{%- endif %}
postgresconf: |-
listen_addresses = '*' # listen on all interfaces
- #ssl = on
- #ssl_cert_file = '/etc/ssl/certs/arvados-snakeoil-cert.pem'
- #ssl_key_file = '/etc/ssl/private/arvados-snakeoil-cert.key'
+ # If you want to enable communications' encryption to the DB server,
+ # uncomment these entries
+ # ssl = on
+ # ssl_cert_file = '/etc/ssl/certs/arvados-snakeoil-cert.pem'
+ # ssl_key_file = '/etc/ssl/private/arvados-snakeoil-cert.key'
acls:
- ['local', 'all', 'postgres', 'peer']
- ['local', 'all', 'all', 'peer']
users:
__CLUSTER___arvados:
ensure: present
- password: __DATABASE_PASSWORD__
+ password: "__DATABASE_PASSWORD__"
# tablespaces:
# arvados_tablespace: