Releases: heyvaldemar/xwiki-traefik-letsencrypt-docker-compose
Release list
v1.8.9
Security
postgres:15was rebuilt upstream; the pin moved fromsha256:dfbbb0ad8cab…tosha256:724292da1f2e…. Same version, same tag, a rebuilt base image — the usual shape of a security fix in a base layer.
Upgrading
git pull (or ./update.sh), then docker compose up -d. Containers on a refreshed image are recreated; data volumes and .env are untouched. This release was cut by fleet triage after the deploy job booted the stack on the refreshed images.
Full history in CHANGELOG.md.
v1.8.8
Fixed
- The restore scripts had never been run by CI, and could not have been.
They carried the database name, user and backup directory as literals, found
their containers with a name filter that misses them under any-pbut the
default. The data restore randocker exec -it, which refuses to start
without a terminal, and cleared the directory withrm -rf dir/*, which
leaves every dotfile of the newer state in place. Both scripts now take every
path, name and credential from the running backups container, accept the
backup file name as an argument, stop the application while they work and
start it again whatever happens, and CI runs them: a marker written after a
backup must be gone once that backup is restored, for the database and for
the application data.
Changed
- The freshness check has its own workflow, Pin Freshness. It ran inside Deployment Verification, whose badge is the one at the top of this README. Across the fleet, nine red runs in ten were a pin one version behind - which the fleet's triage moves within the day - and a reader cannot tell that from a stack that does not boot. The badge now says whether the stack boots. The job itself is unchanged.
v1.8.7
Security
traefik:3.7was rebuilt upstream; the pin moved fromsha256:1c32e7c36820…tosha256:24841fe2de73…. Same version, same tag, a rebuilt base image — the usual shape of a security fix in a base layer.
Upgrading
git pull (or ./update.sh), then docker compose up -d. Containers on a refreshed image are recreated; data volumes and .env are untouched. This release was cut by fleet triage after the deploy job booted the stack on the refreshed images.
Full history in CHANGELOG.md.
v1.8.6
Security
postgres:15was rebuilt upstream; the pin moved fromsha256:9b1d34adbce1…tosha256:dfbbb0ad8cab…. Same version, same tag, a rebuilt base image — the usual shape of a security fix in a base layer.
Upgrading
git pull (or ./update.sh), then docker compose up -d. Containers on a refreshed image are recreated; data volumes and .env are untouched. This release was cut by fleet triage after the deploy job booted the stack on the refreshed images.
Full history in CHANGELOG.md.
v1.8.5
Security
traefik:3.7was rebuilt upstream; the pin moved fromsha256:f86a2cab1b5c…tosha256:1c32e7c36820…. Same version, same tag, a rebuilt base image — the usual shape of a security fix in a base layer.
Upgrading
git pull (or ./update.sh), then docker compose up -d. Containers on a refreshed image are recreated; data volumes and .env are untouched. This release was cut by fleet triage after the deploy job booted the stack on the refreshed images.
Full history in CHANGELOG.md.
v1.8.4
Security
xwiki:18.7.0-postgres-tomcatwas rebuilt upstream; the pin moved fromsha256:d551b75d3066…tosha256:3827ef79cbeb…. Same version, same tag, a rebuilt base image — the usual shape of a security fix in a base layer.
Upgrading
git pull (or ./update.sh), then docker compose up -d. Containers on a refreshed image are recreated; data volumes and .env are untouched. This release was cut by fleet triage after the deploy job booted the stack on the refreshed images.
Full history in CHANGELOG.md.
v1.8.3
A correctness fix to the backup loop, and it is worth reading even if the symptom never reached you.
The archive is read back before it is called a backup
The library tarball was renamed into place on tar's exit code alone. That code has never been a statement about whether the file it produced opens, and the gap is not theoretical: an archive truncated after tar had already exited still carries exit status 0. The old condition promoted it, logged Data backup OK, and pruned older archives around it.
Measured in the image this sidecar actually runs, rather than argued from the manual:
| case | tar's exit code | old condition | with the read-back |
|---|---|---|---|
| a good archive | 0 | promoted | promoted |
| destination blocked by a directory | 2 | refused | refused |
| archive truncated after tar exited | 0 | promoted | refused |
One tar -tzf between the write and the rename now decides it.
What is deliberately not changed
The database dump. It is written as pg_dump \| gzip > f.partial under set -o pipefail, where a failure at either end of the pipe — including a full disk — already fails the pipeline and nothing is renamed. Adding gzip -t there would be noise, not safety.
How it was found
A rule was added to fleet-ops asserting this property across every repository, after one loop turned out to be missing it. Eighteen were, all with the same shape, all fixed in the same batch.
Upgrading
./update.shNo variables changed, no data touched, no manual step.
v1.8.2
Security
xwiki:18.7.0-postgres-tomcatwas rebuilt upstream; the pin moved fromsha256:6091aec4bacb…tosha256:d551b75d3066…. Same version, same tag, a rebuilt base image — the usual shape of a security fix in a base layer.
Upgrading
git pull (or ./update.sh), then docker compose up -d. Containers on a refreshed image are recreated; data volumes and .env are untouched. This release was cut by fleet triage after the deploy job booted the stack on the refreshed images.
Full history in CHANGELOG.md.
v1.8.1
Security
xwiki:18.7.0-postgres-tomcatwas rebuilt upstream; the pin moved fromsha256:93765c7c69ec…tosha256:6091aec4bacb…. Same version, same tag, a rebuilt base image — the usual shape of a security fix in a base layer.
Upgrading
git pull (or ./update.sh), then docker compose up -d. Containers on a refreshed image are recreated; data volumes and .env are untouched. This release was cut by fleet triage after the deploy job booted the stack on the refreshed images.
Full history in CHANGELOG.md.
v1.8.0
Added
update.sh: move between release tags on purpose. It updates to the latest release (a combination this repository's CI has booted and smoke-tested), refuses to cross a major version unattended, refuses to run over local changes, and names any new required variable before anything has moved.--dry-runsays what would happen.
Upgrading
git pull (or ./update.sh). Nothing running changes: this release adds or extends the update script and touches no image pin.
Full history in CHANGELOG.md.