Repository navigation
docs: add Windows Docker installation instructions - #2427
gunjansonaw wants to merge 2 commits into
Conversation
f3cddd8 to
991e20c
Compare
Signed-off-by: Gunjan Sonawane <gunjansonawane462@gmail.com>
| Create ``docker-compose.override.yml`` with the configuration mount for the | ||
| application, scheduler, and both RQ workers:: | ||
|
|
||
| services: | ||
| vulnerablecode: | ||
| volumes: | ||
| - .\vulnerablecode-config:/etc/vulnerablecode/ | ||
| vulnerablecode_scheduler: | ||
| volumes: | ||
| - .\vulnerablecode-config:/etc/vulnerablecode/ | ||
| vulnerablecode_rqworker: | ||
| volumes: | ||
| - .\vulnerablecode-config:/etc/vulnerablecode/ | ||
| vulnerablecode_rqworker_high: | ||
| volumes: | ||
| - .\vulnerablecode-config:/etc/vulnerablecode/ |
There was a problem hiding this comment.
It might be a good idea to have a special Docker Compose file for Windows, docker-compose.windows.yml
| Create ``docker-compose.override.yml`` with the configuration mount for the | |
| application, scheduler, and both RQ workers:: | |
| services: | |
| vulnerablecode: | |
| volumes: | |
| - .\vulnerablecode-config:/etc/vulnerablecode/ | |
| vulnerablecode_scheduler: | |
| volumes: | |
| - .\vulnerablecode-config:/etc/vulnerablecode/ | |
| vulnerablecode_rqworker: | |
| volumes: | |
| - .\vulnerablecode-config:/etc/vulnerablecode/ | |
| vulnerablecode_rqworker_high: | |
| volumes: | |
| - .\vulnerablecode-config:/etc/vulnerablecode/ |
There was a problem hiding this comment.
Added the dedicated docker-compose.windows.yml override and updated the Windows instructions to use it explicitly.
| .. warning:: | ||
| On **Windows** VulnerableCode can **only** :ref:`run_with_docker` and is not supported. | ||
|
|
There was a problem hiding this comment.
Why do we need to remove that?
There was a problem hiding this comment.
I retained and clarified the warning: native Windows installation is not supported, while Docker Desktop is supported. It now points to the Docker installation instructions.
| Create the configuration directory and environment file using PowerShell. The | ||
| following commands generate secure values for both required settings:: | ||
|
|
||
| New-Item -ItemType Directory -Force .\vulnerablecode-config | ||
| $secretKeyBytes = New-Object byte[] 50 | ||
| $rng = [System.Security.Cryptography.RandomNumberGenerator]::Create() | ||
| $rng.GetBytes($secretKeyBytes) | ||
| $secretKey = [Convert]::ToBase64String($secretKeyBytes) | ||
|
|
||
| $altchaKeyBytes = New-Object byte[] 32 | ||
| $rng.GetBytes($altchaKeyBytes) | ||
| $altchaHmacKey = -join ($altchaKeyBytes | ForEach-Object { $_.ToString("x2") }) | ||
| $rng.Dispose() | ||
|
|
||
| @" | ||
| SECRET_KEY="$secretKey" | ||
| ALTCHA_HMAC_KEY="$altchaHmacKey" | ||
| "@ | Set-Content .\vulnerablecode-config\.env |
There was a problem hiding this comment.
Please avoid generating any environment variables.
There was a problem hiding this comment.
Removed the PowerShell secret-generation commands. The docs now show placeholder values only and tell users to replace them with unique secrets.
Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Signed-off-by: Gunjan Sonawane <gunjansonawane462@gmail.com>
2237aa2 to
f8ab85d
Compare
Summary
Add Windows-specific Docker installation instructions.
Document PowerShell-based environment configuration.
Document the Windows Docker Compose override required to mount the configuration directory.
Remove the previous generic Windows warning now that dedicated instructions are available.
### Testing
Verified the Windows Docker setup locally with Docker Desktop.
Confirmed the application starts successfully with the documented configuration.
Confirmed http://localhost returns HTTP 200.
git diff --check passes.
Notes
The Windows instructions are Docker-based because native Windows installation is not supported.