Files
teleport/examples/embedded.yaml
T
2016-02-16 15:51:33 +03:00

71 lines
1.7 KiB
YAML

log:
output: console
severity: INFO
data_dir: /var/lib/teleport # directory where teleport stores it's state (SSH keys and database data)
hostname: teleport.localhost.localdomain # SSH hostname of this node
ssh:
# enable simple ssh endpoint
enabled: true
limiter:
max_connections: 10000
rates:
- period: 20s
average: 3
burst: 3
- period: 1s
average: 5
burst: 3
labels:
name: node1
description: "first node"
label-commands:
date:
period: 10s
command: ["date"]
os:
period: 5s
command: ["uname", "-r"]
reverse_tunnel:
# this node will try to connect to remote web proxy and establish reverse SSH tunnel
# so web proxy can access all the nodes in the cluster through this tunnel
enabled: true
dial_addr: tcp://localhost:33006
auth:
# auth is authentication and authorization server for users and hosts
# it acts like SSH user CA authority and host CA authority
enabled: true
host_authority_domain: localhost
keys_backend:
type: bolt
params: '{"path": "/var/lib/teleport/teleport.auth.db"}'
events_backend:
type: bolt
params: '{"path": "/var/lib/teleport/teleport.event.db"}'
records_backend:
type: bolt
params: '{"path": "/var/lib/teleport/records.db"}'
proxy:
# proxy starts web and ssh proxy that allow inbound connections from remote nodes
enabled: true
assets_dir: assets/web # directory with javascript, html and css for web
reverse_tunnel_listen_addr: tcp://localhost:33006
limiter:
max_connections: 2
rates:
- period: 50s
average: 100
burst: 100
- period: 1s
average: 500
burst: 300
hangouts_enabled: true
hangouts_listen_addr: tcp://localhost:33009