Index

A

add user, Add User
adding users
node installation, Default Security
address, DistributionListenerInterface, Administration
admin, Administration, Metrics
administration, Communication, AvailabilityZoneMembership
Administration, Administration
address, Administration
transportPort, Administration
webEnable, Administration
webFileCacheTimeHandling, Administration
webFileSizeHandling, Administration
webMaximumFileCacheTimeMinutes, Administration
webMaximumFileSizeMegabytes, Administration
webPort, Administration
webServiceBindings, Administration
administration, clusters, StreamBase Runtime Administration Guide
administration, nodes, StreamBase Runtime Administration Guide
administration, transactional memory, StreamBase Runtime Administration Guide
administrator, Administrator Role
allowSecureCommunicationClientAuthentication, LDAP Authentication Realm, Local Authentication Realm
application
installation, Application Installation
start-up configuration load ordering, Fragment Configuration Load Order
associatedWithEngines, JavaEngine
authentication, User Authentication
web services, Web Services
authentication realm, Security
kerberos, Kerberos
ldap, LDAP
local, Local
oidc, OpenId Connect
openid connect, OpenId Connect
authentication realms, Authentication Realms
authenticationRealmName, WebServiceBinding
availability zone
default, Default Availability Zone
status, Availability Zones
availabilityZone, RouterBinding
AvailabilityZone, AvailabilityZone
dataDistributionPolicy, AvailabilityZone
dynamicPartitionPolicy, AvailabilityZone
minimumNumberOfVotes, AvailabilityZone
percentageOfVotes, AvailabilityZone
quorumMemberPattern, AvailabilityZone
staticPartitionPolicy, AvailabilityZone
AvailabilityZoneMembership, AvailabilityZoneMembership
dynamicPartitionBinding, AvailabilityZoneMembership
staticPartitionBindings, AvailabilityZoneMembership
votes, AvailabilityZoneMembership
availabilityZoneMemberships, Node
availabilityZones, NodeDeploy

C

change password, Change a Password
clientID, OIDC Identity Provider
clientSecret, OIDC Identity Provider
cluster (see high availability cluster)
authentication policies, Cluster Security Model
security, Cluster Security Model
communication, Node
Communication, Communication
administration, Communication
discoveryPort, Communication
discoveryRequestAddresses, Communication
distributionListenerInterfaces, Communication
numberSearchPorts, Communication
proxyDiscovery, Communication
secureCommunicationProfileName, Communication
configuration, Node, EngineBinding
activation, Managing Configuration
automatic loading of application, Overriding Default Configuration
deactivation, Managing Configuration
displaying loaded, Managing Configuration
export, Managing Configuration
life cycle, Managing Configuration
overriding default after node installation, Overriding Default Configuration
processing order, Overriding Default Configuration
removal, Managing Configuration
configuration type
java engine, Configuration
node deploy configuration, Configuration Map
security, Configuration
controlling named cache sizes, Named Caches
credential, Security

D

dataDistributionPolicy, AvailabilityZone
dataTransportPort, DistributionListenerInterface
default
availability zone, Default Availability Zone
defaultRedirectURL, OIDC Authentication Realm
deploy directories, Deploy Directories
engine, Engine Deploy Directories
node, Node Deploy Directories
search order, Deploy Directory Search Order
description, Node
disableOrder, StaticPartitionPolicy
discoveryPort, Communication
discoveryRequestAddresses, Communication
distribution
connectivity, Node Connectivity
current status, Distribution status
discovering nodes, Node Discovery
displaying configuration, Distribution configuration
life-cycle, Starting and stopping distribution
primary listener address, Primary Distribution Listener Address
Running state, Distribution states
states, Distribution states
Stopped state, Distribution states
distribution and high availability, Distribution and High Availability, Default Availability Zone, Default Availability Zone
DistributionListenerInterface, DistributionListenerInterface
address, DistributionListenerInterface
dataTransportPort, DistributionListenerInterface
secure, DistributionListenerInterface
distributionListenerInterfaces, Communication
docker
logging, Docker Logging
documentDiscoveryURL, OIDC Identity Provider
DynamicPartitionBinding, DynamicPartitionBinding
type, DynamicPartitionBinding
dynamicPartitionPolicy, AvailabilityZone
DynamicPartitionPolicy, DynamicPartitionPolicy
backupMemberPattern, DynamicPartitionPolicy
primaryMemberPattern, DynamicPartitionPolicy

E

elastic scaling, Elastic scaling with disaster recovery
elastic scaling with multiple availability zones, Elastic scaling with multiple availability zones
enableOrder, StaticPartitionPolicy
engine
administration, Administration
affinity, Engine affinity
explicit affinity, Engine affinity
implicit affinity, Engine affinity
java, Configuration
EngineBinding, EngineBinding
configuration, EngineBinding
fragmentIdentifier, EngineBinding
engines, Node, Engines, Administration, Administration
epadmin
ssh, Secure Shell (SSH)
excludedCipherSuitePatterns, Secure Communication Client Profile, Secure Communication Server Profile
externalClassPath, JavaEngine
externalNativeLibraryPath, JavaEngine

F

failedLoginLockoutDurationMinutes, Local Authentication Realm
failedLoginLockoutThreshold, Local Authentication Realm
fallbackAuthenticationRealmName, Kerberos Authentication Realm, OIDC Authentication Realm
fragmentIdentifier, EngineBinding

G

globalConfiguration, NodeDeploy

H

healthcheck, Healthcheck
help UI, Help UI
high availability
default availability zone, Default Availability Zone
node quorum, Node Quorum Management
rebalancing availability, Rebalancing an Availability Zone
restore a node to service, Restoring a Node to Service
restoring partitions active on multiple nodes, Recovering Partitions Active on Multiple Nodes
high availability cluster
adding a node, Adding a Node to a Cluster
availability zone status, Availability Zones
connectivity, Node Connectivity
discovering nodes, Node Discovery
partition status, Partition Status
removing a node, Removing a Node from Service
replace one node with another, Replacing One Node with Another
high availability example
elastic scaling, Elastic scaling with disaster recovery
elastic scaling with multiple availability zones, Elastic scaling with multiple availability zones
three-node active/active, Three node active/active
three-node active/active with disaster recovery, Three node active/active with disaster recovery
two-node active/active, Two node active/active
two-node active/stand-by, Two node active/stand-by
high availability examples, High Availability Examples, Elastic scaling with multiple availability zones, Elastic scaling with multiple availability zones
host, LDAP Server
hosts, Trusted Hosts

J

jaasDebug, Kerberos Authentication Realm
java engine
configuration type, Configuration
java engine configuration
audits, Audits
JavaEngine, JavaEngine
JVM, JVM
merge, Merging
values, Configuration
JavaEngine, JavaEngine
associatedWithEngines, JavaEngine
externalClassPath, JavaEngine
externalNativeLibraryPath, JavaEngine
jvmArgs, JavaEngine
jvmTuning, JavaEngine
systemProperties, JavaEngine
timerResolutionMilliseconds, JVM
jmx, JMX
address information, JMX
JVM, JVM
maximumDispatchThreads, JVM
minimumDispatchThreads, JVM
shutdownTimerSeconds, JVM
timerParallelism, JVM
jvmArgs, JavaEngine
jvmTuning, JavaEngine

L

ldap, LDAP
LDAPAuthenticationRealm, LDAP Authentication Realm
allowSecureCommunicationClientAuthentication, LDAP Authentication Realm
name, LDAP Authentication Realm
requirePassword, LDAP Authentication Realm
requireTrustedHostMembership, LDAP Authentication Realm
servers, LDAP Authentication Realm
LDAPServer, LDAP Server
host, LDAP Server
portNumber, LDAP Server
principalAuthenticationAlgorithm, LDAP Server
principalPasswordAttribute, LDAP Server
principalSearchFilter, LDAP Server
principalSearchRoots, LDAP Server
roleNameAttribute, LDAP Server
roleSearchFilter, LDAP Server
roleSearchRoots, LDAP Server
secureCommunicationProfileName, LDAP Server
systemPassword, LDAP Server
systemPrincipal, LDAP Server
loadOnNodesPattern, StaticPartitionPolicy
LocalAuthenticationRealm, Local Authentication Realm
allowSecureCommunicationClientAuthentication, Local Authentication Realm
failedLoginLockoutDurationMinutes, Local Authentication Realm
failedLoginLockoutThreshold, Local Authentication Realm
initialPrincipals, Local Authentication Realm
name, Local Authentication Realm
requirePassword, Local Authentication Realm
requireTrustedHostMembership, Local Authentication Realm
localhost, Default Security
locked, Principal
logback, Logging
com.tibco.ep.dtm.logging.logDirectory substitution variable, Configuration
com.tibco.ep.dtm.logging.logFileNamePrefix substitution variable, Configuration
process format, Configuration
transaction format, Configuration
usec format, Configuration
logging, Logging
administration, Administration
configuration, Configuration
docker, Docker Logging
logback, Logging
message severities, Logging

M

maximumDispatchThreads, JVM
metric
builtin.cpu.idle.utilization.percentage, Metrics
builtin.cpu.system.utilization.percentage, Metrics
builtin.cpu.user.utilization.percentage, Metrics
builtin.engine.<engine-name>.heap.memory.utilization.bytes, Metrics
builtin.engine.<engine-name>.heap.memory.utilization.percentage, Metrics
builtin.engine.<engine-name>.queue.<queue-name>.depth.second, Metrics
builtin.engine.<engine-name>.tuples.rate, Metrics
builtin.node.shared.memory.kilobytes, Metrics
builtin.node.shared.memory.percentage, Metrics
builtin.node.transactions.deadlocks.rate, Metrics
builtin.node.transactions.latency.average.microseconds, Metrics
builtin.node.transactions.total.rate, Metrics
metrics, Metrics
minimumDispatchThreads, JVM
minimumNumberOfVotes, AvailabilityZone
monitor, Monitor Role

N

name, Kerberos Authentication Realm, LDAP Authentication Realm, Local Authentication Realm, OIDC Authentication Realm, Secure Communication Client Profile, Secure Communication Server Profile
named cache
changing caching policy, Named Caches
creating, Named Caches
moving types between caches, Named Caches
removing a named cache, Named Caches
named cache management, Named Caches
node
default trusted hosts, Default Security
default user, Default Security
external dependencies, Providing External Dependencies
inherited environment, Inherited Environment
installation, Application Installation
installation principal, Default Security
logging, Logging
machine restart, Machine restart
metrics, Metrics
node directory, Application Installation
operating system user, Default Security
problem reporting, Problem Reporting
quiesce, Machine restart
removing, Removing
starting, Starting
startup configuration handling, Overriding Default Configuration
status, Status
stopping, Stopping
Node, Node
availabilityZoneMemberships, Node
communication, Node
configuration, Node
description, Node
engines, Node
nodeType, Node
routerBindings, Node
node administration authentication realm, Changing Node Administration Authentication Realm
node administration realm, Security
node deploy configuration, Node Deploy Configuration, StaticPartition, StaticPartition
Administration, Administration
audits, Audits
AvailabilityZone, AvailabilityZone
AvailabilityZoneMembership, AvailabilityZoneMembership
Communication, Communication
configuration type, Configuration Map
DistributionListenerInterface, DistributionListenerInterface
DynamicPartitionBinding, DynamicPartitionBinding
DynamicPartitionPolicy, DynamicPartitionPolicy
EngineBinding, EngineBinding
global, Overview
Node, Node
NodeDeploy, NodeDeploy
per-node, Overview
ProxyDiscovery, ProxyDiscovery
RouterBinding, RouterBinding
StaticPartition, StaticPartition
StaticPartitionBinding, StaticPartitionBinding
StaticPartitionPolicy, StaticPartitionPolicy
values, Configuration Objects
WebServiceBinding, WebServiceBinding
node installation
adding users, Default Security
node management, Nodes, Administration, Administration
node quorum
minimum number of votes, Node Quorum Management
percentage of votes, Node Quorum Management
node start
configuration failures, Starting
node stop
configuration failures, Stopping
node web service, Supported Web Services
admin, Administration
healthcheck, Healthcheck
metrics, Metrics
NodeDeploy, NodeDeploy
availabilityZones, NodeDeploy
globalConfiguration, NodeDeploy
nodes, NodeDeploy
nodes, NodeDeploy
nodeType, Node
numberSearchPorts, Communication

O

oidc, OpenId Connect
OIDCAuthenticationRealm, OIDC Authentication Realm
defaultRedirectURL, OIDC Authentication Realm
fallbackAuthenticationRealmName, OIDC Authentication Realm
identityProviders, OIDC Authentication Realm
name, OIDC Authentication Realm
pendingAuthenticationTimeoutSeconds, OIDC Authentication Realm
requireTrustedHostMembership, OIDC Authentication Realm
OIDCIdentityProvider, OIDC Identity Provider
clientID, OIDC Identity Provider
clientSecret, OIDC Identity Provider
documentDiscoveryURL, OIDC Identity Provider
identityAttributeName, OIDC Identity Provider
subjectProviderMappings, OIDC Identity Provider
operating system user, Default Security

P

Partition
rank, StaticPartition
partition
cluster summary, Partition Status
node summary, Partition Status
status, Partition Status
summary, Partition Status
password, Principal (see credential)
passwordExpirationPeriodDays, Principal
pendingAuthenticationTimeoutSeconds, OIDC Authentication Realm
percentageOfVotes, AvailabilityZone
portNumber, LDAP Server
primaryMemberPattern, DynamicPartitionPolicy
principal, Security
Principal, Principal
locked, Principal
password, Principal
passwordExpirationPeriodDays, Principal
roles, Principal
userName, Principal
principal attribute
automatic secure communication authentication, User Authentication
password, User Authentication
password expiration, User Authentication
password required, User Authentication
realm, User Authentication
roles, User Authentication
trusted host access, User Authentication
user name, User Authentication
principalAuthenticationAlgorithm, LDAP Server
principalPasswordAttribute, LDAP Server
principals, Local Authentication Realm
principalSearchFilter, LDAP Server
principalSearchRoots, LDAP Server
privilege, Security, Privilege
Privilege, Privilege
privileges, Privileges
problem reporting, Problem Reporting
proxyDiscovery, Communication
ProxyDiscovery, ProxyDiscovery
audits, ProxyDiscovery
remoteNodes, ProxyDiscovery

Q

quorumMemberPattern, AvailabilityZone

R

rank, StaticPartition
realm
backup local authentication realm, Backing Up a Local Authentication Realm
rebalancing availability zone, Rebalancing an Availability Zone
remoteNodes, ProxyDiscovery
remove user, Remove a User
replication, StaticPartitionBinding
requireClientAuthentication, Secure Communication Client Profile, Secure Communication Server Profile
requirePassword, LDAP Authentication Realm, Local Authentication Realm
requireTrustedHostMembership, Kerberos Authentication Realm, LDAP Authentication Realm, Local Authentication Realm, OIDC Authentication Realm
resource, Privilege
REST API documentation, REST API Documentation
restore node, Restoring a Node to Service
role, Security
roleNameAttribute, LDAP Server
roles, Privileges, Principal
administrator, Administrator Role
monitor, Monitor Role
roleSearchFilter, LDAP Server
roleSearchRoots, LDAP Server
RoleToPrivilegeMappings, Role to Privilege Mappings
RouterBinding, RouterBinding
availabilityZone, RouterBinding
routerName, RouterBinding
routerBindings, Node
routerName, RouterBinding

S

secure, DistributionListenerInterface
secure communication profiles, Secure Communication Profiles
SecureCommunicationClientProfile, Secure Communication Client Profile
secureCommunicationProfileName, Communication, LDAP Server
SecureCommunicationServerProfile, Secure Communication Server Profile
excludedCipherSuitePatterns, Secure Communication Client Profile, Secure Communication Server Profile
includedCipherSuites, Secure Communication Client Profile, Secure Communication Server Profile
includedProtocols, Secure Communication Client Profile, Secure Communication Server Profile
keyPassword, Secure Communication Client Profile, Secure Communication Server Profile
keyStore, Secure Communication Client Profile, Secure Communication Server Profile
keyStorePassword, Secure Communication Client Profile, Secure Communication Server Profile
keyStoreType, Secure Communication Client Profile, Secure Communication Server Profile
name, Secure Communication Client Profile, Secure Communication Server Profile
requireClientAuthentication, Secure Communication Client Profile, Secure Communication Server Profile
subjectNameElementToUserNameMappings, Secure Communication Server Profile
trustStore, Secure Communication Client Profile, Secure Communication Server Profile
trustStorePassword, Secure Communication Client Profile, Secure Communication Server Profile
trustStoreType, Secure Communication Client Profile, Secure Communication Server Profile
userNameObjectIdentifierSearchPath, Secure Communication Server Profile
security, Security, Trusted Hosts, Trusted Hosts
add user, Administration, Add User
administration commands, Privileges
audit log, Audit Log
authentication, User Authentication
authentication realms, Authentication Realms
backup realm, Administration
change password, Administration, Change a Password
changing node administration authentication realm, Changing Node Administration Authentication Realm
configuration type, Configuration
master secret, Sensitive Data Encryption
node administration realm, Security
operator commands, Administration
privileges, Privileges
remove user, Administration, Remove a User
reset authentication, Reset Node Authentication
roles, Privileges
secure communication profiles, Secure Communication Profiles
sensitive data encryption, Sensitive Data Encryption
trusted hosts, Trusted Hosts
update user, Administration, Update a User
user, User Authentication
security configuration
KerberosAuthenticationRealm, Kerberos Authentication Realm
LDAPAuthenticationRealm, LDAP Authentication Realm
LDAPServer, LDAP Server
LocalAuthenticationRealm, Local Authentication Realm
OIDCAuthenticationRealm, OIDC Authentication Realm
OIDCIdentityProvider, OIDC Identity Provider
Principal, Principal
Privilege, Privilege
RoleToPrivilegeMappings, Role to Privilege Mappings
SecureCommunicationClientProfile, Secure Communication Client Profile
SecureCommunicationServerProfile, Secure Communication Server Profile
TrustedHosts, Trusted Hosts
values, Configuration
security Privilege configuration
privilege, Privilege
resource, Privilege
security RoleToPrivilegeMappings configuration
privileges, Role to Privilege Mappings
security TrustedHosts configuration
hosts, Trusted Hosts
sensitive data encryption, Sensitive Data Encryption
serverKeytabFile, Kerberos Authentication Realm
serverPrincipalName, Kerberos Authentication Realm
servers, LDAP Authentication Realm
shutdownTimerSeconds, JVM
snapshot, Problem Reporting
failed node, Problem Reporting
running node, Problem Reporting
ssh, Secure Shell (SSH)
StaticPartition, StaticPartition
StaticPartitionBinding, StaticPartitionBinding
replication, StaticPartitionBinding
type, StaticPartitionBinding
staticPartitionBindings, AvailabilityZoneMembership
staticPartitionPolicy, AvailabilityZone
StaticPartitionPolicy, StaticPartitionPolicy
disableOrder, StaticPartitionPolicy
enableOrder, StaticPartitionPolicy
loadOnNodesPattern, StaticPartitionPolicy
staticPartitions, StaticPartitionPolicy
staticPartitions, StaticPartitionPolicy
subjectNameElementToUserNameMappings, Secure Communication Server Profile
subjectProviderMappings, OIDC Identity Provider
systemPassword, LDAP Server
systemPrincipal, LDAP Server
systemProperties, JavaEngine

T

three-node active/active, Three node active/active
three-node active/active with disaster recovery, Three node active/active with disaster recovery
ticketCacheFile, Kerberos Authentication Realm
timerParallelism, JVM
timerResolutionMilliseconds, JVM
transportPort, Administration
trusted hosts, Trusted Hosts
fully qualified domain name, Trusted Hosts
hostname, Trusted Hosts
IPv4 address, Trusted Hosts
IPv4 CIDR block, Trusted Hosts
IPv6 address, Trusted Hosts
partially qualified domain name, Trusted Hosts
TrustedHosts, Trusted Hosts
trustStore, Secure Communication Client Profile, Secure Communication Server Profile
trustStorePassword, Secure Communication Client Profile, Secure Communication Server Profile
trustStoreType, Secure Communication Client Profile, Secure Communication Server Profile
two-node active/active, Two node active/active
two-node active/stand-by, Two node active/stand-by
type, StaticPartitionBinding, DynamicPartitionBinding

U

update user, Update a User
user (see principal)
userName, Principal, Role to Privilege Mappings
userNameObjectIdentifierSearchPath, Secure Communication Server Profile

W

web, Web, Metrics, Metrics
web server
administration, Web Server
web service
administration, Web Services
REST API specification, REST API Documentation
web services, Web Services
webEnable, Administration
webFileCacheTimeHandling, Administration
webFileSizeHandling, Administration
webMaximumFileCacheTimeMinutes, Administration
webMaximumFileSizeMegabytes, Administration
webPort, Administration
WebServiceBinding, WebServiceBinding
authenticationRealmName, WebServiceBinding
webServiceBindings, Administration
webUIEnable, Administration