name/AdminSessionManager
name/AdminSessionManager-replica
name/AdminSSLSessionManager
name/AdminSSLSessionManager-replica
name/NullPermissionsVerifier
name/NullSSLPermissionsVerifier
name/Locator
name/Query
name/Registry
name/Registry-replica
name/RegistryUserAccountMapper
name/RegistryUserAccountMapper-replica
name/SessionManager
name/SSLSessionManager
If num is set to a non-zero value, an IceGrid node permits servers to override previously set endpoints even if the server is active. Setting this property to a non-zero value is necessary if the servers managed by the node call the object adapter
refreshPublishedEndpoints method. The default value of
num is zero.
If num is set to a non-zero value, an IceGrid node will permit servers started by the node to run with super-user privileges. Note that you should not set this property unless the node uses a secure endpoint; otherwise, clients can start arbitrary processes with super-user privileges on the node’s machine.
An IceGrid node uses the adapter name IceGrid.Node for the object adapter that the registry contacts to communicate with the node. Therefore, the adapter properties detailed in
Section C.4 can be used to configure this adapter.
If num is set to a value larger than zero, the node collocates the IceGrid registry.
Defines the path of the IceGrid node data directory. The node creates distrib,
servers, and
tmp subdirectories in this directory if they do not already exist. The
distrib directory contains distribution files downloaded by the node from an IcePatch2 server. The
servers directory contains configuration data for each deployed server. The
tmp directory holds temporary files.
The node considers a server to have terminated improperly if it has a non-zero exit code or if it exits due to one of the signals
SIGABRT,
SIGBUS,
SIGILL,
SIGFPE, or
SIGSEGV. The node marks such a server as disabled if
num is a non-zero value; a disabled server cannot be activated on demand. For values of
num greater than zero, the server is disabled for
num seconds. If
num is a negative value, the server is disabled indefinitely, or until it is explicitly enabled or started via an administrative action. The default value is zero, meaning the node does not disable servers in this situation.
Defines the name of the IceGrid node. All nodes using the same registry must have unique names; a node refuses to start if there is a node with the same name running already. This property must be defined for each node.
Defines the path of the IceGrid node output directory. If set, the node redirects the stdout and
stderr output of the started servers to files named
server.out and
server.err in this directory. Otherwise, the started servers share the
stdout and
stderr of the node's process.
The IceGrid node prints "token ready" on standard output after all the servers managed by the node are ready. This is useful for scripts that wish to wait until all servers have been started and are ready for use.
Defines a list of properties that override the properties defined in server deployment descriptors. For example, in some cases it is desirable to set the property
Ice.Default.Host for servers, but not in server deployment descriptors. The property definitions must be separated by white space.
If num is set to a value larger than zero, the
stderr of each started server is redirected to the server's
stdout.
Specifies the proxy of an object that implements the IceGrid::UserAccountMapper interface. The IceGrid node invokes this proxy to map session identifiers (the user id for sessions created with a user name and password, or the distinguished name for sessions created from a secure connection) to user accounts.
Specifies the file name of an IceGrid node user account map file. Each line of the file must contain an identifier and a user account, separated by white space. The identifier will be matched against the client session identifier (the user id for sessions created with a user name and password, or the distinguished name for sessions created from a secure connection). This user account map file is used by the node to map session identifiers to user accounts. This property is ignored if
IceGrid.Node.UserAccountMapper is defined.
If a server is automatically activated and does not register its object adapter endpoints within this time interval, the node assumes there is a problem with the server and return an empty set of endpoints to the client.
Specifies the file name of an IceGrid registry access control list for admin clients (see
Section 39.11.2). Each line of the file must contain a user name and a password, separated by white space. The password must be a 13‑character crypt-encoded string. If this property is not defined, the default value is
admin‑passwords. This property is ignored if
IceGrid.Registry.AdminPermissionsVerifier is defined.
Specifies the proxy of an object that implements the Glacier2::PermissionsVerifier interface (see
Section 39.11.2). The IceGrid registry invokes this proxy to validate each new admin session created by a client with the
IceGrid::Registry interface.
This property controls whether IceGrid establishes filters for sessions created with the IceGrid session manager (see
Section 39.15.2). If
num is set to a value larger than zero, IceGrid establishes these filters, so Glacier2 limits access to the
IceGrid::AdminSession object and the
IceGrid::Admin object that is returned by the
getAdmin operation. If
num is set to zero, IceGrid does not establish filters, so access to these objects is controlled solely by Glacier2’s configuration.
The IceGrid registry uses the adapter name IceGrid.Registry.AdminSessionManager for the object adapter that processes incoming requests from IceGrid administrative sessions (see
Section 39.14). Therefore, all the adapter properties detailed in
Section C.4 can be used to configure this adapter. (Note any setting of
IceGrid.Registry.SessionManager.AdapterId is ignored because the registry always provides a direct adapter.)
For security reasons, defining endpoints for this object adapter is optional. If you do define endpoints, they should only be accessible to Glacier2 routers used to create IceGrid administrative sessions.
Specifies the proxy of an object that implements the Glacier2::SSLPermissionsVerifier interface (see
Section 39.11.2). The IceGrid registry invokes this proxy to validate each new admin session created by a client from a secure connection with the
IceGrid::Registry interface.
IceGrid uses the adapter name IceGrid.Registry.Client for the object adapter that processes incoming requests from clients. Therefore, all the adapter properties detailed in
Section C.4 can be used to configure this adapter. (Note any setting of
IceGrid.Registry.Client.AdapterId is ignored because the registry always provides a direct adapter.)
Note that IceGrid.Registry.Client.Endpoints controls the client endpoint for the registry. The port numbers 4061 (for TCP) and 4062 (for SSL) are reserved
for the registry by the Internet Assigned Numbers Authority (IANA).
Specifies the file name of an IceGrid registry access control list (see Section 39.11.2). Each line of the file must contain a user name and a password, separated by white space. The password must be a 13‑character crypt-encoded string. If this property is not defined, the default value is
passwords. This property is ignored if
IceGrid.Registry.PermissionsVerifier is defined.
Defines the path name of an XML file containing default template descriptors. A sample file named
config/templates.xml that contains convenient server templates for Ice services is provided in the Ice distribution.
If num is set to a value larger than zero, the locator registry does not require Ice servers to preregister object adapters and replica groups, but rather creates them automatically if they do not exist. If this property is not defined, or
num is set to zero, an attempt to register an unknown object adapter or replica group causes adapter activation to fail with
Ice.NotRegisteredException. An object adapter registers itself when the
adapter.AdapterId property is defined. The
adapter.ReplicaGroupId property identifies the replica group.
The IceGrid registry uses the adapter name IceGrid.Registry.Internal for the object adapter that processes incoming requests from nodes and slave replicas. Therefore, all the adapter properties detailed in
Section C.4 can be used to configure this adapter. (Note any setting of
IceGrid.Registry.Internal.AdapterId is ignored because the registry always provides a direct adapter.)
Each IceGrid node establishes a session with the registry that must be refreshed periodically. If a node does not refresh its session within
num seconds, the node's session is destroyed and the servers deployed on that node become unavailable to new clients. If not specified, the default value is 30 seconds.
Specifies the proxy of an object that implements the Glacier2::PermissionsVerifier interface (see
Section 39.11.2). The IceGrid registry invokes this proxy to validate each new client session created by a client with the
IceGrid::Registry interface.
Specifies the name of a registry replica. If not defined, the default value is Master, which is the name reserved for the master replica. Each registry replica must have a unique name. See
Section 39.12 for more information on registry replication.
Each IceGrid registry replica establishes a session with the master registry that must be refreshed periodically. If a replica does not refresh its session within
num seconds, the replica's session is destroyed and the replica doesn't receive anymore replication information from the master registry. If not specified, the default value is 30 seconds.
The IceGrid registry uses the adapter name IceGrid.Registry.Server for the object adapter that processes incoming requests from servers. Therefore, all the adapter properties detailed in
Section C.4 can be used to configure this adapter. (Note any setting of
IceGrid.Registry.Server.AdapterId is ignored because the registry always provides a direct adapter.)
This property controls whether IceGrid establishes filters for sessions created with the IceGrid session manager (see
Section 39.15.3). If
num is set to a value larger than zero, IceGrid establishes these filters, so Glacier2 limits access to the
IceGrid::Query and
IceGrid::Session objects, and to objects and adapters allocated by the session. If
num is set to zero, IceGrid does not establish filters, so access to objects is controlled solely by Glacier2’s configuration.
The IceGrid registry uses the adapter name IceGrid.Registry.SessionManager for the object adapter that processes incoming requests from client sessions (see
Section 39.11). Therefore, all the adapter properties detailed in
Section C.4 can be used to configure this adapter. (Note any setting of
IceGrid.Registry.SessionManager.AdapterId is ignored because the registry always provides a direct adapter.)
For security reasons, defining endpoints for this object adapter is optional. If you do define endpoints, they should only be accessible to Glacier2 routers used to create IceGrid client sessions.
IceGrid clients or administrative clients might establish a session with the registry. This session must be refreshed periodically. If the client does not refresh its session within
num seconds, the session is destroyed. If not specified, the default value is 30 seconds.
Specifies the proxy of an object that implements the Glacier2::SSLPermissionsVerifier interface (see
Section 39.11.2). The IceGrid registry invokes this proxy to validate each new client session created by a client from a secure connection with the
IceGrid::Registry interface.
Specifies the file name of an IceGrid registry user account map file. Each line of the file must contain an identifier and a user account, separated by white space. The identifier will be matched against the client session identifier (the user id for sessions created with a user name and password, or the distinguished name for sessions created from a secure connection). This user account map file is used by IceGrid nodes to map session identifiers to user accounts if the nodes’
IceGrid.Node.UserAccountMapper property is set to the proxy
IceGrid/RegistryUserAccountMapper.