blob: 833aa45dd341bcac8e6a6fbab23c2b5419570b1b [file] [log] [blame]
Matthias Andreas Benkard761cb732020-01-25 05:52:34 +01001quarkus.log.console.color = true
2
Matthias Andreas Benkard2f0b3702020-01-12 15:46:34 +01003quarkus.datasource.driver = org.postgresql.Driver
4quarkus.datasource.max-size = 8
5quarkus.datasource.min-size = 0
6
7#quarkus.flyway.migrate-at-start = true
8#quarkus.flyway.baseline-on-migrate = true
9#quarkus.flyway.baseline-version = 1
10#quarkus.flyway.schemas = public
11
Matthias Andreas Benkard9222efa2020-01-24 19:11:24 +010012%dev.quarkus.datasource.url = jdbc:postgresql://localhost:5432/mulkcms
Matthias Andreas Benkard2f0b3702020-01-12 15:46:34 +010013%dev.quarkus.datasource.username = mulk
14%dev.quarkus.datasource.password =
Matthias Andreas Benkard9222efa2020-01-24 19:11:24 +010015%dev.quarkus.hibernate-orm.log.sql = true
Matthias Andreas Benkard24a25142020-01-24 13:25:54 +010016
Matthias Andreas Benkard8b35def2020-01-31 19:13:01 +010017%prod.quarkus.datasource.url = jdbc:postgresql://postgresql.system:5432/mulkcms
18%prod.quarkus.datasource.username = mulkcms
19%prod.quarkus.datasource.password =
20%prod.quarkus.hibernate-orm.log.sql = false
21
Matthias Andreas Benkardc27d1cb2020-01-26 11:11:24 +010022# Authentication
Matthias Andreas Benkard24a25142020-01-24 13:25:54 +010023quarkus.oidc.auth-server-url = https://login.benkard.de/auth/realms/master
24quarkus.oidc.client-id = mulkcms
25quarkus.oidc.application-type = web-app
Matthias Andreas Benkardc27d1cb2020-01-26 11:11:24 +010026
27quarkus.security.users.file.enabled = false
28quarkus.security.users.embedded.enabled = false
29
30# Authentication (dev)
31%dev.quarkus.oidc.enabled = false
32%dev.quarkus.security.users.embedded.enabled = true
33%dev.quarkus.security.users.embedded.plain-text = true
34%dev.quarkus.security.users.embedded.users.mulk = mulk
35%dev.quarkus.security.users.embedded.roles.mulk = Admin
Matthias Andreas Benkard8b35def2020-01-31 19:13:01 +010036
Matthias Andreas Benkard2a1383f2020-02-01 23:53:17 +010037# Session cookies
38quarkus.smallrye-jwt.enabled = false
39mp.jwt.verify.publickey.location = META-INF/resources/jwt-signing-public-key.pem
40mp.jwt.verify.issuer = https://matthias.benkard.de
41smallrye.jwt.token.header = Cookie
42smallrye.jwt.token.cookie = Bearer
43smallrye.jwt.require.named-principal = true
44%dev.mulkcms.jwt.keystore.file = example-keys.p12
45%prod.mulkcms.jwt.keystore.file = /secrets/keys.p12
46mulkcms.jwt.keystore.passphrase = 123456
47mulkcms.jwt.signing-key = MulkCMS-IdP
48mulkcms.jwt.issuer = https://matthias.benkard.de
49mulkcms.jwt.validity = P1D
50
Matthias Andreas Benkard8b35def2020-01-31 19:13:01 +010051# Deployment
52docker.registry = docker.benkard.de
53
54kubernetes.deployment.target = kubernetes
55kubernetes.group = mulk
56kubernetes.name = mulkcms2
57kubernetes.namespace = mulk
58kubernetes.service-type = ClusterIP
59kubernetes.image-pull-policy = Always
60kubernetes.headless = true
61kubernetes.service-account = default
62kubernetes.env-vars[0].name = QUARKUS_DATASOURCE_PASSWORD
63kubernetes.env-vars[0].secret = mulkcms2-secrets
64kubernetes.env-vars[0].value = database-password
Matthias Andreas Benkard2a1383f2020-02-01 23:53:17 +010065kubernetes.env-vars[1].name = QUARKUS_OIDC_CREDENTIALS_SECRET
66kubernetes.env-vars[1].secret = mulkcms2-secrets
67kubernetes.env-vars[1].value = keycloak-secret
68kubernetes.secret-volumes[0].volume-name = secrets
69kubernetes.secret-volumes[0].secret-name = mulkcms2-secrets
70kubernetes.secret-volumes[0].default-mode = 0444
71kubernetes.mounts[0].name = secrets
72kubernetes.mounts[0].path = /secrets
73kubernetes.mounts[0].read-only = true