| <!-- |
| |
| Copyright (c) 2008, 2019 Oracle and/or its affiliates. All rights reserved. |
| Copyright (c) 2021 Contributors to the Eclipse Foundation |
| |
| This program and the accompanying materials are made available under the |
| terms of the Eclipse Public License v. 2.0, which is available at |
| http://www.eclipse.org/legal/epl-2.0. |
| |
| This Source Code may also be made available under the following Secondary |
| Licenses when the conditions for such availability set forth in the |
| Eclipse Public License v. 2.0 are satisfied: GNU General Public License, |
| version 2 with the GNU Classpath Exception, which is available at |
| https://www.gnu.org/software/classpath/license.html. |
| |
| SPDX-License-Identifier: EPL-2.0 OR GPL-2.0 WITH Classpath-exception-2.0 |
| --> |
| |
| <domain application-root="${com.sun.aas.instanceRoot}/applications" version="master-2021-08-26T23:45:22+0000" log-root="${com.sun.aas.instanceRoot}/logs"> |
| <security-configurations> |
| <authorization-service default="true" name="authorizationService"> |
| <security-provider provider-name="simpleAuthorizationProvider" name="simpleAuthorization" type="Simple"> |
| <authorization-provider-config name="simpleAuthorizationProviderConfig" support-policy-deploy="false"></authorization-provider-config> |
| </security-provider> |
| </authorization-service> |
| </security-configurations> |
| <managed-job-config></managed-job-config> |
| <system-applications></system-applications> |
| <resources /> |
| <servers> |
| <server config-ref="server-config" name="server"> |
| <resource-ref ref="jdbc/__TimerPool"></resource-ref> |
| <resource-ref ref="jdbc/__default"></resource-ref> |
| </server> |
| </servers> |
| <nodes> |
| <node name="localhost-domain1" install-dir="${com.sun.aas.productRoot}" type="CONFIG" node-host="localhost"></node> |
| </nodes> |
| <configs> |
| <config name="server-config"> |
| <system-property name="JMS_PROVIDER_PORT" description="Port Number that JMS Service will listen for remote clients connection." value="7676"></system-property> |
| <http-service> |
| <access-log></access-log> |
| <virtual-server network-listeners="http-listener-1,http-listener-2" id="server"></virtual-server> |
| <virtual-server network-listeners="admin-listener" id="__asadmin"></virtual-server> |
| </http-service> |
| <admin-service system-jmx-connector-name="system" type="das-and-server"> |
| <jmx-connector address="0.0.0.0" port="8686" name="system" auth-realm-name="admin-realm" security-enabled="false"></jmx-connector> |
| <property name="adminConsoleContextRoot" value="/admin"></property> |
| <property name="adminConsoleDownloadLocation" value="${com.sun.aas.installRoot}/lib/install/applications/admingui.war"></property> |
| <property name="ipsRoot" value="${com.sun.aas.installRoot}/.."></property> |
| <das-config></das-config> |
| </admin-service> |
| <security-service> |
| <auth-realm classname="com.sun.enterprise.security.auth.realm.file.FileRealm" name="admin-realm"> |
| <property name="file" value="${com.sun.aas.instanceRoot}/config/admin-keyfile"></property> |
| <property name="jaas-context" value="fileRealm"></property> |
| </auth-realm> |
| <auth-realm classname="com.sun.enterprise.security.auth.realm.file.FileRealm" name="file"> |
| <property name="file" value="${com.sun.aas.instanceRoot}/config/keyfile"></property> |
| <property name="jaas-context" value="fileRealm"></property> |
| </auth-realm> |
| <auth-realm classname="com.sun.enterprise.security.auth.realm.certificate.CertificateRealm" name="certificate"></auth-realm> |
| <jacc-provider policy-provider="org.glassfish.exousia.modules.locked.SimplePolicyProvider" name="default" policy-configuration-factory-provider="org.glassfish.exousia.modules.locked.SimplePolicyConfigurationFactory"> |
| <property name="repository" value="${com.sun.aas.instanceRoot}/generated/policy"></property> |
| </jacc-provider> |
| <jacc-provider policy-provider="org.glassfish.exousia.modules.locked.SimplePolicyProvider" name="simple" policy-configuration-factory-provider="org.glassfish.exousia.modules.locked.SimplePolicyConfigurationFactory"></jacc-provider> |
| <audit-module classname="com.sun.enterprise.security.ee.Audit" name="default"> |
| <property name="auditOn" value="false"></property> |
| </audit-module> |
| <message-security-config auth-layer="SOAP"> |
| <provider-config provider-type="client" provider-id="XWS_ClientProvider" class-name="com.sun.xml.wss.provider.ClientSecurityAuthModule"> |
| <request-policy auth-source="content"></request-policy> |
| <response-policy auth-source="content"></response-policy> |
| <property name="encryption.key.alias" value="s1as"></property> |
| <property name="signature.key.alias" value="s1as"></property> |
| <property name="dynamic.username.password" value="false"></property> |
| <property name="debug" value="false"></property> |
| </provider-config> |
| <provider-config provider-type="client" provider-id="ClientProvider" class-name="com.sun.xml.wss.provider.ClientSecurityAuthModule"> |
| <request-policy auth-source="content"></request-policy> |
| <response-policy auth-source="content"></response-policy> |
| <property name="encryption.key.alias" value="s1as"></property> |
| <property name="signature.key.alias" value="s1as"></property> |
| <property name="dynamic.username.password" value="false"></property> |
| <property name="debug" value="false"></property> |
| <property name="security.config" value="${com.sun.aas.instanceRoot}/config/wss-server-config-1.0.xml"></property> |
| </provider-config> |
| <provider-config provider-type="server" provider-id="XWS_ServerProvider" class-name="com.sun.xml.wss.provider.ServerSecurityAuthModule"> |
| <request-policy auth-source="content"></request-policy> |
| <response-policy auth-source="content"></response-policy> |
| <property name="encryption.key.alias" value="s1as"></property> |
| <property name="signature.key.alias" value="s1as"></property> |
| <property name="debug" value="false"></property> |
| </provider-config> |
| <provider-config provider-type="server" provider-id="ServerProvider" class-name="com.sun.xml.wss.provider.ServerSecurityAuthModule"> |
| <request-policy auth-source="content"></request-policy> |
| <response-policy auth-source="content"></response-policy> |
| <property name="encryption.key.alias" value="s1as"></property> |
| <property name="signature.key.alias" value="s1as"></property> |
| <property name="debug" value="false"></property> |
| <property name="security.config" value="${com.sun.aas.instanceRoot}/config/wss-server-config-1.0.xml"></property> |
| </provider-config> |
| </message-security-config> |
| <message-security-config auth-layer="HttpServlet"> |
| <provider-config provider-type="server" provider-id="GFConsoleAuthModule" class-name="org.glassfish.admingui.common.security.AdminConsoleAuthModule"> |
| <request-policy auth-source="sender"></request-policy> |
| <response-policy></response-policy> |
| <property name="loginPage" value="/login.jsf"></property> |
| <property name="loginErrorPage" value="/loginError.jsf"></property> |
| </provider-config> |
| </message-security-config> |
| <property name="default-digest-algorithm" value="SHA-256"></property> |
| </security-service> |
| <java-config classpath-suffix="" debug-options="-agentlib:jdwp=transport=dt_socket,server=y,suspend=n,address=*:9009" system-classpath=""> |
| <jvm-options>-Djava.awt.headless=true</jvm-options> |
| <jvm-options>-Djdk.corba.allowOutputStreamSubclass=true</jvm-options> |
| <jvm-options>-Djdk.tls.rejectClientInitiatedRenegotiation=true</jvm-options> |
| <jvm-options>-Djavax.xml.accessExternalSchema=all</jvm-options> |
| <jvm-options>-Djavax.management.builder.initial=com.sun.enterprise.v3.admin.AppServerMBeanServerBuilder</jvm-options> |
| <jvm-options>-XX:+UnlockDiagnosticVMOptions</jvm-options> |
| <jvm-options>-Djava.security.policy=${com.sun.aas.instanceRoot}/config/server.policy</jvm-options> |
| <jvm-options>-Djava.security.auth.login.config=${com.sun.aas.instanceRoot}/config/login.conf</jvm-options> |
| <jvm-options>-Dcom.sun.enterprise.security.httpsOutboundKeyAlias=s1as</jvm-options> |
| <jvm-options>-Xmx512m</jvm-options> |
| <jvm-options>-Djavax.net.ssl.keyStore=${com.sun.aas.instanceRoot}/config/keystore.jks</jvm-options> |
| <jvm-options>-Djavax.net.ssl.trustStore=${com.sun.aas.instanceRoot}/config/cacerts.jks</jvm-options> |
| <jvm-options>-Djdbc.drivers=org.apache.derby.jdbc.ClientDriver</jvm-options> |
| <jvm-options>-DANTLR_USE_DIRECT_CLASS_LOADING=true</jvm-options> |
| <jvm-options>-Dcom.sun.enterprise.config.config_environment_factory_class=com.sun.enterprise.config.serverbeans.AppserverConfigEnvironmentFactory</jvm-options> |
| <jvm-options>-Dorg.glassfish.additionalOSGiBundlesToStart=org.apache.felix.shell,org.apache.felix.gogo.runtime,org.apache.felix.gogo.shell,org.apache.felix.gogo.command,org.apache.felix.shell.remote,org.apache.felix.fileinstall</jvm-options> |
| <jvm-options>-Dosgi.shell.telnet.port=6666</jvm-options> |
| <jvm-options>-Dosgi.shell.telnet.maxconn=1</jvm-options> |
| <jvm-options>-Dosgi.shell.telnet.ip=127.0.0.1</jvm-options> |
| <jvm-options>-Dgosh.args=--nointeractive</jvm-options> |
| <jvm-options>-Dfelix.fileinstall.dir=${com.sun.aas.installRoot}/modules/autostart/</jvm-options> |
| <jvm-options>-Dfelix.fileinstall.poll=5000</jvm-options> |
| <jvm-options>-Dfelix.fileinstall.log.level=2</jvm-options> |
| <jvm-options>-Dfelix.fileinstall.bundles.new.start=true</jvm-options> |
| <jvm-options>-Dfelix.fileinstall.bundles.startTransient=true</jvm-options> |
| <jvm-options>-Dfelix.fileinstall.disableConfigSave=false</jvm-options> |
| <jvm-options>-Dorg.glassfish.gmbal.no.multipleUpperBoundsException=true</jvm-options> |
| <jvm-options>-Dcom.ctc.wstx.returnNullForDefaultNamespace=true</jvm-options> |
| <jvm-options>-XX:NewRatio=2</jvm-options> |
| <jvm-options>-Xbootclasspath/a:${com.sun.aas.installRoot}/lib/grizzly-npn-api.jar</jvm-options> |
| <jvm-options>--add-opens=jdk.management/com.sun.management.internal=ALL-UNNAMED</jvm-options> |
| <jvm-options>--add-opens=java.base/sun.net.www.protocol.jrt=ALL-UNNAMED</jvm-options> |
| <jvm-options>--add-opens=java.base/java.lang=ALL-UNNAMED</jvm-options> |
| <jvm-options>--add-opens=java.base/java.util=ALL-UNNAMED</jvm-options> |
| <jvm-options>--add-opens=java.rmi/sun.rmi.transport=ALL-UNNAMED</jvm-options> |
| <jvm-options>--add-opens=java.naming/javax.naming.spi=ALL-UNNAMED</jvm-options> |
| </java-config> |
| <network-config> |
| <protocols> |
| <protocol name="http-listener-1"> |
| <http max-connections="250" default-virtual-server="server"> |
| <file-cache></file-cache> |
| </http> |
| </protocol> |
| <protocol name="http-listener-2" security-enabled="true"> |
| <http max-connections="250" default-virtual-server="server"> |
| <file-cache></file-cache> |
| </http> |
| <ssl classname="com.sun.enterprise.security.ssl.GlassfishSSLImpl" cert-nickname="s1as"></ssl> |
| </protocol> |
| <protocol name="admin-listener"> |
| <http encoded-slash-enabled="true" max-connections="250" default-virtual-server="__asadmin"> |
| <file-cache></file-cache> |
| </http> |
| </protocol> |
| </protocols> |
| <network-listeners> |
| <network-listener protocol="http-listener-1" port="8080" name="http-listener-1" thread-pool="http-thread-pool" transport="tcp"></network-listener> |
| <network-listener protocol="http-listener-2" port="8181" name="http-listener-2" thread-pool="http-thread-pool" transport="tcp"></network-listener> |
| <network-listener protocol="admin-listener" port="4848" name="admin-listener" thread-pool="admin-thread-pool" transport="tcp"></network-listener> |
| </network-listeners> |
| <transports> |
| <transport name="tcp"></transport> |
| </transports> |
| </network-config> |
| <thread-pools> |
| <thread-pool name="admin-thread-pool" max-queue-size="256" max-thread-pool-size="50"></thread-pool> |
| <thread-pool name="http-thread-pool"></thread-pool> |
| <thread-pool name="thread-pool-1" max-thread-pool-size="200"></thread-pool> |
| </thread-pools> |
| <group-management-service> |
| <failure-detection></failure-detection> |
| </group-management-service> |
| <monitoring-service> |
| <module-monitoring-levels></module-monitoring-levels> |
| </monitoring-service> |
| <availability-service></availability-service> |
| </config> |
| </configs> |
| <property name="administrative.domain.name" value="domain1"></property> |
| <secure-admin special-admin-indicator="39e72cac-e399-453c-8232-6a0cebf10709"> |
| <secure-admin-principal dn="CN=localhost,OU=GlassFish,O=Eclipse.org Foundation Inc,L=Ottawa,ST=Ontario,C=CA"></secure-admin-principal> |
| <secure-admin-principal dn="CN=localhost-instance,OU=GlassFish,O=Eclipse.org Foundation Inc,L=Ottawa,ST=Ontario,C=CA"></secure-admin-principal> |
| </secure-admin> |
| <clusters></clusters> |
| <applications></applications> |
| </domain> |
| |