mirror of
https://github.com/gravitational/teleport.git
synced 2026-09-24 16:17:11 +08:00
40 lines
1.2 KiB
YAML
40 lines
1.2 KiB
YAML
# this is a proxy server and auth server in the origanization vendor.io
|
|
# that accept inbound connections from remote teleport servers from
|
|
# remote organizations e.g. gravitational.io
|
|
log:
|
|
output: console
|
|
severity: INFO
|
|
|
|
data_dir: /var/lib/teleport/proxy # directory where teleport stores it's state (SSH keys and database data)
|
|
|
|
hostname: proxy.vendor.io # SSH hostname of this node
|
|
auth_servers:
|
|
- tcp://127.0.0.1:33009
|
|
|
|
auth:
|
|
# auth is authentication and authorization server for users and hosts
|
|
# it acts like SSH user CA authority and host CA authority
|
|
enabled: true
|
|
host_authority_domain: vendor.io
|
|
|
|
http_addr: unix:///tmp/teleport.proxy.auth.sock
|
|
ssh_addr: tcp://127.0.0.1:33009
|
|
|
|
keys_backend:
|
|
type: bolt
|
|
params: '{"path": "/var/lib/teleport/proxy/teleport.auth.db"}'
|
|
|
|
events_backend:
|
|
type: bolt
|
|
params: '{"path": "/var/lib/teleport/proxy/teleport.event.db"}'
|
|
|
|
records_backend:
|
|
type: bolt
|
|
params: '{"path": "/var/lib/teleport/proxy/records.db"}'
|
|
|
|
proxy:
|
|
# proxy starts web and ssh proxy that allow inbound connections from remote nodes
|
|
enabled: true
|
|
assets_dir: assets/web # directory with javascript, html and css for web
|
|
reverse_tunnel_listen_addr: tcp://proxy.vendor.io:33006
|