|
| 1 | +% This file managed by Puppet |
| 2 | +% Template Path: <%= $rabbitmq::config::module_name %>/templates/rabbitmq.config |
| 3 | +[ |
| 4 | +<%- if $rabbitmq::config::ssl and $rabbitmq::config::ssl_versions { -%> |
| 5 | + {ssl, [{versions, ['<%= $rabbitmq::config::ssl_versions.sort.join("', '") %>']}]}, |
| 6 | +<%- } -%> |
| 7 | + {rabbit, [ |
| 8 | +<%- if $rabbitmq::config::heartbeat {-%> |
| 9 | + {heartbeat, <%=$rabbitmq::config::heartbeat%>}, |
| 10 | +<% } -%> |
| 11 | +<% if $rabbitmq::config::loopback_users.size > 0 {-%> |
| 12 | + {loopback_users, [<<"<%= $rabbitmq::config::loopback_users.join('">>, <<"') %>">>]}, |
| 13 | +<% } else {-%> |
| 14 | + {loopback_users, []}, |
| 15 | +<% } -%> |
| 16 | +<% if $rabbitmq::config::auth_backends {-%> |
| 17 | + {auth_backends, [<%= $rabbitmq::config::auth_backends.join(', ') %>]}, |
| 18 | +<% } elsif $rabbitmq::config::ldap_auth {-%> |
| 19 | + {auth_backends, [rabbit_auth_backend_internal, rabbit_auth_backend_ldap]}, |
| 20 | +<% } -%> |
| 21 | +<% if $rabbitmq::config::config_cluster {-%> |
| 22 | + {cluster_nodes, {['rabbit@<%= $rabbitmq::config::cluster_nodes.join("', 'rabbit@") %>'], <%= $rabbitmq::config::cluster_node_type %>}}, |
| 23 | + {cluster_partition_handling, <%= $rabbitmq::config::cluster_partition_handling %>}, |
| 24 | +<% } -%> |
| 25 | + {tcp_listen_options, [ |
| 26 | + <%- unless $rabbitmq::config::config_ranch {-%> |
| 27 | + binary, |
| 28 | + {packet, raw}, |
| 29 | + {reuseaddr, true}, |
| 30 | + <%- } -%> |
| 31 | + <%- if $rabbitmq::config::tcp_keepalive {-%> |
| 32 | + {keepalive, true}, |
| 33 | + <%- } -%> |
| 34 | + <%- if $rabbitmq::config::tcp_backlog {-%> |
| 35 | + {backlog, <%= $rabbitmq::config::tcp_backlog %>}, |
| 36 | + <%- } -%> |
| 37 | + <%- if $rabbitmq::config::tcp_sndbuf {-%> |
| 38 | + {sndbuf, <%= $rabbitmq::config::tcp_sndbuf %>}, |
| 39 | + <%- } -%> |
| 40 | + <%- if $rabbitmq::config::tcp_recbuf {-%> |
| 41 | + {recbuf, <%= $rabbitmq::config::tcp_recbuf %>}, |
| 42 | + <%- } -%> |
| 43 | + {nodelay, true}, |
| 44 | + {linger, {true, 0}}, |
| 45 | + {exit_on_close, false} |
| 46 | + ]}, |
| 47 | +<%- if $rabbitmq::config::collect_statistics_interval {-%> |
| 48 | + {collect_statistics_interval, <%= $rabbitmq::config::collect_statistics_interval %>}, |
| 49 | +<%- } -%> |
| 50 | +<%- if $rabbitmq::config::ssl_only {-%> |
| 51 | + {tcp_listeners, []}, |
| 52 | +<%-} elsif $rabbitmq::config::interface {-%> |
| 53 | + {tcp_listeners, [{"<%= $rabbitmq::config::interface%>", <%= $rabbitmq::config::port %>}]}, |
| 54 | +<%- } -%> |
| 55 | +<%- if $rabbitmq::config::ssl {-%> |
| 56 | + <%- if $rabbitmq::config::ssl_interface {-%> |
| 57 | + {ssl_listeners, [{"<%= $rabbitmq::config::ssl_interface%>", <%= $rabbitmq::config::ssl_port %>}]}, |
| 58 | + <%-} else {-%> |
| 59 | + {ssl_listeners, [<%= $rabbitmq::config::ssl_port %>]}, |
| 60 | + <%- } -%> |
| 61 | + {ssl_options, [ |
| 62 | + <%- if $rabbitmq::config::ssl_cacert {-%> |
| 63 | + {cacertfile,"<%= $rabbitmq::config::ssl_cacert %>"}, |
| 64 | + <%- } -%> |
| 65 | + {certfile,"<%= $rabbitmq::config::ssl_cert %>"}, |
| 66 | + {keyfile,"<%= $rabbitmq::config::ssl_key %>"}, |
| 67 | + <%- if $rabbitmq::config::ssl_cert_password {-%> |
| 68 | + {password, "<%= $rabbitmq::config::ssl_cert_password %>"}, |
| 69 | + <%- } -%> |
| 70 | + <%- if $rabbitmq::config::ssl_depth {-%> |
| 71 | + {depth,<%= $rabbitmq::config::ssl_depth %>}, |
| 72 | + <%- } -%> |
| 73 | + <%- if $rabbitmq::config::ssl_dhfile {-%> |
| 74 | + {dhfile, "<%= $rabbitmq::config::ssl_dhfile %>"}, |
| 75 | + <%- } -%> |
| 76 | + {secure_renegotiate,<%= $rabbitmq::config::ssl_secure_renegotiate %>}, |
| 77 | + {reuse_sessions,<%= $rabbitmq::config::ssl_reuse_sessions %>}, |
| 78 | + {honor_cipher_order,<%= $rabbitmq::config::ssl_honor_cipher_order %>}, |
| 79 | + {verify,<%= $rabbitmq::config::ssl_verify %>}, |
| 80 | + {fail_if_no_peer_cert,<%= $rabbitmq::config::ssl_fail_if_no_peer_cert %>} |
| 81 | + <%- if $rabbitmq::config::ssl_versions {-%> |
| 82 | + ,{versions, ['<%= $rabbitmq::config::ssl_versions.sort.join("', '") %>']} |
| 83 | + <%- } -%> |
| 84 | + <%- if $rabbitmq::config::ssl_ciphers and $rabbitmq::config::ssl_ciphers.size > 0 {-%> |
| 85 | + ,{ciphers,[ |
| 86 | + <%- $rabbitmq::config::ssl_ciphers.each |$k| { -%> |
| 87 | + <%- if $k.split(',').size > 1 {-%> |
| 88 | + {<%= $k %>}<%- if $k != $rabbitmq::config::ssl_ciphers[-1] { -%>,<%- } %> |
| 89 | + <%-} else {-%> |
| 90 | + "<%= $k %>"<%- if $k != $rabbitmq::config::ssl_ciphers[-1] { -%>,<%- } %> |
| 91 | + <%-} -%> |
| 92 | + <%-} -%> |
| 93 | + ]} |
| 94 | + <%- } -%> |
| 95 | + <%- if $rabbitmq::config::ssl_crl_check != 'false' {-%> |
| 96 | + ,{crl_check,<%= $rabbitmq::config::ssl_crl_check %>} |
| 97 | + <%- } -%> |
| 98 | + <%- if $rabbitmq::config::ssl_crl_cache_hash_dir {-%> |
| 99 | + ,{crl_cache, {ssl_crl_hash_dir, {internal, [{dir, "<%= $rabbitmq::config::ssl_crl_cache_hash_dir %>"}]}}} |
| 100 | + <%- } -%> |
| 101 | + <%- if $rabbitmq::config::ssl_crl_cache_http_timeout {-%> |
| 102 | + ,{crl_cache, {ssl_crl_cache, {internal, [{http, <%= $rabbitmq::config::ssl_crl_cache_http_timeout %>}]}}} |
| 103 | + <%- } -%> |
| 104 | + ]}, |
| 105 | +<%- } -%> |
| 106 | +<% if $rabbitmq::config::config_variables {-%> |
| 107 | +<%- $rabbitmq::config::config_variables.keys.sort.each |$key| {-%> |
| 108 | + {<%= $key %>, <%= $rabbitmq::config::config_variables[$key] %>}, |
| 109 | +<%- } -%> |
| 110 | +<%- } -%> |
| 111 | + {default_user, <<"<%= $rabbitmq::config::default_user %>">>}, |
| 112 | + {default_pass, <<"<%= $rabbitmq::config::default_pass %>">>} |
| 113 | + ]}<% if $rabbitmq::config::config_kernel_variables {-%>, |
| 114 | + {kernel, [ |
| 115 | + <%- $rabbitmq::config::config_kernel_variables.keys.sort.each |$k| { -%> |
| 116 | + {<%= $k %>, <%= $rabbitmq::config::config_kernel_variables[$k] %>}<%- if $k != $rabbitmq::config::config_kernel_variables.keys.sort[-1] { -%>,<%- } %> |
| 117 | + <%-} -%> |
| 118 | + ]} |
| 119 | +<%- } -%> |
| 120 | +<%- if $rabbitmq::config::admin_enable or $rabbitmq::config::management_enable or ! $rabbitmq::config::config_management_variables.empty {-%>, |
| 121 | + {rabbitmq_management, [ |
| 122 | + <%- if !$rabbitmq::config::config_management_variables.empty {-%> |
| 123 | + <%- $rabbitmq::config::config_management_variables.keys.sort.each |$k| { -%> |
| 124 | + {<%= $k %>, <%= $rabbitmq::config::config_management_variables[$k] %>}<%- if $k != $rabbitmq::config::config_management_variables.keys.sort[-1] { -%>,<%- } %> |
| 125 | + <%-} -%> |
| 126 | + <%-} -%> |
| 127 | +<%- if $rabbitmq::config::admin_enable or $rabbitmq::config::management_enable {-%> |
| 128 | +<%- if !$rabbitmq::config::config_management_variables.empty {-%>,<%-}-%> |
| 129 | + {listener, [ |
| 130 | +<%- if $rabbitmq::config::ssl and $rabbitmq::config::management_ssl {-%> |
| 131 | + <%- if $rabbitmq::config::management_ip_address {-%> |
| 132 | + {ip, "<%= $rabbitmq::config::management_ip_address %>"}, |
| 133 | + <%- } -%> |
| 134 | + {port, <%= $rabbitmq::config::ssl_management_port %>}, |
| 135 | + {ssl, true}, |
| 136 | + {ssl_opts, [ |
| 137 | + <%- if $rabbitmq::config::ssl_management_cacert {-%> |
| 138 | + {cacertfile, "<%= $rabbitmq::config::ssl_management_cacert %>"}, |
| 139 | + <%- } -%> |
| 140 | + {certfile, "<%= $rabbitmq::config::ssl_management_cert %>"}, |
| 141 | + {keyfile, "<%= $rabbitmq::config::ssl_management_key %>"}, |
| 142 | + {verify,<%= $rabbitmq::config::ssl_management_verify %>}, |
| 143 | + {fail_if_no_peer_cert,<%= $rabbitmq::config::ssl_management_fail_if_no_peer_cert %>} |
| 144 | + <%- if $rabbitmq::config::ssl_versions {-%> |
| 145 | + ,{versions, ['<%= $rabbitmq::config::ssl_versions.sort.join("', '") %>']} |
| 146 | + <%- } -%> |
| 147 | + <%- if $rabbitmq::config::ssl_ciphers and $rabbitmq::config::ssl_ciphers.size > 0 {-%> |
| 148 | + ,{ciphers,[ |
| 149 | + <%- $rabbitmq::config::ssl_ciphers.each |$k| { -%> |
| 150 | + <%- if $k.split(',').size > 1 {-%> |
| 151 | + {<%= $k %>}<%- if $k != $rabbitmq::config::ssl_ciphers[-1] { -%>,<%- } %> |
| 152 | + <%-} else {-%> |
| 153 | + "<%= $k %>"<%- if $k != $rabbitmq::config::ssl_ciphers[-1] { -%>,<%- } %> |
| 154 | + <%-} -%> |
| 155 | + <%-} -%> |
| 156 | + ]} |
| 157 | + <%- } -%> |
| 158 | + ]} |
| 159 | +<%- } else {-%> |
| 160 | + <%- if $rabbitmq::config::management_ip_address {-%> |
| 161 | + {ip, "<%= $rabbitmq::config::management_ip_address %>"}, |
| 162 | + <%- } -%> |
| 163 | + {port, <%= $rabbitmq::config::management_port %>} |
| 164 | +<%- } -%> |
| 165 | + ]} |
| 166 | +<%- } -%> |
| 167 | + ]} |
| 168 | +<%- } -%> |
| 169 | +<% if $rabbitmq::config::config_stomp {-%>, |
| 170 | +% Configure the Stomp Plugin listening port |
| 171 | + {rabbitmq_stomp, [ |
| 172 | + <%- if $rabbitmq::config::stomp_ssl_only {-%> |
| 173 | + {tcp_listeners, []} |
| 174 | + <%-} else {-%> |
| 175 | + {tcp_listeners, [<%= $rabbitmq::config::stomp_port %>]} |
| 176 | + <%- } -%> |
| 177 | + <%- if $rabbitmq::config::ssl and $rabbitmq::config::ssl_stomp_port {-%> |
| 178 | + , |
| 179 | + {ssl_listeners, [<%= $rabbitmq::config::ssl_stomp_port %>]} |
| 180 | + <%- } -%> |
| 181 | + ]} |
| 182 | +<% } -%> |
| 183 | +<%- if $rabbitmq::config::ldap_auth {-%>, |
| 184 | +% Configure the LDAP authentication plugin |
| 185 | + {rabbitmq_auth_backend_ldap, [ |
| 186 | + {other_bind, <%= $rabbitmq::config::ldap_other_bind %>}, |
| 187 | + |
| 188 | +<% if $rabbitmq::config::ldap_server =~ Array {-%> |
| 189 | + {servers, ["<%= $rabbitmq::config::ldap_server.join('", "') %>"]}, |
| 190 | +<% } else {-%> |
| 191 | + {servers, ["<%= $rabbitmq::config::ldap_server %>"]}, |
| 192 | +<% } -%> |
| 193 | +<% if $rabbitmq::config::ldap_user_dn_pattern {-%> |
| 194 | + {user_dn_pattern, "<%= $rabbitmq::config::ldap_user_dn_pattern %>"}, |
| 195 | +<%- } -%> |
| 196 | + {use_ssl, <%= $rabbitmq::config::ldap_use_ssl %>}, |
| 197 | + {port, <%= $rabbitmq::config::ldap_port %>}, |
| 198 | +<% if $rabbitmq::config::ldap_config_variables {-%> |
| 199 | +<%- $rabbitmq::config::ldap_config_variables.keys.sort.each |$key| {-%> |
| 200 | + {<%= $key %>, <%= $rabbitmq::config::ldap_config_variables[$key] %>}, |
| 201 | +<%- } -%> |
| 202 | +<%- } -%> |
| 203 | + {log, <%= $rabbitmq::config::ldap_log %>} |
| 204 | + ]} |
| 205 | +<%- } -%> |
| 206 | +<%- if $rabbitmq::config::config_shovel and !$rabbitmq::config::config_shovel_statics.empty {-%>, |
| 207 | + {rabbitmq_shovel, |
| 208 | + [{shovels,[ |
| 209 | + <%- $rabbitmq::config::config_shovel_statics.keys.sort.each |$key| { -%> |
| 210 | + {<%= $key %>,[<%= $rabbitmq::config::config_shovel_statics[$key] %>]}<%- if $key != $rabbitmq::config::config_shovel_statics.keys.sort[-1] {-%>,<%- } %> |
| 211 | + <%- } -%> |
| 212 | + ]}]} |
| 213 | +<%- } -%> |
| 214 | +<%- if $rabbitmq::config::config_additional_variables and !$rabbitmq::config::config_additional_variables.empty {-%>, |
| 215 | +% Additional config |
| 216 | +<%- $rabbitmq::config::config_additional_variables.keys.sort.each |$key| {-%> |
| 217 | + {<%= $key %>, <%= $rabbitmq::config::config_additional_variables[$key] %>}<%- if $key != $rabbitmq::config::config_additional_variables.keys.sort[-1] {%>,<% } %> |
| 218 | +<%- } -%> |
| 219 | +<%- } -%> |
| 220 | +]. |
| 221 | +% EOF |
| 222 | + |
| 223 | + |
0 commit comments