Skip to main content
Related reading: PostgreSQL. These are separate files in one repository. A shared Docker network works only when the workloads run on the same server; Towbar does not automatically order their deployments or copy secret values between them.

Towbar manifests

Configure

  1. Register and prepare the example server or servers, connect the repository, and map production to the branch containing these files.
  2. Save each Datastore credential value under Datastore → Settings → Secrets, deploy it first, and verify engine readiness before starting a dependent Service.
  3. Save the Service’s declared keys in its selected environment, or enable and authorize the selected external-secret provider. Do not commit the values.
  4. Point each Service connection secret at api-with-postgresql-postgres on the database engine’s private port. The server and network must match; credentials are saved separately for each Service.
  5. Create an application-specific user with only the required privileges after the database is ready. Save its connection URL on the consuming Service instead of reusing the Datastore’s administrator credentials.
  6. Sync the repository, inspect the resolved configuration, deploy manually, and perform the verification below before enabling automation.

Verify

The app can query using a non-root application role. For field constraints, see Service manifest and Datastore manifest.
Last modified on September 27, 2026