Files
url_shortening_service/.env.prod.example
T
westfarn 433308d615
Deploy Beta / unit-tests (push) Successful in 4s
Deploy Beta / docker (push) Successful in 10s
Deploy Beta / deploy-beta (push) Successful in 1m3s
Serve /api/ on piha.lc / beta.piha.li (#8)
## Summary
- Serve `/api/` on `piha.lc` / `beta.piha.li` (Bearer still required).
- Drop `shortener.aimloperations.com` / `shortener-beta.aimloperations.com` from env examples and caller docs.
- `/admin/` stays 404 on the public host.

Closes #7.

## Test plan
- [ ] `POST https://beta.piha.li/api/links/` with valid Bearer → 201
- [ ] Same without Bearer → 401
- [ ] `GET https://beta.piha.li/<code>` still 302
- [ ] `/admin/` on beta.piha.li → 404
- [ ] Unit tests: `cd site && uv run python manage.py test`

Reviewed-on: #8
2026-08-30 17:27:40 -07:00

58 lines
2.3 KiB
Bash

# Secret env files for server-infra deploy.
# Copy to the control node (never commit):
# ~/Documents/secrets/url_shortening_service/url_shortening_service_prod.env
# ~/Documents/secrets/url_shortening_service/url_shortening_service_beta.env
#
# Docker Compose: if a secret contains $ (e.g. in DATABASE_URL password), escape each
# $ as $$ or compose will treat $word as a variable.
# =============================================================================
# PROD
# =============================================================================
DJANGO_ENV=prod
DJANGO_DEBUG=false
DJANGO_SECRET_KEY=replace-with-a-long-random-secret
# Public short host (plus docker names if used). One hostname for mint + redirects.
DJANGO_ALLOWED_HOSTS=piha.lc,url-shortener,web
# Shared external Postgres
DATABASE_URL=postgres://westfarn:replace-db-password@10.0.0.230:5432/url_shortener
# Host port (must match server-infra). NPM proxies SHORT_DOMAIN here.
WEB_PORT=8005
SHORT_DOMAIN=piha.lc
PUBLIC_SHORT_URL=https://piha.lc
SHORT_PUBLIC_HOSTS=piha.lc
SHORT_API_HOSTS=piha.lc,url-shortener,web
SHORT_ADMIN_HOSTS=localhost,127.0.0.1
# Generate: python -c "import secrets; print(secrets.token_urlsafe(32))"
# This token is the only thing that authorizes minting. Treat it as a secret.
# monica_site sends: Authorization: Bearer monica:<same-secret>
SHORTENER_API_TOKENS=monica:replace-with-token-urlsafe-32
SHORT_ALLOWED_HOSTS=mkdrealtor.com,aimloperations.com
SHORT_CODE_LENGTH=6
CLICK_IP_PEPPER=replace-with-a-distinct-pepper
CONTACT_URL=https://aimloperations.com/contact
GUNICORN_WORKERS=2
GUNICORN_BIND=0.0.0.0:8000
# =============================================================================
# BETA overrides
# File: url_shortening_service_beta.env
# =============================================================================
# DJANGO_ENV=beta
# DJANGO_DEBUG=false
# DJANGO_SECRET_KEY=replace-with-a-different-beta-secret
# DJANGO_ALLOWED_HOSTS=beta.piha.li,url-shortener,web
# DATABASE_URL=postgres://westfarn:replace-db-password@10.0.0.230:5432/url_shortener_beta
# WEB_PORT=8015
# SHORT_DOMAIN=beta.piha.li
# PUBLIC_SHORT_URL=https://beta.piha.li
# SHORT_PUBLIC_HOSTS=beta.piha.li
# SHORT_API_HOSTS=beta.piha.li,url-shortener,web
# SHORT_ADMIN_HOSTS=localhost,127.0.0.1
# SHORTENER_API_TOKENS=monica:replace-with-a-different-token
# CLICK_IP_PEPPER=replace-with-a-different-pepper