X-Git-Url: http://git.onelab.eu/?a=blobdiff_plain;f=plc_config.xml;h=567babe5c545b1524ee55edfe9e494209cc20116;hb=6d79b6f68d7ab17fa65be6c92698cb51075e43e3;hp=aea09e09f78fdc2fb104b8456f78ccd223552bd0;hpb=3744d8581747239659f62a85013ec6248ef5b733;p=myplc.git diff --git a/plc_config.xml b/plc_config.xml index aea09e0..567babe 100644 --- a/plc_config.xml +++ b/plc_config.xml @@ -6,7 +6,7 @@ Default PLC configuration file Mark Huang Copyright (C) 2006 The Trustees of Princeton University -$Id: plc_config.xml,v 1.12 2006/04/28 20:15:00 mlhuang Exp $ +$Id: plc_config.xml,v 1.16 2006/10/27 20:26:49 mlhuang Exp $ --> @@ -104,6 +104,66 @@ $Id: plc_config.xml,v 1.12 2006/04/28 20:15:00 mlhuang Exp $ + + Management and Slice Authority + These variables control how your site interacts + with other PlanetLab sites as a Management Authority (MA) and/or + Slice Authority (SA). + + + + Namespace + test + The namespace of your MA/SA. This should be a + globally unique value assigned by PlanetLab + Central. + + + + SSL Private Key + /etc/planetlab/ma_sa_ssl.key + The SSL private key used for signing documents + with the signature of your MA/SA. If non-existent, one will + be generated. + + + + SSL Public Certificate + /etc/planetlab/ma_sa_ssl.crt + The corresponding SSL public certificate. By + default, this certificate is self-signed. You may replace + the certificate later with one signed by the PLC root + CA. + + + + Root CA SSL Public Certificate + /etc/planetlab/ma_sa_ca_ssl.crt + If applicable, the certificate of the PLC root + CA. If your MA/SA certificate is self-signed, then this file + is the same as your MA/SA certificate. + + + + Root CA SSL Public Key + /etc/planetlab/ma_sa_ca_ssl.pub + If applicable, the public key of the PLC root + CA. If your MA/SA certificate is self-signed, then this file + is the same as your MA/SA public key. + + + + API Certificate + /etc/planetlab/ma_sa_api.xml + The API Certificate is your MA/SA public key + embedded in a digitally signed XML document. By default, + this document is self-signed. You may replace this + certificate later with one signed by the PLC root + CA. + + + + Network Network environment. @@ -230,7 +290,7 @@ $Id: plc_config.xml,v 1.12 2006/04/28 20:15:00 mlhuang Exp $ Database Name - planetlab3 + planetlab4 The name of the database to access. @@ -286,13 +346,9 @@ $Id: plc_config.xml,v 1.12 2006/04/28 20:15:00 mlhuang Exp $ Port - 80 + 443 The TCP port number through which the API - should be accessed. Warning: SSL (port 443) access is not - fully supported by the website code yet. We recommend that - port 80 be used for now and that the API server either run - on the same machine as the web server, or that they both be - on a secure wired network. + should be accessed. @@ -332,29 +388,30 @@ $Id: plc_config.xml,v 1.12 2006/04/28 20:15:00 mlhuang Exp $ be downloaded, or its contents replaced by a file upload, but the actual shouldn't need to be changed. --> - - SSL Certificate - /etc/planetlab/api_ssl.crt - The signed SSL certificate to use for HTTPS - access. If not specified or non-existent, a self-signed - certificate will be generated. - - - SSL Key + SSL Private Key /etc/planetlab/api_ssl.key - The corresponding SSL private key used for - signing the certificate, and for signing slice tickets. If - not specified or non-existent, one will be + The SSL private key to use for encrypting HTTPS + traffic. If non-existent, one will be generated. - - SSL Key - /etc/planetlab/api_ssl.pub - The corresponding SSL public key. If not - specified or non-existent, one will be - generated. + + SSL Public Certificate + /etc/planetlab/api_ssl.crt + The corresponding SSL public certificate. By + default, this certificate is self-signed. You may replace + the certificate later with one signed by a root + CA. + + + + Root CA SSL Public Certificate + /etc/planetlab/api_ca_ssl.crt + The certificate of the root CA, if any, that + signed your server certificate. If your server certificate is + self-signed, then this file is the same as your server + certificate. @@ -412,20 +469,30 @@ $Id: plc_config.xml,v 1.12 2006/04/28 20:15:00 mlhuang Exp $ be downloaded, or its contents replaced by a file upload, but the actual shouldn't need to be changed. --> + + SSL Private Key + /etc/planetlab/www_ssl.key + The SSL private key to use for encrypting HTTPS + traffic. If non-existent, one will be + generated. + + - SSL Certificate + SSL Public Certificate /etc/planetlab/www_ssl.crt - The signed SSL certificate to use for HTTPS - access. If not specified or non-existent, a self-signed - certificate will be generated. + The corresponding SSL public certificate for + the HTTP server. By default, this certificate is + self-signed. You may replace the certificate later with one + signed by a root CA. - - SSL Key - /etc/planetlab/www_ssl.key - The corresponding SSL private key. If not - specified or non-existent, one will be - generated. + + Root CA SSL Public Certificate + /etc/planetlab/www_ca_ssl.crt + The certificate of the root CA, if any, that + signed your server certificate. If your server certificate is + self-signed, then this file is the same as your server + certificate. @@ -481,20 +548,29 @@ $Id: plc_config.xml,v 1.12 2006/04/28 20:15:00 mlhuang Exp $ be downloaded, or its contents replaced by a file upload, but the actual shouldn't need to be changed. --> - - SSL Certificate + + SSL Private Key + /etc/planetlab/boot_ssl.key + The SSL private key to use for encrypting HTTPS + traffic. + + + + SSL Public Certificate /etc/planetlab/boot_ssl.crt - The signed SSL certificate to use for HTTPS - access. If not specified, or non-existent a self-signed - certificate will be generated. + The corresponding SSL public certificate for + the HTTP server. By default, this certificate is + self-signed. You may replace the certificate later with one + signed by a root CA. - - SSL Key - /etc/planetlab/boot_ssl.key - The corresponding SSL private key. If not - specified or non-existent, one will be - generated. + + Root CA SSL Public Certificate + /etc/planetlab/boot_ca_ssl.crt + The certificate of the root CA, if any, that + signed your server certificate. If your server certificate is + self-signed, then this file is the same as your server + certificate. @@ -554,9 +630,6 @@ $Id: plc_config.xml,v 1.12 2006/04/28 20:15:00 mlhuang Exp $ python - - plcapilib - postgresql postgresql-server @@ -570,7 +643,8 @@ $Id: plc_config.xml,v 1.12 2006/04/28 20:15:00 mlhuang Exp $ access the DB directly. --> php php-pgsql - php-xmlrpc + + gd @@ -580,7 +654,9 @@ $Id: plc_config.xml,v 1.12 2006/04/28 20:15:00 mlhuang Exp $ mod_python + PLCAPI PyXML + PlanetLabAuth xmlsec1