,ru-RU,uk-UA,ja-JP,es-ES,pt-BR,pt-PT,pl-PL,bg-BG,it-IT,fi-FI,tr-TR,cs-CZ,sr-SP,sv-SE,ko-KR
  1118. NAMES = English,简体中文,繁體中文(香港),繁體中文(台灣),Deutsch,français,Nederlands,latviešu,русский,Українська,日本語,español,português do Brasil,Português de Portugal,polski,български,italiano,suomi,Türkçe,čeština,српски,svenska,한국어
  1119. [U2F]
  1120. ; NOTE: THE DEFAULT VALUES HERE WILL NEED TO BE CHANGED
  1121. ; Two Factor authentication with security keys
  1122. ; https://developers.yubico.com/U2F/App_ID.html
  1123. ;APP_ID = http://localhost:3000/
  1124. ; Comma separated list of trusted facets
  1125. ;TRUSTED_FACETS = http://localhost:3000/
  1126. ; Extension mapping to highlight class
  1127. ; e.g. .toml=ini
  1128. [highlight.mapping]
  1129. [other]
  1130. SHOW_FOOTER_BRANDING = false
  1131. ; Show version information about Gitea and Go in the footer
  1132. SHOW_FOOTER_VERSION = true
  1133. ; Show template execution time in the footer
  1134. SHOW_FOOTER_TEMPLATE_LOAD_TIME = true
  1135. [markup.sanitizer.1]
  1136. ; The following keys can appear once to define a sanitation policy rule.
  1137. ; This section can appear multiple times by adding a unique alphanumeric suffix to define multiple rules.
  1138. ; e.g., [markup.sanitizer.1] -> [markup.sanitizer.2] -> [markup.sanitizer.TeX]
  1139. ;ELEMENT = span
  1140. ;ALLOW_ATTR = class
  1141. ;REGEXP = ^(info|warning|error)$
  1142. [markup.asciidoc]
  1143. ENABLED = false
  1144. ; List of file extensions that should be rendered by an external command
  1145. FILE_EXTENSIONS = .adoc,.asciidoc
  1146. ; External command to render all matching extensions
  1147. RENDER_COMMAND = "asciidoc --out-file=- -"
  1148. ; Don't pass the file on STDIN, pass the filename as argument instead.
  1149. IS_INPUT_FILE = false
  1150. [metrics]
  1151. ; Enables metrics endpoint. True or false; default is false.
  1152. ENABLED = false
  1153. ; If you want to add authorization, specify a token here
  1154. TOKEN =
  1155. [task]
  1156. ; Task queue type, could be `channel` or `redis`.
  1157. QUEUE_TYPE = channel
  1158. ; Task queue length, available only when `QUEUE_TYPE` is `channel`.
  1159. QUEUE_LENGTH = 1000
  1160. ; Task queue connection string, available only when `QUEUE_TYPE` is `redis`.
  1161. ; If there is a password of redis, use `addrs=127.0.0.1:6379 password=123 db=0`.
  1162. QUEUE_CONN_STR = "addrs=127.0.0.1:6379 db=0"
  1163. [migrations]
  1164. ; Max attempts per http/https request on migrations.
  1165. MAX_ATTEMPTS = 3
  1166. ; Backoff time per http/https request retry (seconds)
  1167. RETRY_BACKOFF = 3
  1168. ; Allowed domains for migrating, default is blank. Blank means everything will be allowed.
  1169. ; Multiple domains could be separated by commas.
  1170. ALLOWED_DOMAINS =
  1171. ; Blocklist for migrating, default is blank. Multiple domains could be separated by commas.
  1172. ; When ALLOWED_DOMAINS is not blank, this option will be ignored.
  1173. BLOCKED_DOMAINS =
  1174. ; Allow private addresses defined by RFC 1918, RFC 1122, RFC 4632 and RFC 4291 (false by default)
  1175. ALLOW_LOCALNETWORKS = false
  1176. ; default storage for attachments, lfs and avatars
  1177. [storage]
  1178. ; storage type
  1179. STORAGE_TYPE = local
  1180. ; lfs storage will override storage
  1181. [lfs]
  1182. STORAGE_TYPE = local
  1183. ; customize storage
  1184. ;[storage.my_minio]
  1185. ;STORAGE_TYPE = minio
  1186. ; Minio endpoint to connect only available when STORAGE_TYPE is `minio`
  1187. ;MINIO_ENDPOINT = localhost:9000
  1188. ; Minio accessKeyID to connect only available when STORAGE_TYPE is `minio`
  1189. ;MINIO_ACCESS_KEY_ID =
  1190. ; Minio secretAccessKey to connect only available when STORAGE_TYPE is `minio`
  1191. ;MINIO_SECRET_ACCESS_KEY =
  1192. ; Minio bucket to store the attachments only available when STORAGE_TYPE is `minio`
  1193. ;MINIO_BUCKET = gitea
  1194. ; Minio location to create bucket only available when STORAGE_TYPE is `minio`
  1195. ;MINIO_LOCATION = us-east-1
  1196. ; Minio enabled ssl only available when STORAGE_TYPE is `minio`
  1197. ;MINIO_USE_SSL = false