blob: 330f409d8a6b5229f2576ee3b4852af58b790026 [file] [log] [blame]
Petr Jediný1ff6f562017-08-09 14:38:09 +02001barbican:
2 server:
Petr Jedinýdd6387a2017-08-01 15:50:17 +02003 enabled: true
Petr Jediný1ff6f562017-08-09 14:38:09 +02004 version: ocata
5 host_href: ''
6 is_proxied: true
Oleg Iurchenko622ef902017-12-13 01:40:04 +02007 dogtag_admin_cert:
8 engine: manual
9 key: 'some dogtag key'
Petr Jediný1ff6f562017-08-09 14:38:09 +020010 plugin:
11 simple_crypto:
12 kek: "YWJjZGVmZ2hpamtsbW5vcHFyc3R1dnd4eXoxMjM0NTY="
13 p11_crypto:
14 library_path: '/usr/lib/libCryptoki2_64.so'
15 login: 'mypassword'
16 mkek_label: 'an_mkek'
17 mkek_length: 32
18 hmac_label: 'my_hmac_label'
19 kmip:
20 username: 'admin'
21 password: 'password'
22 host: localhost
23 port: 5696
24 keyfile: '/path/to/certs/cert.key'
25 certfile: '/path/to/certs/cert.crt'
26 ca_certs: '/path/to/certs/LocalCA.crt'
27 dogtag:
28 pem_path: '/etc/barbican/kra_admin_cert.pem'
29 dogtag_host: localhost
Petr Jedinýdcc90f82017-10-02 13:46:10 +020030 dogtag_port: 8443
Petr Jediný1ff6f562017-08-09 14:38:09 +020031 nss_db_path: '/etc/barbican/alias'
32 nss_db_path_ca: '/etc/barbican/alias-ca'
33 nss_password: 'password123'
34 simple_cmc_profile: 'caOtherCert'
35 ca_expiration_time: 1
36 plugin_working_dir: '/etc/barbican/dogtag'
37 store:
38 software:
39 crypto_plugin: simple_crypto
40 store_plugin: store_crypto
41 global_default: True
42 kmip:
43 store_plugin: kmip_plugin
44 dogtag:
Petr Jedinýdcc90f82017-10-02 13:46:10 +020045 store_plugin: dogtag_crypto
Petr Jediný1ff6f562017-08-09 14:38:09 +020046 pkcs11:
47 store_plugin: store_crypto
48 crypto_plugin: p11_crypto
Petr Jedinýdd6387a2017-08-01 15:50:17 +020049 database:
Petr Jediný1ff6f562017-08-09 14:38:09 +020050 engine: "mysql+pymysql"
51 host: 10.0.106.20
Petr Jedinýdd6387a2017-08-01 15:50:17 +020052 port: 3306
Petr Jediný1ff6f562017-08-09 14:38:09 +020053 name: barbican
54 user: barbican
Petr Jedinýdd6387a2017-08-01 15:50:17 +020055 password: password
Petr Jediný1ff6f562017-08-09 14:38:09 +020056 bind:
57 address: 10.0.106.20
58 port: 9311
59 admin_port: 9312
Petr Jedinýdd6387a2017-08-01 15:50:17 +020060 identity:
61 engine: keystone
Petr Jediný1ff6f562017-08-09 14:38:09 +020062 host: 10.0.106.20
Petr Jedinýdd6387a2017-08-01 15:50:17 +020063 port: 35357
Petr Jediný1ff6f562017-08-09 14:38:09 +020064 domain: default
Petr Jedinýdd6387a2017-08-01 15:50:17 +020065 tenant: service
Petr Jediný1ff6f562017-08-09 14:38:09 +020066 user: barbican
67 password: password
Petr Jedinýdd6387a2017-08-01 15:50:17 +020068 message_queue:
69 engine: rabbitmq
Petr Jedinýdd6387a2017-08-01 15:50:17 +020070 user: openstack
71 password: password
72 virtual_host: '/openstack'
Petr Jedinýdd6387a2017-08-01 15:50:17 +020073 members:
Petr Jediný1ff6f562017-08-09 14:38:09 +020074 - host: 10.10.10.10
75 port: 5672
76 - host: 10.10.10.11
77 port: 5672
78 - host: 10.10.10.12
79 port: 5672
80 cache:
81 members:
82 - host: 10.10.10.10
83 port: 11211
84 - host: 10.10.10.11
85 port: 11211
86 - host: 10.10.10.12
Petr Jedinýdd6387a2017-08-01 15:50:17 +020087 port: 11211
Vasyl Saienko88bc10b2018-03-03 04:22:03 +020088apache:
89 server:
90 enabled: true
91 default_mpm: event
92 mpm:
93 prefork:
94 enabled: true
95 servers:
96 start: 5
97 spare:
98 min: 2
99 max: 10
100 max_requests: 0
101 max_clients: 20
102 limit: 20
103 site:
104 barbican:
105 enabled: false
106 available: true
107 type: wsgi
108 name: barbican
109 wsgi:
110 daemon_process: barbican-api
111 processes: 3
112 threads: 10
113 user: barbican
114 group: barbican
115 display_name: '%{GROUP}'
116 script_alias: '/ /usr/bin/barbican-wsgi-api'
117 application_group: '%{GLOBAL}'
118 authorization: 'On'
119 host:
120 address: 127.0.0.1
121 name: 127.0.0.1
122 port: 9311
123 barbican_admin:
124 enabled: false
125 available: true
126 type: wsgi
127 name: barbican_admin
128 wsgi:
129 daemon_process: barbican-api-admin
130 processes: 3
131 threads: 10
132 user: barbican
133 group: barbican
134 display_name: '%{GROUP}'
135 script_alias: '/ /usr/bin/barbican-wsgi-api'
136 application_group: '%{GLOBAL}'
137 authorization: 'On'
138 host:
139 address: 127.0.0.1
140 name: 127.0.0.1
141 port: 9312