Skip to content

Instantly share code, notes, and snippets.

@davidfauth
Created May 28, 2020 17:19
Show Gist options
  • Save davidfauth/829f3e9a77a8ebf9e4206a2c54879eef to your computer and use it in GitHub Desktop.
Save davidfauth/829f3e9a77a8ebf9e4206a2c54879eef to your computer and use it in GitHub Desktop.
Neo4j_40_SSL
dbms.default_listen_address=0.0.0.0
dbms.default_advertised_address=xxx.xxx.xxx.xxx
# Bolt connector
dbms.connector.bolt.enabled=true
dbms.connector.bolt.tls_level=REQUIRED
dbms.connector.bolt.listen_address=:17687
dbms.connector.bolt.advertised_address=:17687
# HTTP Connector. There can be zero or one HTTP connectors.
dbms.connector.http.enabled=true
dbms.connector.http.listen_address=:17474
dbms.connector.http.advertised_address=:17474
# HTTPS Connector. There can be zero or one HTTPS connectors.
dbms.connector.https.enabled=true
dbms.connector.https.listen_address=:17473
dbms.connector.https.advertised_address=:17473
# Bolt SSL configuration
dbms.ssl.policy.bolt.enabled=true
dbms.ssl.policy.bolt.base_directory=certificates/default
dbms.ssl.policy.bolt.private_key=neo4jCert.key
dbms.ssl.policy.bolt.public_certificate=neo4jCert.crt
#dbms.ssl.policy.bolt.ciphers=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384,TLS_RSA_WITH_AES_256_CBC_SHA
dbms.ssl.policy.bolt.client_auth=NONE
dbms.ssl.policy.bolt.trusted_dir=certificates/bolt/trusted
#dbms.netty.ssl.provider=OPENSSL
# Https SSL configuration
dbms.ssl.policy.https.enabled=true
dbms.ssl.policy.https.base_directory=certificates/default
dbms.ssl.policy.https.private_key=neo4jCert.key
dbms.ssl.policy.https.public_certificate=neo4jCert.crt
dbms.ssl.policy.https.trusted_dir=certificates/https/trusted
#dbms.ssl.policy.https.ciphers=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384,TLS_RSA_WITH_AES_256_CBC_SHA
dbms.ssl.policy.https.client_auth=NONE
dbms.ssl.policy.https.tls_versions=TLSv1.2
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment