|
| 1 | +<?xml version="1.0" encoding="UTF-8"?> |
| 2 | +<!-- |
| 3 | + Licensed to the Apache Software Foundation (ASF) under one or more |
| 4 | + contributor license agreements. See the NOTICE file distributed with |
| 5 | + this work for additional information regarding copyright ownership. |
| 6 | + The ASF licenses this file to You under the Apache License, Version 2.0 |
| 7 | + (the "License"); you may not use this file except in compliance with |
| 8 | + the License. You may obtain a copy of the License at |
| 9 | +
|
| 10 | + http://www.apache.org/licenses/LICENSE-2.0 |
| 11 | +
|
| 12 | + Unless required by applicable law or agreed to in writing, software |
| 13 | + distributed under the License is distributed on an "AS IS" BASIS, |
| 14 | + WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. |
| 15 | + See the License for the specific language governing permissions and |
| 16 | + limitations under the License. |
| 17 | +--> |
| 18 | +<!-- Note: A "Server" is not itself a "Container", so you may not |
| 19 | + define subcomponents such as "Valves" at this level. |
| 20 | + Documentation at /docs/config/server.html |
| 21 | + --> |
| 22 | +<Server port="8005" shutdown="SHUTDOWN"> |
| 23 | + <Listener className="org.apache.catalina.startup.VersionLoggerListener" /> |
| 24 | + <!-- Security listener. Documentation at /docs/config/listeners.html |
| 25 | + <Listener className="org.apache.catalina.security.SecurityListener" /> |
| 26 | + --> |
| 27 | + <!--APR library loader. Documentation at /docs/apr.html --> |
| 28 | + <Listener className="org.apache.catalina.core.AprLifecycleListener" SSLEngine="on" /> |
| 29 | + <!-- Prevent memory leaks due to use of particular java/javax APIs--> |
| 30 | + <Listener className="org.apache.catalina.core.JreMemoryLeakPreventionListener" /> |
| 31 | + <Listener className="org.apache.catalina.mbeans.GlobalResourcesLifecycleListener" /> |
| 32 | + <Listener className="org.apache.catalina.core.ThreadLocalLeakPreventionListener" /> |
| 33 | + |
| 34 | + <!-- Global JNDI resources |
| 35 | + Documentation at /docs/jndi-resources-howto.html |
| 36 | + --> |
| 37 | + <GlobalNamingResources> |
| 38 | + <!-- Editable user database that can also be used by |
| 39 | + UserDatabaseRealm to authenticate users |
| 40 | + --> |
| 41 | + <Resource type="javax.sql.DataSource" |
| 42 | + name="jdbc/mifosplatform-tenants" |
| 43 | + factory="org.apache.tomcat.jdbc.pool.DataSourceFactory" |
| 44 | + driverClassName="org.drizzle.jdbc.DrizzleDriver" |
| 45 | + url="jdbc:mysql:thin://fineractmysql:3306/mifosplatform-tenants" |
| 46 | + username="root" |
| 47 | + password="mysql" |
| 48 | + initialSize="3" |
| 49 | + maxActive="10" |
| 50 | + maxIdle="6" |
| 51 | + minIdle="3" |
| 52 | + validationQuery="SELECT 1" |
| 53 | + testOnBorrow="true" |
| 54 | + testOnReturn="true" |
| 55 | + testWhileIdle="true" |
| 56 | + timeBetweenEvictionRunsMillis="30000" |
| 57 | + minEvictableIdleTimeMillis="60000" |
| 58 | + logAbandoned="true" |
| 59 | + suspectTimeout="60" |
| 60 | + /> |
| 61 | + </GlobalNamingResources> |
| 62 | + |
| 63 | + <!-- A "Service" is a collection of one or more "Connectors" that share |
| 64 | + a single "Container" Note: A "Service" is not itself a "Container", |
| 65 | + so you may not define subcomponents such as "Valves" at this level. |
| 66 | + Documentation at /docs/config/service.html |
| 67 | + --> |
| 68 | + <Service name="Catalina"> |
| 69 | + |
| 70 | + <!--The connectors can use a shared executor, you can define one or more named thread pools--> |
| 71 | + <!-- |
| 72 | + <Executor name="tomcatThreadPool" namePrefix="catalina-exec-" |
| 73 | + maxThreads="150" minSpareThreads="4"/> |
| 74 | + --> |
| 75 | + |
| 76 | + |
| 77 | + <!-- A "Connector" represents an endpoint by which requests are received |
| 78 | + and responses are returned. Documentation at : |
| 79 | + Java HTTP Connector: /docs/config/http.html |
| 80 | + Java AJP Connector: /docs/config/ajp.html |
| 81 | + APR (HTTP/AJP) Connector: /docs/apr.html |
| 82 | + Define a non-SSL/TLS HTTP/1.1 Connector on port 8080 |
| 83 | + --> |
| 84 | + <Connector port="8080" protocol="HTTP/1.1" |
| 85 | + connectionTimeout="20000" |
| 86 | + redirectPort="8443" /> |
| 87 | + <!-- A "Connector" using the shared thread pool--> |
| 88 | + <!-- |
| 89 | + <Connector executor="tomcatThreadPool" |
| 90 | + port="8080" protocol="HTTP/1.1" |
| 91 | + connectionTimeout="20000" |
| 92 | + redirectPort="8443" /> |
| 93 | + --> |
| 94 | + <!-- Define a SSL/TLS HTTP/1.1 Connector on port 8443 |
| 95 | + This connector uses the NIO implementation. The default |
| 96 | + SSLImplementation will depend on the presence of the APR/native |
| 97 | + library and the useOpenSSL attribute of the |
| 98 | + AprLifecycleListener. |
| 99 | + Either JSSE or OpenSSL style configuration may be used regardless of |
| 100 | + the SSLImplementation selected. JSSE style configuration is used below. |
| 101 | + --> |
| 102 | + <Connector protocol="org.apache.coyote.http11.Http11Protocol" |
| 103 | + port="8443" maxThreads="200" scheme="https" |
| 104 | + secure="true" SSLEnabled="true" |
| 105 | + keystoreFile="/opt/bitnami/tomcat/tomcat.keystore" |
| 106 | + keystorePass="xyz123" |
| 107 | + clientAuth="false" sslProtocol="TLS" |
| 108 | + URIEncoding="UTF-8" |
| 109 | + compression="force" |
| 110 | + compressableMimeType="text/html,text/xml,text/plain,text/javascript,text/css"/> |
| 111 | +<!-- |
| 112 | + <Connector port="8443" protocol="org.apache.coyote.http11.Http11NioProtocol" |
| 113 | + maxThreads="150" SSLEnabled="true"> |
| 114 | + <SSLHostConfig> |
| 115 | + <Certificate certificateKeystoreFile="conf/localhost-rsa.jks" |
| 116 | + type="RSA" /> |
| 117 | + </SSLHostConfig> |
| 118 | + </Connector> |
| 119 | + --> |
| 120 | + <!-- Define a SSL/TLS HTTP/1.1 Connector on port 8443 with HTTP/2 |
| 121 | + This connector uses the APR/native implementation which always uses |
| 122 | + OpenSSL for TLS. |
| 123 | + Either JSSE or OpenSSL style configuration may be used. OpenSSL style |
| 124 | + configuration is used below. |
| 125 | + --> |
| 126 | + <!-- |
| 127 | + <Connector port="8443" protocol="org.apache.coyote.http11.Http11AprProtocol" |
| 128 | + maxThreads="150" SSLEnabled="true" > |
| 129 | + <UpgradeProtocol className="org.apache.coyote.http2.Http2Protocol" /> |
| 130 | + <SSLHostConfig> |
| 131 | + <Certificate certificateKeyFile="conf/localhost-rsa-key.pem" |
| 132 | + certificateFile="conf/localhost-rsa-cert.pem" |
| 133 | + certificateChainFile="conf/localhost-rsa-chain.pem" |
| 134 | + type="RSA" /> |
| 135 | + </SSLHostConfig> |
| 136 | + </Connector> |
| 137 | + --> |
| 138 | + |
| 139 | + <!-- Define an AJP 1.3 Connector on port 8009 --> |
| 140 | + <Connector port="8009" protocol="AJP/1.3" redirectPort="8443" /> |
| 141 | + |
| 142 | + |
| 143 | + <!-- An Engine represents the entry point (within Catalina) that processes |
| 144 | + every request. The Engine implementation for Tomcat stand alone |
| 145 | + analyzes the HTTP headers included with the request, and passes them |
| 146 | + on to the appropriate Host (virtual host). |
| 147 | + Documentation at /docs/config/engine.html --> |
| 148 | + |
| 149 | + <!-- You should set jvmRoute to support load-balancing via AJP ie : |
| 150 | + <Engine name="Catalina" defaultHost="localhost" jvmRoute="jvm1"> |
| 151 | + --> |
| 152 | + <Engine name="Catalina" defaultHost="localhost"> |
| 153 | + |
| 154 | + <!--For clustering, please take a look at documentation at: |
| 155 | + /docs/cluster-howto.html (simple how to) |
| 156 | + /docs/config/cluster.html (reference documentation) --> |
| 157 | + <!-- |
| 158 | + <Cluster className="org.apache.catalina.ha.tcp.SimpleTcpCluster"/> |
| 159 | + --> |
| 160 | + |
| 161 | + <!-- Use the LockOutRealm to prevent attempts to guess user passwords |
| 162 | + via a brute-force attack --> |
| 163 | + <Realm className="org.apache.catalina.realm.LockOutRealm"> |
| 164 | + <!-- This Realm uses the UserDatabase configured in the global JNDI |
| 165 | + resources under the key "UserDatabase". Any edits |
| 166 | + that are performed against this UserDatabase are immediately |
| 167 | + available for use by the Realm. --> |
| 168 | + <Realm className="org.apache.catalina.realm.UserDatabaseRealm" |
| 169 | + resourceName="UserDatabase"/> |
| 170 | + </Realm> |
| 171 | + |
| 172 | + <Host name="localhost" appBase="webapps" |
| 173 | + unpackWARs="true" autoDeploy="true"> |
| 174 | + |
| 175 | + <!-- SingleSignOn valve, share authentication between web applications |
| 176 | + Documentation at: /docs/config/valve.html --> |
| 177 | + <!-- |
| 178 | + <Valve className="org.apache.catalina.authenticator.SingleSignOn" /> |
| 179 | + --> |
| 180 | + |
| 181 | + <!-- Access log processes all example. |
| 182 | + Documentation at: /docs/config/valve.html |
| 183 | + Note: The pattern used is equivalent to using pattern="common" --> |
| 184 | + <Valve className="org.apache.catalina.valves.AccessLogValve" directory="logs" |
| 185 | + prefix="localhost_access_log" suffix=".txt" |
| 186 | + pattern="%h %l %u %t "%r" %s %b" /> |
| 187 | + |
| 188 | + </Host> |
| 189 | + </Engine> |
| 190 | + </Service> |
| 191 | +</Server> |
0 commit comments