Skip to content

log-cache-cf-auth-proxy job from log-cache/2.3.1

Github source: 421e5c5 or master branch

Properties

cache_expiration_interval

The expiration lifetime assigned to new cache entries

Default
60s

cc

ca_cert

The CA for the internal api

common_name

The CN for the CA cert

external_cert

The TLS cert for the auth proxy

external_key

The TLS key for the auth proxy

health_port

The port for the auth proxy to bind a health endpoint

Default
6065

proxy_ca_cert

The CA used to sign the certificates that the reverse proxy uses to talk to the gateway

proxy_port

The port for the cf-auth-proxy to listen on

security_event_log

When provided, the path to a file where security events will be logged

skip_cert_verify

Whether to accept invalid certs

Default
false

token_pruning_interval

The interval at which expired tokens are purged from the cache

Default
60s

uaa

ca_cert

The CA for internal UAA api

client_id

The client id to authenticate to UAA

client_secret

The client secret to authenticate to UAA

internal_addr

The endpoint used for the internal UAA api

Templates

Templates are rendered and placed onto corresponding instances during the deployment process. This job's templates will be placed into /var/vcap/jobs/log-cache-cf-auth-proxy/ directory (learn more).

  • config/bpm.yml (from bpm.yml.erb)
  • config/certs/cc_ca.crt (from cc_ca.crt.erb)
  • config/certs/external.crt (from external.crt.erb)
  • config/certs/external.key (from external.key.erb)
  • config/certs/proxy_ca.crt (from proxy_ca.crt.erb)
  • config/certs/uaa_ca.crt (from uaa_ca.crt.erb)
  • config/metric_port.yml (from metric_port.yml.erb)

Packages

Packages are compiled and placed onto corresponding instances during the deployment process. Packages will be placed into /var/vcap/packages/ directory.