Skip to content

Commit c6ab801

Browse files
committed
remove cipher settings that are included in jar with 26.1
1 parent af86b7e commit c6ab801

5 files changed

Lines changed: 1 addition & 17 deletions

File tree

Dockerfile

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -77,10 +77,6 @@ ENV DEBUG="${DEBUG}" \
7777
TOMCAT_KEYSTORE_FORMAT="PKCS12" \
7878
TOMCAT_KEYSTORE_ALIAS="tomcat" \
7979
\
80-
TOMCAT_SSL_CIPHERS="HIGH:!aNULL:!eNULL:!EXPORT:!DES:!RC4:!MD5:!kRSA:!EDH:!DHE:!DH:!CAMELLIA:!ARIA:!AESCCM:!SHA:!CHACHA20" \
81-
TOMCAT_SSL_ENABLED_PROTOCOLS="TLSv1.3,TLSv1.2" \
82-
TOMCAT_SSL_PROTOCOL="TLS" \
83-
\
8480
TOMCAT_ENABLE_ACCESS_LOG=""
8581

8682
ENV CERT_C="US" \

README.md

Lines changed: 0 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -248,9 +248,6 @@ The `CERT_*` ENVs should look familiar to anyone that has used the `openssl` com
248248
| TOMCAT_KEYSTORE_ALIAS | self-signed cert/keystore "alias" | `tomcat` |
249249
| TOMCAT_KEYSTORE_FILENAME | self-signed cert/keystore filename | `labkey.p12` |
250250
| TOMCAT_KEYSTORE_FORMAT | self-signed cert/keystore format | `PKCS12` |
251-
| TOMCAT_SSL_CIPHERS | allowable SSL ciphers for use by tomcat | `HIGH:!aNULL:!eNULL:!EXPORT:!DES:!RC4:!MD5:!kRSA:!EDH:!DHE:!DH:!CAMELLIA:!ARIA:!AESCCM:!SHA:!CHACHA20` |
252-
| TOMCAT_SSL_ENABLED_PROTOCOLS | allowable SSL protocols and versions | `TLSv1.3,TLSv1.2` |
253-
| TOMCAT_SSL_PROTOCOL | basic SSL protocol to use | `TLS` |
254251
| CERT_C | "Country" value for the generated self-signed cert | `US` |
255252
| CERT_CN | "Common Name" value for the generated self-signed cert | `localhost` |
256253
| CERT_L | "Location" value for the generated self-signed cert | `Seattle` |

application.properties

Lines changed: 0 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -113,11 +113,6 @@ server.http2.enabled=true
113113

114114
server.ssl.enabled=true
115115

116-
server.ssl.ciphers=${TOMCAT_SSL_CIPHERS}
117-
server.ssl.enabled-protocols=${TOMCAT_SSL_ENABLED_PROTOCOLS}
118-
server.ssl.protocol=${TOMCAT_SSL_PROTOCOL}
119-
120-
121116
# must match values in entrypoint.sh
122117
server.ssl.key-alias=${TOMCAT_KEYSTORE_ALIAS}
123118
server.ssl.key-store=${LABKEY_HOME}/${TOMCAT_KEYSTORE_FILENAME}

docker-compose.yml

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -27,7 +27,6 @@ services:
2727
# - LABKEY_SYSTEM_DESCRIPTION=Sirius Cybernetics Corporation
2828

2929
# - TOMCAT_ENABLE_ACCESS_LOG=1
30-
- TOMCAT_SSL_CIPHERS=${TOMCAT_SSL_CIPHERS:-HIGH:!aNULL:!eNULL:!EXPORT:!DES:!RC4:!MD5:!kRSA:!EDH:!DHE:!DH:!CAMELLIA:!ARIA:!AESCCM:!SHA:!CHACHA20}
3130
- LOG_LEVEL_SPRING_WEB=INFO
3231
- LOG_LEVEL_TOMCAT=DEBUG
3332
- LOG_LEVEL_DEFAULT=DEBUG
@@ -140,7 +139,6 @@ services:
140139
# - LABKEY_SYSTEM_DESCRIPTION=Sirius Cybernetics Corporation
141140

142141
# - TOMCAT_ENABLE_ACCESS_LOG=1
143-
- TOMCAT_SSL_CIPHERS=${TOMCAT_SSL_CIPHERS:-HIGH:!aNULL:!eNULL:!EXPORT:!DES:!RC4:!MD5:!kRSA:!EDH:!DHE:!DH:!CAMELLIA:!ARIA:!AESCCM:!SHA:!CHACHA20}
144142
- LOG_LEVEL_SPRING_WEB=INFO
145143
- LOG_LEVEL_TOMCAT=DEBUG
146144
- LOG_LEVEL_DEFAULT=DEBUG
@@ -251,7 +249,6 @@ services:
251249
# - LABKEY_SYSTEM_DESCRIPTION=Sirius Cybernetics Corporation
252250

253251
# - TOMCAT_ENABLE_ACCESS_LOG=1
254-
- TOMCAT_SSL_CIPHERS=${TOMCAT_SSL_CIPHERS:-HIGH:!aNULL:!eNULL:!EXPORT:!DES:!RC4:!MD5:!kRSA:!EDH:!DHE:!DH:!CAMELLIA:!ARIA:!AESCCM:!SHA:!CHACHA20}
255252
- LOG_LEVEL_SPRING_WEB=INFO
256253
- LOG_LEVEL_TOMCAT=DEBUG
257254
- LOG_LEVEL_DEFAULT=DEBUG
@@ -363,7 +360,6 @@ services:
363360
# - LABKEY_SYSTEM_DESCRIPTION=Sirius Cybernetics Corporation
364361

365362
# - TOMCAT_ENABLE_ACCESS_LOG=1
366-
- TOMCAT_SSL_CIPHERS=${TOMCAT_SSL_CIPHERS:-HIGH:!aNULL:!eNULL:!EXPORT:!DES:!RC4:!MD5:!kRSA:!EDH:!DHE:!DH:!CAMELLIA:!ARIA:!AESCCM:!SHA:!CHACHA20}
367363
- LOG_LEVEL_SPRING_WEB=INFO
368364
- LOG_LEVEL_TOMCAT=DEBUG
369365
- LOG_LEVEL_DEFAULT=DEBUG

quickstart_envs.sh

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@
33
# example minimal set of environment variables to get started - see readme for additional envs you may wish to set
44

55
# embedded tomcat LabKey .jar version to build container with
6-
export LABKEY_VERSION="25.12"
6+
export LABKEY_VERSION="26.1"
77

88
# minimal SMTP settings
99
export SMTP_HOST="localhost"

0 commit comments

Comments
 (0)