Settings and Configuration Tasks for Spotfire Enterprise Runtime for R - Server Edition
You can use these settings to limit the capabilities of running data functions based on Spotfire® Enterprise Runtime for R (a/k/a TERR™).
Setting / Configuration task | Default value | Description |
---|---|---|
terr.restricted.execution.mode (Enforce
restricted execution )
|
TRUE
|
Enforce restricted execution mode for all scripts. Restricted execution mode in the service allows executing arbitrary scripts without worrying that the script could do malicious things, such as deleting files or uploading confidential data to a server over the internet. For more information, see the topic Safeguarding Your Environment in the Spotfire® Enterprise Runtime for R - Server Edition Installation and Administration guide. |
use.engine.containers
|
|
Available on Linux only.
If your deployment is on a Linux server, then the default
configuration for the service is to use containers (the property
|
disable.spotfire.trust.checks
|
FALSE
|
Disable the trust check only if the service is installed on Linux, with Docker containers, where extra means have been taken to secure the container environment, or if all Spotfire users in the environment can be trusted. |
Set file size upload limit | 100MB | See the topic File Size Upload Limit in the Spotfire® Enterprise Runtime for R - Server Edition Installation and Administration guide for more information. |
Set TERR engine ports range | 61001 - 62000 | See Engine Ports in the Spotfire® Enterprise Runtime for R - Server Edition Installation and Administration guide for more information. |
Enable JMX Monitoring | OFF | See Monitoring the service using JMX in the Spotfire® Enterprise Runtime for R - Server Edition Installation and Administration guide for more information. |
- Restrict Network Access for TERR Scripts in Containers
By default, the containers in which Spotfire® Enterprise Runtime for R (a/k/a TERR™) scripts are running have access to network resources given to it. - Use a Custom Docker Image for Containerized TERR
If the node manager is running on a Linux computer, then you can run Spotfire® Enterprise Runtime for R - Server Edition (a/k/a the TERR™ service) in a Docker container.
- Restrict Network Access for TERR Scripts in Containers
By default, the containers in which Spotfire® Enterprise Runtime for R (a/k/a TERR™) scripts are running have access to network resources given to it. - Use a Custom Docker Image for Containerized TERR
If the node manager is running on a Linux computer, then you can run Spotfire® Enterprise Runtime for R - Server Edition (a/k/a the TERR™ service) in a Docker container.
Parent topic: Spotfire Enterprise Runtime for R - Server Edition
Related concepts