You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

app.example.ini 52KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228
  1. ; This file lists the default values used by Gitea
  2. ; Copy required sections to your own app.ini (default is custom/conf/app.ini)
  3. ; and modify as needed.
  4. ; see https://docs.gitea.io/en-us/config-cheat-sheet/ for additional documentation.
  5. ; App name that shows in every page title
  6. APP_NAME = Gitea: Git with a cup of tea
  7. ; Change it if you run locally
  8. RUN_USER = git
  9. ; Application run mode, affects performance and debugging. Either "dev", "prod" or "test", default is "prod"
  10. RUN_MODE = prod
  11. [project]
  12. ; Default templates for project boards
  13. PROJECT_BOARD_BASIC_KANBAN_TYPE = To Do, In Progress, Done
  14. PROJECT_BOARD_BUG_TRIAGE_TYPE = Needs Triage, High Priority, Low Priority, Closed
  15. [repository]
  16. ; Root path for storing all repository data. It must be an absolute path. By default it is stored in a sub-directory of `APP_DATA_PATH`.
  17. ROOT =
  18. ; The script type this server supports. Usually this is `bash`, but some users report that only `sh` is available.
  19. SCRIPT_TYPE = bash
  20. ; DETECTED_CHARSETS_ORDER tie-break order for detected charsets.
  21. ; If the charsets have equal confidence, tie-breaking will be done by order in this list
  22. ; with charsets earlier in the list chosen in preference to those later.
  23. ; Adding "defaults" will place the unused charsets at that position.
  24. DETECTED_CHARSETS_ORDER = UTF-8, UTF-16BE, UTF-16LE, UTF-32BE, UTF-32LE, ISO-8859, windows-1252, ISO-8859, windows-1250, ISO-8859, ISO-8859, ISO-8859, windows-1253, ISO-8859, windows-1255, ISO-8859, windows-1251, windows-1256, KOI8-R, ISO-8859, windows-1254, Shift_JIS, GB18030, EUC-JP, EUC-KR, Big5, ISO-2022, ISO-2022, ISO-2022, IBM424_rtl, IBM424_ltr, IBM420_rtl, IBM420_ltr
  25. ; Default ANSI charset to override non-UTF-8 charsets to
  26. ANSI_CHARSET =
  27. ; Force every new repository to be private
  28. FORCE_PRIVATE = false
  29. ; Default privacy setting when creating a new repository, allowed values: last, private, public. Default is last which means the last setting used.
  30. DEFAULT_PRIVATE = last
  31. ; Default private when using push-to-create
  32. DEFAULT_PUSH_CREATE_PRIVATE = true
  33. ; Global limit of repositories per user, applied at creation time. -1 means no limit
  34. MAX_CREATION_LIMIT = -1
  35. ; Mirror sync queue length, increase if mirror syncing starts hanging
  36. MIRROR_QUEUE_LENGTH = 1000
  37. ; Patch test queue length, increase if pull request patch testing starts hanging
  38. PULL_REQUEST_QUEUE_LENGTH = 1000
  39. ; Preferred Licenses to place at the top of the List
  40. ; The name here must match the filename in conf/license or custom/conf/license
  41. PREFERRED_LICENSES = Apache License 2.0,MIT License
  42. ; Disable the ability to interact with repositories using the HTTP protocol
  43. DISABLE_HTTP_GIT = false
  44. ; Value for Access-Control-Allow-Origin header, default is not to present
  45. ; WARNING: This maybe harmful to you website if you do not give it a right value.
  46. ACCESS_CONTROL_ALLOW_ORIGIN =
  47. ; Force ssh:// clone url instead of scp-style uri when default SSH port is used
  48. USE_COMPAT_SSH_URI = false
  49. ; Close issues as long as a commit on any branch marks it as fixed
  50. DEFAULT_CLOSE_ISSUES_VIA_COMMITS_IN_ANY_BRANCH = false
  51. ; Allow users to push local repositories to Gitea and have them automatically created for a user or an org
  52. ENABLE_PUSH_CREATE_USER = false
  53. ENABLE_PUSH_CREATE_ORG = false
  54. ; Comma separated list of globally disabled repo units. Allowed values: repo.issues, repo.ext_issues, repo.pulls, repo.wiki, repo.ext_wiki
  55. DISABLED_REPO_UNITS =
  56. ; Comma separated list of default repo units. Allowed values: repo.code, repo.releases, repo.issues, repo.pulls, repo.wiki, repo.projects.
  57. ; Note: Code and Releases can currently not be deactivated. If you specify default repo units you should still list them for future compatibility.
  58. ; External wiki and issue tracker can't be enabled by default as it requires additional settings.
  59. ; Disabled repo units will not be added to new repositories regardless if it is in the default list.
  60. DEFAULT_REPO_UNITS = repo.code,repo.releases,repo.issues,repo.pulls,repo.wiki,repo.projects
  61. ; Prefix archive files by placing them in a directory named after the repository
  62. PREFIX_ARCHIVE_FILES = true
  63. ; Disable the creation of new mirrors. Pre-existing mirrors remain valid.
  64. DISABLE_MIRRORS = false
  65. ; Disable migrating feature.
  66. DISABLE_MIGRATIONS = false
  67. ; The default branch name of new repositories
  68. DEFAULT_BRANCH = master
  69. ; Allow adoption of unadopted repositories
  70. ALLOW_ADOPTION_OF_UNADOPTED_REPOSITORIES = false
  71. ; Allow deletion of unadopted repositories
  72. ALLOW_DELETION_OF_UNADOPTED_REPOSITORIES = false
  73. [repository.editor]
  74. ; List of file extensions for which lines should be wrapped in the Monaco editor
  75. ; Separate extensions with a comma. To line wrap files without an extension, just put a comma
  76. LINE_WRAP_EXTENSIONS = .txt,.md,.markdown,.mdown,.mkd,
  77. ; Valid file modes that have a preview API associated with them, such as api/v1/markdown
  78. ; Separate the values by commas. The preview tab in edit mode won't be displayed if the file extension doesn't match
  79. PREVIEWABLE_FILE_MODES = markdown
  80. [repository.local]
  81. ; Path for local repository copy. Defaults to `tmp/local-repo`
  82. LOCAL_COPY_PATH = tmp/local-repo
  83. [repository.upload]
  84. ; Whether repository file uploads are enabled. Defaults to `true`
  85. ENABLED = true
  86. ; Path for uploads. Defaults to `data/tmp/uploads` (tmp gets deleted on gitea restart)
  87. TEMP_PATH = data/tmp/uploads
  88. ; Comma-separated list of allowed file extensions (`.zip`), mime types (`text/plain`) or wildcard type (`image/*`, `audio/*`, `video/*`). Empty value or `*/*` allows all types.
  89. ALLOWED_TYPES =
  90. ; Max size of each file in megabytes. Defaults to 3MB
  91. FILE_MAX_SIZE = 3
  92. ; Max number of files per upload. Defaults to 5
  93. MAX_FILES = 5
  94. [repository.pull-request]
  95. ; List of prefixes used in Pull Request title to mark them as Work In Progress
  96. WORK_IN_PROGRESS_PREFIXES = WIP:,[WIP]
  97. ; List of keywords used in Pull Request comments to automatically close a related issue
  98. CLOSE_KEYWORDS = close,closes,closed,fix,fixes,fixed,resolve,resolves,resolved
  99. ; List of keywords used in Pull Request comments to automatically reopen a related issue
  100. REOPEN_KEYWORDS = reopen,reopens,reopened
  101. ; In the default merge message for squash commits include at most this many commits
  102. DEFAULT_MERGE_MESSAGE_COMMITS_LIMIT = 50
  103. ; In the default merge message for squash commits limit the size of the commit messages to this
  104. DEFAULT_MERGE_MESSAGE_SIZE = 5120
  105. ; In the default merge message for squash commits walk all commits to include all authors in the Co-authored-by otherwise just use those in the limited list
  106. DEFAULT_MERGE_MESSAGE_ALL_AUTHORS = false
  107. ; In default merge messages limit the number of approvers listed as Reviewed-by: to this many
  108. DEFAULT_MERGE_MESSAGE_MAX_APPROVERS = 10
  109. ; In default merge messages only include approvers who are official
  110. DEFAULT_MERGE_MESSAGE_OFFICIAL_APPROVERS_ONLY = true
  111. [repository.issue]
  112. ; List of reasons why a Pull Request or Issue can be locked
  113. LOCK_REASONS = Too heated,Off-topic,Resolved,Spam
  114. [repository.release]
  115. ; Comma-separated list of allowed file extensions (`.zip`), mime types (`text/plain`) or wildcard type (`image/*`, `audio/*`, `video/*`). Empty value or `*/*` allows all types.
  116. ALLOWED_TYPES =
  117. [repository.signing]
  118. ; GPG key to use to sign commits, Defaults to the default - that is the value of git config --get user.signingkey
  119. ; run in the context of the RUN_USER
  120. ; Switch to none to stop signing completely
  121. SIGNING_KEY = default
  122. ; If a SIGNING_KEY ID is provided and is not set to default, use the provided Name and Email address as the signer.
  123. ; These should match a publicized name and email address for the key. (When SIGNING_KEY is default these are set to
  124. ; the results of git config --get user.name and git config --get user.email respectively and can only be overrided
  125. ; by setting the SIGNING_KEY ID to the correct ID.)
  126. SIGNING_NAME =
  127. SIGNING_EMAIL =
  128. ; Sets the default trust model for repositories. Options are: collaborator, committer, collaboratorcommitter
  129. DEFAULT_TRUST_MODEL = collaborator
  130. ; Determines when gitea should sign the initial commit when creating a repository
  131. ; Either:
  132. ; - never
  133. ; - pubkey: only sign if the user has a pubkey
  134. ; - twofa: only sign if the user has logged in with twofa
  135. ; - always
  136. ; options other than none and always can be combined as comma separated list
  137. INITIAL_COMMIT = always
  138. ; Determines when to sign for CRUD actions
  139. ; - as above
  140. ; - parentsigned: requires that the parent commit is signed.
  141. CRUD_ACTIONS = pubkey, twofa, parentsigned
  142. ; Determines when to sign Wiki commits
  143. ; - as above
  144. WIKI = never
  145. ; Determines when to sign on merges
  146. ; - basesigned: require that the parent of commit on the base repo is signed.
  147. ; - commitssigned: require that all the commits in the head branch are signed.
  148. ; - approved: only sign when merging an approved pr to a protected branch
  149. MERGES = pubkey, twofa, basesigned, commitssigned
  150. [cors]
  151. ; More information about CORS can be found here: https://developer.mozilla.org/en-US/docs/Web/HTTP/CORS#The_HTTP_response_headers
  152. ; enable cors headers (disabled by default)
  153. ENABLED = false
  154. ; scheme of allowed requests
  155. SCHEME = http
  156. ; list of requesting domains that are allowed
  157. ALLOW_DOMAIN = *
  158. ; allow subdomains of headers listed above to request
  159. ALLOW_SUBDOMAIN = false
  160. ; list of methods allowed to request
  161. METHODS = GET,HEAD,POST,PUT,PATCH,DELETE,OPTIONS
  162. ; max time to cache response
  163. MAX_AGE = 10m
  164. ; allow request with credentials
  165. ALLOW_CREDENTIALS = false
  166. [ui]
  167. ; Number of repositories that are displayed on one explore page
  168. EXPLORE_PAGING_NUM = 20
  169. ; Number of issues that are displayed on one page
  170. ISSUE_PAGING_NUM = 10
  171. ; Number of maximum commits displayed in one activity feed
  172. FEED_MAX_COMMIT_NUM = 5
  173. ; Number of items that are displayed in home feed
  174. FEED_PAGING_NUM = 20
  175. ; Number of maximum commits displayed in commit graph.
  176. GRAPH_MAX_COMMIT_NUM = 100
  177. ; Number of line of codes shown for a code comment
  178. CODE_COMMENT_LINES = 4
  179. ; Value of `theme-color` meta tag, used by Android >= 5.0
  180. ; An invalid color like "none" or "disable" will have the default style
  181. ; More info: https://developers.google.com/web/updates/2014/11/Support-for-theme-color-in-Chrome-39-for-Android
  182. THEME_COLOR_META_TAG = `#6cc644`
  183. ; Max size of files to be displayed (default is 8MiB)
  184. MAX_DISPLAY_FILE_SIZE = 8388608
  185. ; Whether the email of the user should be shown in the Explore Users page
  186. SHOW_USER_EMAIL = true
  187. ; Set the default theme for the Gitea install
  188. DEFAULT_THEME = gitea
  189. ; All available themes. Allow users select personalized themes regardless of the value of `DEFAULT_THEME`.
  190. THEMES = gitea,arc-green
  191. ;All available reactions users can choose on issues/prs and comments.
  192. ;Values can be emoji alias (:smile:) or a unicode emoji.
  193. ;For custom reactions, add a tightly cropped square image to public/emoji/img/reaction_name.png
  194. REACTIONS = +1, -1, laugh, hooray, confused, heart, rocket, eyes
  195. ; Whether the full name of the users should be shown where possible. If the full name isn't set, the username will be used.
  196. DEFAULT_SHOW_FULL_NAME = false
  197. ; Whether to search within description at repository search on explore page.
  198. SEARCH_REPO_DESCRIPTION = true
  199. ; Whether to enable a Service Worker to cache frontend assets
  200. USE_SERVICE_WORKER = true
  201. [ui.admin]
  202. ; Number of users that are displayed on one page
  203. USER_PAGING_NUM = 50
  204. ; Number of repos that are displayed on one page
  205. REPO_PAGING_NUM = 50
  206. ; Number of notices that are displayed on one page
  207. NOTICE_PAGING_NUM = 25
  208. ; Number of organizations that are displayed on one page
  209. ORG_PAGING_NUM = 50
  210. [ui.user]
  211. ; Number of repos that are displayed on one page
  212. REPO_PAGING_NUM = 15
  213. [ui.meta]
  214. AUTHOR = Gitea - Git with a cup of tea
  215. DESCRIPTION = Gitea (Git with a cup of tea) is a painless self-hosted Git service written in Go
  216. KEYWORDS = go,git,self-hosted,gitea
  217. [ui.notification]
  218. ; Control how often the notification endpoint is polled to update the notification
  219. ; The timeout will increase to MAX_TIMEOUT in TIMEOUT_STEPs if the notification count is unchanged
  220. ; Set MIN_TIMEOUT to 0 to turn off
  221. MIN_TIMEOUT = 10s
  222. MAX_TIMEOUT = 60s
  223. TIMEOUT_STEP = 10s
  224. ; This setting determines how often the db is queried to get the latest notification counts.
  225. ; If the browser client supports EventSource and SharedWorker, a SharedWorker will be used in preference to polling notification. Set to -1 to disable the EventSource
  226. EVENT_SOURCE_UPDATE_TIME = 10s
  227. [markdown]
  228. ; Render soft line breaks as hard line breaks, which means a single newline character between
  229. ; paragraphs will cause a line break and adding trailing whitespace to paragraphs is not
  230. ; necessary to force a line break.
  231. ; Render soft line breaks as hard line breaks for comments
  232. ENABLE_HARD_LINE_BREAK_IN_COMMENTS = true
  233. ; Render soft line breaks as hard line breaks for markdown documents
  234. ENABLE_HARD_LINE_BREAK_IN_DOCUMENTS = false
  235. ; Comma separated list of custom URL-Schemes that are allowed as links when rendering Markdown
  236. ; for example git,magnet,ftp (more at https://en.wikipedia.org/wiki/List_of_URI_schemes)
  237. ; URLs starting with http and https are always displayed, whatever is put in this entry.
  238. CUSTOM_URL_SCHEMES =
  239. ; List of file extensions that should be rendered/edited as Markdown
  240. ; Separate the extensions with a comma. To render files without any extension as markdown, just put a comma
  241. FILE_EXTENSIONS = .md,.markdown,.mdown,.mkd
  242. [server]
  243. ; The protocol the server listens on. One of 'http', 'https', 'unix' or 'fcgi'.
  244. PROTOCOL = http
  245. DOMAIN = localhost
  246. ROOT_URL = %(PROTOCOL)s://%(DOMAIN)s:%(HTTP_PORT)s/
  247. ; when STATIC_URL_PREFIX is empty it will follow ROOT_URL
  248. STATIC_URL_PREFIX =
  249. ; The address to listen on. Either a IPv4/IPv6 address or the path to a unix socket.
  250. HTTP_ADDR = 0.0.0.0
  251. ; The port to listen on. Leave empty when using a unix socket.
  252. HTTP_PORT = 3000
  253. ; If REDIRECT_OTHER_PORT is true, and PROTOCOL is set to https an http server
  254. ; will be started on PORT_TO_REDIRECT and it will redirect plain, non-secure http requests to the main
  255. ; ROOT_URL. Defaults are false for REDIRECT_OTHER_PORT and 80 for
  256. ; PORT_TO_REDIRECT.
  257. REDIRECT_OTHER_PORT = false
  258. PORT_TO_REDIRECT = 80
  259. ; Permission for unix socket
  260. UNIX_SOCKET_PERMISSION = 666
  261. ; Local (DMZ) URL for Gitea workers (such as SSH update) accessing web service.
  262. ; In most cases you do not need to change the default value.
  263. ; Alter it only if your SSH server node is not the same as HTTP node.
  264. ; Do not set this variable if PROTOCOL is set to 'unix'.
  265. LOCAL_ROOT_URL = %(PROTOCOL)s://%(HTTP_ADDR)s:%(HTTP_PORT)s/
  266. ; Disable SSH feature when not available
  267. DISABLE_SSH = false
  268. ; Whether to use the builtin SSH server or not.
  269. START_SSH_SERVER = false
  270. ; Username to use for the builtin SSH server. If blank, then it is the value of RUN_USER.
  271. BUILTIN_SSH_SERVER_USER =
  272. ; Domain name to be exposed in clone URL
  273. SSH_DOMAIN = %(DOMAIN)s
  274. ; The network interface the builtin SSH server should listen on
  275. SSH_LISTEN_HOST =
  276. ; Port number to be exposed in clone URL
  277. SSH_PORT = 22
  278. ; The port number the builtin SSH server should listen on
  279. SSH_LISTEN_PORT = %(SSH_PORT)s
  280. ; Root path of SSH directory, default is '~/.ssh', but you have to use '/home/git/.ssh'.
  281. SSH_ROOT_PATH =
  282. ; Gitea will create a authorized_keys file by default when it is not using the internal ssh server
  283. ; If you intend to use the AuthorizedKeysCommand functionality then you should turn this off.
  284. SSH_CREATE_AUTHORIZED_KEYS_FILE = true
  285. ; Gitea will create a authorized_principals file by default when it is not using the internal ssh server
  286. ; If you intend to use the AuthorizedPrincipalsCommand functionality then you should turn this off.
  287. SSH_CREATE_AUTHORIZED_PRINCIPALS_FILE = true
  288. ; For the built-in SSH server, choose the ciphers to support for SSH connections,
  289. ; for system SSH this setting has no effect
  290. SSH_SERVER_CIPHERS = aes128-ctr, aes192-ctr, aes256-ctr, aes128-gcm@openssh.com, arcfour256, arcfour128
  291. ; For the built-in SSH server, choose the key exchange algorithms to support for SSH connections,
  292. ; for system SSH this setting has no effect
  293. SSH_SERVER_KEY_EXCHANGES = diffie-hellman-group1-sha1, diffie-hellman-group14-sha1, ecdh-sha2-nistp256, ecdh-sha2-nistp384, ecdh-sha2-nistp521, curve25519-sha256@libssh.org
  294. ; For the built-in SSH server, choose the MACs to support for SSH connections,
  295. ; for system SSH this setting has no effect
  296. SSH_SERVER_MACS = hmac-sha2-256-etm@openssh.com, hmac-sha2-256, hmac-sha1, hmac-sha1-96
  297. ; Directory to create temporary files in when testing public keys using ssh-keygen,
  298. ; default is the system temporary directory.
  299. SSH_KEY_TEST_PATH =
  300. ; Path to ssh-keygen, default is 'ssh-keygen' which means the shell is responsible for finding out which one to call.
  301. SSH_KEYGEN_PATH = ssh-keygen
  302. ; Enable SSH Authorized Key Backup when rewriting all keys, default is true
  303. SSH_AUTHORIZED_KEYS_BACKUP = true
  304. ; Determines which principals to allow
  305. ; - empty: if SSH_TRUSTED_USER_CA_KEYS is empty this will default to off, otherwise will default to email, username.
  306. ; - off: Do not allow authorized principals
  307. ; - email: the principal must match the user's email
  308. ; - username: the principal must match the user's username
  309. ; - anything: there will be no checking on the content of the principal
  310. SSH_AUTHORIZED_PRINCIPALS_ALLOW = email, username
  311. ; Enable SSH Authorized Principals Backup when rewriting all keys, default is true
  312. SSH_AUTHORIZED_PRINCIPALS_BACKUP = true
  313. ; Specifies the public keys of certificate authorities that are trusted to sign user certificates for authentication.
  314. ; Multiple keys should be comma separated.
  315. ; E.g."ssh-<algorithm> <key>". or "ssh-<algorithm> <key1>, ssh-<algorithm> <key2>".
  316. ; For more information see "TrustedUserCAKeys" in the sshd config manpages.
  317. SSH_TRUSTED_USER_CA_KEYS =
  318. ; Absolute path of the `TrustedUserCaKeys` file gitea will manage.
  319. ; Default this `RUN_USER`/.ssh/gitea-trusted-user-ca-keys.pem
  320. ; If you're running your own ssh server and you want to use the gitea managed file you'll also need to modify your
  321. ; sshd_config to point to this file. The official docker image will automatically work without further configuration.
  322. SSH_TRUSTED_USER_CA_KEYS_FILENAME =
  323. ; Enable exposure of SSH clone URL to anonymous visitors, default is false
  324. SSH_EXPOSE_ANONYMOUS = false
  325. ; Indicate whether to check minimum key size with corresponding type
  326. MINIMUM_KEY_SIZE_CHECK = false
  327. ; Disable CDN even in "prod" mode
  328. OFFLINE_MODE = false
  329. DISABLE_ROUTER_LOG = false
  330. ; Generate steps:
  331. ; $ ./gitea cert -ca=true -duration=8760h0m0s -host=myhost.example.com
  332. ;
  333. ; Or from a .pfx file exported from the Windows certificate store (do
  334. ; not forget to export the private key):
  335. ; $ openssl pkcs12 -in cert.pfx -out cert.pem -nokeys
  336. ; $ openssl pkcs12 -in cert.pfx -out key.pem -nocerts -nodes
  337. ; Paths are relative to CUSTOM_PATH
  338. CERT_FILE = https/cert.pem
  339. KEY_FILE = https/key.pem
  340. ; Root directory containing templates and static files.
  341. ; default is the path where Gitea is executed
  342. STATIC_ROOT_PATH =
  343. ; Default path for App data
  344. APP_DATA_PATH = data
  345. ; Enable gzip compression for runtime-generated content, static resources excluded
  346. ENABLE_GZIP = false
  347. ; Application profiling (memory and cpu)
  348. ; For "web" command it listens on localhost:6060
  349. ; For "serve" command it dumps to disk at PPROF_DATA_PATH as (cpuprofile|memprofile)_<username>_<temporary id>
  350. ENABLE_PPROF = false
  351. ; PPROF_DATA_PATH, use an absolute path when you start gitea as service
  352. PPROF_DATA_PATH = data/tmp/pprof
  353. ; Landing page, can be "home", "explore", "organizations" or "login"
  354. ; The "login" choice is not a security measure but just a UI flow change, use REQUIRE_SIGNIN_VIEW to force users to log in.
  355. LANDING_PAGE = home
  356. ; Enables git-lfs support. true or false, default is false.
  357. LFS_START_SERVER = false
  358. ; Where your lfs files reside, default is data/lfs.
  359. LFS_CONTENT_PATH = data/lfs
  360. ; LFS authentication secret, change this yourself
  361. LFS_JWT_SECRET =
  362. ; LFS authentication validity period (in time.Duration), pushes taking longer than this may fail.
  363. LFS_HTTP_AUTH_EXPIRY = 20m
  364. ; Maximum allowed LFS file size in bytes (Set to 0 for no limit).
  365. LFS_MAX_FILE_SIZE = 0
  366. ; Maximum number of locks returned per page
  367. LFS_LOCKS_PAGING_NUM = 50
  368. ; Allow graceful restarts using SIGHUP to fork
  369. ALLOW_GRACEFUL_RESTARTS = true
  370. ; After a restart the parent will finish ongoing requests before
  371. ; shutting down. Force shutdown if this process takes longer than this delay.
  372. ; set to a negative value to disable
  373. GRACEFUL_HAMMER_TIME = 60s
  374. ; Allows the setting of a startup timeout and waithint for Windows as SVC service
  375. ; 0 disables this.
  376. STARTUP_TIMEOUT = 0
  377. ; Static resources, includes resources on custom/, public/ and all uploaded avatars web browser cache time. Note that this cache is disabled when RUN_MODE is "dev". Default is 6h
  378. STATIC_CACHE_TIME = 6h
  379. ; Define allowed algorithms and their minimum key length (use -1 to disable a type)
  380. [ssh.minimum_key_sizes]
  381. ED25519 = 256
  382. ECDSA = 256
  383. RSA = 2048
  384. DSA = -1 ; set to 1024 to switch on
  385. [database]
  386. ; Database to use. Either "mysql", "postgres", "mssql" or "sqlite3".
  387. DB_TYPE = mysql
  388. HOST = 127.0.0.1:3306
  389. NAME = gitea
  390. USER = root
  391. ; Use PASSWD = `your password` for quoting if you use special characters in the password.
  392. PASSWD =
  393. ; For Postgres, schema to use if different from "public". The schema must exist beforehand,
  394. ; the user must have creation privileges on it, and the user search path must be set
  395. ; to the look into the schema first. e.g.:ALTER USER user SET SEARCH_PATH = schema_name,"$user",public;
  396. SCHEMA =
  397. ; For Postgres, either "disable" (default), "require", or "verify-full"
  398. ; For MySQL, either "false" (default), "true", or "skip-verify"
  399. SSL_MODE = disable
  400. ; For MySQL only, either "utf8" or "utf8mb4", default is "utf8mb4".
  401. ; NOTICE: for "utf8mb4" you must use MySQL InnoDB > 5.6. Gitea is unable to check this.
  402. CHARSET = utf8mb4
  403. ; For "sqlite3" and "tidb", use an absolute path when you start gitea as service
  404. PATH = data/gitea.db
  405. ; For "sqlite3" only. Query timeout
  406. SQLITE_TIMEOUT = 500
  407. ; For iterate buffer, default is 50
  408. ITERATE_BUFFER_SIZE = 50
  409. ; Show the database generated SQL
  410. LOG_SQL = true
  411. ; Maximum number of DB Connect retries
  412. DB_RETRIES = 10
  413. ; Backoff time per DB retry (time.Duration)
  414. DB_RETRY_BACKOFF = 3s
  415. ; Max idle database connections on connnection pool, default is 2
  416. MAX_IDLE_CONNS = 2
  417. ; Database connection max life time, default is 0 or 3s mysql (See #6804 & #7071 for reasoning)
  418. CONN_MAX_LIFETIME = 3s
  419. ; Database maximum number of open connections, default is 0 meaning no maximum
  420. MAX_OPEN_CONNS = 0
  421. [indexer]
  422. ; Issue indexer type, currently support: bleve, db or elasticsearch, default is bleve
  423. ISSUE_INDEXER_TYPE = bleve
  424. ; Issue indexer connection string, available when ISSUE_INDEXER_TYPE is elasticsearch
  425. ISSUE_INDEXER_CONN_STR = http://elastic:changeme@localhost:9200
  426. ; Issue indexer name, available when ISSUE_INDEXER_TYPE is elasticsearch
  427. ISSUE_INDEXER_NAME = gitea_issues
  428. ; Issue indexer storage path, available when ISSUE_INDEXER_TYPE is bleve
  429. ISSUE_INDEXER_PATH = indexers/issues.bleve
  430. ; Issue indexer queue, currently support: channel, levelqueue or redis, default is levelqueue
  431. ISSUE_INDEXER_QUEUE_TYPE = levelqueue
  432. ; When ISSUE_INDEXER_QUEUE_TYPE is levelqueue, this will be the queue will be saved path,
  433. ; default is indexers/issues.queue
  434. ISSUE_INDEXER_QUEUE_DIR = indexers/issues.queue
  435. ; When `ISSUE_INDEXER_QUEUE_TYPE` is `redis`, this will store the redis connection string.
  436. ISSUE_INDEXER_QUEUE_CONN_STR = "addrs=127.0.0.1:6379 db=0"
  437. ; Batch queue number, default is 20
  438. ISSUE_INDEXER_QUEUE_BATCH_NUMBER = 20
  439. ; Timeout the indexer if it takes longer than this to start.
  440. ; Set to zero to disable timeout.
  441. STARTUP_TIMEOUT = 30s
  442. ; repo indexer by default disabled, since it uses a lot of disk space
  443. REPO_INDEXER_ENABLED = false
  444. ; Code search engine type, could be `bleve` or `elasticsearch`.
  445. REPO_INDEXER_TYPE = bleve
  446. ; Index file used for code search.
  447. REPO_INDEXER_PATH = indexers/repos.bleve
  448. ; Code indexer connection string, available when `REPO_INDEXER_TYPE` is elasticsearch. i.e. http://elastic:changeme@localhost:9200
  449. REPO_INDEXER_CONN_STR =
  450. ; Code indexer name, available when `REPO_INDEXER_TYPE` is elasticsearch
  451. REPO_INDEXER_NAME = gitea_codes
  452. UPDATE_BUFFER_LEN = 20
  453. MAX_FILE_SIZE = 1048576
  454. ; A comma separated list of glob patterns (see https://github.com/gobwas/glob) to include
  455. ; in the index; default is empty
  456. REPO_INDEXER_INCLUDE =
  457. ; A comma separated list of glob patterns to exclude from the index; ; default is empty
  458. REPO_INDEXER_EXCLUDE =
  459. [queue]
  460. ; Specific queues can be individually configured with [queue.name]. [queue] provides defaults
  461. ;
  462. ; General queue queue type, currently support: persistable-channel, channel, level, redis, dummy
  463. ; default to persistable-channel
  464. TYPE = persistable-channel
  465. ; data-dir for storing persistable queues and level queues, individual queues will be named by their type
  466. DATADIR = queues/
  467. ; Default queue length before a channel queue will block
  468. LENGTH = 20
  469. ; Batch size to send for batched queues
  470. BATCH_LENGTH = 20
  471. ; Connection string for redis queues this will store the redis connection string.
  472. CONN_STR = "addrs=127.0.0.1:6379 db=0"
  473. ; Provides the suffix of the default redis/disk queue name - specific queues can be overriden within in their [queue.name] sections.
  474. QUEUE_NAME = "_queue"
  475. ; Provides the suffix of the default redis/disk unique queue set name - specific queues can be overriden within in their [queue.name] sections.
  476. SET_NAME = "_unique"
  477. ; If the queue cannot be created at startup - level queues may need a timeout at startup - wrap the queue:
  478. WRAP_IF_NECESSARY = true
  479. ; Attempt to create the wrapped queue at max
  480. MAX_ATTEMPTS = 10
  481. ; Timeout queue creation
  482. TIMEOUT = 15m30s
  483. ; Create a pool with this many workers
  484. WORKERS = 1
  485. ; Dynamically scale the worker pool to at this many workers
  486. MAX_WORKERS = 10
  487. ; Add boost workers when the queue blocks for BLOCK_TIMEOUT
  488. BLOCK_TIMEOUT = 1s
  489. ; Remove the boost workers after BOOST_TIMEOUT
  490. BOOST_TIMEOUT = 5m
  491. ; During a boost add BOOST_WORKERS
  492. BOOST_WORKERS = 5
  493. [admin]
  494. ; Disallow regular (non-admin) users from creating organizations.
  495. DISABLE_REGULAR_ORG_CREATION = false
  496. ; Default configuration for email notifications for users (user configurable). Options: enabled, onmention, disabled
  497. DEFAULT_EMAIL_NOTIFICATIONS = enabled
  498. [security]
  499. ; Whether the installer is disabled
  500. INSTALL_LOCK = false
  501. ; !!CHANGE THIS TO KEEP YOUR USER DATA SAFE!!
  502. SECRET_KEY = !#@FDEWREWR&*(
  503. ; How long to remember that a user is logged in before requiring relogin (in days)
  504. LOGIN_REMEMBER_DAYS = 7
  505. COOKIE_USERNAME = gitea_awesome
  506. COOKIE_REMEMBER_NAME = gitea_incredible
  507. ; Reverse proxy authentication header name of user name
  508. REVERSE_PROXY_AUTHENTICATION_USER = X-WEBAUTH-USER
  509. REVERSE_PROXY_AUTHENTICATION_EMAIL = X-WEBAUTH-EMAIL
  510. ; The minimum password length for new Users
  511. MIN_PASSWORD_LENGTH = 6
  512. ; Set to true to allow users to import local server paths
  513. IMPORT_LOCAL_PATHS = false
  514. ; Set to false to allow users with git hook privileges to create custom git hooks.
  515. ; Custom git hooks can be used to perform arbitrary code execution on the host operating system.
  516. ; This enables the users to access and modify this config file and the Gitea database and interrupt the Gitea service.
  517. ; By modifying the Gitea database, users can gain Gitea administrator privileges.
  518. ; It also enables them to access other resources available to the user on the operating system that is running the Gitea instance and perform arbitrary actions in the name of the Gitea OS user.
  519. ; WARNING: This maybe harmful to you website or your operating system.
  520. DISABLE_GIT_HOOKS = true
  521. ; Set to false to allow pushes to gitea repositories despite having an incomplete environment - NOT RECOMMENDED
  522. ONLY_ALLOW_PUSH_IF_GITEA_ENVIRONMENT_SET = true
  523. ;Comma separated list of character classes required to pass minimum complexity.
  524. ;If left empty or no valid values are specified, the default is off (no checking)
  525. ;Classes include "lower,upper,digit,spec"
  526. PASSWORD_COMPLEXITY = off
  527. ; Password Hash algorithm, either "argon2", "pbkdf2", "scrypt" or "bcrypt"
  528. PASSWORD_HASH_ALGO = argon2
  529. ; Set false to allow JavaScript to read CSRF cookie
  530. CSRF_COOKIE_HTTP_ONLY = true
  531. ; Validate against https://haveibeenpwned.com/Passwords to see if a password has been exposed
  532. PASSWORD_CHECK_PWN = false
  533. [openid]
  534. ;
  535. ; OpenID is an open, standard and decentralized authentication protocol.
  536. ; Your identity is the address of a webpage you provide, which describes
  537. ; how to prove you are in control of that page.
  538. ;
  539. ; For more info: https://en.wikipedia.org/wiki/OpenID
  540. ;
  541. ; Current implementation supports OpenID-2.0
  542. ;
  543. ; Tested to work providers at the time of writing:
  544. ; - Any GNUSocial node (your.hostname.tld/username)
  545. ; - Any SimpleID provider (http://simpleid.koinic.net)
  546. ; - http://openid.org.cn/
  547. ; - openid.stackexchange.com
  548. ; - login.launchpad.net
  549. ; - <username>.livejournal.com
  550. ;
  551. ; Whether to allow signin in via OpenID
  552. ENABLE_OPENID_SIGNIN = true
  553. ; Whether to allow registering via OpenID
  554. ; Do not include to rely on rhw DISABLE_REGISTRATION setting
  555. ;ENABLE_OPENID_SIGNUP = true
  556. ; Allowed URI patterns (POSIX regexp).
  557. ; Space separated.
  558. ; Only these would be allowed if non-blank.
  559. ; Example value: trusted.domain.org trusted.domain.net
  560. WHITELISTED_URIS =
  561. ; Forbidden URI patterns (POSIX regexp).
  562. ; Space separated.
  563. ; Only used if WHITELISTED_URIS is blank.
  564. ; Example value: loadaverage.org/badguy stackexchange.com/.*spammer
  565. BLACKLISTED_URIS =
  566. [service]
  567. ; Time limit to confirm account/email registration
  568. ACTIVE_CODE_LIVE_MINUTES = 180
  569. ; Time limit to perform the reset of a forgotten password
  570. RESET_PASSWD_CODE_LIVE_MINUTES = 180
  571. ; Whether a new user needs to confirm their email when registering.
  572. REGISTER_EMAIL_CONFIRM = false
  573. ; Whether a new user needs to be confirmed manually after registration. (Requires `REGISTER_EMAIL_CONFIRM` to be disabled.)
  574. REGISTER_MANUAL_CONFIRM = false
  575. ; List of domain names that are allowed to be used to register on a Gitea instance
  576. ; gitea.io,example.com
  577. EMAIL_DOMAIN_WHITELIST =
  578. ; Disallow registration, only allow admins to create accounts.
  579. DISABLE_REGISTRATION = false
  580. ; Allow registration only using third-party services, it works only when DISABLE_REGISTRATION is false
  581. ALLOW_ONLY_EXTERNAL_REGISTRATION = false
  582. ; User must sign in to view anything.
  583. REQUIRE_SIGNIN_VIEW = false
  584. ; Mail notification
  585. ENABLE_NOTIFY_MAIL = false
  586. ; This setting enables gitea to be signed in with HTTP BASIC Authentication using the user's password
  587. ; If you set this to false you will not be able to access the tokens endpoints on the API with your password
  588. ; Please note that setting this to false will not disable OAuth Basic or Basic authentication using a token
  589. ENABLE_BASIC_AUTHENTICATION = true
  590. ; More detail: https://github.com/gogits/gogs/issues/165
  591. ENABLE_REVERSE_PROXY_AUTHENTICATION = false
  592. ENABLE_REVERSE_PROXY_AUTO_REGISTRATION = false
  593. ENABLE_REVERSE_PROXY_EMAIL = false
  594. ; Enable captcha validation for registration
  595. ENABLE_CAPTCHA = false
  596. ; Type of captcha you want to use. Options: image, recaptcha, hcaptcha
  597. CAPTCHA_TYPE = image
  598. ; Enable recaptcha to use Google's recaptcha service
  599. ; Go to https://www.google.com/recaptcha/admin to sign up for a key
  600. RECAPTCHA_SECRET =
  601. RECAPTCHA_SITEKEY =
  602. ; For hCaptcha, create an account at https://accounts.hcaptcha.com/login to get your keys
  603. HCAPTCHA_SECRET =
  604. HCAPTCHA_SITEKEY =
  605. ; Change this to use recaptcha.net or other recaptcha service
  606. RECAPTCHA_URL = https://www.google.com/recaptcha/
  607. ; Default value for KeepEmailPrivate
  608. ; Each new user will get the value of this setting copied into their profile
  609. DEFAULT_KEEP_EMAIL_PRIVATE = false
  610. ; Default value for AllowCreateOrganization
  611. ; Every new user will have rights set to create organizations depending on this setting
  612. DEFAULT_ALLOW_CREATE_ORGANIZATION = true
  613. ; Either "public", "limited" or "private", default is "public"
  614. ; Limited is for signed user only
  615. ; Private is only for member of the organization
  616. ; Public is for everyone
  617. DEFAULT_ORG_VISIBILITY = public
  618. ; Default value for DefaultOrgMemberVisible
  619. ; True will make the membership of the users visible when added to the organisation
  620. DEFAULT_ORG_MEMBER_VISIBLE = false
  621. ; Default value for EnableDependencies
  622. ; Repositories will use dependencies by default depending on this setting
  623. DEFAULT_ENABLE_DEPENDENCIES = true
  624. ; Dependencies can be added from any repository where the user is granted access or only from the current repository depending on this setting.
  625. ALLOW_CROSS_REPOSITORY_DEPENDENCIES = true
  626. ; Enable heatmap on users profiles.
  627. ENABLE_USER_HEATMAP = true
  628. ; Enable Timetracking
  629. ENABLE_TIMETRACKING = true
  630. ; Default value for EnableTimetracking
  631. ; Repositories will use timetracking by default depending on this setting
  632. DEFAULT_ENABLE_TIMETRACKING = true
  633. ; Default value for AllowOnlyContributorsToTrackTime
  634. ; Only users with write permissions can track time if this is true
  635. DEFAULT_ALLOW_ONLY_CONTRIBUTORS_TO_TRACK_TIME = true
  636. ; Default value for the domain part of the user's email address in the git log
  637. ; if he has set KeepEmailPrivate to true. The user's email will be replaced with a
  638. ; concatenation of the user name in lower case, "@" and NO_REPLY_ADDRESS.
  639. NO_REPLY_ADDRESS = noreply.%(DOMAIN)s
  640. ; Show Registration button
  641. SHOW_REGISTRATION_BUTTON = true
  642. ; Show milestones dashboard page - a view of all the user's milestones
  643. SHOW_MILESTONES_DASHBOARD_PAGE = true
  644. ; Default value for AutoWatchNewRepos
  645. ; When adding a repo to a team or creating a new repo all team members will watch the
  646. ; repo automatically if enabled
  647. AUTO_WATCH_NEW_REPOS = true
  648. ; Default value for AutoWatchOnChanges
  649. ; Make the user watch a repository When they commit for the first time
  650. AUTO_WATCH_ON_CHANGES = false
  651. [webhook]
  652. ; Hook task queue length, increase if webhook shooting starts hanging
  653. QUEUE_LENGTH = 1000
  654. ; Deliver timeout in seconds
  655. DELIVER_TIMEOUT = 5
  656. ; Allow insecure certification
  657. SKIP_TLS_VERIFY = false
  658. ; Number of history information in each page
  659. PAGING_NUM = 10
  660. ; Proxy server URL, support http://, https//, socks://, blank will follow environment http_proxy/https_proxy
  661. PROXY_URL =
  662. ; Comma separated list of host names requiring proxy. Glob patterns (*) are accepted; use ** to match all hosts.
  663. PROXY_HOSTS =
  664. [mailer]
  665. ENABLED = false
  666. ; Buffer length of channel, keep it as it is if you don't know what it is.
  667. SEND_BUFFER_LEN = 100
  668. ; Prefix displayed before subject in mail
  669. SUBJECT_PREFIX =
  670. ; Mail server
  671. ; Gmail: smtp.gmail.com:587
  672. ; QQ: smtp.qq.com:465
  673. ; Using STARTTLS on port 587 is recommended per RFC 6409.
  674. ; Note, if the port ends with "465", SMTPS will be used.
  675. HOST =
  676. ; Disable HELO operation when hostnames are different.
  677. DISABLE_HELO =
  678. ; Custom hostname for HELO operation, if no value is provided, one is retrieved from system.
  679. HELO_HOSTNAME =
  680. ; Whether or not to skip verification of certificates; `true` to disable verification. This option is unsafe. Consider adding the certificate to the system trust store instead.
  681. SKIP_VERIFY = false
  682. ; Use client certificate
  683. USE_CERTIFICATE = false
  684. CERT_FILE = custom/mailer/cert.pem
  685. KEY_FILE = custom/mailer/key.pem
  686. ; Should SMTP connect with TLS, (if port ends with 465 TLS will always be used.)
  687. ; If this is false but STARTTLS is supported the connection will be upgraded to TLS opportunistically.
  688. IS_TLS_ENABLED = false
  689. ; Mail from address, RFC 5322. This can be just an email address, or the `"Name" <email@example.com>` format
  690. FROM =
  691. ; Mailer user name and password
  692. ; Please Note: Authentication is only supported when the SMTP server communication is encrypted with TLS (this can be via STARTTLS) or `HOST=localhost`.
  693. USER =
  694. ; Use PASSWD = `your password` for quoting if you use special characters in the password.
  695. PASSWD =
  696. ; Send mails as plain text
  697. SEND_AS_PLAIN_TEXT = false
  698. ; Set Mailer Type (either SMTP, sendmail or dummy to just send to the log)
  699. MAILER_TYPE = smtp
  700. ; Specify an alternative sendmail binary
  701. SENDMAIL_PATH = sendmail
  702. ; Specify any extra sendmail arguments
  703. SENDMAIL_ARGS =
  704. ; Timeout for Sendmail
  705. SENDMAIL_TIMEOUT = 5m
  706. [cache]
  707. ; if the cache enabled
  708. ENABLED = true
  709. ; Either "memory", "redis", or "memcache", default is "memory"
  710. ADAPTER = memory
  711. ; For "memory" only, GC interval in seconds, default is 60
  712. INTERVAL = 60
  713. ; For "redis" and "memcache", connection host address
  714. ; redis: network=tcp,addr=:6379,password=macaron,db=0,pool_size=100,idle_timeout=180
  715. ; memcache: `127.0.0.1:11211`
  716. HOST =
  717. ; Time to keep items in cache if not used, default is 16 hours.
  718. ; Setting it to 0 disables caching
  719. ITEM_TTL = 16h
  720. ; Last commit cache
  721. [cache.last_commit]
  722. ; if the cache enabled
  723. ENABLED = true
  724. ; Time to keep items in cache if not used, default is 8760 hours.
  725. ; Setting it to 0 disables caching
  726. ITEM_TTL = 8760h
  727. ; Only enable the cache when repository's commits count great than
  728. COMMITS_COUNT = 1000
  729. [session]
  730. ; Either "memory", "file", or "redis", default is "memory"
  731. PROVIDER = memory
  732. ; Provider config options
  733. ; memory: doesn't have any config yet
  734. ; file: session file path, e.g. `data/sessions`
  735. ; redis: network=tcp,addr=:6379,password=macaron,db=0,pool_size=100,idle_timeout=180
  736. ; mysql: go-sql-driver/mysql dsn config string, e.g. `root:password@/session_table`
  737. PROVIDER_CONFIG = data/sessions
  738. ; Session cookie name
  739. COOKIE_NAME = i_like_gitea
  740. ; If you use session in https only, default is false
  741. COOKIE_SECURE = false
  742. ; Session GC time interval in seconds, default is 86400 (1 day)
  743. GC_INTERVAL_TIME = 86400
  744. ; Session life time in seconds, default is 86400 (1 day)
  745. SESSION_LIFE_TIME = 86400
  746. [picture]
  747. AVATAR_UPLOAD_PATH = data/avatars
  748. REPOSITORY_AVATAR_UPLOAD_PATH = data/repo-avatars
  749. ; How Gitea deals with missing repository avatars
  750. ; none = no avatar will be displayed; random = random avatar will be displayed; image = default image will be used
  751. REPOSITORY_AVATAR_FALLBACK = none
  752. REPOSITORY_AVATAR_FALLBACK_IMAGE = /img/repo_default.png
  753. ; Max Width and Height of uploaded avatars.
  754. ; This is to limit the amount of RAM used when resizing the image.
  755. AVATAR_MAX_WIDTH = 4096
  756. AVATAR_MAX_HEIGHT = 3072
  757. ; Maximum alloved file size for uploaded avatars.
  758. ; This is to limit the amount of RAM used when resizing the image.
  759. AVATAR_MAX_FILE_SIZE = 1048576
  760. ; Chinese users can choose "duoshuo"
  761. ; or a custom avatar source, like: http://cn.gravatar.com/avatar/
  762. GRAVATAR_SOURCE = gravatar
  763. ; This value will always be true in offline mode.
  764. DISABLE_GRAVATAR = false
  765. ; Federated avatar lookup uses DNS to discover avatar associated
  766. ; with emails, see https://www.libravatar.org
  767. ; This value will always be false in offline mode or when Gravatar is disabled.
  768. ENABLE_FEDERATED_AVATAR = false
  769. [attachment]
  770. ; Whether issue and pull request attachments are enabled. Defaults to `true`
  771. ENABLED = true
  772. ; Comma-separated list of allowed file extensions (`.zip`), mime types (`text/plain`) or wildcard type (`image/*`, `audio/*`, `video/*`). Empty value or `*/*` allows all types.
  773. ALLOWED_TYPES = .docx,.gif,.gz,.jpeg,.jpg,.log,.pdf,.png,.pptx,.txt,.xlsx,.zip
  774. ; Max size of each file. Defaults to 4MB
  775. MAX_SIZE = 4
  776. ; Max number of files per upload. Defaults to 5
  777. MAX_FILES = 5
  778. ; Storage type for attachments, `local` for local disk or `minio` for s3 compatible
  779. ; object storage service, default is `local`.
  780. STORAGE_TYPE = local
  781. ; Allows the storage driver to redirect to authenticated URLs to serve files directly
  782. ; Currently, only `minio` is supported.
  783. SERVE_DIRECT = false
  784. ; Path for attachments. Defaults to `data/attachments` only available when STORAGE_TYPE is `local`
  785. PATH = data/attachments
  786. ; Minio endpoint to connect only available when STORAGE_TYPE is `minio`
  787. MINIO_ENDPOINT = localhost:9000
  788. ; Minio accessKeyID to connect only available when STORAGE_TYPE is `minio`
  789. MINIO_ACCESS_KEY_ID =
  790. ; Minio secretAccessKey to connect only available when STORAGE_TYPE is `minio`
  791. MINIO_SECRET_ACCESS_KEY =
  792. ; Minio bucket to store the attachments only available when STORAGE_TYPE is `minio`
  793. MINIO_BUCKET = gitea
  794. ; Minio location to create bucket only available when STORAGE_TYPE is `minio`
  795. MINIO_LOCATION = us-east-1
  796. ; Minio base path on the bucket only available when STORAGE_TYPE is `minio`
  797. MINIO_BASE_PATH = attachments/
  798. ; Minio enabled ssl only available when STORAGE_TYPE is `minio`
  799. MINIO_USE_SSL = false
  800. [time]
  801. ; Specifies the format for fully outputted dates. Defaults to RFC1123
  802. ; Special supported values are ANSIC, UnixDate, RubyDate, RFC822, RFC822Z, RFC850, RFC1123, RFC1123Z, RFC3339, RFC3339Nano, Kitchen, Stamp, StampMilli, StampMicro and StampNano
  803. ; For more information about the format see http://golang.org/pkg/time/#pkg-constants
  804. FORMAT =
  805. ; Location the UI time display i.e. Asia/Shanghai
  806. ; Empty means server's location setting
  807. DEFAULT_UI_LOCATION =
  808. [log]
  809. ROOT_PATH =
  810. ; Either "console", "file", "conn", "smtp" or "database", default is "console"
  811. ; Use comma to separate multiple modes, e.g. "console, file"
  812. MODE = console
  813. ; Buffer length of the channel, keep it as it is if you don't know what it is.
  814. BUFFER_LEN = 10000
  815. REDIRECT_MACARON_LOG = false
  816. MACARON = file
  817. ; Either "Trace", "Debug", "Info", "Warn", "Error", "Critical", default is "Info"
  818. ROUTER_LOG_LEVEL = Info
  819. ROUTER = console
  820. ENABLE_ACCESS_LOG = false
  821. ACCESS_LOG_TEMPLATE = {{.Ctx.RemoteAddr}} - {{.Identity}} {{.Start.Format "[02/Jan/2006:15:04:05 -0700]" }} "{{.Ctx.Req.Method}} {{.Ctx.Req.RequestURI}} {{.Ctx.Req.Proto}}" {{.ResponseWriter.Status}} {{.ResponseWriter.Size}} "{{.Ctx.Req.Referer}}\" \"{{.Ctx.Req.UserAgent}}"
  822. ACCESS = file
  823. ; Either "Trace", "Debug", "Info", "Warn", "Error", "Critical", default is "Trace"
  824. LEVEL = Info
  825. ; Either "Trace", "Debug", "Info", "Warn", "Error", "Critical", default is "None"
  826. STACKTRACE_LEVEL = None
  827. ; Generic log modes
  828. [log.x]
  829. FLAGS = stdflags
  830. EXPRESSION =
  831. PREFIX =
  832. COLORIZE = false
  833. ; For "console" mode only
  834. [log.console]
  835. LEVEL =
  836. STDERR = false
  837. ; For "file" mode only
  838. [log.file]
  839. LEVEL =
  840. ; Set the file_name for the logger. If this is a relative path this
  841. ; will be relative to ROOT_PATH
  842. FILE_NAME =
  843. ; This enables automated log rotate(switch of following options), default is true
  844. LOG_ROTATE = true
  845. ; Max size shift of a single file, default is 28 means 1 << 28, 256MB
  846. MAX_SIZE_SHIFT = 28
  847. ; Segment log daily, default is true
  848. DAILY_ROTATE = true
  849. ; delete the log file after n days, default is 7
  850. MAX_DAYS = 7
  851. ; compress logs with gzip
  852. COMPRESS = true
  853. ; compression level see godoc for compress/gzip
  854. COMPRESSION_LEVEL = -1
  855. ; For "conn" mode only
  856. [log.conn]
  857. LEVEL =
  858. ; Reconnect host for every single message, default is false
  859. RECONNECT_ON_MSG = false
  860. ; Try to reconnect when connection is lost, default is false
  861. RECONNECT = false
  862. ; Either "tcp", "unix" or "udp", default is "tcp"
  863. PROTOCOL = tcp
  864. ; Host address
  865. ADDR =
  866. ; For "smtp" mode only
  867. [log.smtp]
  868. LEVEL =
  869. ; Name displayed in mail title, default is "Diagnostic message from server"
  870. SUBJECT = Diagnostic message from server
  871. ; Mail server
  872. HOST =
  873. ; Mailer user name and password
  874. USER =
  875. ; Use PASSWD = `your password` for quoting if you use special characters in the password.
  876. PASSWD =
  877. ; Receivers, can be one or more, e.g. 1@example.com,2@example.com
  878. RECEIVERS =
  879. [cron]
  880. ; Enable running all cron tasks periodically with default settings.
  881. ENABLED = false
  882. ; Run cron tasks when Gitea starts.
  883. RUN_AT_START = false
  884. ; Basic cron tasks - enabled by default
  885. ; Clean up old repository archives
  886. [cron.archive_cleanup]
  887. ; Whether to enable the job
  888. ENABLED = true
  889. ; Whether to always run at least once at start up time (if ENABLED)
  890. RUN_AT_START = true
  891. ; Notice if not success
  892. NO_SUCCESS_NOTICE = false
  893. ; Time interval for job to run
  894. SCHEDULE = @every 24h
  895. ; Archives created more than OLDER_THAN ago are subject to deletion
  896. OLDER_THAN = 24h
  897. ; Update mirrors
  898. [cron.update_mirrors]
  899. SCHEDULE = @every 10m
  900. ; Enable running Update mirrors task periodically.
  901. ENABLED = true
  902. ; Run Update mirrors task when Gitea starts.
  903. RUN_AT_START = false
  904. ; Notice if not success
  905. NO_SUCCESS_NOTICE = true
  906. ; Repository health check
  907. [cron.repo_health_check]
  908. SCHEDULE = @every 24h
  909. ; Enable running Repository health check task periodically.
  910. ENABLED = true
  911. ; Run Repository health check task when Gitea starts.
  912. RUN_AT_START = false
  913. ; Notice if not success
  914. NO_SUCCESS_NOTICE = false
  915. TIMEOUT = 60s
  916. ; Arguments for command 'git fsck', e.g. "--unreachable --tags"
  917. ; see more on http://git-scm.com/docs/git-fsck
  918. ARGS =
  919. ; Check repository statistics
  920. [cron.check_repo_stats]
  921. ; Enable running check repository statistics task periodically.
  922. ENABLED = true
  923. ; Run check repository statistics task when Gitea starts.
  924. RUN_AT_START = true
  925. ; Notice if not success
  926. NO_SUCCESS_NOTICE = false
  927. SCHEDULE = @every 24h
  928. [cron.update_migration_poster_id]
  929. ; Update migrated repositories' issues and comments' posterid, it will always attempt synchronization when the instance starts.
  930. ENABLED = true
  931. ; Update migrated repositories' issues and comments' posterid when starting server (default true)
  932. RUN_AT_START = true
  933. ; Notice if not success
  934. NO_SUCCESS_NOTICE = false
  935. ; Interval as a duration between each synchronization. (default every 24h)
  936. SCHEDULE = @every 24h
  937. ; Synchronize external user data (only LDAP user synchronization is supported)
  938. [cron.sync_external_users]
  939. ENABLED = true
  940. ; Synchronize external user data when starting server (default false)
  941. RUN_AT_START = false
  942. ; Notice if not success
  943. NO_SUCCESS_NOTICE = false
  944. ; Interval as a duration between each synchronization (default every 24h)
  945. SCHEDULE = @every 24h
  946. ; Create new users, update existing user data and disable users that are not in external source anymore (default)
  947. ; or only create new users if UPDATE_EXISTING is set to false
  948. UPDATE_EXISTING = true
  949. ; Clean-up deleted branches
  950. [cron.deleted_branches_cleanup]
  951. ENABLED = true
  952. ; Clean-up deleted branches when starting server (default true)
  953. RUN_AT_START = true
  954. ; Notice if not success
  955. NO_SUCCESS_NOTICE = false
  956. ; Interval as a duration between each synchronization (default every 24h)
  957. SCHEDULE = @every 24h
  958. ; deleted branches than OLDER_THAN ago are subject to deletion
  959. OLDER_THAN = 24h
  960. ; Extended cron task - not enabled by default
  961. ; Delete all unactivated accounts
  962. [cron.delete_inactive_accounts]
  963. ENABLED = false
  964. RUN_AT_START = false
  965. NO_SUCCESS_NOTICE = false
  966. SCHEDULE = @annually
  967. OLDER_THAN = 168h
  968. ; Delete all repository archives
  969. [cron.delete_repo_archives]
  970. ENABLED = false
  971. RUN_AT_START = false
  972. NO_SUCCESS_NOTICE = false
  973. SCHEDULE = @annually
  974. ; Garbage collect all repositories
  975. [cron.git_gc_repos]
  976. ENABLED = false
  977. RUN_AT_START = false
  978. NO_SUCCESS_NOTICE = false
  979. SCHEDULE = @every 72h
  980. TIMEOUT = 60s
  981. ; Arguments for command 'git gc'
  982. ; The default value is same with [git] -> GC_ARGS
  983. ARGS =
  984. ; Update the '.ssh/authorized_keys' file with Gitea SSH keys
  985. [cron.resync_all_sshkeys]
  986. ENABLED = false
  987. RUN_AT_START = false
  988. NO_SUCCESS_NOTICE = false
  989. SCHEDULE = @every 72h
  990. ; Resynchronize pre-receive, update and post-receive hooks of all repositories.
  991. [cron.resync_all_hooks]
  992. ENABLED = false
  993. RUN_AT_START = false
  994. NO_SUCCESS_NOTICE = false
  995. SCHEDULE = @every 72h
  996. ; Reinitialize all missing Git repositories for which records exist
  997. [cron.reinit_missing_repos]
  998. ENABLED = false
  999. RUN_AT_START = false
  1000. NO_SUCCESS_NOTICE = false
  1001. SCHEDULE = @every 72h
  1002. ; Delete all repositories missing their Git files
  1003. [cron.delete_missing_repos]
  1004. ENABLED = false
  1005. RUN_AT_START = false
  1006. NO_SUCCESS_NOTICE = false
  1007. SCHEDULE = @every 72h
  1008. ; Delete generated repository avatars
  1009. [cron.delete_generated_repository_avatars]
  1010. ENABLED = false
  1011. RUN_AT_START = false
  1012. NO_SUCCESS_NOTICE = false
  1013. SCHEDULE = @every 72h
  1014. [git]
  1015. ; The path of git executable. If empty, Gitea searches through the PATH environment.
  1016. PATH =
  1017. ; Disables highlight of added and removed changes
  1018. DISABLE_DIFF_HIGHLIGHT = false
  1019. ; Max number of lines allowed in a single file in diff view
  1020. MAX_GIT_DIFF_LINES = 1000
  1021. ; Max number of allowed characters in a line in diff view
  1022. MAX_GIT_DIFF_LINE_CHARACTERS = 5000
  1023. ; Max number of files shown in diff view
  1024. MAX_GIT_DIFF_FILES = 100
  1025. ; Arguments for command 'git gc', e.g. "--aggressive --auto"
  1026. ; see more on http://git-scm.com/docs/git-gc/
  1027. GC_ARGS =
  1028. ; If use git wire protocol version 2 when git version >= 2.18, default is true, set to false when you always want git wire protocol version 1
  1029. ENABLE_AUTO_GIT_WIRE_PROTOCOL = true
  1030. ; Respond to pushes to a non-default branch with a URL for creating a Pull Request (if the repository has them enabled)
  1031. PULL_REQUEST_PUSH_MESSAGE = true
  1032. ; Operation timeout in seconds
  1033. [git.timeout]
  1034. DEFAULT = 360
  1035. MIGRATE = 600
  1036. MIRROR = 300
  1037. CLONE = 300
  1038. PULL = 300
  1039. GC = 60
  1040. [mirror]
  1041. ; Default interval as a duration between each check
  1042. DEFAULT_INTERVAL = 8h
  1043. ; Min interval as a duration must be > 1m
  1044. MIN_INTERVAL = 10m
  1045. [api]
  1046. ; Enables Swagger. True or false; default is true.
  1047. ENABLE_SWAGGER = true
  1048. ; Max number of items in a page
  1049. MAX_RESPONSE_ITEMS = 50
  1050. ; Default paging number of api
  1051. DEFAULT_PAGING_NUM = 30
  1052. ; Default and maximum number of items per page for git trees api
  1053. DEFAULT_GIT_TREES_PER_PAGE = 1000
  1054. ; Default size of a blob returned by the blobs API (default is 10MiB)
  1055. DEFAULT_MAX_BLOB_SIZE = 10485760
  1056. [oauth2]
  1057. ; Enables OAuth2 provider
  1058. ENABLE = true
  1059. ; Lifetime of an OAuth2 access token in seconds
  1060. ACCESS_TOKEN_EXPIRATION_TIME = 3600
  1061. ; Lifetime of an OAuth2 refresh token in hours
  1062. REFRESH_TOKEN_EXPIRATION_TIME = 730
  1063. ; Check if refresh token got already used
  1064. INVALIDATE_REFRESH_TOKENS = false
  1065. ; OAuth2 authentication secret for access and refresh tokens, change this yourself to a unique string. CLI generate option is helpful in this case. https://docs.gitea.io/en-us/command-line/#generate
  1066. JWT_SECRET =
  1067. ; Maximum length of oauth2 token/cookie stored on server
  1068. MAX_TOKEN_LENGTH = 32767
  1069. [i18n]
  1070. LANGS = en-US,zh-CN,zh-HK,zh-TW,de-DE,fr-FR,nl-NL,lv-LV,ru-RU,uk-UA,ja-JP,es-ES,pt-BR,pt-PT,pl-PL,bg-BG,it-IT,fi-FI,tr-TR,cs-CZ,sr-SP,sv-SE,ko-KR
  1071. NAMES = English,简体中文,繁體中文(香港),繁體中文(台灣),Deutsch,français,Nederlands,latviešu,русский,Українська,日本語,español,português do Brasil,Português de Portugal,polski,български,italiano,suomi,Türkçe,čeština,српски,svenska,한국어
  1072. [U2F]
  1073. ; NOTE: THE DEFAULT VALUES HERE WILL NEED TO BE CHANGED
  1074. ; Two Factor authentication with security keys
  1075. ; https://developers.yubico.com/U2F/App_ID.html
  1076. ;APP_ID = http://localhost:3000/
  1077. ; Comma separated list of trusted facets
  1078. ;TRUSTED_FACETS = http://localhost:3000/
  1079. ; Extension mapping to highlight class
  1080. ; e.g. .toml=ini
  1081. [highlight.mapping]
  1082. [other]
  1083. SHOW_FOOTER_BRANDING = false
  1084. ; Show version information about Gitea and Go in the footer
  1085. SHOW_FOOTER_VERSION = true
  1086. ; Show template execution time in the footer
  1087. SHOW_FOOTER_TEMPLATE_LOAD_TIME = true
  1088. [markup.sanitizer.1]
  1089. ; The following keys can appear once to define a sanitation policy rule.
  1090. ; This section can appear multiple times by adding a unique alphanumeric suffix to define multiple rules.
  1091. ; e.g., [markup.sanitizer.1] -> [markup.sanitizer.2] -> [markup.sanitizer.TeX]
  1092. ;ELEMENT = span
  1093. ;ALLOW_ATTR = class
  1094. ;REGEXP = ^(info|warning|error)$
  1095. [markup.asciidoc]
  1096. ENABLED = false
  1097. ; List of file extensions that should be rendered by an external command
  1098. FILE_EXTENSIONS = .adoc,.asciidoc
  1099. ; External command to render all matching extensions
  1100. RENDER_COMMAND = "asciidoc --out-file=- -"
  1101. ; Don't pass the file on STDIN, pass the filename as argument instead.
  1102. IS_INPUT_FILE = false
  1103. [metrics]
  1104. ; Enables metrics endpoint. True or false; default is false.
  1105. ENABLED = false
  1106. ; If you want to add authorization, specify a token here
  1107. TOKEN =
  1108. [task]
  1109. ; Task queue type, could be `channel` or `redis`.
  1110. QUEUE_TYPE = channel
  1111. ; Task queue length, available only when `QUEUE_TYPE` is `channel`.
  1112. QUEUE_LENGTH = 1000
  1113. ; Task queue connection string, available only when `QUEUE_TYPE` is `redis`.
  1114. ; If there is a password of redis, use `addrs=127.0.0.1:6379 password=123 db=0`.
  1115. QUEUE_CONN_STR = "addrs=127.0.0.1:6379 db=0"
  1116. [migrations]
  1117. ; Max attempts per http/https request on migrations.
  1118. MAX_ATTEMPTS = 3
  1119. ; Backoff time per http/https request retry (seconds)
  1120. RETRY_BACKOFF = 3
  1121. ; Allowed domains for migrating, default is blank. Blank means everything will be allowed.
  1122. ; Multiple domains could be separated by commas.
  1123. ALLOWED_DOMAINS =
  1124. ; Blocklist for migrating, default is blank. Multiple domains could be separated by commas.
  1125. ; When ALLOWED_DOMAINS is not blank, this option will be ignored.
  1126. BLOCKED_DOMAINS =
  1127. ; Allow private addresses defined by RFC 1918, RFC 1122, RFC 4632 and RFC 4291 (false by default)
  1128. ALLOW_LOCALNETWORKS = false
  1129. ; default storage for attachments, lfs and avatars
  1130. [storage]
  1131. ; storage type
  1132. STORAGE_TYPE = local
  1133. ; lfs storage will override storage
  1134. [lfs]
  1135. STORAGE_TYPE = local
  1136. ; customize storage
  1137. ;[storage.my_minio]
  1138. ;STORAGE_TYPE = minio
  1139. ; Minio endpoint to connect only available when STORAGE_TYPE is `minio`
  1140. ;MINIO_ENDPOINT = localhost:9000
  1141. ; Minio accessKeyID to connect only available when STORAGE_TYPE is `minio`
  1142. ;MINIO_ACCESS_KEY_ID =
  1143. ; Minio secretAccessKey to connect only available when STORAGE_TYPE is `minio`
  1144. ;MINIO_SECRET_ACCESS_KEY =
  1145. ; Minio bucket to store the attachments only available when STORAGE_TYPE is `minio`
  1146. ;MINIO_BUCKET = gitea
  1147. ; Minio location to create bucket only available when STORAGE_TYPE is `minio`
  1148. ;MINIO_LOCATION = us-east-1
  1149. ; Minio enabled ssl only available when STORAGE_TYPE is `minio`
  1150. ;MINIO_USE_SSL = false