1 # -*- coding: utf-8 -*-
4 # Copyright (C) The Arvados Authors. All rights reserved.
6 # SPDX-License-Identifier: AGPL-3.0
8 # The variables commented out are the default values that the formula uses.
9 # The uncommented values are REQUIRED values. If you don't set them, running
10 # this formula will fail.
13 version: '__VERSION__'
14 ## It makes little sense to disable this flag, but you can, if you want :)
15 # use_upstream_repo: true
17 ## Repo URL is built with grains values. If desired, it can be completely
18 ## overwritten with the pillar parameter 'repo_url'
20 # humanname: Arvados Official Repository
25 ## api, workbench and shell require some gems, so you need to make sure ruby
26 ## and deps are installed in order to install and compile the gems.
27 ## We default to `false` in these two variables as it's expected you already
28 ## manage OS packages with some other tool and you don't want us messing up
31 ## We set these to `true` here for testing purposes.
32 ## They both default to `false`.
34 manage_gems_deps: true
42 # - libcurl4-gnutls-dev
52 # file: /etc/arvados/config.yml
55 ## If you're intalling any of the rails apps (api, workbench), the group
56 ## should be set to that of the web server, usually `www-data`
60 ### ARVADOS CLUSTER CONFIG
66 # max concurrent connections per arvados server daemon
67 # connection_pool_max: 32
68 name: __CLUSTER___arvados
70 password: "__DATABASE_PASSWORD__"
71 user: __CLUSTER___arvados
74 # Centos7 does not enable SSL by default, so we disable
75 # it here just for testing of the formula purposes only.
76 # You should not do this in production, and should
77 # configure Postgres certificates correctly
78 {%- if grains.os_family in ('RedHat',) %}
85 # When using arvados-snakeoil certs set insecure: true
91 name: __HOSTNAME_EXT__
97 system_root: __SYSTEM_ROOT_TOKEN__
98 management: __MANAGEMENT_TOKEN__
99 anonymous_user: __ANONYMOUS_USER_TOKEN__
103 blob_signing_key: __BLOB_SIGNING_KEY__
104 workbench_secret_key: __WORKBENCH_SECRET_KEY__
111 Email: __INITIAL_USER_EMAIL__
112 Password: __INITIAL_USER_PASSWORD__
115 ## This should usually match all your `keepstore` instances
117 # the volume name will be composed with
118 # <cluster>-nyw5e-<volume>
119 __CLUSTER__-nyw5e-000000000000000:
121 'http://__IP_INT__:25107':
129 LocalKeepBlobBuffersPerVCPU: 0
132 NewUsersAreActive: true
133 AutoAdminFirstUser: true
134 AutoSetupNewUsers: true
135 AutoSetupNewUsersWithRepository: true
139 ExternalURL: 'https://__HOSTNAME_EXT__:__CONTROLLER_EXT_SSL_PORT__'
141 'http://__IP_INT__:8003': {}
144 'http://__IP_INT__:9005': {}
146 ExternalURL: 'https://__HOSTNAME_EXT__:__KEEP_EXT_SSL_PORT__'
148 'http://__IP_INT__:25100': {}
151 'http://__IP_INT__:25107': {}
154 'http://__IP_INT__:8004': {}
156 ExternalURL: 'https://__HOSTNAME_EXT__:__KEEPWEB_EXT_SSL_PORT__'
158 'http://__IP_INT__:9003': {}
160 ExternalURL: 'https://__HOSTNAME_EXT__:__KEEPWEB_EXT_SSL_PORT__'
162 ExternalURL: 'https://__HOSTNAME_EXT__:__WEBSHELL_EXT_SSL_PORT__'
164 ExternalURL: 'wss://__HOSTNAME_EXT__:__WEBSOCKET_EXT_SSL_PORT__/websocket'
166 'http://__IP_INT__:8005': {}
168 ExternalURL: 'https://__HOSTNAME_EXT__:__WORKBENCH1_EXT_SSL_PORT__'
170 ExternalURL: 'https://__HOSTNAME_EXT__:__WORKBENCH2_EXT_SSL_PORT__'