Browse Source

security for explorer

tags/1.6.4
liuyuanmu 2 years ago
parent
commit
e3aab8911e
2 changed files with 8 additions and 14 deletions
  1. +1
    -1
      core
  2. +7
    -13
      deploy/deploy-gateway/src/main/resources/config/application-gw.properties

+ 1
- 1
core

@@ -1 +1 @@
Subproject commit 0aa4a7d5d4a6653c237c422be03abb0d2a42104c
Subproject commit 2a94f2761eb6a52bd5ca85b80c9fe875c1e1f765

+ 7
- 13
deploy/deploy-gateway/src/main/resources/config/application-gw.properties View File

@@ -10,21 +10,15 @@ server.ssl.key-store=
server.ssl.key-store-type=PKCS12 server.ssl.key-store-type=PKCS12
server.ssl.key-alias= server.ssl.key-alias=
server.ssl.key-store-password= server.ssl.key-store-password=
server.ssl.protocol=
server.ssl.enabled-protocols=
server.ssl.ciphers=
server.ssl.trust-store= server.ssl.trust-store=
server.ssl.trust-store-password= server.ssl.trust-store-password=
server.ssl.trust-store-type=JKS server.ssl.trust-store-type=JKS
server.ssl.hostNameVerifier=NO-OP server.ssl.hostNameVerifier=NO-OP


#GM TLS配置
#示例:
#server.ssl.key-store=cert/sm2.node0.both.pfx
#server.ssl.key-store-type=PKCS12
#server.ssl.key-alias=
#server.ssl.key-store-password=12345678
#server.ssl.protocol=GMTLS
#server.ssl.hostNameVerifier=NO-OP
#server.ssl.enabled-protocols=TLSv1.2,GMSSLv1.1
#server.ssl.ciphers=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256,ECC_SM4_CBC_SM3,ECDHE_SM4_GCM_SM3,ECDHE_SM4_CBC_SM3
# 浏览器鉴权,设置用户名/密码,若没有配置则区块链浏览器完全开放
spring.security.user.name=jdchain
spring.security.user.password=jdchain
# 针对SDK和命令行工具,以下是提交交易必须开放的接口:账本列表+秘钥算法配置+提交交易接口
spring.security.ignored=/ledgers,/ledgers/*/settings/crypto,/rpc/tx
# 针对SDK和命令行工具,以下是查询必须开放的接口:
#spring.security.ignored=/ledgers/**

Loading…
Cancel
Save