fix(config): ensure AnonymousUserToken is set
[arvados-formula.git] / pillar.example
index 3fc4b8bcd2ae71a58bd4014801ae6296cf54767b..b8acf4514745c336e45e6dfb0fd8ef516e05bcbd 100644 (file)
@@ -65,13 +65,12 @@ arvados:
       host: 127.0.0.1
       password: changeme_arvados
       user: arvados
-      encoding: en_US.utf8
-      client_encoding: UTF8
       # You can pass extra database connections parameters here,
       # which will be rendered as yaml.
       # extra_conn_params:
       #  sslmode: prefer
       #  verify-ca: false
+      #  client_encoding: UTF8
 
 
     tls:
@@ -82,19 +81,23 @@ arvados:
 
     ### TOKENS
     tokens:
-      system_root: changeme_system_root_token
-      management: changeme_management_token
-      rails_secret: changeme_rails_secret_token
-      anonymous_user: changeme_anonymous_user_token
+      # Secrets and tokens have to be +32 alphanumeric,
+      # it does not accept underscores or special characters.
+      # See https://dev.arvados.org/issues/17150
+      system_root: changemesystemroottoken
+      management: changememanagementtoken
+      # The AnonymousUserToken can be set here or in the
+      # USers dictionary below. The latter will be used if set.
+      anonymous_user: changemeanonymoususertoken
 
     ### KEYS
     secrets:
-      blob_signing_key: changeme_blob_signing_key
-      workbench_secret_key: changeme_workbench_secret_key
-      dispatcher_access_key: changeme_dispatcher_access_key
-      dispatcher_secret_key: changeme_dispatcher_secret_key
-      keep_access_key: changeme_keep_access_key
-      keep_secret_key: changeme_keep_secret_key
+      blob_signing_key: changemeblobsigningkey
+      workbench_secret_key: changemeworkbenchsecretkey
+      dispatcher_access_key: changemedispatcheraccesskey
+      dispatcher_secret_key: changemedispatchersecretkey
+      keep_access_key: changemekeepaccesskey
+      keep_secret_key: changemekeepsecretkey
 
     AuditLogs:
       Section_to_ignore: