1.4 KiB
1.4 KiB
title, type, permalink, stable_id, scope, project_id, memory_type, status, revision, restored_from_commit, created_at, updated_at, tags
| title | type | permalink | stable_id | scope | project_id | memory_type | status | revision | restored_from_commit | created_at | updated_at | tags | |||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 容器管理模块与系统设置要点 | fact | main/projects/d5a7f581-c442-4554-87b9-ee723b8b0258/容器管理模块与系统设置要点 | 669e2c30-1109-4f5f-962c-93460d1b1328 | project | d5a7f581-c442-4554-87b9-ee723b8b0258 | fact | active | 1 | 6a6a895eaf |
2026-09-23T15:10:19.849500+00:00 | 2026-09-23T15:10:19.849562+00:00 |
|
容器模块:Docker SDK 连当前宿主 Docker Engine(自动检测 DOCKER_HOST/socket/named pipe/本地 TCP,可手动覆盖);容器/镜像/卷管理,高危写操作仅 Web 登录态(require_web_session)。镜像导入/导出任务 ContainerJob 完整生命周期:启动时重置中断任务为 failed、按 container_job_retention_hours(默认 168h)清理、导入 tar 用完即删、文件落 METRIX_RUNTIME_DIR/container_jobs/。删镜像前用 daemon 侧 ancestor 过滤检查所有容器占用(不限可见容器)。创建容器环境变量名含 password/secret/token/key 显式 400(error.containerEnvKeyNotAllowed)。Docker 引擎信息区默认收起(n-collapse,localStorage 记忆)。系统设置要点:session_token_expire_hours(默认 12,0=永不过期);各种并发/保留/配额类设置 0=不限制;前端 localStorage key 统一用 appKey() 前缀。