-
Notifications
You must be signed in to change notification settings - Fork 30
Expand file tree
/
Copy pathproxy.yaml
More file actions
241 lines (240 loc) · 6.25 KB
/
proxy.yaml
File metadata and controls
241 lines (240 loc) · 6.25 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
# Autogenerated
# Filename: proxy.yaml
loglevel: error
debug:
addr: 127.0.0.1:9205
token: ""
pprof: false
zpages: false
http:
addr: 0.0.0.0:9200
root: /
tls_cert: /root/.opencloud/proxy/server.crt
tls_key: /root/.opencloud/proxy/server.key
tls: true
reva:
address: eu.opencloud.api.gateway
tls:
mode: ""
cacert: ""
grpc_client_tls: null
role_quotas: {}
policies:
- name: default
routes:
- endpoint: /
service: eu.opencloud.web.web
unprotected: true
skip_x_access_token: false
- endpoint: /.well-known/ocm
service: eu.opencloud.web.ocm
unprotected: true
skip_x_access_token: false
- endpoint: /.well-known/webfinger
service: eu.opencloud.web.webfinger
unprotected: true
skip_x_access_token: false
- endpoint: /.well-known/openid-configuration
service: eu.opencloud.web.idp
unprotected: true
skip_x_access_token: false
- endpoint: /branding/logo
service: eu.opencloud.web.web
skip_x_access_token: false
- endpoint: /konnect/
service: eu.opencloud.web.idp
unprotected: true
skip_x_access_token: false
- endpoint: /signin/
service: eu.opencloud.web.idp
unprotected: true
skip_x_access_token: false
- endpoint: /archiver
service: eu.opencloud.web.frontend
skip_x_access_token: false
- endpoint: /ocs/v2.php/apps/notifications/api/v1/notifications/sse
service: eu.opencloud.sse.sse
skip_x_access_token: false
- endpoint: /ocs/v2.php/apps/notifications/api/v1/notifications
service: eu.opencloud.web.userlog
skip_x_access_token: false
- type: regex
endpoint: /ocs/v[12].php/cloud/user/signing-key
service: eu.opencloud.web.ocs
skip_x_access_token: false
- type: regex
endpoint: /ocs/v[12].php/config
service: eu.opencloud.web.frontend
unprotected: true
skip_x_access_token: false
- endpoint: /sciencemesh/federations
service: eu.opencloud.web.ocm
unprotected: true
skip_x_access_token: false
- endpoint: /sciencemesh/discover
service: eu.opencloud.web.ocm
unprotected: true
skip_x_access_token: false
- endpoint: /sciencemesh/
service: eu.opencloud.web.ocm
skip_x_access_token: false
- endpoint: /ocm/
service: eu.opencloud.web.ocm
skip_x_access_token: false
- endpoint: /ocs/
service: eu.opencloud.web.frontend
skip_x_access_token: false
- type: query
endpoint: /remote.php/?preview=1
service: eu.opencloud.web.webdav
skip_x_access_token: false
- type: regex
method: REPORT
endpoint: (/remote.php)?/(web)?dav
service: eu.opencloud.web.webdav
skip_x_access_token: false
- type: query
endpoint: /dav/?preview=1
service: eu.opencloud.web.webdav
skip_x_access_token: false
- type: query
endpoint: /webdav/?preview=1
service: eu.opencloud.web.webdav
skip_x_access_token: false
- endpoint: /remote.php/
service: eu.opencloud.web.frontend
skip_x_access_token: false
- endpoint: /dav/
service: eu.opencloud.web.frontend
skip_x_access_token: false
- endpoint: /webdav/
service: eu.opencloud.web.frontend
skip_x_access_token: false
- endpoint: /status
service: eu.opencloud.web.frontend
unprotected: true
skip_x_access_token: false
- endpoint: /status.php
service: eu.opencloud.web.frontend
unprotected: true
skip_x_access_token: false
- endpoint: /index.php/
service: eu.opencloud.web.frontend
skip_x_access_token: false
- endpoint: /apps/
service: eu.opencloud.web.frontend
skip_x_access_token: false
- endpoint: /data
service: eu.opencloud.web.frontend
unprotected: true
skip_x_access_token: false
- endpoint: /app/list
service: eu.opencloud.web.frontend
unprotected: true
skip_x_access_token: false
- endpoint: /app/
service: eu.opencloud.web.frontend
skip_x_access_token: false
- endpoint: /graph/v1beta1/extensions/org.libregraph/activities
service: eu.opencloud.web.activitylog
skip_x_access_token: false
- endpoint: /graph/v1.0/invitations
service: eu.opencloud.web.invitations
skip_x_access_token: false
- endpoint: /graph/
service: eu.opencloud.web.graph
skip_x_access_token: false
- endpoint: /api/v0/settings
service: eu.opencloud.web.settings
skip_x_access_token: false
- endpoint: /auth-app/tokens
service: eu.opencloud.web.auth-app
skip_x_access_token: false
- endpoint: /wopi
service: eu.opencloud.web.collaboration
unprotected: true
skip_x_access_token: true
additional_policies: []
oidc:
issuer: https://localhost:9200
insecure: false
access_token_verify_method: jwt
skip_user_info: false
user_info_cache:
store: memory
addresses:
- 127.0.0.1:9233
database: cache-userinfo
table: ""
ttl: 10s
disable_persistence: false
username: ""
password: ""
jwks:
refresh_interval: 60
refresh_timeout: 10
refresh_limit: 60
refresh_unknown_kid: true
rewrite_well_known: false
service_account:
service_account_id: ""
service_account_secret: ""
role_assignment:
driver: default
oidc_role_mapper:
role_claim: roles
role_mapping:
- role_name: admin
claim_value: opencloudAdmin
- role_name: spaceadmin
claim_value: opencloudSpaceAdmin
- role_name: user
claim_value: opencloudUser
- role_name: user-light
claim_value: opencloudGuest
policy_selector:
static:
policy: default
claims: null
regex: null
pre_signed_url:
allowed_http_methods:
- GET
enabled: true
signing_keys:
store: nats-js-kv
addresses:
- 127.0.0.1:9233
ttl: 12h0m0s
disable_persistence: true
username: ""
password: ""
account_backend: cs3
user_oidc_claim: preferred_username
user_cs3_claim: username
tenant_oidc_claim: ""
machine_auth_api_key: ""
auto_provision_accounts: false
auto_provision_claims:
username: preferred_username
email: email
display_name: name
groups: groups
enable_basic_auth: false
insecure_backends: false
backend_https_cacert: ""
auth_middleware:
credentials_by_user_agent: {}
allow_app_auth: true
policies_middleware:
query: ""
csp_config_file_location: ""
csp_config_file_override_location: ""
events:
endpoint: 127.0.0.1:9233
cluster: opencloud-cluster
tls_insecure: false
tls_root_ca_certificate: ""
enable_tls: false
username: ""
password: ""