blob: b90cc9e937eaa5c2f4293621a00104662dc43717 [file] [log] [blame]
Matthias Andreas Benkard761cb732020-01-25 05:52:34 +01001quarkus.log.console.color = true
2
Matthias Andreas Benkardf5a24e42020-02-15 18:40:36 +01003quarkus.log.level = INFO
4#quarkus.log.category."org.hibernate".level = INFO
5#quarkus.log.category."io.quarkus.oidc".level = FINEST
6#quarkus.log.category."io.quarkus.vertx".level = FINEST
7#quarkus.log.category."io.vertx.ext.auth.oauth2".level = FINEST
8#quarkus.log.category."io.vertx.ext.jwt".level = FINEST
9
Matthias Andreas Benkard04a50e62020-02-16 19:08:38 +010010mulkcms.tag-base = hub.benkard.de
Matthias Andreas Benkard3f8a26c2020-03-16 11:13:54 +010011mulkcms.bookmarks.default-max-results = 25
Matthias Andreas Benkard04a50e62020-02-16 19:08:38 +010012
Matthias Andreas Benkard2f0b3702020-01-12 15:46:34 +010013quarkus.datasource.driver = org.postgresql.Driver
14quarkus.datasource.max-size = 8
15quarkus.datasource.min-size = 0
16
17#quarkus.flyway.migrate-at-start = true
18#quarkus.flyway.baseline-on-migrate = true
19#quarkus.flyway.baseline-version = 1
20#quarkus.flyway.schemas = public
21
Matthias Andreas Benkard9222efa2020-01-24 19:11:24 +010022%dev.quarkus.datasource.url = jdbc:postgresql://localhost:5432/mulkcms
Matthias Andreas Benkard2f0b3702020-01-12 15:46:34 +010023%dev.quarkus.datasource.username = mulk
24%dev.quarkus.datasource.password =
Matthias Andreas Benkard9222efa2020-01-24 19:11:24 +010025%dev.quarkus.hibernate-orm.log.sql = true
Matthias Andreas Benkard24a25142020-01-24 13:25:54 +010026
Matthias Andreas Benkard8b35def2020-01-31 19:13:01 +010027%prod.quarkus.datasource.url = jdbc:postgresql://postgresql.system:5432/mulkcms
28%prod.quarkus.datasource.username = mulkcms
29%prod.quarkus.datasource.password =
30%prod.quarkus.hibernate-orm.log.sql = false
31
Matthias Andreas Benkardc27d1cb2020-01-26 11:11:24 +010032# Authentication
Matthias Andreas Benkard24a25142020-01-24 13:25:54 +010033quarkus.oidc.auth-server-url = https://login.benkard.de/auth/realms/master
34quarkus.oidc.client-id = mulkcms
35quarkus.oidc.application-type = web-app
Matthias Andreas Benkard984a77b2020-02-02 15:41:51 +010036quarkus.oidc.token.principal-claim = preferred_username
Matthias Andreas Benkard551f50c2020-03-15 12:34:07 +010037#quarkus.oidc.authentication.redirect-path = /oidc/login
Matthias Andreas Benkardc27d1cb2020-01-26 11:11:24 +010038
39quarkus.security.users.file.enabled = false
40quarkus.security.users.embedded.enabled = false
41
42# Authentication (dev)
43%dev.quarkus.oidc.enabled = false
44%dev.quarkus.security.users.embedded.enabled = true
45%dev.quarkus.security.users.embedded.plain-text = true
46%dev.quarkus.security.users.embedded.users.mulk = mulk
47%dev.quarkus.security.users.embedded.roles.mulk = Admin
Matthias Andreas Benkard8b35def2020-01-31 19:13:01 +010048
Matthias Andreas Benkard2a1383f2020-02-01 23:53:17 +010049# Session cookies
50quarkus.smallrye-jwt.enabled = false
51mp.jwt.verify.publickey.location = META-INF/resources/jwt-signing-public-key.pem
52mp.jwt.verify.issuer = https://matthias.benkard.de
53smallrye.jwt.token.header = Cookie
54smallrye.jwt.token.cookie = Bearer
55smallrye.jwt.require.named-principal = true
56%dev.mulkcms.jwt.keystore.file = example-keys.p12
57%prod.mulkcms.jwt.keystore.file = /secrets/keys.p12
58mulkcms.jwt.keystore.passphrase = 123456
59mulkcms.jwt.signing-key = MulkCMS-IdP
60mulkcms.jwt.issuer = https://matthias.benkard.de
61mulkcms.jwt.validity = P1D
62
Matthias Andreas Benkard8b35def2020-01-31 19:13:01 +010063# Deployment
64docker.registry = docker.benkard.de
65
66kubernetes.deployment.target = kubernetes
67kubernetes.group = mulk
68kubernetes.name = mulkcms2
69kubernetes.namespace = mulk
70kubernetes.service-type = ClusterIP
71kubernetes.image-pull-policy = Always
72kubernetes.headless = true
73kubernetes.service-account = default
74kubernetes.env-vars[0].name = QUARKUS_DATASOURCE_PASSWORD
75kubernetes.env-vars[0].secret = mulkcms2-secrets
76kubernetes.env-vars[0].value = database-password
Matthias Andreas Benkard2a1383f2020-02-01 23:53:17 +010077kubernetes.env-vars[1].name = QUARKUS_OIDC_CREDENTIALS_SECRET
78kubernetes.env-vars[1].secret = mulkcms2-secrets
79kubernetes.env-vars[1].value = keycloak-secret
80kubernetes.secret-volumes[0].volume-name = secrets
81kubernetes.secret-volumes[0].secret-name = mulkcms2-secrets
82kubernetes.secret-volumes[0].default-mode = 0444
83kubernetes.mounts[0].name = secrets
84kubernetes.mounts[0].path = /secrets
85kubernetes.mounts[0].read-only = true