|
@@ -4,7 +4,7 @@ Rails.application.configure do
|
|
|
# Settings specified here will take precedence over those in config/application.rb.
|
|
|
|
|
|
# Code is not reloaded between requests.
|
|
|
- config.cache_classes = true
|
|
|
+ config.enable_reloading = false
|
|
|
|
|
|
# Eager load code on boot. This eager loads most of Rails and
|
|
|
# your application in memory, allowing both threaded web servers
|
|
@@ -13,16 +13,15 @@ Rails.application.configure do
|
|
|
config.eager_load = true
|
|
|
|
|
|
# Full error reports are disabled and caching is turned on.
|
|
|
- config.consider_all_requests_local = false
|
|
|
+ config.consider_all_requests_local = false
|
|
|
config.action_controller.perform_caching = true
|
|
|
|
|
|
- # Ensures that a master key has been made available in either ENV["RAILS_MASTER_KEY"]
|
|
|
- # or in config/master.key. This key is used to decrypt credentials (and other encrypted files).
|
|
|
+ # Ensures that a master key has been made available in ENV["RAILS_MASTER_KEY"], config/master.key, or an environment
|
|
|
+ # key such as config/credentials/production.key. This key is used to decrypt credentials (and other encrypted files).
|
|
|
# config.require_master_key = true
|
|
|
|
|
|
- # Disable serving static files from the `/public` folder by default since
|
|
|
- # Apache or NGINX already handles this.
|
|
|
- config.public_file_server.enabled = ENV["RAILS_SERVE_STATIC_FILES"].present?
|
|
|
+ # Disable serving static files from `public/`, relying on NGINX/Apache to do so instead.
|
|
|
+ # config.public_file_server.enabled = false
|
|
|
|
|
|
# Enable serving of images, stylesheets, and JavaScripts from an asset server.
|
|
|
# config.asset_host = "http://assets.example.com"
|
|
@@ -31,16 +30,24 @@ Rails.application.configure do
|
|
|
# config.action_dispatch.x_sendfile_header = "X-Sendfile" # for Apache
|
|
|
# config.action_dispatch.x_sendfile_header = "X-Accel-Redirect" # for NGINX
|
|
|
|
|
|
+ # Assume all access to the app is happening through a SSL-terminating reverse proxy.
|
|
|
+ # Can be used together with config.force_ssl for Strict-Transport-Security and secure cookies.
|
|
|
+ # config.assume_ssl = true
|
|
|
+
|
|
|
# Force all access to the app over SSL, use Strict-Transport-Security, and use secure cookies.
|
|
|
# config.force_ssl = true
|
|
|
|
|
|
- # Include generic and useful information about system operation, but avoid logging too much
|
|
|
- # information to avoid inadvertent exposure of personally identifiable information (PII).
|
|
|
- config.log_level = :info
|
|
|
+ # Skip http-to-https redirect for the default health check endpoint.
|
|
|
+ # config.ssl_options = { redirect: { exclude: ->(request) { request.path == "/up" } } }
|
|
|
|
|
|
# Prepend all log lines with the following tags.
|
|
|
config.log_tags = [ :request_id ]
|
|
|
|
|
|
+ # "info" includes generic and useful information about system operation, but avoids logging too much
|
|
|
+ # information to avoid inadvertent exposure of personally identifiable information (PII). If you
|
|
|
+ # want to log everything, set the level to "debug".
|
|
|
+ config.log_level = ENV.fetch("RAILS_LOG_LEVEL", "info")
|
|
|
+
|
|
|
# Use a different cache store in production.
|
|
|
config.cache_store = :redis_cache_store, {
|
|
|
url: ENV['REDIS_URL'],
|
|
@@ -54,10 +61,6 @@ Rails.application.configure do
|
|
|
}
|
|
|
}
|
|
|
|
|
|
- # Use a real queuing backend for Active Job (and separate queues per environment).
|
|
|
- # config.active_job.queue_adapter = :resque
|
|
|
- # config.active_job.queue_name_prefix = "hello_production"
|
|
|
-
|
|
|
# Enable locale fallbacks for I18n (makes lookups for any locale fall back to
|
|
|
# the I18n.default_locale when a translation cannot be found).
|
|
|
config.i18n.fallbacks = true
|
|
@@ -65,19 +68,14 @@ Rails.application.configure do
|
|
|
# Don't log any deprecations.
|
|
|
config.active_support.report_deprecations = false
|
|
|
|
|
|
- # Use default logging formatter so that PID and timestamp are not suppressed.
|
|
|
- config.log_formatter = ::Logger::Formatter.new
|
|
|
-
|
|
|
- # Use a different logger for distributed setups.
|
|
|
- # require "syslog/logger"
|
|
|
- # config.logger = ActiveSupport::TaggedLogging.new(Syslog::Logger.new "app-name")
|
|
|
-
|
|
|
- if ENV["RAILS_LOG_TO_STDOUT"].present?
|
|
|
- logger = ActiveSupport::Logger.new(STDOUT)
|
|
|
- logger.formatter = config.log_formatter
|
|
|
- config.logger = ActiveSupport::TaggedLogging.new(logger)
|
|
|
- end
|
|
|
-
|
|
|
# Do not dump schema after migrations.
|
|
|
config.active_record.dump_schema_after_migration = false
|
|
|
+
|
|
|
+ # Enable DNS rebinding protection and other `Host` header attacks.
|
|
|
+ # config.hosts = [
|
|
|
+ # "example.com", # Allow requests from example.com
|
|
|
+ # /.*\.example\.com/ # Allow requests from subdomains like `www.example.com`
|
|
|
+ # ]
|
|
|
+ # Skip DNS rebinding protection for the default health check endpoint.
|
|
|
+ # config.host_authorization = { exclude: ->(request) { request.path == "/up" } }
|
|
|
end
|