| Matthias Andreas Benkard | 761cb73 | 2020-01-25 05:52:34 +0100 | [diff] [blame] | 1 | quarkus.log.console.color = true | 
 | 2 |  | 
| Matthias Andreas Benkard | f5a24e4 | 2020-02-15 18:40:36 +0100 | [diff] [blame] | 3 | quarkus.log.level = INFO | 
 | 4 | #quarkus.log.category."org.hibernate".level = INFO | 
 | 5 | #quarkus.log.category."io.quarkus.oidc".level = FINEST | 
 | 6 | #quarkus.log.category."io.quarkus.vertx".level = FINEST | 
 | 7 | #quarkus.log.category."io.vertx.ext.auth.oauth2".level = FINEST | 
 | 8 | #quarkus.log.category."io.vertx.ext.jwt".level = FINEST | 
 | 9 |  | 
| Matthias Andreas Benkard | 04a50e6 | 2020-02-16 19:08:38 +0100 | [diff] [blame] | 10 | mulkcms.tag-base = hub.benkard.de | 
 | 11 |  | 
| Matthias Andreas Benkard | 2f0b370 | 2020-01-12 15:46:34 +0100 | [diff] [blame] | 12 | quarkus.datasource.driver = org.postgresql.Driver | 
 | 13 | quarkus.datasource.max-size = 8 | 
 | 14 | quarkus.datasource.min-size = 0 | 
 | 15 |  | 
 | 16 | #quarkus.flyway.migrate-at-start = true | 
 | 17 | #quarkus.flyway.baseline-on-migrate = true | 
 | 18 | #quarkus.flyway.baseline-version = 1 | 
 | 19 | #quarkus.flyway.schemas = public | 
 | 20 |  | 
| Matthias Andreas Benkard | 9222efa | 2020-01-24 19:11:24 +0100 | [diff] [blame] | 21 | %dev.quarkus.datasource.url = jdbc:postgresql://localhost:5432/mulkcms | 
| Matthias Andreas Benkard | 2f0b370 | 2020-01-12 15:46:34 +0100 | [diff] [blame] | 22 | %dev.quarkus.datasource.username = mulk | 
 | 23 | %dev.quarkus.datasource.password = | 
| Matthias Andreas Benkard | 9222efa | 2020-01-24 19:11:24 +0100 | [diff] [blame] | 24 | %dev.quarkus.hibernate-orm.log.sql = true | 
| Matthias Andreas Benkard | 24a2514 | 2020-01-24 13:25:54 +0100 | [diff] [blame] | 25 |  | 
| Matthias Andreas Benkard | 8b35def | 2020-01-31 19:13:01 +0100 | [diff] [blame] | 26 | %prod.quarkus.datasource.url = jdbc:postgresql://postgresql.system:5432/mulkcms | 
 | 27 | %prod.quarkus.datasource.username = mulkcms | 
 | 28 | %prod.quarkus.datasource.password = | 
 | 29 | %prod.quarkus.hibernate-orm.log.sql = false | 
 | 30 |  | 
| Matthias Andreas Benkard | c27d1cb | 2020-01-26 11:11:24 +0100 | [diff] [blame] | 31 | # Authentication | 
| Matthias Andreas Benkard | 24a2514 | 2020-01-24 13:25:54 +0100 | [diff] [blame] | 32 | quarkus.oidc.auth-server-url = https://login.benkard.de/auth/realms/master | 
 | 33 | quarkus.oidc.client-id = mulkcms | 
 | 34 | quarkus.oidc.application-type = web-app | 
| Matthias Andreas Benkard | 984a77b | 2020-02-02 15:41:51 +0100 | [diff] [blame] | 35 | quarkus.oidc.token.principal-claim = preferred_username | 
| Matthias Andreas Benkard | a6ac2a3 | 2020-02-15 18:40:20 +0100 | [diff] [blame] | 36 | quarkus.oidc.authentication.redirect-path = /oidc/login | 
| Matthias Andreas Benkard | c27d1cb | 2020-01-26 11:11:24 +0100 | [diff] [blame] | 37 |  | 
 | 38 | quarkus.security.users.file.enabled = false | 
 | 39 | quarkus.security.users.embedded.enabled = false | 
 | 40 |  | 
 | 41 | # Authentication (dev) | 
 | 42 | %dev.quarkus.oidc.enabled = false | 
 | 43 | %dev.quarkus.security.users.embedded.enabled = true | 
 | 44 | %dev.quarkus.security.users.embedded.plain-text = true | 
 | 45 | %dev.quarkus.security.users.embedded.users.mulk = mulk | 
 | 46 | %dev.quarkus.security.users.embedded.roles.mulk = Admin | 
| Matthias Andreas Benkard | 8b35def | 2020-01-31 19:13:01 +0100 | [diff] [blame] | 47 |  | 
| Matthias Andreas Benkard | 2a1383f | 2020-02-01 23:53:17 +0100 | [diff] [blame] | 48 | # Session cookies | 
 | 49 | quarkus.smallrye-jwt.enabled = false | 
 | 50 | mp.jwt.verify.publickey.location = META-INF/resources/jwt-signing-public-key.pem | 
 | 51 | mp.jwt.verify.issuer = https://matthias.benkard.de | 
 | 52 | smallrye.jwt.token.header = Cookie | 
 | 53 | smallrye.jwt.token.cookie = Bearer | 
 | 54 | smallrye.jwt.require.named-principal = true | 
 | 55 | %dev.mulkcms.jwt.keystore.file = example-keys.p12 | 
 | 56 | %prod.mulkcms.jwt.keystore.file = /secrets/keys.p12 | 
 | 57 | mulkcms.jwt.keystore.passphrase = 123456 | 
 | 58 | mulkcms.jwt.signing-key = MulkCMS-IdP | 
 | 59 | mulkcms.jwt.issuer = https://matthias.benkard.de | 
 | 60 | mulkcms.jwt.validity = P1D | 
 | 61 |  | 
| Matthias Andreas Benkard | 8b35def | 2020-01-31 19:13:01 +0100 | [diff] [blame] | 62 | # Deployment | 
 | 63 | docker.registry = docker.benkard.de | 
 | 64 |  | 
 | 65 | kubernetes.deployment.target = kubernetes | 
 | 66 | kubernetes.group = mulk | 
 | 67 | kubernetes.name = mulkcms2 | 
 | 68 | kubernetes.namespace = mulk | 
 | 69 | kubernetes.service-type = ClusterIP | 
 | 70 | kubernetes.image-pull-policy = Always | 
 | 71 | kubernetes.headless = true | 
 | 72 | kubernetes.service-account = default | 
 | 73 | kubernetes.env-vars[0].name = QUARKUS_DATASOURCE_PASSWORD | 
 | 74 | kubernetes.env-vars[0].secret = mulkcms2-secrets | 
 | 75 | kubernetes.env-vars[0].value = database-password | 
| Matthias Andreas Benkard | 2a1383f | 2020-02-01 23:53:17 +0100 | [diff] [blame] | 76 | kubernetes.env-vars[1].name = QUARKUS_OIDC_CREDENTIALS_SECRET | 
 | 77 | kubernetes.env-vars[1].secret = mulkcms2-secrets | 
 | 78 | kubernetes.env-vars[1].value = keycloak-secret | 
 | 79 | kubernetes.secret-volumes[0].volume-name = secrets | 
 | 80 | kubernetes.secret-volumes[0].secret-name = mulkcms2-secrets | 
 | 81 | kubernetes.secret-volumes[0].default-mode = 0444 | 
 | 82 | kubernetes.mounts[0].name = secrets | 
 | 83 | kubernetes.mounts[0].path = /secrets | 
 | 84 | kubernetes.mounts[0].read-only = true |