X-Git-Url: https://git.arvados.org/arvados.git/blobdiff_plain/b161916d6b97e8b7205670ecc972a590749dd93c..4e26d30a7cb1b788c117f983e133e303c08c780f:/tools/salt-install/config_examples/multi_host/aws/pillars/arvados.sls diff --git a/tools/salt-install/config_examples/multi_host/aws/pillars/arvados.sls b/tools/salt-install/config_examples/multi_host/aws/pillars/arvados.sls index 2e85be7905..cacc6a0a11 100644 --- a/tools/salt-install/config_examples/multi_host/aws/pillars/arvados.sls +++ b/tools/salt-install/config_examples/multi_host/aws/pillars/arvados.sls @@ -1,5 +1,3 @@ -# -*- coding: utf-8 -*- -# vim: ft=yaml --- # Copyright (C) The Arvados Authors. All rights reserved. # @@ -74,26 +72,19 @@ arvados: host: __DATABASE_INT_IP__ password: "__DATABASE_PASSWORD__" user: __CLUSTER___arvados - extra_conn_params: - client_encoding: UTF8 - # Centos7 does not enable SSL by default, so we disable - # it here just for testing of the formula purposes only. - # You should not do this in production, and should - # configure Postgres certificates correctly - {%- if grains.os_family in ('RedHat',) %} - sslmode: disable - {%- endif %} + encoding: en_US.utf8 + client_encoding: UTF8 tls: # certificate: '' # key: '' - # When using arvados-snakeoil certs set insecure: true + # required to test with arvados-snakeoil certs insecure: false resources: virtual_machines: shell: - name: shell + name: shell.__CLUSTER__.__DOMAIN__ backend: __SHELL_INT_IP__ port: 4200 @@ -127,16 +118,17 @@ arvados: Driver: ec2 DriverParameters: Region: FIXME - EBSVolumeType: gp2 + EBSVolumeType: gp3 AdminUsername: FIXME ### This SG should allow SSH from the dispatcher to the compute nodes SecurityGroupIDs: ['sg-FIXMEFIXMEFIXMEFI'] SubnetID: subnet-FIXMEFIXMEFIXMEFI + IAMInstanceProfile: __CLUSTER__-keepstore-00-iam-role DispatchPrivateKey: | -----BEGIN OPENSSH PRIVATE KEY----- Read https://doc.arvados.org/install/crunch2-cloud/install-compute-node.html#sshkeypair for details on how to create this key. - FIXMEFIXMEFIXMEFI + FIXMEFIXMEFIXME replace this with your dispatcher ssh private key -----END OPENSSH PRIVATE KEY----- ### VOLUMES @@ -148,16 +140,10 @@ arvados: Replication: 2 Driver: S3 DriverParameters: + UseAWSS3v2Driver: true Bucket: __CLUSTER__-nyw5e-000000000000000-volume IAMRole: __CLUSTER__-keepstore-00-iam-role Region: FIXME - __CLUSTER__-nyw5e-0000000000000001: - Replication: 2 - Driver: S3 - DriverParameters: - Bucket: __CLUSTER__-nyw5e-000000000000001-volume - IAMRole: __CLUSTER__-keepstore-01-iam-role - Region: FIXME Users: NewUsersAreActive: true @@ -175,7 +161,7 @@ arvados: 'http://__CONTROLLER_INT_IP__:9006': {} Keepbalance: InternalURLs: - 'http://localhost:9005': {} + 'http://__CONTROLLER_INT_IP__:9005': {} Keepproxy: ExternalURL: 'https://keep.__CLUSTER__.__DOMAIN__:__KEEP_EXT_SSL_PORT__' InternalURLs: @@ -183,7 +169,6 @@ arvados: Keepstore: InternalURLs: 'http://__KEEPSTORE0_INT_IP__:25107': {} - 'http://__KEEPSTORE1_INT_IP__:25107': {} RailsAPI: InternalURLs: 'http://localhost:8004': {}