# Drone Docker runner 1.8.5 — copy to /etc/drone/runner.env (mode 0600, root). # Reference: https://docs.drone.io/runner/docker/configuration/reference/ # --- Where the server is ---------------------------------------------------- DRONE_RPC_PROTO=https DRONE_RPC_HOST=drone.example.internal # Must equal DRONE_RPC_SECRET in the server's env file. DRONE_RPC_SECRET=__FROM_SERVER_ENV__ # --- Runner identity and capacity ------------------------------------------ DRONE_RUNNER_NAME=__HOSTNAME__ DRONE_RUNNER_CAPACITY=2 # --- AIR-GAP: never let the runner go looking for images upstream ----------- # The runner injects this clone image into every pipeline (default would be # drone/git:latest). Point it at the preloaded image or your registry mirror. DRONE_RUNNER_CLONE_IMAGE=docker.io/drone/git:latest #DRONE_RUNNER_CLONE_IMAGE=registry.internal.example/drone/git@sha256: # The runner talks to Podman's Docker-compatible API socket, mounted into the # container at the Docker default path (see systemd/drone-runner.container). DOCKER_HOST=unix:///var/run/docker.sock # --- Optional: internal CA for steps that call HTTPS services --------------- # Mounted into EVERY step container, including the clone step. #DRONE_RUNNER_VOLUMES=/etc/pki/ca-trust/extracted/pem/tls-ca-bundle.pem:/etc/ssl/certs/ca-certificates.crt # --- Optional: restrict what this runner accepts ---------------------------- #DRONE_LIMIT_REPOS=platform/*,app-team/* #DRONE_LIMIT_TRUSTED=false # --- Runner dashboard (port 3000 in the container; not published by default) - DRONE_UI_DISABLE=true DRONE_DEBUG=false DRONE_TRACE=false