Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <?xml version='1.0' encoding='UTF-8'?>
- <host xmlns="urn:jboss:domain:8.0" name="designer">
- <extensions>
- <extension module="org.jboss.as.jmx"/>
- <extension module="org.wildfly.extension.core-management"/>
- <extension module="org.wildfly.extension.elytron"/>
- </extensions>
- <vault>
- <vault-option name="KEYSTORE_URL" value="/opt/code/iap-server/test/ComponentTestFramework/plugin/generated/ct-domain/configuration/vault/vault.keystore"/>
- <vault-option name="KEYSTORE_PASSWORD" value="MASK-hRMy4EcKjRE4nRuKEskjz"/>
- <vault-option name="KEYSTORE_ALIAS" value="vault"/>
- <vault-option name="SALT" value="sugarsal"/>
- <vault-option name="ITERATION_COUNT" value="22"/>
- <vault-option name="ENC_FILE_DIR" value="/opt/code/iap-server/test/ComponentTestFramework/plugin/generated/ct-domain/configuration/vault"/>
- </vault>
- <management>
- <security-realms>
- <security-realm name="ManagementRealm">
- <authentication>
- <properties path="mgmt-users.properties" relative-to="jboss.domain.config.dir"/>
- </authentication>
- </security-realm>
- <security-realm name="ApplicationRealm">
- <server-identities>
- <ssl>
- <keystore path="application.keystore" relative-to="jboss.domain.config.dir" keystore-password="password" alias="server" key-password="password" generate-self-signed-certificate-host="localhost"/>
- </ssl>
- </server-identities>
- <authentication>
- <jaas name="other"/>
- </authentication>
- </security-realm>
- <security-realm name="M2MApplicationRealm">
- <authentication>
- <jaas name="M2MApplication"/>
- </authentication>
- </security-realm>
- <security-realm name="ProvisioningRealm">
- <authentication>
- <jaas name="Provisioning"/>
- </authentication>
- </security-realm>
- <security-realm name="M2MProvisioningRealm">
- <authentication>
- <properties path="m2m-provisioning-users.properties" relative-to="jboss.domain.config.dir"/>
- </authentication>
- </security-realm>
- </security-realms>
- <management-interfaces>
- <native-interface security-realm="ManagementRealm">
- <socket interface="oam" port="${jboss.management.native.port:9999}"/>
- </native-interface>
- <http-interface security-realm="ManagementRealm">
- <http-upgrade enabled="true"/>
- <socket interface="oam" port="${jboss.management.http.port:9990}"/>
- </http-interface>
- </management-interfaces>
- </management>
- <domain-controller>
- <local/>
- </domain-controller>
- <interfaces>
- <interface name="oam">
- <inet-address value="10.0.2.4"/>
- </interface>
- </interfaces>
- <jvms>
- <jvm name="default">
- <heap size="1024m" max-size="1024m"/>
- <jvm-options>
- <option value="-XX:MetaspaceSize=256"/>
- <option value="-XX:MaxMetaspaceSize=256"/>
- <option value="-server"/>
- </jvm-options>
- </jvm>
- </jvms>
- <servers>
- <server name="ct-server-1" group="ct-servergroup" auto-start="false">
- <system-properties>
- <property name="jboss.tx.node.id" value="tx_ct_server_1"/>
- </system-properties>
- <interfaces>
- <interface name="scontrol">
- <inet-address value="127.0.0.1"/>
- </interface>
- <interface name="oam">
- <inet-address value="10.0.2.4"/>
- </interface>
- <interface name="internal">
- <inet-address value="127.0.0.1"/>
- </interface>
- </interfaces>
- <jvm name="default">
- <heap size="1024m" max-size="1024m"/>
- <jvm-options>
- <option value="-Djava.util.Arrays.useLegacyMergeSort=true"/>
- <option value="-Dorg.apache.jasper.compiler.Parser.STRICT_QUOTE_ESCAPING=false"/>
- <option value="-Dorg.apache.tomcat.util.buf.UDecoder.ALLOW_ENCODED_SLASH=true"/>
- <option value="-Dorg.apache.catalina.connector.CoyoteAdapter.ALLOW_BACKSLASH=true"/>
- <option value="-XX:+UseG1GC"/>
- <option value="-XX:G1HeapRegionSize=8"/>
- <option value="-XX:MaxGCPauseMillis=250"/>
- <option value="-XX:G1ReservePercent=30"/>
- <option value="-XX:+HeapDumpOnOutOfMemoryError"/>
- <option value="-XX:+UnlockDiagnosticVMOptions"/>
- <option value="-XX:MaxTenuringThreshold=15"/>
- <option value="-XX:SurvivorRatio=8"/>
- <option value="-XX:+DisableExplicitGC"/>
- <option value="-XX:+UseBiasedLocking"/>
- <option value="-XX:+AggressiveOpts"/>
- <option value="-XX:+UseTLAB"/>
- <option value="-XX:+UseCompressedOops"/>
- <option value="-XX:MetaspaceSize=1024m"/>
- <option value="-XX:MaxMetaspaceSize=2048m"/>
- <option value="-Djboss.bind.address=10.0.2.4"/>
- <option value="-Djboss.bind.address.management=10.0.2.4"/>
- <option value="-DMSMW_SCONTROL_HTTP_ADDR=127.0.0.1"/>
- <option value="-DMSMW_SCONTROL_HTTP_PORT=38080"/>
- <option value="-DMSMW_OAM_HTTP_ADDR=10.0.2.4"/>
- <option value="-DMSMW_OAM_HTTP_PORT=8080"/>
- <option value="-DMSMW_INTERNAL_HTTP_ADDR=127.0.0.1"/>
- <option value="-DMSMW_INTERNAL_HTTP_PORT=18080"/>
- <option value="-Djacorb.interop.null_string_encoding=on"/>
- <option value="-Djacorb.interop.lax_boolean_encoding=on"/>
- <option value="-Djacorb.retries=0"/>
- <option value="-Djacorb.retry_interval=500"/>
- <option value="-Djacorb.connection.client.connect_timeout=30000"/>
- <option value="-Djacorb.connection.client.pending_reply_timeout=20000"/>
- <option value="-Djacorb.connection.request.write_timeout=5000"/>
- <option value="-Xrunjdwp:transport=dt_socket,address=8787,server=y,suspend=n"/>
- </jvm-options>
- </jvm>
- <socket-bindings socket-binding-group="traffic-sockets" port-offset="0"/>
- </server>
- </servers>
- <profile>
- <subsystem xmlns="urn:jboss:domain:core-management:1.0"/>
- <subsystem xmlns="urn:wildfly:elytron:4.0" final-providers="combined-providers" disallowed-providers="OracleUcrypto">
- <providers>
- <aggregate-providers name="combined-providers">
- <providers name="elytron"/>
- <providers name="openssl"/>
- </aggregate-providers>
- <provider-loader name="elytron" module="org.wildfly.security.elytron"/>
- <provider-loader name="openssl" module="org.wildfly.openssl"/>
- </providers>
- <audit-logging>
- <file-audit-log name="local-audit" path="audit.log" relative-to="jboss.domain.log.dir" format="JSON"/>
- </audit-logging>
- <security-domains>
- <security-domain name="ManagementDomain" default-realm="ManagementRealm" permission-mapper="default-permission-mapper">
- <realm name="ManagementRealm" role-decoder="groups-to-roles"/>
- <realm name="local" role-mapper="super-user-mapper"/>
- </security-domain>
- </security-domains>
- <security-realms>
- <identity-realm name="local" identity="$local"/>
- <properties-realm name="ManagementRealm">
- <users-properties path="mgmt-users.properties" relative-to="jboss.domain.config.dir" digest-realm-name="ManagementRealm"/>
- <groups-properties path="mgmt-groups.properties" relative-to="jboss.domain.config.dir"/>
- </properties-realm>
- </security-realms>
- <mappers>
- <simple-permission-mapper name="default-permission-mapper" mapping-mode="first">
- <permission-mapping>
- <principal name="anonymous"/>
- <permission-set name="default-permissions"/>
- </permission-mapping>
- <permission-mapping match-all="true">
- <permission-set name="login-permission"/>
- <permission-set name="default-permissions"/>
- </permission-mapping>
- </simple-permission-mapper>
- <constant-realm-mapper name="local" realm-name="local"/>
- <simple-role-decoder name="groups-to-roles" attribute="groups"/>
- <constant-role-mapper name="super-user-mapper">
- <role name="SuperUser"/>
- </constant-role-mapper>
- </mappers>
- <permission-sets>
- <permission-set name="login-permission">
- <permission class-name="org.wildfly.security.auth.permission.LoginPermission"/>
- </permission-set>
- <permission-set name="default-permissions"/>
- </permission-sets>
- <http>
- <http-authentication-factory name="management-http-authentication" security-domain="ManagementDomain" http-server-mechanism-factory="global">
- <mechanism-configuration>
- <mechanism mechanism-name="BASIC">
- <mechanism-realm realm-name="Management Realm"/>
- </mechanism>
- </mechanism-configuration>
- </http-authentication-factory>
- <provider-http-server-mechanism-factory name="global"/>
- </http>
- <sasl>
- <sasl-authentication-factory name="management-sasl-authentication" sasl-server-factory="configured" security-domain="ManagementDomain">
- <mechanism-configuration>
- <mechanism mechanism-name="JBOSS-LOCAL-USER" realm-mapper="local"/>
- <mechanism mechanism-name="DIGEST-MD5">
- <mechanism-realm realm-name="ManagementRealm"/>
- </mechanism>
- </mechanism-configuration>
- </sasl-authentication-factory>
- <configurable-sasl-server-factory name="configured" sasl-server-factory="elytron">
- <properties>
- <property name="wildfly.sasl.local-user.default-user" value="$local"/>
- </properties>
- </configurable-sasl-server-factory>
- <mechanism-provider-filtering-sasl-server-factory name="elytron" sasl-server-factory="global">
- <filters>
- <filter provider-name="WildFlyElytron"/>
- </filters>
- </mechanism-provider-filtering-sasl-server-factory>
- <provider-sasl-server-factory name="global"/>
- </sasl>
- </subsystem>
- <subsystem xmlns="urn:jboss:domain:jmx:1.3">
- <expose-resolved-model/>
- <expose-expression-model/>
- <remoting-connector/>
- </subsystem>
- </profile>
- </host>
Add Comment
Please, Sign In to add comment