mirror of
https://github.com/gravitational/teleport.git
synced 2026-09-24 16:17:11 +08:00
71 lines
1.7 KiB
YAML
71 lines
1.7 KiB
YAML
log:
|
|
output: console
|
|
severity: INFO
|
|
|
|
data_dir: /var/lib/teleport # directory where teleport stores it's state (SSH keys and database data)
|
|
|
|
hostname: teleport.localhost.localdomain # SSH hostname of this node
|
|
|
|
ssh:
|
|
# enable simple ssh endpoint
|
|
enabled: true
|
|
limiter:
|
|
max_connections: 10000
|
|
rates:
|
|
- period: 20s
|
|
average: 3
|
|
burst: 3
|
|
- period: 1s
|
|
average: 5
|
|
burst: 3
|
|
labels:
|
|
name: node1
|
|
description: "first node"
|
|
label-commands:
|
|
date:
|
|
period: 10s
|
|
command: ["date"]
|
|
os:
|
|
period: 5s
|
|
command: ["uname", "-r"]
|
|
|
|
reverse_tunnel:
|
|
# this node will try to connect to remote web proxy and establish reverse SSH tunnel
|
|
# so web proxy can access all the nodes in the cluster through this tunnel
|
|
enabled: true
|
|
dial_addr: tcp://localhost:33006
|
|
|
|
auth:
|
|
# auth is authentication and authorization server for users and hosts
|
|
# it acts like SSH user CA authority and host CA authority
|
|
enabled: true
|
|
host_authority_domain: localhost
|
|
|
|
keys_backend:
|
|
type: bolt
|
|
params: '{"path": "/var/lib/teleport/teleport.auth.db"}'
|
|
|
|
events_backend:
|
|
type: bolt
|
|
params: '{"path": "/var/lib/teleport/teleport.event.db"}'
|
|
|
|
records_backend:
|
|
type: bolt
|
|
params: '{"path": "/var/lib/teleport/records.db"}'
|
|
|
|
proxy:
|
|
# proxy starts web and ssh proxy that allow inbound connections from remote nodes
|
|
enabled: true
|
|
assets_dir: assets/web # directory with javascript, html and css for web
|
|
reverse_tunnel_listen_addr: tcp://localhost:33006
|
|
limiter:
|
|
max_connections: 2
|
|
rates:
|
|
- period: 50s
|
|
average: 100
|
|
burst: 100
|
|
- period: 1s
|
|
average: 500
|
|
burst: 300
|
|
hangouts_enabled: true
|
|
hangouts_listen_addr: tcp://localhost:33009 |