# LiveKit SFU config (non-secret — the API key/secret are injected via the LIVEKIT_KEYS env var # in docker-compose, sourced from .env, so nothing secret lives in git). # # Media plane: LiveKit needs UDP reachable from clients (NPM only proxies the HTTP/WS signaling on # 7880). The UDP range + TCP fallback below are published as HOST ports in docker-compose. On the # VPS, if the server sits behind NAT and can't auto-detect its public IP, set rtc.node_ip to it. port: 7880 # signaling (HTTP/WS) — NPM proxies wss://livekit.bizgaze.com -> here rtc: tcp_port: 7881 # WebRTC-over-TCP fallback (restrictive networks) port_range_start: 50000 # WebRTC media (UDP) — keep in sync with the published range in compose port_range_end: 50100 use_external_ip: true # discover the public IP for ICE candidates (VPS). Or set node_ip below. # node_ip: 118.95.33.89 # uncomment + set if use_external_ip can't detect the public IP # Embedded TURN over TLS on 443 helps clients on locked-down networks. Left off by default because # NPM already owns 443; enable via a dedicated hostname + NPM stream if you need it (see DEPLOY.md). turn: enabled: false logging: level: info