You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Description: Private key corresponding to the local client certificate as PEM encoded file. Use DEV_DSF_FHIR_CLIENT_CERTIFICATE_PRIVATE_KEY_PASSWORD or DEV_DSF_FHIR_CLIENT_CERTIFICATE_PRIVATE_KEY_PASSWORD_FILE if private key is encrypted
Recommendation: Use docker secret file to configure
Description: PEM encoded file with one or more trusted root certificates to validate server certificates for https connections to remote DSF FHIR servers
Recommendation: Use docker secret file to configure
Description: To enable verbose logging of requests to and replies from remote DSF FHIR servers, set to true
Default:false
DEV_DSF_FHIR_DB_LIQUIBASE_FORCEUNLOCK
Property: dev.dsf.fhir.db.liquibase.forceUnlock
Required: No
Description: To force liquibase to unlock the migration lock set to true
Recommendation: Only use this option temporarily to unlock a stuck DB migration step
Default:false
DEV_DSF_FHIR_DB_LIQUIBASE_LOCKWAITTIME
Property: dev.dsf.fhir.db.liquibase.lockWaitTime
Required: No
Description: Liquibase change lock wait time in minutes, default 2 minutes
Default:2
DEV_DSF_FHIR_DB_LIQUIBASE_PASSWORD or DEV_DSF_FHIR_DB_LIQUIBASE_PASSWORD_FILE
Property: dev.dsf.fhir.db.liquibase.password
Required: Yes
Description: Password to access the database from the DSF FHIR server to execute database migrations
Recommendation: Use docker secret file to configure by using DEV_DSF_FHIR_DB_LIQUIBASE_PASSWORD_FILE
Example:/run/secrets/db_liquibase.password
DEV_DSF_FHIR_DB_LIQUIBASE_USERNAME
Property: dev.dsf.fhir.db.liquibase.username
Required: No
Description: Username to access the database from the DSF FHIR server to execute database migrations
Default:liquibase_user
DEV_DSF_FHIR_DB_URL
Property: dev.dsf.fhir.db.url
Required: Yes
Description: Address of the database used for the DSF FHIR server
Recommendation: Change only if you don't use the provided docker-compose from the installation guide or made changes to the database settings/networking in the docker-compose
Example:jdbc:postgresql://db/fhir
DEV_DSF_FHIR_DB_USER_GROUP
Property: dev.dsf.fhir.db.user.group
Required: No
Description: Name of the user group to access the database from the DSF FHIR server
Default:fhir_users
DEV_DSF_FHIR_DB_USER_PASSWORD or DEV_DSF_FHIR_DB_USER_PASSWORD_FILE
Property: dev.dsf.fhir.db.user.password
Required: Yes
Description: Password to access the database from the DSF FHIR server
Recommendation: Use docker secret file to configure using DEV_DSF_FHIR_DB_USER_PASSWORD_FILE
Description: To enable logging of webservices requests set to true
Recommendation: This debug function should only be activated during development; WARNING: Confidential information may be leaked via the debug log!
Default:false
DEV_DSF_FHIR_SERVER_BASE_URL
Property: dev.dsf.fhir.server.base.url
Required: Yes
Description: Base address of this DSF FHIR server to read/store fhir resources
Example:https://foo.bar/fhir
DEV_DSF_FHIR_SERVER_INIT_BUNDLE
Property: dev.dsf.fhir.server.init.bundle
Required: No
Description: Fhir bundle containing the initial Allow-List, loaded on startup of the DSF FHIR server
Recommendation: Change only if you don't use the provided files from the installation guide, have local changes in the Allow-List or received an Allow-List from another source
Description: To disable static resource caching, set to false
Recommendation: Only set to false for development
Default:true
DEV_DSF_FHIR_SERVER_UI_THEME
Property: dev.dsf.fhir.server.ui.theme
Required: No
Description: UI theme parameter, adds a color indicator to the ui to distinguish dev, test and prod environments im configured; supported values: dev, test and prod
DEV_DSF_PROXY_NOPROXY
Property: dev.dsf.proxy.noProxy
Required: No
Description: Forward proxy no-proxy list, entries will match exactly or agianst (one level) sub-domains, if no port is specified - all ports are matched; comma or space separated list, YAML block scalars supported
Example:foo.bar, test.com:8080
DEV_DSF_PROXY_PASSWORD or DEV_DSF_PROXY_PASSWORD_FILE
Property: dev.dsf.proxy.password
Required: No
Description: Forward Proxy password
Recommendation: Configure password if proxy requires authentication, use docker secret file to configure using DEV_DSF_PROXY_PASSWORD_FILE
DEV_DSF_PROXY_URL
Property: dev.dsf.proxy.url
Required: No
Description: Forward (http/https) proxy url, use DEV_DSF_BPE_PROXY_NOPROXY to list domains that do not require a forward proxy
Example:http://proxy.foo:8080
DEV_DSF_PROXY_USERNAME
Property: dev.dsf.proxy.username
Required: No
Description: Forward proxy username
Recommendation: Configure username if proxy requires authentication
DEV_DSF_SERVER_API_HOST
Property: dev.dsf.server.api.host
Required: No
Description: API connector host, default in docker image: 0.0.0.0
Default:127.0.0.1
DEV_DSF_SERVER_API_PORT
Property: dev.dsf.server.api.port
Required: No
Description: API connector port, default in docker image: 8080
Description: Set to true to enable OIDC authorization code flow
Recommendation: Requires DEV_DSF_SERVER_AUTH_OIDC_PROVIDER_REALM_BASE_URL, DEV_DSF_SERVER_AUTH_OIDC_CLIENT_ID and DEV_DSF_SERVER_AUTH_OIDC_CLIENT_SECRET or DEV_DSF_SERVER_AUTH_OIDC_CLIENT_SECRET_FILE to be specified
Description: Set to true to enable OIDC back-channel logout
Recommendation: Requires DEV_DSF_SERVER_AUTH_OIDC_AUTHORIZATION_CODE_FLOW to be set to true (enabled), DEV_DSF_SERVER_AUTH_OIDC_CLIENT_ID and DEV_DSF_SERVER_AUTH_OIDC_BACK_CHANNEL_LOGOUT_PATH to be specified
Description: Private key corresponding to the client certificate for the OIDC provider as PEM encoded file. Use DEV_DSF_SERVER_AUTH_OIDC_PROVIDER_CLIENT_CERTIFICATE_PRIVATE_KEY_PASSWORD or DEV_DSF_SERVER_AUTH_OIDC_PROVIDER_CLIENT_CERTIFICATE_PRIVATE_KEY_PASSWORD_FILE if private key is encrypted
Recommendation: Use docker secret file to configure
DEV_DSF_SERVER_AUTH_OIDC_PROVIDER_CLIENT_CERTIFICATE_PRIVATE_KEY_PASSWORD or DEV_DSF_SERVER_AUTH_OIDC_PROVIDER_CLIENT_CERTIFICATE_PRIVATE_KEY_PASSWORD_FILE
Description: PEM encoded file with one or more trusted full CA chains to validate client certificates for https connections from local and remote clients
Recommendation: Use docker secret file to configure