James Phillips
7369875cf7
Merge pull request #2320 from hashicorp/f-leave
...
Changes default for `leave_on_terminate` based on server or client mode.
2016-09-01 09:08:10 -07:00
Pivotal DX129
fe61650ef0
Merge remote-tracking branch 'upstream/master'
2016-09-01 10:15:32 -04:00
James Phillips
d5191741a1
Cleans up the upgrade guide.
2016-09-01 00:22:09 -07:00
James Phillips
55ef6c54a6
Changes default for `leave_on_terminate` based on server or client mode.
2016-08-31 23:39:11 -07:00
James Phillips
4fd419d609
Adds a note about stale reads to the performance guide.
2016-08-30 18:11:05 -07:00
James Phillips
ed7356dd5c
Changes default DNS allow_stale to true.
2016-08-30 13:55:19 -07:00
James Phillips
2c9885d10d
Updates documentation with details on the Consul operator actions.
2016-08-30 13:15:37 -07:00
James Phillips
e5850d8a26
Adds new consul operator endpoint, CLI, and ACL and some basic Raft commands.
2016-08-30 00:02:50 -07:00
Pierre Delagrave
578602f248
Added website documentation for the new recursor_timeout parameter
2016-08-29 14:41:30 -04:00
James Phillips
970bb771f9
Tweaks formatting of Consul version.
2016-08-25 17:12:55 -07:00
James Phillips
8b19364964
Adds top-level link to performance guide.
2016-08-25 16:54:29 -07:00
James Phillips
c1c1a340e0
Sorts the guides (redux).
2016-08-25 16:47:54 -07:00
James Phillips
7b8837f46e
Sorts the guides.
2016-08-25 16:44:52 -07:00
James Phillips
e1f9f2fd87
Fixes a typo in the performance guide.
2016-08-25 16:13:54 -07:00
James Phillips
a9dcaa0ac9
Adds a note about 2 CPU cores.
2016-08-25 15:59:18 -07:00
James Phillips
17b70c7efd
Adds a max raft multiplier and tweaks documentation.
2016-08-25 15:36:05 -07:00
James Phillips
c432aa540d
Tweaks wording in performance guide.
2016-08-24 22:10:59 -07:00
James Phillips
57db4bcce6
Adds performance tuning capability for Raft, detuned defaults, and supplemental docs.
2016-08-24 21:58:37 -07:00
Brian Shumate
3d71951c97
Fix typo
2016-08-18 09:14:15 -04:00
James Phillips
3c2a73e670
Update outage.html.markdown
2016-08-17 18:41:56 -07:00
James Phillips
861efcc8c8
Merge pull request #2235 from robwdux/patch-1
...
update ca tutorial to one more recent and relevant
2016-08-17 18:00:03 -07:00
James Phillips
bedd0c5a9e
Makes protocol version a little clearer.
2016-08-17 11:29:09 -07:00
James Phillips
9d154a55ad
Update acl.html.markdown
2016-08-17 10:21:59 -07:00
kyhavlov
c0b5e0ee06
Fix links for ACL replication status
2016-08-17 12:41:04 -04:00
James Phillips
2af4ee0928
Update outage.html.markdown
2016-08-16 15:48:22 -07:00
James Phillips
23c981385d
Updates the 0.7-specific upgrade notes.
2016-08-16 15:10:52 -07:00
James Phillips
49dda31f4e
Updates the outage docs with details about new Raft behavior.
2016-08-16 15:10:37 -07:00
James Phillips
7a23a25402
Updates version documentation.
2016-08-16 14:15:13 -07:00
James Phillips
4c7a0ed3b0
Merge branch 'master' into f-deregister-critical
2016-08-16 12:53:21 -07:00
James Phillips
ba60afd5d8
Cleans up based on code review feedback.
2016-08-16 12:52:30 -07:00
James Phillips
9f7a973ace
Adds an `X-Consul-Translate-Addresses` to signal translation is enabled.
2016-08-16 11:31:41 -07:00
James Phillips
fbdd021ab9
Adds an "lan" tagged address so we have a way to get them all.
...
If we didn't have this, then there would be no way to know the LAN
address if address translation was turned on.
2016-08-16 10:49:03 -07:00
James Phillips
231f5a957f
Fixes a typo and adds an admonition about only being in Consul 0.7+.
2016-08-16 09:27:20 -07:00
James Phillips
4a3d7db24f
Adds ability to deregister a service based on critical check state longer than a timeout.
2016-08-16 01:00:26 -07:00
James Phillips
315b9d4ea4
Tweaks translate_wan_addr documentation.
...
Adds a note about HTTP being 0.7 and later only.
2016-08-15 16:23:01 -07:00
James Phillips
affbb27416
Merge pull request #2275 from hashicorp/pr-2118-slackpad
...
Translates node addresses to WAN addresses where appropriate.
2016-08-15 16:16:56 -07:00
James Phillips
b8fa011972
Updates docs for WAN address translation and tweaks some nearby unrelated docs.
2016-08-15 16:12:01 -07:00
Brian Shumate
f150a8a7a9
Add anchor
2016-08-15 16:48:54 -04:00
James Phillips
6dc6b3f1e2
Merge pull request #2241 from io41/patch-1
...
Update upgrading.html.markdown
2016-08-12 16:46:30 -07:00
James Phillips
077f048f0c
Merge pull request #2246 from atomicpirate/patch-1
...
Minor fix: "lookup up" -> "looking up"
2016-08-12 16:45:41 -07:00
James Phillips
8c6a843949
Merge pull request #2266 from hashicorp/pr-2096-slackpad
...
Compresses all DNS responses by default.
2016-08-11 16:28:51 -07:00
James Phillips
bcb0f71759
Finishes up DNS compression by adding opt-out, tests, and documentation. Fixes trim routine.
2016-08-11 16:27:08 -07:00
James Phillips
6687ce1abf
Merge pull request #2122 from pszymczyk/master
...
Add embedded-consul to download_tools page
2016-08-10 17:57:10 -07:00
James Phillips
bb412336db
Merge pull request #2006 from fusiondog/patch-1
...
Adds documentation about DNS forwarding with iptables.
2016-08-10 16:52:32 -07:00
James Phillips
db94764354
Merge pull request #2264 from hashicorp/pr-2045-slackpad
...
Enables stale mode for watchers.
2016-08-10 15:58:34 -07:00
James Phillips
2b65e7da05
Fixes a typo and adds stale documentation to website.
2016-08-10 15:46:28 -07:00
sweeneyb
14ec3290fa
Add support for dns port as a command line option
2016-08-10 04:05:56 +00:00
James Phillips
a984a6703c
Removes support for muxado and protocol version 1.
2016-08-09 18:10:04 -07:00
James Phillips
7b80f5d278
Adds a note about HTTP telemetry.
2016-08-09 16:03:59 -07:00
James Phillips
95930e3cb7
Merge pull request #2237 from hashicorp/f-acl-replication
...
Adds ACL replication.
2016-08-09 11:42:16 -07:00
James Phillips
3bcc819312
Removes brew info callout.
2016-08-09 08:18:15 -07:00
James Phillips
fd0a66740f
Merge pull request #2104 from jpartain89/patch-1
...
Update install.html.markdown OS X Instructions
2016-08-09 08:12:05 -07:00
Seth Vargo
c77436ce9b
Update links to serf
2016-08-08 12:44:27 -04:00
atomicpirate
5a77daac60
Minor fix: "lookup up" -> "looking up"
2016-08-05 10:18:13 -04:00
James Phillips
c499c4e7d3
Updates documentation for ACL replication.
2016-08-05 00:23:28 -07:00
James Phillips
4d738728d7
Update upgrade-specific.html.markdown
2016-08-04 06:39:50 -07:00
Tim Kersten
24272b27a3
Update upgrading.html.markdown
...
The change fixes a minor bug in the document that says consul supports back to version 0 when the example output says version 1, and makes the document less ambiguous by having a different "current" protocol and earliest supported protocol.
2016-08-03 21:11:02 +01:00
rob dux
376a0cbf6f
update ca tutorial to one more recent and relevant
2016-08-02 21:24:02 -05:00
Seth Vargo
31d427f925
Update arch diagram
2016-08-02 13:13:43 +05:30
Andrei Burd
094d7cb9e0
Added missing comma
2016-08-01 18:46:43 +03:00
James Phillips
85bd2a5459
Adds a cautionary note about the stats in the self API.
2016-07-29 13:45:25 -07:00
Brian Shumate
c41ace5f60
Updated FAQ entry
2016-07-29 14:43:51 -04:00
Brian Shumate
d36ca4cabc
Network ports.
...
- Added a table of protocols an ports used by Consul to FAQ.
2016-07-29 13:42:30 -04:00
James Phillips
4fb97a2ef9
Tweaks the agent docs for `EnableTagOverride`.
2016-07-23 14:48:54 -07:00
shalev67
f66bf3114a
Added api agent docs enableTagOverride var
2016-07-22 20:21:07 +03:00
Jason Martin
a1b38ececb
Escape verify_server_hostname angle-brackets
2016-07-20 15:57:07 -07:00
matt maier
5d020e72ed
Change circonus_broker_search_tag to circonus_broker_select_tag to match same change to command/agent/config.go
2016-07-20 11:44:38 -04:00
James Phillips
cfbe8f430e
Merge pull request #2193 from hashicorp/pr-2188-slackpad
...
Adds Circonus support for telemetry metrics.
2016-07-19 17:15:29 -07:00
James Phillips
129db848c7
Tweaks the docs a bit.
2016-07-19 15:54:52 -07:00
akbarahmed
79dd717f41
Merge remote-tracking branch 'upstream/master'
2016-07-19 11:01:55 -07:00
akbarahmed
591f6ca3ef
Unnest TaggedAddresses. Add sentence to mention that multiple Checks may
...
be specified as an array. Closes hashicorp/consul#2176
2016-07-19 10:55:46 -07:00
matt maier
1b6dd97864
Documentation for Circonus Telemetry integration
2016-07-18 16:24:49 -04:00
Stu Small
450d3dbe91
Fixing minor punctuation mistake.
2016-07-13 16:50:19 -06:00
Daniel Carbone
7dc0687903
Adding my lib to list of downloads
2016-07-13 08:28:44 -05:00
James Phillips
64e3033d3c
Merge pull request #2144 from janisz/add_marathon-consul
...
Added allegor/marathon-consul in community tools
2016-07-06 10:54:05 -07:00
James Phillips
f3841d5509
Merge pull request #2159 from myENA/website/consul-backinator
...
Add link to consul-backinator utility
2016-07-06 10:50:49 -07:00
Ryan Uber
5023c4add1
Merge pull request #1847 from mssola/dc-to-datacenter
...
[proposal] command: deprecated the -dc flag in the agent CLI
2016-07-05 13:01:51 -07:00
Aaron Hurt
e82c794fd5
Alter instructions for adding tools to the list
2016-07-02 15:37:43 -05:00
Aaron Hurt
6b23bf203c
Add link to consul-backinator utility
2016-07-02 15:33:47 -05:00
Sean Macdonald
525d977bd4
small typo
2016-07-02 01:29:00 -04:00
Ryan Uber
ab1654758f
Merge pull request #2137 from hashicorp/f-pq-near
...
Support "near" parameter in prepared query service block
2016-07-01 12:28:48 -07:00
Ryan Uber
2b2464403f
website: add upgrading note for Near param in PQ's
2016-07-01 12:26:14 -07:00
Ryan Uber
01b28b9581
website: document near parameter of prepared queries
2016-07-01 11:50:09 -07:00
James Phillips
eeb0ca636b
Adds a note about prepared queries to the coordinates internals guide.
2016-06-28 23:02:00 -07:00
janisz
fcd5233ad3
Added allegor/marathon-consul in community tools
...
With @dankraw we authored https://github.com/allegro/marathon-consul/ this is fork of https://github.com/CiscoCloud/marathon-consul that is no longer developed (see this comment https://github.com/CiscoCloud/marathon-consul/issues/17#issuecomment-161678453 ).
2016-06-24 23:42:07 +02:00
James Phillips
af30e17dcd
Merge pull request #2123 from hashicorp/f-key-metrics
...
Adds a key metrics section to the telemetry guide.
2016-06-18 04:01:15 +01:00
James Phillips
4c82c45ee9
Adds a key metrics section to the telemetry guide.
2016-06-17 18:57:42 +01:00
James Phillips
af332d6d77
Adds a link to the changelog.
2016-06-17 14:04:18 +01:00
Pawel Szymczyk
b6779f44f4
Add embedded-consul to download_tools page
2016-06-17 08:56:51 +02:00
fusiondog
0334039cea
Added an and
2016-06-09 17:05:00 -07:00
Sheldon Kwok
14abdbf5ad
Update agent.html.markdown
...
The documentation was not clear and I had to try with the cli to figure it out.
2016-06-09 16:48:18 -07:00
fusiondog
62dc83ce9c
Adding more detail about best use case.
2016-06-09 14:29:54 -07:00
Justin P
561f9bb268
Update install.html.markdown OS X Instructions
...
Homebrew is phasing out the use of the homebrew-cask add-on, moving it all over to just using `brew install <app>`.
Also, if you type `brew info consul` you can see that you can even automatically install the web-ui through brew as well.
2016-06-08 06:38:23 -05:00
Evan Gilman
73d4f5700b
Document `consul lock` shell execution
...
Consul lock executes children under a shell, which was previously
undocumented. Document it, and warn against cases where this can cause
children to leak when the lock is lost.
I have made this a dedicated section so it can easily be removed
later when we move to exec
https://github.com/hashicorp/consul/issues/1692
2016-06-03 17:01:05 -07:00
lihz
392c2605f3
add tcp in service/register
...
I found consul /service/register interface supprt TCP check as well.
2016-06-03 19:29:05 +08:00
Michael Barrow
9c3e2f1aef
Fix typo
...
Simple typo fix.
2016-05-29 10:24:44 -07:00
Sean Chittenden
446d76b432
Fix the href target for the `/v1/catalog/node/<node>` endpoint.
2016-05-27 00:12:17 -07:00
Andrew Widdersheim
c0940c8346
Fix typo
2016-05-26 10:46:55 -04:00
Sean Kilgore
edc31a9391
docs: clarify address specification for telemetry
...
Earlier on this page, under `addresses`, we say "For TCP addresses, these should simply be an IP address without the port. For example: 10.0.0.1, not 10.0.0.1:8500." Since we expect the port to be included for `_address` for telemetry, call it out specifically.
2016-05-24 12:55:23 -07:00
Saif Abid
8211555d0d
Fix json for /v1/catalog/node in markdown
...
add in a missing comma after the "Address" field
2016-05-19 14:41:41 -04:00
Seth Vargo
5c256b3b46
Add note about paid training
2016-05-16 16:46:14 -04:00
James Phillips
0f5aabcbbd
Merge pull request #2028 from hashicorp/f-atomic-kv
...
Adds support for atomic transactions spanning multiple KV entries.
2016-05-15 13:46:05 -07:00
Sean Chittenden
92298e3d02
Speling police
2016-05-15 09:13:52 -07:00
James Phillips
653387637a
Reduces the number of operations in a transaction to 64.
2016-05-14 21:40:46 -07:00
James Phillips
778b975e7a
Adds a get-tree verb to KV transaction operations.
2016-05-13 16:57:39 -07:00
James Phillips
570d46aa5f
Adds some size limiting features to transactions to help prevent abuse.
2016-05-13 13:39:01 -07:00
James Phillips
fbfb90a694
Removes null results for deletes, and preps for more than one result from an operation.
2016-05-13 01:47:55 -07:00
James Phillips
a37bf9de56
Adds a read-only optimized path for transactions.
2016-05-13 00:34:05 -07:00
James Phillips
17cd0ac4ec
Adds documentation for the transaction endpoint.
2016-05-11 14:18:47 -07:00
captainill
9960e636b4
add height to fix svg in announcement bnr
2016-05-03 17:41:55 -07:00
Seth Vargo
8baadf332a
Track enhanced links
2016-05-02 15:55:04 -04:00
fusiondog
b5751901da
Clarify need for recursors option.
...
Reiterating that the iptables option requires recursors to be set to resolve for any domain besides .consul
2016-04-29 16:45:59 -07:00
fusiondog
f142d4ab04
DNS forwarding with iptables
...
Adding notes on using iptables to forward ports
2016-04-28 23:27:28 -07:00
James Phillips
c6bde826a4
Fixes and clarifies the only_passing docs.
2016-04-27 14:55:38 -07:00
James Phillips
ceac68c5eb
Merge pull request #1762 from mshean/script-timeout
...
Add Timeout field to CheckMonitor
2016-04-24 23:08:06 -07:00
Seth Vargo
3ed4a0becb
Do not allow referrer to modify the sender
...
http://mathiasbynens.github.io/rel-noopener/
2016-04-22 23:31:45 -04:00
Sean Chittenden
0c7f697244
Tweak discussion regarding reaping to advise against adjusting these
...
values.
2016-04-21 14:24:41 -07:00
Sean Chittenden
bb7c3b75a3
Fix broken markdown
2016-04-20 18:46:01 -04:00
James Phillips
c11e1506c5
Merge pull request #1935 from hashicorp/f-reap-time
...
Makes reap time configurable for LAN and WAN.
2016-04-20 13:50:21 -07:00
James Phillips
cf00c11221
Sets an anti-footgun floor for the configurable reap time.
2016-04-20 13:49:51 -07:00
Matt Shean
fa575db15c
Update documentation for CheckMonitor timeout
2016-04-20 11:43:49 -07:00
James Phillips
963916e990
Clarifies default behavior of blank service addresses.
2016-04-20 10:16:06 -07:00
Ryan Uber
8855ec0e2d
website: mention 4K output limit for checks
2016-04-14 14:35:35 -07:00
Seth Vargo
1458f81836
Update website metadata fixes
2016-04-12 20:14:56 +01:00
James Phillips
724707649c
Merge pull request #1891 from romansky/patch-1
...
clerify RPC usage
2016-04-12 02:10:15 -07:00
James Phillips
7f55f9825f
Updates some docs that say reaping is not configurable.
2016-04-11 00:56:03 -07:00
James Phillips
eedeba682b
Makes reap time configurable for LAN and WAN.
2016-04-11 00:38:25 -07:00
Paul Hinze
333d65ee8a
website: force JS/CSS mime-types on deploy
...
Should fix occassional issues with application/octet-stream mime type
assets breaking JS/CSS on site.
2016-04-07 12:17:31 -05:00
Sean Chittenden
bd05093986
Add a note re: pre-0.7 behavior
2016-03-31 18:06:58 -07:00
Sean Chittenden
5994c9efbf
skip_leave_on_int's default changes based on agent mode
...
`skip_leave_on_int`'s behavior now changes based on whether or not the agent is acting as a client or server.
Fixes: 1687
2016-03-31 17:45:14 -07:00
Roman Landenband
2a034373ed
fix correct RPC entity
2016-03-30 12:21:52 +03:00
Sean Chittenden
fe0a7283d3
Reword `udp_answer_limit` for the better.
2016-03-29 23:48:22 -07:00
Sean Chittenden
fcee9779ae
Use industry jargon re: DNS round-robin
...
s/randomized DNS round-robin/round-robin DNS/
2016-03-29 23:07:42 -07:00
Sean Chittenden
d4f7f143f2
Whitespace, indent markdown correctly
2016-03-29 19:27:36 -07:00
Sean Chittenden
c5c8daf07a
Trim UDP responses per configuration
2016-03-29 19:27:21 -07:00
Sean Chittenden
4b5674bee3
Merge branch 'b-dns-single-record' of ssh://github.com/hashicorp/consul into b-dns-single-record
...
# Conflicts:
# command/agent/dns.go
2016-03-29 19:24:53 -07:00
Sean Chittenden
9fb64ab114
Allow adjusting the number of DNS records in a response...
...
Based on work done by @fusiondog in #1583 , extend the concept to use an integer instead of a boolean.
Fixes : #1583 && #1481
2016-03-29 19:23:56 -07:00
Roman Landenband
aebae0349b
clerify RPC usage
2016-03-29 15:10:28 +03:00
James Phillips
77ad084229
Fixes JSON in wildcard query example.
2016-03-23 14:33:20 -07:00
James Phillips
e60a095207
Merge pull request #1839 from foxel/patch-1
...
Clarification for advertise_addrs.rpc
2016-03-21 16:14:17 -07:00
Sean Chittenden
f33b2722d8
Update the docs slightly re: only_passing
...
Signed-off by: @slackpad
2016-03-21 16:07:56 -07:00
Sayalic
bb9ddee4a0
add inline code segment to enableTagOverride
2016-03-20 11:09:12 +08:00
Wim
b5d45322b4
Allow [::] as a bind address (binds to first public IPv6 address)
2016-03-18 23:59:44 +01:00
Miquel Sabaté Solà
4567963d8e
command: deprecated the -dc flag in the agent CLI
...
The `-dc` flag from the agent CLI command has been deprecated in favor of
`-datacenter`. This is done this way because:
- Other CLI commands used `-datacenter`. See: event, exec and watch.
- The agent configuration file uses `datacenter`.
Signed-off-by: Miquel Sabaté Solà <msabate@suse.com>
2016-03-18 15:44:35 +01:00
James Phillips
6b2ace6f6b
Fixes a few bugs in the prepared query doc.
2016-03-17 23:42:27 -07:00
James Phillips
6711662676
Adds a note about template query ACLs.
2016-03-17 08:21:58 -07:00
James Phillips
580cfc3831
Updates website to version 0.6.4.
2016-03-16 10:36:57 -07:00
Andrey Kupreychik
f4cc8e7620
Clarification for advertise_addrs.rpc
...
Clarification for advertise_addrs.rpc as it sets the server RPC port (default 8300)
2016-03-16 12:10:54 +05:00
James Phillips
adea7cda81
Merge pull request #1803 from tylert/doc-enc-update
...
Update agent encryption doc example
2016-03-10 20:06:02 -08:00
Alexandr Burdiyan
39b8dd934f
Update Consul Tools links
...
Docker Consul and Registrator projects were moved to another repositories.
2016-03-10 18:42:51 +01:00
James Phillips
01ae1e7dfe
Merge pull request #1820 from hashicorp/f-port-docs
...
Adds a reference to the network ports from the security guide.
2016-03-09 21:22:41 -08:00
James Phillips
c1de5b7a13
Adds a reference to the network ports from the security page.
2016-03-09 21:21:49 -08:00
James Phillips
89c5fcabf7
Adds a reference to the health endpoint in the intro.
...
Fixes #1739 .
2016-03-09 16:42:15 -08:00
Igor Dubinskiy
bc7b65452c
Fix doc typo
2016-03-09 12:41:49 -08:00
Tyler Tidman
43312b4a69
Update agent encryption doc example
2016-03-09 11:18:48 -05:00
James Phillips
e944b18d8b
Merge pull request #1813 from hashicorp/f-dns-trim
...
Makes sure UDP DNS responses aren't larger than allowed.
2016-03-08 23:26:04 -08:00
captainill
542b04558f
refactor to encapsulate all side affects of displaying announcement bnr in one file
2016-03-08 14:59:06 -08:00
captainill
af0edc9d9c
fix header on subpages when displaying annoucement bnr
2016-03-08 14:50:34 -08:00
Igor Dubinskiy
3a25860270
Make sure UDP DNS responses aren't larger than allowed
2016-03-07 16:41:17 -08:00
James Phillips
aa8cd2619d
Fixes broken example JSON.
2016-03-07 10:45:39 -08:00
James Phillips
eb7004f2b8
Renames "debug" endpoint and structures to "explain".
2016-03-07 10:45:39 -08:00
James Phillips
d7288e3a5e
Adds a prepared query debug endpoint.
2016-03-07 10:45:39 -08:00
James Phillips
fbd8e40cd5
Adds basic docs for prepared query templates.
2016-03-07 10:45:39 -08:00
vishalnayak
680b6ffc21
minor docs fix
2016-03-07 11:13:58 -05:00
James Phillips
b16f2e7392
Merge pull request #1789 from hashicorp/jt-enterprise-bnr
...
add announcement banner for Consul Enterprise
2016-03-04 17:33:05 -08:00
James Phillips
cce0ace53a
Fixes name of new query ACL.
2016-03-04 16:32:53 -08:00
Kevin Fishner
272c9fae1c
fix UTMs
2016-03-03 15:20:24 -08:00
Kevin Fishner
b71b0e7d0b
update copyedit to add the word build
2016-03-03 15:19:05 -08:00
captainill
293aba329f
add announcement banner for Consul Enterprise launch
2016-03-03 12:23:30 -08:00
James Phillips
7ebad899da
Adds a new PUT-based TTL check update endpoint.
2016-03-02 17:54:01 -08:00
James Phillips
ef1a588b7a
Merge pull request #1777 from hashicorp/b-port-docfix
...
TLS example and correcting error
2016-03-01 13:02:30 -08:00
James Phillips
b92243d8d0
Tweaks the address and advertise docs.
2016-03-01 13:01:13 -08:00
James Phillips
dca480e284
Cleans up the documents.
2016-02-24 18:05:58 -08:00
James Phillips
7d392118d2
Adds a check for users re-submitting the redacted token.
2016-02-24 17:35:26 -08:00
James Phillips
483898abe5
Renames "prepared_query" ACL policy to "query".
2016-02-24 17:02:06 -08:00
James Phillips
b64f19bb08
Adds an upgrade note about the new ACL behavior.
2016-02-24 01:33:10 -08:00
James Phillips
880cd21667
Refactors docs into a more complete state for prepared query ACLs.
2016-02-23 22:27:44 -08:00
James Phillips
67de77482e
Creates new "prepared-query" ACL type and new token capture behavior.
...
Prior to this change, prepared queries had the following behavior for
ACLs, which will need to change to support templates:
1. A management token, or a token with read access to the service being
queried needed to be provided in order to create a prepared query.
2. The token used to create the prepared query was stored with the query
in the state store and used to execute the query.
3. A management token, or the token used to create the query needed to be
supplied to perform and CRUD operations on an existing prepared query.
This was pretty subtle and complicated behavior, and won't work for
templates since the service name is computed at execution time. To solve
this, we introduce a new "prepared-query" ACL type, where the prefix
applies to the query name for static prepared query types and to the
prefix for template prepared query types.
With this change, the new behavior is:
1. A management token, or a token with "prepared-query" write access to
the query name or (soon) the given template prefix is required to do
any CRUD operations on a prepared query, or to list prepared queries
(the list is filtered by this ACL).
2. You will no longer need a management token to list prepared queries,
but you will only be able to see prepared queries that you have access
to (you get an empty list instead of permission denied).
3. When listing or getting a query, because it was easy to capture
management tokens given the past behavior, this will always blank out
the "Token" field (replacing the contents as <hidden>) for all tokens
unless a management token is supplied. Going forward, we should
discourage people from binding tokens for execution unless strictly
necessary.
4. No token will be captured by default when a prepared query is created.
If the user wishes to supply an execution token then can pass it in via
the "Token" field in the prepared query definition. Otherwise, this
field will default to empty.
5. At execution time, we will use the captured token if it exists with the
prepared query definition, otherwise we will use the token that's passed
in with the request, just like we do for other RPCs (or you can use the
agent's configured token for DNS).
6. Prepared queries with no name (accessible only by ID) will not require
ACLs to create or modify (execution time will depend on the service ACL
configuration). Our argument here is that these are designed to be
ephemeral and the IDs are as good as an ACL. Management tokens will be
able to list all of these.
These changes enable templates, but also enable delegation of authority to
manage the prepared query namespace.
2016-02-23 17:12:43 -08:00
csawyerYumaed
5026a40ec1
Update documentation - add Network Ports.
...
Update security.html.markdown add section on Network Port usage.
TODO: add Atlas port usage.
2016-02-23 11:27:15 -08:00
Michael Crilly
4c8725ef63
TLS example and correcting error
...
The example configuration file omits TLS support in the HTTP API. This is fine, but a second example demonstrating how to enable TLS over the HTTP API is harmless and, in fact, should be default practice.
Using the format `ip:port` in the "addresses" block will cause Consul to crash on reload/start. See issue (#1727 )[https://github.com/hashicorp/consul/issues/1727#issuecomment-184980751 ]
2016-02-17 15:24:37 +10:00
Kim Toms
7e8e11aea3
Update leader-election.html.markdown
...
Remove duplicate 'leader'
2016-02-14 09:32:23 -05:00
Sean Chittenden
d2745081f3
Allow adjusting the number of DNS records in a response...
...
Based on work done by @fusiondog in #1583 , extend the concept to use an integer instead of a boolean.
Fixes : #1583 && #1481
2016-02-12 12:18:25 -08:00
James Phillips
03602779c6
Fixes a typo.
2016-02-09 16:37:06 -08:00
Michael de Jong
b99824330d
Added a reference to Consultant in the Community Tools section.
2016-02-08 16:09:30 +01:00
James Phillips
d2cc2801fa
Merge pull request #1698 from hashicorp/pr-1547-slackpad
...
Implements WAN address translation.
2016-02-07 14:26:04 -08:00
James Phillips
590ab94d8d
Adds documentation for WAN address translation.
2016-02-07 11:12:19 -08:00
James Phillips
eb8ee9fce0
Merge pull request #1609 from kevinsimper/patch-1
...
Updating dns forwarding
2016-02-06 22:21:00 -08:00
James Phillips
d2d6b51fe4
Tweaks the telemetry docs.
2016-02-06 22:07:11 -08:00
James Phillips
d60be51f01
Merge pull request #1284 from nbrownus/telemetry
...
Option to disable hostnames from telemetry
2016-02-06 22:00:14 -08:00
James Phillips
64ec6d7d73
Adds a warning about DoS-ing the cluster with consul exec.
2016-02-05 17:36:19 -08:00
Seth Vargo
0cb4318b2e
Order
2016-02-04 12:12:58 -05:00
Justin Plock
9f13bba9b2
Add dropwizard-consul to the Community Tools page
2016-02-04 12:00:06 -05:00
Sean Chittenden
fa0d388ef1
Don't assume /bin/bash is installed on all OSes
...
Use `/usr/bin/env bash` where appropriate.
2016-02-02 15:16:49 -08:00
Sean Chittenden
7db70cfcb6
Iterate on the DNS forwarding docs
...
Specifically:
* add Dnsmasq examples for reverse DNS for most of the RFC1918, 5735, and 6598 netblocks.
* Highlight some example options for dnsmasq that are probably of interest.
* Add a small section on reverse DNS testing
* Break out BINDs troubleshooting with Dnsmasq's troubleshooting
Not an exhaustive sweep, but should be helpful when introducing consul to new environments.
2016-02-02 15:06:25 -08:00
Nate Brown
43a4f3fe02
Option to disable hostnames from telemetry
2016-01-29 13:44:48 -08:00
Raja Nadar
cd17cdc03d
fixing small typo in json
2016-01-29 01:25:23 -08:00
Jamie Kelly
f444121b13
Edit intro to present Consul instead of Terraform.
...
As this is Consul, not Terraform, it makes sense to use Consul in this intro instead of Terraform.
2016-01-27 20:44:10 +00:00
Justin Wilson
1eb780f1b5
Update services.html.markdown
2016-01-27 14:06:38 -06:00
Seth Vargo
40707934d2
Add structured data
2016-01-24 13:27:30 -05:00
Brent Rojas
784f3b1960
Update hashicorp-ecosystem.html.markdown
...
Remove slash from link to blog, which was causing 404 error.
2016-01-22 15:09:12 -08:00