mirror of
https://github.com/ClickHouse/ClickHouse.git
synced 2024-11-16 04:32:33 +00:00
eed2edd7db
Otherwise you will get annoying messages at startup: 2024.07.02 10:03:38.331593 [ 1 ] {} <Error> CertificateReloader: Cannot obtain modification time for certificate file /etc/clickhouse-keeper/server.crt, skipping update. errno: 2, strerror: 0 2024.07.02 10:03:38.331658 [ 1 ] {} <Error> CertificateReloader: Cannot obtain modification time for key file /etc/clickhouse-keeper/server.key, skipping update. errno: 2, strerror: 0 2024.07.02 10:03:38.341085 [ 1 ] {} <Error> CertificateReloader: Poco::Exception. Code: 1000, e.code() = 0, SSL context exception: Error loading private key from file /etc/clickhouse-keeper/server.key: error:80000002:system library::No such file or directory Signed-off-by: Azat Khuzhin <a.khuzhin@semrush.com>
86 lines
3.5 KiB
XML
86 lines
3.5 KiB
XML
<clickhouse>
|
|
<logger>
|
|
<!-- Possible levels [1]:
|
|
|
|
- none (turns off logging)
|
|
- fatal
|
|
- critical
|
|
- error
|
|
- warning
|
|
- notice
|
|
- information
|
|
- debug
|
|
- trace
|
|
|
|
[1]: https://github.com/pocoproject/poco/blob/poco-1.9.4-release/Foundation/include/Poco/Logger.h#L105-L114
|
|
-->
|
|
<level>trace</level>
|
|
<log>/var/log/clickhouse-keeper/clickhouse-keeper.log</log>
|
|
<errorlog>/var/log/clickhouse-keeper/clickhouse-keeper.err.log</errorlog>
|
|
<!-- Rotation policy
|
|
See https://github.com/pocoproject/poco/blob/poco-1.9.4-release/Foundation/include/Poco/FileChannel.h#L54-L85
|
|
-->
|
|
<size>1000M</size>
|
|
<count>10</count>
|
|
<!-- <console>1</console> --> <!-- Default behavior is autodetection (log to console if not daemon mode and is tty) -->
|
|
</logger>
|
|
|
|
<max_connections>4096</max_connections>
|
|
|
|
<keeper_server>
|
|
<tcp_port>9181</tcp_port>
|
|
|
|
<!-- Must be unique among all keeper serves -->
|
|
<server_id>1</server_id>
|
|
|
|
<log_storage_path>/var/lib/clickhouse/coordination/logs</log_storage_path>
|
|
<snapshot_storage_path>/var/lib/clickhouse/coordination/snapshots</snapshot_storage_path>
|
|
|
|
<coordination_settings>
|
|
<operation_timeout_ms>10000</operation_timeout_ms>
|
|
<min_session_timeout_ms>10000</min_session_timeout_ms>
|
|
<session_timeout_ms>100000</session_timeout_ms>
|
|
<raft_logs_level>information</raft_logs_level>
|
|
<compress_logs>false</compress_logs>
|
|
<!-- All settings listed in https://github.com/ClickHouse/ClickHouse/blob/master/src/Coordination/CoordinationSettings.h -->
|
|
</coordination_settings>
|
|
|
|
<!-- enable sanity hostname checks for cluster configuration (e.g. if localhost is used with remote endpoints) -->
|
|
<hostname_checks_enabled>true</hostname_checks_enabled>
|
|
<raft_configuration>
|
|
<server>
|
|
<id>1</id>
|
|
|
|
<!-- Internal port and hostname -->
|
|
<hostname>localhost</hostname>
|
|
<port>9234</port>
|
|
</server>
|
|
|
|
<!-- Add more servers here -->
|
|
|
|
</raft_configuration>
|
|
</keeper_server>
|
|
|
|
|
|
<openSSL>
|
|
<server>
|
|
<!-- Used for secure tcp port -->
|
|
<!-- openssl req -subj "/CN=localhost" -new -newkey rsa:2048 -days 365 -nodes -x509 -keyout /etc/clickhouse-server/server.key -out /etc/clickhouse-server/server.crt -->
|
|
<!-- <certificateFile>/etc/clickhouse-keeper/server.crt</certificateFile> -->
|
|
<!-- <privateKeyFile>/etc/clickhouse-keeper/server.key</privateKeyFile> -->
|
|
<!-- dhparams are optional. You can delete the <dhParamsFile> element.
|
|
To generate dhparams, use the following command:
|
|
openssl dhparam -out /etc/clickhouse-keeper/dhparam.pem 4096
|
|
Only file format with BEGIN DH PARAMETERS is supported.
|
|
-->
|
|
<!-- <dhParamsFile>/etc/clickhouse-keeper/dhparam.pem</dhParamsFile> -->
|
|
<verificationMode>none</verificationMode>
|
|
<loadDefaultCAFile>true</loadDefaultCAFile>
|
|
<cacheSessions>true</cacheSessions>
|
|
<disableProtocols>sslv2,sslv3</disableProtocols>
|
|
<preferServerCiphers>true</preferServerCiphers>
|
|
</server>
|
|
</openSSL>
|
|
|
|
</clickhouse>
|