|
| 1 | +""" |
| 2 | +Django settings for Railway deployment. |
| 3 | +
|
| 4 | +Simplified production settings without AWS dependencies. |
| 5 | +Uses whitenoise for static files and local filesystem for media. |
| 6 | +""" |
| 7 | + |
| 8 | +from .base import * # noqa |
| 9 | +from .base import env, ROOT_DIR |
| 10 | +import os |
| 11 | + |
| 12 | +# GENERAL |
| 13 | +# ------------------------------------------------------------------------------ |
| 14 | +SECRET_KEY = env("DJANGO_SECRET_KEY") |
| 15 | +DEBUG = env.bool("DJANGO_DEBUG", default=False) |
| 16 | + |
| 17 | +# Allow Railway's domain and custom domains |
| 18 | +ALLOWED_HOSTS = env.list( |
| 19 | + "DJANGO_ALLOWED_HOSTS", |
| 20 | + default=["localhost", ".railway.app", ".up.railway.app"] |
| 21 | +) |
| 22 | + |
| 23 | +# DATABASES |
| 24 | +# ------------------------------------------------------------------------------ |
| 25 | +# Railway provides DATABASE_URL automatically when you add Postgres |
| 26 | +# Falls back to SQLite for simpler setups |
| 27 | +if env("DATABASE_URL", default=None): |
| 28 | + DATABASES = { |
| 29 | + "default": env.db("DATABASE_URL"), |
| 30 | + } |
| 31 | + DATABASES["default"]["ATOMIC_REQUESTS"] = True |
| 32 | + DATABASES["default"]["CONN_MAX_AGE"] = env.int("CONN_MAX_AGE", default=60) |
| 33 | +else: |
| 34 | + DATABASES = { |
| 35 | + "default": { |
| 36 | + "ENGINE": "django.db.backends.sqlite3", |
| 37 | + "NAME": ROOT_DIR / "db.sqlite3", |
| 38 | + } |
| 39 | + } |
| 40 | + |
| 41 | +# CACHES |
| 42 | +# ------------------------------------------------------------------------------ |
| 43 | +# Use local memory cache instead of Redis for simplicity |
| 44 | +CACHES = { |
| 45 | + "default": { |
| 46 | + "BACKEND": "django.core.cache.backends.locmem.LocMemCache", |
| 47 | + "LOCATION": "unique-snowflake", |
| 48 | + } |
| 49 | +} |
| 50 | + |
| 51 | +# SECURITY |
| 52 | +# ------------------------------------------------------------------------------ |
| 53 | +SECURE_PROXY_SSL_HEADER = ("HTTP_X_FORWARDED_PROTO", "https") |
| 54 | +SECURE_SSL_REDIRECT = env.bool("DJANGO_SECURE_SSL_REDIRECT", default=True) |
| 55 | +SESSION_COOKIE_SECURE = True |
| 56 | +CSRF_COOKIE_SECURE = True |
| 57 | +SECURE_HSTS_SECONDS = 60 |
| 58 | +SECURE_HSTS_INCLUDE_SUBDOMAINS = True |
| 59 | +SECURE_HSTS_PRELOAD = True |
| 60 | +SECURE_CONTENT_TYPE_NOSNIFF = True |
| 61 | + |
| 62 | +# STATIC FILES (whitenoise) |
| 63 | +# ------------------------------------------------------------------------------ |
| 64 | +INSTALLED_APPS = ["whitenoise.runserver_nostatic"] + INSTALLED_APPS # noqa F405 |
| 65 | +MIDDLEWARE.insert(1, "whitenoise.middleware.WhiteNoiseMiddleware") # After SecurityMiddleware |
| 66 | + |
| 67 | +STATICFILES_STORAGE = "whitenoise.storage.CompressedManifestStaticFilesStorage" |
| 68 | +STATIC_URL = "/static/" |
| 69 | +STATIC_ROOT = ROOT_DIR / "staticfiles" |
| 70 | + |
| 71 | +# MEDIA FILES (local filesystem) |
| 72 | +# ------------------------------------------------------------------------------ |
| 73 | +# Media files stored in Railway volume at /app/mediafiles |
| 74 | +# Sample audio copied from git on first deploy, user recordings persist in volume |
| 75 | +MEDIA_URL = "/media/" |
| 76 | +MEDIA_ROOT = env("MEDIA_ROOT", default="/app/mediafiles") |
| 77 | + |
| 78 | +# EMAIL |
| 79 | +# ------------------------------------------------------------------------------ |
| 80 | +# Use console backend for development/testing (emails print to console) |
| 81 | +EMAIL_BACKEND = env( |
| 82 | + "DJANGO_EMAIL_BACKEND", |
| 83 | + default="django.core.mail.backends.console.EmailBackend" |
| 84 | +) |
| 85 | +DEFAULT_FROM_EMAIL = env( |
| 86 | + "DJANGO_DEFAULT_FROM_EMAIL", |
| 87 | + default="MusicCPR <noreply@musiccpr.org>" |
| 88 | +) |
| 89 | + |
| 90 | +# ADMIN |
| 91 | +# ------------------------------------------------------------------------------ |
| 92 | +ADMIN_URL = env("DJANGO_ADMIN_URL", default="admin/") |
| 93 | + |
| 94 | +# LOGGING |
| 95 | +# ------------------------------------------------------------------------------ |
| 96 | +LOGGING = { |
| 97 | + "version": 1, |
| 98 | + "disable_existing_loggers": False, |
| 99 | + "formatters": { |
| 100 | + "verbose": { |
| 101 | + "format": "%(levelname)s %(asctime)s %(name)s %(message)s" |
| 102 | + } |
| 103 | + }, |
| 104 | + "handlers": { |
| 105 | + "console": { |
| 106 | + "level": "DEBUG", |
| 107 | + "class": "logging.StreamHandler", |
| 108 | + "formatter": "verbose", |
| 109 | + }, |
| 110 | + }, |
| 111 | + "root": {"level": "INFO", "handlers": ["console"]}, |
| 112 | + "loggers": { |
| 113 | + "django": { |
| 114 | + "handlers": ["console"], |
| 115 | + "level": "WARNING", |
| 116 | + "propagate": False, |
| 117 | + }, |
| 118 | + "django.request": { |
| 119 | + "handlers": ["console"], |
| 120 | + "level": "ERROR", |
| 121 | + "propagate": False, |
| 122 | + }, |
| 123 | + }, |
| 124 | +} |
| 125 | + |
| 126 | +# CORS |
| 127 | +# ------------------------------------------------------------------------------ |
| 128 | +# Allow Vercel frontend domains |
| 129 | +CORS_ALLOWED_ORIGIN_REGEXES = env.list( |
| 130 | + "CORS_ALLOWED_ORIGINS_REGEX", |
| 131 | + default=[ |
| 132 | + r"^https://.*\.vercel\.app$", |
| 133 | + r"^https://.*\.railway\.app$", |
| 134 | + r"^http://localhost:\d+$", |
| 135 | + r"^http://127\.0\.0\.1:\d+$", |
| 136 | + ] |
| 137 | +) |
| 138 | + |
| 139 | +# Also allow specific origins if set |
| 140 | +CORS_ALLOWED_ORIGINS = env.list( |
| 141 | + "CORS_ALLOWED_ORIGINS", |
| 142 | + default=[] |
| 143 | +) |
| 144 | + |
| 145 | +# CSRF trusted origins (needed for admin) |
| 146 | +CSRF_TRUSTED_ORIGINS = env.list( |
| 147 | + "CSRF_TRUSTED_ORIGINS", |
| 148 | + default=["https://*.railway.app", "https://*.vercel.app"] |
| 149 | +) |
0 commit comments