DockRoute
Get Started with Apps!
Keywords: dns, network, automation, cloudflare
Train: Community
Home Page: https://www.dockroute.dev
Added: 2026-08-14
Last Updated: 2026-08-14
DockRoute is External-DNS for plain Docker hosts. It watches running containers, reads dockroute.* labels and reconciles the matching DNS records and Cloudflare Tunnel routes in a pluggable provider, with TXT-based ownership so it never alters records it cannot prove it manages.
Run as Context- Container [dockroute] can run as any non-root user and group.
Group: 568 / Host group is [apps]
User: 568 / Host user is [apps]
App Metadata (Raw File)
{
"1.0.0": {
"healthy": true,
"supported": true,
"healthy_error": null,
"location": "/__w/apps/apps/trains/community/dockroute/1.0.0",
"last_update": "2026-08-14 15:17:10",
"required_features": [],
"human_version": "0.2.0_1.0.0",
"version": "1.0.0",
"app_metadata": {
"app_version": "0.2.0",
"capabilities": [],
"categories": [
"networking"
],
"changelog_url": "https://github.com/Dockroute/Dockroute/releases",
"date_added": "2026-08-14",
"description": "DockRoute is External-DNS for plain Docker hosts. It watches running containers, reads dockroute.* labels and reconciles the matching DNS records and Cloudflare Tunnel routes in a pluggable provider, with TXT-based ownership so it never alters records it cannot prove it manages.",
"home": "https://www.dockroute.dev",
"host_mounts": [],
"icon": "https://media.sys.truenas.net/apps/dockroute/icons/icon.png",
"keywords": [
"dns",
"network",
"automation",
"cloudflare"
],
"lib_version": "2.3.11",
"lib_version_hash": "874636814efb275e5276ea9d709b7cd665fed42bb1d50328e853d9253a2e1229",
"maintainers": [
{
"email": "dev@truenas.com",
"name": "truenas",
"url": "https://www.truenas.com/"
}
],
"name": "dockroute",
"run_as_context": [
{
"description": "Container [dockroute] can run as any non-root user and group.",
"gid": 568,
"group_name": "Host group is [apps]",
"uid": 568,
"user_name": "Host user is [apps]"
}
],
"screenshots": [],
"sources": [
"https://apps.truenas.com/catalog/dockroute_community/",
"https://github.com/Dockroute/Dockroute",
"https://github.com/Dockroute/Dockroute/pkgs/container/dockroute",
"https://www.dockroute.dev"
],
"title": "DockRoute",
"train": "community",
"version": "1.0.0"
},
"schema": {
"groups": [
{
"name": "DockRoute Configuration",
"description": "Configure DockRoute"
},
{
"name": "User and Group Configuration",
"description": "Configure User and Group for DockRoute"
},
{
"name": "Network Configuration",
"description": "Configure Network for DockRoute"
},
{
"name": "Storage Configuration",
"description": "Configure Storage for DockRoute"
},
{
"name": "Labels Configuration",
"description": "Configure Labels for DockRoute"
},
{
"name": "Resources Configuration",
"description": "Configure Resources for DockRoute"
}
],
"questions": [
{
"variable": "dockroute",
"label": "",
"group": "DockRoute Configuration",
"schema": {
"type": "dict",
"attrs": [
{
"variable": "owner_id",
"label": "Owner ID",
"description": "Ownership id written to companion TXT records.</br>\nLets several DockRoute instances share a zone safely.\n",
"schema": {
"type": "string",
"default": "default",
"required": true
}
},
{
"variable": "policy",
"label": "Sync Policy",
"description": "[sync] creates, updates and deletes owned records.</br>\n[upsert-only] never deletes.</br>\n[create-only] never updates or deletes.\n",
"schema": {
"type": "string",
"default": "sync",
"required": true,
"enum": [
{
"value": "sync",
"description": "Sync"
},
{
"value": "upsert-only",
"description": "Upsert Only"
},
{
"value": "create-only",
"description": "Create Only"
}
]
}
},
{
"variable": "default_target",
"label": "Default Record Target",
"description": "Fallback record value (IP or CNAME target) when a container omits the [dockroute.target] label.",
"schema": {
"type": "string",
"default": ""
}
},
{
"variable": "domain_filter",
"label": "Domain Filter",
"description": "Allowlist of DNS zones DockRoute may touch. Empty means all zones the token can see.",
"schema": {
"type": "list",
"default": [],
"items": [
{
"variable": "domain",
"label": "Domain",
"schema": {
"type": "string",
"default": "",
"required": true
}
}
]
}
},
{
"variable": "resync_seconds",
"label": "Resync Interval (seconds)",
"description": "Interval of the periodic full reconcile that backs up the event stream.",
"schema": {
"type": "int",
"default": 60,
"min": 5
}
},
{
"variable": "provider",
"label": "DNS Provider",
"description": "The DNS provider to reconcile against.</br>\n[log] is a dry run that only prints the desired state, no credentials needed.\n",
"schema": {
"type": "string",
"default": "log",
"required": true,
"enum": [
{
"value": "log",
"description": "Log (dry run)"
},
{
"value": "cloudflare",
"description": "Cloudflare"
}
]
}
},
{
"variable": "cloudflare_api_token",
"label": "Cloudflare API Token",
"description": "Needs Zone -> DNS -> Edit (plus Account -> Cloudflare Tunnel -> Edit for tunnel publishing).",
"schema": {
"type": "string",
"default": "",
"private": true,
"show_if": [
[
"provider",
"=",
"cloudflare"
]
]
}
},
{
"variable": "cloudflare_account_id",
"label": "Cloudflare Account ID",
"description": "Only needed for Cloudflare Tunnel publishing.",
"schema": {
"type": "string",
"default": "",
"show_if": [
[
"provider",
"=",
"cloudflare"
]
]
}
},
{
"variable": "cloudflare_tunnel_id",
"label": "Cloudflare Tunnel ID",
"description": "Only needed for Cloudflare Tunnel publishing. Uses an existing tunnel, you keep running cloudflared yourself.",
"schema": {
"type": "string",
"default": "",
"show_if": [
[
"provider",
"=",
"cloudflare"
]
]
}
},
{
"variable": "additional_envs",
"label": "Additional Environment Variables",
"schema": {
"type": "list",
"default": [],
"items": [
{
"variable": "env",
"label": "Environment Variable",
"schema": {
"type": "dict",
"attrs": [
{
"variable": "name",
"label": "Name",
"schema": {
"type": "string",
"required": true
}
},
{
"variable": "value",
"label": "Value",
"schema": {
"type": "string"
}
}
]
}
}
]
}
}
]
}
},
{
"variable": "run_as",
"label": "",
"group": "User and Group Configuration",
"schema": {
"type": "dict",
"attrs": [
{
"variable": "user",
"label": "User ID",
"description": "The user id that DockRoute files will be owned by.",
"schema": {
"type": "int",
"min": 568,
"default": 568,
"required": true
}
},
{
"variable": "group",
"label": "Group ID",
"description": "The group id that DockRoute files will be owned by.",
"schema": {
"type": "int",
"min": 568,
"default": 568,
"required": true
}
}
]
}
},
{
"variable": "network",
"label": "",
"group": "Network Configuration",
"schema": {
"type": "dict",
"attrs": [
{
"variable": "networks",
"label": "Networks",
"description": "The docker networks to join",
"schema": {
"type": "list",
"show_if": [
[
"host_network",
"=",
false
]
],
"default": [],
"items": [
{
"variable": "network",
"label": "Network",
"schema": {
"type": "dict",
"attrs": [
{
"variable": "name",
"label": "Name",
"description": "The name of the network to join.</br>\nThe network must already exist.\n",
"schema": {
"type": "string",
"default": "",
"required": true
}
},
{
"variable": "containers",
"label": "Containers",
"description": "The containers to add to this network.",
"schema": {
"type": "list",
"items": [
{
"variable": "container",
"label": "Container",
"schema": {
"type": "dict",
"attrs": [
{
"variable": "name",
"label": "Container Name",
"schema": {
"type": "string",
"required": true,
"enum": [
{
"value": "dockroute",
"description": "dockroute"
}
]
}
},
{
"variable": "config",
"label": "Container Network Configuration",
"schema": {
"type": "dict",
"attrs": [
{
"variable": "aliases",
"label": "Aliases (Optional)",
"description": "The network aliases to use for this container on this network.",
"schema": {
"type": "list",
"default": [],
"items": [
{
"variable": "alias",
"label": "Alias",
"schema": {
"type": "string"
}
}
]
}
},
{
"variable": "interface_name",
"label": "Interface Name (Optional)",
"description": "The network interface name to use for this network",
"schema": {
"type": "string"
}
},
{
"variable": "mac_address",
"label": "MAC Address (Optional)",
"description": "The MAC address to use for this network interface.",
"schema": {
"type": "string"
}
},
{
"variable": "ipv4_address",
"label": "IPv4 Address (Optional)",
"description": "The IPv4 address to use for this network interface.",
"schema": {
"type": "string"
}
},
{
"variable": "ipv6_address",
"label": "IPv6 Address (Optional)",
"description": "The IPv6 address to use for this network interface.",
"schema": {
"type": "string"
}
},
{
"variable": "gw_priority",
"label": "Gateway Priority (Optional)",
"description": "Indicates the priority of the gateway for this network interface.",
"schema": {
"type": "int",
"null": true
}
},
{
"variable": "priority",
"label": "Priority (Optional)",
"description": "Indicates in which order Compose connects the service\u2019s containers to its networks.",
"schema": {
"type": "int",
"null": true
}
}
]
}
}
]
}
}
]
}
}
]
}
}
]
}
},
{
"variable": "host_network",
"label": "Host Network",
"description": "Bind to the host network. It's recommended to keep this disabled.\n",
"schema": {
"type": "boolean",
"default": false
}
}
]
}
},
{
"variable": "storage",
"label": "",
"group": "Storage Configuration",
"schema": {
"type": "dict",
"attrs": [
{
"variable": "additional_storage",
"label": "Additional Storage",
"schema": {
"type": "list",
"default": [],
"items": [
{
"variable": "storage_entry",
"label": "Storage Entry",
"schema": {
"type": "dict",
"attrs": [
{
"variable": "type",
"label": "Type",
"description": "ixVolume: Is dataset created automatically by the system.</br>\nHost Path: Is a path that already exists on the system.</br>\nSMB Share: Is a SMB share that is mounted to as a volume.</br>\nNFS Share: Is a NFS share that is mounted to as a volume.\n",
"schema": {
"type": "string",
"required": true,
"default": "ix_volume",
"enum": [
{
"value": "host_path",
"description": "Host Path (Path that already exists on the system)"
},
{
"value": "ix_volume",
"description": "ixVolume (Dataset created automatically by the system)"
},
{
"value": "cifs",
"description": "SMB/CIFS Share (Mounts a volume to a SMB share)"
},
{
"value": "nfs",
"description": "NFS Share (Mounts a volume to a NFS share)"
}
]
}
},
{
"variable": "read_only",
"label": "Read Only",
"description": "Mount the volume as read only.",
"schema": {
"type": "boolean",
"default": false
}
},
{
"variable": "mount_path",
"label": "Mount Path",
"description": "The path inside the container to mount the storage.",
"schema": {
"type": "path",
"required": true
}
},
{
"variable": "host_path_config",
"label": "Host Path Configuration",
"schema": {
"type": "dict",
"show_if": [
[
"type",
"=",
"host_path"
]
],
"attrs": [
{
"variable": "acl_enable",
"label": "Enable ACL",
"description": "Enable ACL for the storage.",
"schema": {
"type": "boolean",
"default": false
}
},
{
"variable": "acl",
"label": "ACL Configuration",
"schema": {
"type": "dict",
"show_if": [
[
"acl_enable",
"=",
true
]
],
"attrs": [],
"$ref": [
"normalize/acl"
]
}
},
{
"variable": "path",
"label": "Host Path",
"description": "The host path to use for storage.",
"schema": {
"type": "hostpath",
"show_if": [
[
"acl_enable",
"=",
false
]
],
"required": true
}
}
]
}
},
{
"variable": "ix_volume_config",
"label": "ixVolume Configuration",
"description": "The configuration for the ixVolume dataset.",
"schema": {
"type": "dict",
"show_if": [
[
"type",
"=",
"ix_volume"
]
],
"$ref": [
"normalize/ix_volume"
],
"attrs": [
{
"variable": "acl_enable",
"label": "Enable ACL",
"description": "Enable ACL for the storage.",
"schema": {
"type": "boolean",
"default": false
}
},
{
"variable": "dataset_name",
"label": "Dataset Name",
"description": "The name of the dataset to use for storage.",
"schema": {
"type": "string",
"required": true,
"default": "storage_entry"
}
},
{
"variable": "acl_entries",
"label": "ACL Configuration",
"schema": {
"type": "dict",
"show_if": [
[
"acl_enable",
"=",
true
]
],
"attrs": [],
"$ref": [
"normalize/acl"
]
}
}
]
}
},
{
"variable": "cifs_config",
"label": "SMB Configuration",
"description": "The configuration for the SMB dataset.",
"schema": {
"type": "dict",
"show_if": [
[
"type",
"=",
"cifs"
]
],
"attrs": [
{
"variable": "server",
"label": "Server",
"description": "The server to mount the SMB share.",
"schema": {
"type": "string",
"required": true
}
},
{
"variable": "path",
"label": "Path",
"description": "The path to mount the SMB share.",
"schema": {
"type": "string",
"required": true
}
},
{
"variable": "username",
"label": "Username",
"description": "The username to use for the SMB share.",
"schema": {
"type": "string",
"required": true
}
},
{
"variable": "password",
"label": "Password",
"description": "The password to use for the SMB share.",
"schema": {
"type": "string",
"required": true,
"private": true
}
},
{
"variable": "domain",
"label": "Domain",
"description": "The domain to use for the SMB share.",
"schema": {
"type": "string"
}
}
]
}
},
{
"variable": "nfs_config",
"label": "NFS Configuration",
"description": "The configuration for the NFS dataset.",
"schema": {
"type": "dict",
"show_if": [
[
"type",
"=",
"nfs"
]
],
"attrs": [
{
"variable": "server",
"label": "Server",
"description": "The server to mount the NFS share.",
"schema": {
"type": "string",
"required": true
}
},
{
"variable": "path",
"label": "Path",
"description": "The path to mount the NFS share.",
"schema": {
"type": "string",
"required": true
}
}
]
}
}
]
}
}
]
}
}
]
}
},
{
"variable": "labels",
"label": "",
"group": "Labels Configuration",
"schema": {
"type": "list",
"default": [],
"items": [
{
"variable": "label",
"label": "Label",
"schema": {
"type": "dict",
"attrs": [
{
"variable": "key",
"label": "Key",
"schema": {
"type": "string",
"required": true
}
},
{
"variable": "value",
"label": "Value",
"schema": {
"type": "string",
"required": true
}
},
{
"variable": "containers",
"label": "Containers",
"description": "Containers where the label should be applied",
"schema": {
"type": "list",
"items": [
{
"variable": "container",
"label": "Container",
"schema": {
"type": "string",
"required": true,
"enum": [
{
"value": "dockroute",
"description": "dockroute"
}
]
}
}
]
}
}
]
}
}
]
}
},
{
"variable": "resources",
"label": "",
"group": "Resources Configuration",
"schema": {
"type": "dict",
"attrs": [
{
"variable": "limits",
"label": "Limits",
"schema": {
"type": "dict",
"attrs": [
{
"variable": "cpus",
"label": "CPUs",
"description": "CPUs limit for DockRoute.",
"schema": {
"type": "int",
"default": 2,
"required": true
}
},
{
"variable": "memory",
"label": "Memory (in MB)",
"description": "Memory limit for DockRoute.",
"schema": {
"type": "int",
"default": 4096,
"required": true
}
}
]
}
}
]
}
}
]
},
"readme": "<h1>DockRoute</h1> <p><a href=\"https://www.dockroute.dev\">DockRoute</a> is External-DNS for plain Docker hosts: it watches running containers, reads <code>dockroute.*</code> labels and reconciles the matching DNS records \u2014 and Cloudflare Tunnel routes \u2014 in a pluggable provider. TXT-based ownership means it never alters records it cannot prove it manages.</p>",
"changelog": null,
"chart_metadata": {
"app_version": "0.2.0",
"capabilities": [],
"categories": [
"networking"
],
"changelog_url": "https://github.com/Dockroute/Dockroute/releases",
"date_added": "2026-08-14",
"description": "DockRoute is External-DNS for plain Docker hosts. It watches running containers, reads dockroute.* labels and reconciles the matching DNS records and Cloudflare Tunnel routes in a pluggable provider, with TXT-based ownership so it never alters records it cannot prove it manages.",
"home": "https://www.dockroute.dev",
"host_mounts": [],
"icon": "https://media.sys.truenas.net/apps/dockroute/icons/icon.png",
"keywords": [
"dns",
"network",
"automation",
"cloudflare"
],
"lib_version": "2.3.11",
"lib_version_hash": "874636814efb275e5276ea9d709b7cd665fed42bb1d50328e853d9253a2e1229",
"maintainers": [
{
"email": "dev@truenas.com",
"name": "truenas",
"url": "https://www.truenas.com/"
}
],
"name": "dockroute",
"run_as_context": [
{
"description": "Container [dockroute] can run as any non-root user and group.",
"gid": 568,
"group_name": "Host group is [apps]",
"uid": 568,
"user_name": "Host user is [apps]"
}
],
"screenshots": [],
"sources": [
"https://apps.truenas.com/catalog/dockroute_community/",
"https://github.com/Dockroute/Dockroute",
"https://github.com/Dockroute/Dockroute/pkgs/container/dockroute",
"https://www.dockroute.dev"
],
"title": "DockRoute",
"train": "community",
"version": "1.0.0"
}
}
}Support, maintenance, and documentation for applications within the Community catalog is handled by the TrueNAS community. The TrueNAS Applications Market hosts but does not validate or maintain any linked resources associated with this app.
There currently aren’t any resources available for this application!
Please help the TrueNAS community add resources here or discuss this application in the TrueNAS Community forum.


