blob: d1143d6f2fb2fe5cf1f9371d8177190bd22456d6 [file] [log] [blame]
Petr Jediný1ff6f562017-08-09 14:38:09 +02001barbican:
2 server:
Petr Jedinýdd6387a2017-08-01 15:50:17 +02003 enabled: true
Petr Jediný1ff6f562017-08-09 14:38:09 +02004 version: ocata
5 host_href: ''
6 is_proxied: true
Oleg Iurchenko622ef902017-12-13 01:40:04 +02007 dogtag_admin_cert:
8 engine: manual
9 key: 'some dogtag key'
Petr Jediný1ff6f562017-08-09 14:38:09 +020010 plugin:
11 simple_crypto:
12 kek: "YWJjZGVmZ2hpamtsbW5vcHFyc3R1dnd4eXoxMjM0NTY="
13 p11_crypto:
14 library_path: '/usr/lib/libCryptoki2_64.so'
15 login: 'mypassword'
16 mkek_label: 'an_mkek'
17 mkek_length: 32
18 hmac_label: 'my_hmac_label'
19 kmip:
20 username: 'admin'
21 password: 'password'
22 host: localhost
23 port: 5696
24 keyfile: '/path/to/certs/cert.key'
25 certfile: '/path/to/certs/cert.crt'
26 ca_certs: '/path/to/certs/LocalCA.crt'
27 dogtag:
28 pem_path: '/etc/barbican/kra_admin_cert.pem'
29 dogtag_host: localhost
Petr Jedinýdcc90f82017-10-02 13:46:10 +020030 dogtag_port: 8443
Petr Jediný1ff6f562017-08-09 14:38:09 +020031 nss_db_path: '/etc/barbican/alias'
32 nss_db_path_ca: '/etc/barbican/alias-ca'
33 nss_password: 'password123'
34 simple_cmc_profile: 'caOtherCert'
35 ca_expiration_time: 1
36 plugin_working_dir: '/etc/barbican/dogtag'
37 store:
38 software:
39 crypto_plugin: simple_crypto
40 store_plugin: store_crypto
41 global_default: True
42 kmip:
43 store_plugin: kmip_plugin
44 dogtag:
Petr Jedinýdcc90f82017-10-02 13:46:10 +020045 store_plugin: dogtag_crypto
Petr Jediný1ff6f562017-08-09 14:38:09 +020046 pkcs11:
47 store_plugin: store_crypto
48 crypto_plugin: p11_crypto
Petr Jedinýdd6387a2017-08-01 15:50:17 +020049 database:
Petr Jediný1ff6f562017-08-09 14:38:09 +020050 engine: "mysql+pymysql"
51 host: 10.0.106.20
Petr Jedinýdd6387a2017-08-01 15:50:17 +020052 port: 3306
Petr Jediný1ff6f562017-08-09 14:38:09 +020053 name: barbican
54 user: barbican
Petr Jedinýdd6387a2017-08-01 15:50:17 +020055 password: password
Petr Jediný1ff6f562017-08-09 14:38:09 +020056 bind:
57 address: 10.0.106.20
58 port: 9311
59 admin_port: 9312
Petr Jedinýdd6387a2017-08-01 15:50:17 +020060 identity:
61 engine: keystone
Petr Jediný1ff6f562017-08-09 14:38:09 +020062 host: 10.0.106.20
Petr Jedinýdd6387a2017-08-01 15:50:17 +020063 port: 35357
Petr Jediný1ff6f562017-08-09 14:38:09 +020064 domain: default
Petr Jedinýdd6387a2017-08-01 15:50:17 +020065 tenant: service
Petr Jediný1ff6f562017-08-09 14:38:09 +020066 user: barbican
67 password: password
Petr Jedinýdd6387a2017-08-01 15:50:17 +020068 message_queue:
69 engine: rabbitmq
Petr Jedinýdd6387a2017-08-01 15:50:17 +020070 user: openstack
71 password: password
72 virtual_host: '/openstack'
Petr Jedinýdd6387a2017-08-01 15:50:17 +020073 members:
Petr Jediný1ff6f562017-08-09 14:38:09 +020074 - host: 10.10.10.10
75 port: 5672
76 - host: 10.10.10.11
77 port: 5672
78 - host: 10.10.10.12
79 port: 5672
80 cache:
81 members:
82 - host: 10.10.10.10
83 port: 11211
84 - host: 10.10.10.11
85 port: 11211
86 - host: 10.10.10.12
Petr Jedinýdd6387a2017-08-01 15:50:17 +020087 port: 11211
sgarbuza9931392018-07-19 10:44:20 +030088 logging:
89 log_appender: false
90 log_handlers:
91 watchedfile:
Michael Polenchuk38646112018-12-18 15:53:07 +040092 enabled: false
sgarbuza9931392018-07-19 10:44:20 +030093 fluentd:
94 enabled: false
95 ossyslog:
96 enabled: false
Ivan Berezovskiycadbc132020-01-24 13:53:16 +040097 policy:
98 creator: 'role:creator'
99 audit: 'role:audit'
Oleksandr Pidrepnyiad898b22019-05-13 16:53:21 +0300100 configmap:
101 DEFAULT:
102 max_allowed_secret_in_bytes: 10000
103 max_allowed_request_size_in_bytes: 1000000
104 sql_pool_max_overflow: 10
105 default_limit_paging: 10
106 max_limit_paging: 100
107 quotas:
108 quota_secrets: -1
109 quota_orders: -1
110 quota_containers: -1
111 quota_consumers: -1
112 quota_cas: -1
Vasyl Saienko88bc10b2018-03-03 04:22:03 +0200113apache:
114 server:
115 enabled: true
116 default_mpm: event
117 mpm:
118 prefork:
119 enabled: true
120 servers:
121 start: 5
122 spare:
123 min: 2
124 max: 10
125 max_requests: 0
126 max_clients: 20
127 limit: 20
128 site:
129 barbican:
130 enabled: false
131 available: true
132 type: wsgi
133 name: barbican
134 wsgi:
135 daemon_process: barbican-api
136 processes: 3
137 threads: 10
138 user: barbican
139 group: barbican
140 display_name: '%{GROUP}'
141 script_alias: '/ /usr/bin/barbican-wsgi-api'
142 application_group: '%{GLOBAL}'
143 authorization: 'On'
144 host:
145 address: 127.0.0.1
146 name: 127.0.0.1
147 port: 9311
148 barbican_admin:
149 enabled: false
150 available: true
151 type: wsgi
152 name: barbican_admin
153 wsgi:
154 daemon_process: barbican-api-admin
155 processes: 3
156 threads: 10
157 user: barbican
158 group: barbican
159 display_name: '%{GROUP}'
160 script_alias: '/ /usr/bin/barbican-wsgi-api'
161 application_group: '%{GLOBAL}'
162 authorization: 'On'
163 host:
164 address: 127.0.0.1
165 name: 127.0.0.1
166 port: 9312