app: title: Backstage Example App baseUrl: http://localhost:3000 googleAnalyticsTrackingId: # UA-000000-0 backend: baseUrl: http://localhost:7000 listen: port: 7000 database: client: sqlite3 connection: ':memory:' cors: origin: http://localhost:3000 methods: [GET, POST, PUT, DELETE] credentials: true csp: connect-src: ["'self'", 'http:', 'https:'] # workingDirectory: /tmp # Use this to configure a working directory for the scaffolder, defaults to the OS temp-dir # See README.md in the proxy-backend plugin for information on the configuration format proxy: '/circleci/api': target: https://circleci.com/api/v1.1 headers: Circle-Token: $env: CIRCLECI_AUTH_TOKEN '/jenkins/api': target: http://localhost:8080 headers: Authorization: $env: JENKINS_BASIC_AUTH_HEADER '/travisci/api': target: https://api.travis-ci.com changeOrigin: true headers: Authorization: $env: TRAVISCI_AUTH_TOKEN travis-api-version: 3 '/newrelic/apm/api': target: https://api.newrelic.com/v2 headers: X-Api-Key: $env: NEW_RELIC_REST_API_KEY '/buildkite/api': target: https://api.buildkite.com/v2/ headers: Authorization: $env: BUILDKITE_TOKEN organization: name: My Company techdocs: storageUrl: http://localhost:7000/api/techdocs/static/docs requestUrl: http://localhost:7000/api/techdocs generators: techdocs: 'docker' sentry: organization: my-company rollbar: organization: my-company accountToken: $env: ROLLBAR_ACCOUNT_TOKEN lighthouse: baseUrl: http://localhost:3003 kubernetes: serviceLocatorMethod: 'multiTenant' clusterLocatorMethods: - 'config' clusters: [] integrations: github: - host: github.com token: $env: GITHUB_TOKEN ### Example for how to add your GitHub Enterprise instance using the API: # - host: ghe.example.net # apiBaseUrl: https://ghe.example.net/api/v3 # token: # $env: GHE_TOKEN ### Example for how to add your GitHub Enterprise instance using raw HTTP fetches (token is optional): # - host: ghe.example.net # rawBaseUrl: https://ghe.example.net/raw # token: # $env: GHE_TOKEN gitlab: - host: gitlab.com token: $env: GITLAB_TOKEN bitbucket: - host: bitbucket.org username: $env: BITBUCKET_USERNAME appPassword: $env: BITBUCKET_APP_PASSWORD azure: - host: dev.azure.com token: $env: AZURE_TOKEN catalog: rules: - allow: [Component, API, Group, User, Template, Location] processors: githubOrg: providers: - target: https://github.com token: $env: GITHUB_TOKEN #### Example for how to add your GitHub Enterprise instance using the API: # - target: https://ghe.example.net # apiBaseUrl: https://ghe.example.net/api/v3 # token: # $env: GHE_TOKEN ldapOrg: ### Example for how to add your enterprise LDAP server # providers: # - target: ldaps://ds.example.net # bind: # dn: uid=ldap-reader-user,ou=people,ou=example,dc=example,dc=net # secret: { $secret: { env: LDAP_SECRET } } # users: # dn: ou=people,ou=example,dc=example,dc=net # options: # filter: (uid=*) # map: # description: l # groups: # dn: ou=access,ou=groups,ou=example,dc=example,dc=net # options: # filter: (&(objectClass=some-group-class)(!(groupType=email))) microsoftGraphOrg: ### Example for how to add your Microsoft Graph tenant #providers: # - target: https://graph.microsoft.com/v1.0 # authority: https://login.microsoftonline.com # tenantId: # $env: MICROSOFT_GRAPH_TENANT_ID # clientId: # $env: MICROSOFT_GRAPH_CLIENT_ID # clientSecret: # $env: MICROSOFT_GRAPH_CLIENT_SECRET_TOKEN # userFilter: accountEnabled eq true and userType eq 'member' # groupFilter: securityEnabled eq false and mailEnabled eq true and groupTypes/any(c:c+eq+'Unified') locations: # Backstage example components - type: url target: https://github.com/backstage/backstage/blob/master/packages/catalog-model/examples/all-components.yaml # Example component for github-actions - type: url target: https://github.com/backstage/backstage/blob/master/plugins/github-actions/examples/sample.yaml # Example component for techdocs - type: url target: https://github.com/backstage/backstage/blob/master/plugins/techdocs-backend/examples/documented-component/documented-component.yaml # Backstage example APIs - type: url target: https://github.com/backstage/backstage/blob/master/packages/catalog-model/examples/all-apis.yaml # Backstage example templates - type: url target: https://github.com/backstage/backstage/blob/master/plugins/scaffolder-backend/sample-templates/all-templates.yaml # Backstage example groups and users - type: url target: https://github.com/backstage/backstage/blob/master/packages/catalog-model/examples/acme-corp.yaml scaffolder: github: token: $env: GITHUB_TOKEN visibility: public # or 'internal' or 'private' gitlab: api: baseUrl: https://gitlab.com token: $env: GITLAB_TOKEN azure: baseUrl: https://dev.azure.com/{your-organization} api: token: $env: AZURE_TOKEN auth: session: secret: yaml session secret providers: google: development: clientId: $env: AUTH_GOOGLE_CLIENT_ID clientSecret: $env: AUTH_GOOGLE_CLIENT_SECRET github: development: clientId: $env: AUTH_GITHUB_CLIENT_ID clientSecret: $env: AUTH_GITHUB_CLIENT_SECRET enterpriseInstanceUrl: $env: AUTH_GITHUB_ENTERPRISE_INSTANCE_URL gitlab: development: clientId: $env: AUTH_GITLAB_CLIENT_ID clientSecret: $env: AUTH_GITLAB_CLIENT_SECRET audience: $env: GITLAB_BASE_URL saml: entryPoint: 'http://localhost:7001/' issuer: 'passport-saml' okta: development: clientId: $env: AUTH_OKTA_CLIENT_ID clientSecret: $env: AUTH_OKTA_CLIENT_SECRET audience: $env: AUTH_OKTA_AUDIENCE oauth2: development: clientId: $env: AUTH_OAUTH2_CLIENT_ID clientSecret: $env: AUTH_OAUTH2_CLIENT_SECRET authorizationUrl: $env: AUTH_OAUTH2_AUTH_URL tokenUrl: $env: AUTH_OAUTH2_TOKEN_URL oidc: development: adUrl: $env: AUTH_OIDC_AD_URL clientId: $env: AUTH_OIDC_CLIENT_ID clientSecret: $env: AUTH_OIDC_CLIENT_SECRET authorizationUrl: $env: AUTH_OIDC_AUTH_URL tokenUrl: $env: AUTH_OIDC_TOKEN_URL tokenSignedResponseAlg: $env: AUTH_OIDC_TOKEN_SIGNED_RESPONSE_ALG auth0: development: clientId: $env: AUTH_AUTH0_CLIENT_ID clientSecret: $env: AUTH_AUTH0_CLIENT_SECRET domain: $env: AUTH_AUTH0_DOMAIN microsoft: development: clientId: $env: AUTH_MICROSOFT_CLIENT_ID clientSecret: $env: AUTH_MICROSOFT_CLIENT_SECRET tenantId: $env: AUTH_MICROSOFT_TENANT_ID onelogin: development: clientId: $env: AUTH_ONELOGIN_CLIENT_ID clientSecret: $env: AUTH_ONELOGIN_CLIENT_SECRET issuer: $env: AUTH_ONELOGIN_ISSUER costInsights: engineerCost: 200000 products: computeEngine: name: Compute Engine icon: compute cloudDataflow: name: Cloud Dataflow icon: data cloudStorage: name: Cloud Storage icon: storage bigQuery: name: BigQuery icon: search metrics: DAU: name: Daily Active Users default: true MSC: name: Monthly Subscribers homepage: clocks: - label: UTC timezone: UTC - label: NYC timezone: 'America/New_York' - label: STO timezone: 'Europe/Stockholm' - label: TYO timezone: 'Asia/Tokyo'