Warren
Reference

Configuration reference

CommunityTeamPro

All settings are environment variables; several clusters, users and OIDC are easier in an application.yml mounted to /app/config/ (see the README).

RabbitMQ

VariableDefaultWhat it is
WARREN_RABBIT_MANAGEMENT_URLhttp://localhost:15672the management HTTP API
WARREN_RABBIT_HOST / WARREN_RABBIT_PORTlocalhost / 5672AMQP, used for replays
WARREN_RABBIT_USERNAME / WARREN_RABBIT_PASSWORDguest / guestneeds the management tag and read and write on the vhost; monitoring for disk and memory
WARREN_RABBIT_VHOST/the vhost of this cluster entry
WARREN_RABBIT_ID / WARREN_RABBIT_NAMEdefault / –id in URLs, display name
WARREN_DLQ_NAME_PATTERNdlq, dlx, dead-letter, .dead, .failed, _error, _skippednames that make a queue a dead-letter queue

Server, database, users

VariableDefaultWhat it is
WARREN_PORT8080HTTP port
WARREN_PUBLIC_URL–base URL for links in notifications
WARREN_DATA_DIR/app/dataembedded database
WARREN_DB_URL / _USERNAME / _PASSWORDembeddeda jdbc:postgresql:// URL for PostgreSQL (Pro)
WARREN_ADMIN_USERNAME / WARREN_ADMIN_PASSWORDadmin / adminthe first local admin; change it
WARREN_LICENSE_KEY / WARREN_LICENSE_FILE–a Team or Pro licence

Metrics and alerting

VariableDefaultWhat it is
WARREN_METRICS_SAMPLE_INTERVAL30show often queues are sampled and alert rules evaluated
WARREN_METRICS_RETENTION7draw samples
WARREN_METRICS_LONG_RETENTION90dPro: hourly roll-ups
WARREN_ALERTING_ENABLED / WARREN_ALERTING_RENOTIFY_AFTERtrue / 4halert evaluation, reminders while an alert fires
WARREN_SMTP_HOST / _PORT / _USERNAME / _PASSWORD / _FROM– / 587mail server for e-mail channels
WARREN_SMTP_STARTTLS / WARREN_SMTP_SSLtrue / falseSTARTTLS on 587, or TLS on 465
WARREN_PROMETHEUS_TOKEN–Team, Pro: bearer token for /actuator/prometheus

Actions and messages

VariableDefaultWhat it is
WARREN_REQUIRE_DRY_RUN / WARREN_DRY_RUN_EXPIRES_AFTERtrue / 10mbulk actions only on a dry run's token, and how long it holds
WARREN_MAX_PUBLISH_BYTES1 MiBlargest body a publish accepts
WARREN_PEEK_CACHE_MAX_BYTES256 MiBmemory for peeked bodies
WARREN_MASKING_ENABLEDtruehide sensitive values in the message view
WARREN_MASKING_FIELDSpassword,passwd,secret,token,apikey,…names of fields and headers to hide
WARREN_MASKING_VALUESEMAIL,IBAN,CARDvalue patterns hidden wherever they appear
WARREN_MASKING_ALLOW_REVEALtrueoperators and admins may show one message's values

Audit and approval

VariableDefaultWhat it is
WARREN_AUDIT_RETENTIONforeverage after which finished actions and resolved alert events are deleted
WARREN_AUDIT_PAYLOAD_BYTES16 KiBhow much of each message body the audit log keeps
WARREN_AUDIT_MIN_RETENTION–Pro: nothing younger is ever deleted
WARREN_AUDIT_WEBHOOK_URL–Pro: every audit event as JSON
WARREN_AUDIT_SYSLOG_HOST / _PORT / _PROTOCOL– / 514 / UDPPro: every audit event as syslog
WARREN_APPROVAL_ACTIONS–Pro: REPLAY, DISCARD, PURGE that wait for a second operator
WARREN_APPROVAL_EXPIRES_AFTER24hPro: when an undecided request expires