2017-10-08 01:03:53 -04:00
; < ? php http_response_code ( 403 ); /*
2016-08-12 12:23:15 -04:00
; config file for PrivateBin
2016-09-03 12:12:24 -04:00
;
2016-08-12 12:23:15 -04:00
; An explanation of each setting can be find online at https :// github . com / PrivateBin / PrivateBin / wiki / Configuration .
2012-04-29 13:15:06 -04:00
2012-05-19 17:59:41 -04:00
[ main ]
2017-01-01 10:33:11 -05:00
; ( optional ) set a project name to be displayed on the website
; name = " PrivateBin "
2015-08-30 18:01:35 -04:00
; enable or disable the discussion feature , defaults to true
discussion = true
; preselect the discussion feature , defaults to false
opendiscussion = false
2012-04-29 13:15:06 -04:00
2015-09-12 11:33:16 -04:00
; enable or disable the password feature , defaults to true
password = true
2015-08-17 17:18:33 -04:00
2015-09-16 16:51:48 -04:00
; enable or disable the file upload feature , defaults to false
fileupload = false
2015-08-29 14:29:14 -04:00
; preselect the burn - after - reading feature , defaults to false
2013-10-30 18:54:42 -04:00
burnafterreadingselected = false
2015-09-19 08:22:29 -04:00
; which display mode to preselect by default , defaults to " plaintext "
2015-09-12 11:33:16 -04:00
; make sure the value exists in [ formatter_options ]
2015-09-19 08:22:29 -04:00
defaultformatter = " plaintext "
2015-09-12 11:33:16 -04:00
; ( optional ) set a syntax highlighting theme , as found in css / prettify /
; syntaxhighlightingtheme = " sons-of-obsidian "
2015-08-30 18:01:35 -04:00
2017-01-07 14:35:23 -05:00
; size limit per paste or comment in bytes , defaults to 2 Mebibytes
2012-05-19 17:59:41 -04:00
sizelimit = 2097152
2017-01-08 04:02:07 -05:00
; template to include , default is " bootstrap " ( tpl / bootstrap . php )
2015-08-23 12:08:45 -04:00
template = " bootstrap "
2013-10-31 17:24:40 -04:00
2015-08-17 17:18:33 -04:00
; ( optional ) notice to display
; notice = " Note: This is a test service: Data may be deleted anytime. Kittens will die if you abuse this service. "
2016-07-10 05:02:31 -04:00
; by default PrivateBin will guess the visitors language based on the browsers
2015-09-19 05:21:13 -04:00
; settings . Optionally you can enable the language selection menu , which uses
; a session cookie to store the choice until the browser is closed .
languageselection = false
2015-10-18 14:38:07 -04:00
; set the language your installs defaults to , defaults to English
; if this is set and language selection is disabled , this will be the only language
; languagedefault = " en "
2016-01-31 03:56:06 -05:00
; ( optional ) URL shortener address to offer after a new paste is created
; it is suggested to only use this with self - hosted shorteners as this will leak
; the pastes encryption key
; urlshortener = " https://shortener.example.com/api?link= "
2017-12-25 08:59:15 -05:00
; ( optional ) Let users create a QR code for sharing the paste URL with one click .
; It works both when a new paste is created and when you view a paste .
; qrcode = true
2016-08-10 11:41:46 -04:00
; ( optional ) IP based icons are a weak mechanism to detect if a comment was from
; a different user when the same username was used in a comment . It might be
; used to get the IP of a non anonymous comment poster if the server salt is
; leaked and a SHA256 HMAC rainbow table is generated for all ( relevant ) IPs .
; Can be set to one these values : none / vizhash / identicon ( default ) .
; icon = none
2016-07-18 04:14:38 -04:00
2016-08-09 08:46:32 -04:00
; Content Security Policy headers allow a website to restrict what sources are
; allowed to be accessed in its context . You need to change this if you added
; custom scripts from third - party domains to your templates , e . g . tracking
; scripts or run your site behind certain DDoS - protection services .
; Check the documentation at https :// content - security - policy . com /
2017-02-01 12:34:13 -05:00
; Note : If you use a bootstrap theme , you can remove the allow - popups from the sandbox restrictions .
2018-07-01 08:59:24 -04:00
; By default this disallows to load images from third - party servers , e . g . when they are embedded in pastes . If you wish to allow that , you can adjust the policy here . See https :// github . com / PrivateBin / PrivateBin / wiki / FAQ #why-does-not-it-load-embedded-images for details.
2019-06-16 01:06:58 -04:00
; cspheader = " default-src 'none'; manifest-src 'self'; connect-src *; script-src 'self' 'unsafe-eval'; style-src 'self'; font-src 'self'; img-src 'self' data: blob:; media-src blob:; object-src blob:; Referrer-Policy: 'no-referrer'; sandbox allow-same-origin allow-scripts allow-forms allow-popups allow-modals "
2016-08-09 08:46:32 -04:00
2016-07-11 05:58:15 -04:00
; stay compatible with PrivateBin Alpha 0.19 , less secure
2016-07-06 05:37:13 -04:00
; if enabled will use base64 . js version 1.7 instead of 2.1 . 9 and sha1 instead of
; sha256 in HMAC for the deletion token
zerobincompatibility = false
2019-06-17 15:40:37 -04:00
; enable or disable the warning message when the site is served over HTTP instead of HTTPS , defaults to true
httpwarning = true
2013-10-30 18:54:42 -04:00
[ expire ]
; expire value that is selected per default
; make sure the value exists in [ expire_options ]
2015-08-22 16:46:35 -04:00
default = " 1week "
2013-10-30 18:54:42 -04:00
[ expire_options ]
; Set each one of these to the number of seconds in the expiration period ,
; or 0 if it should never expire
5 min = 300
10 min = 600
1 hour = 3600
1 day = 86400
1 week = 604800
; Well this is not * exactly * one month , it ' s 30 days :
1 month = 2592000
1 year = 31536000
never = 0
2015-09-12 11:33:16 -04:00
[ formatter_options ]
; Set available formatters , their order and their labels
plaintext = " Plain Text "
syntaxhighlighting = " Source Code "
markdown = " Markdown "
2012-05-19 17:59:41 -04:00
[ traffic ]
; time limit between calls from the same IP address in seconds
2013-10-30 18:54:42 -04:00
; Set this to 0 to disable rate limiting .
2012-05-19 17:59:41 -04:00
limit = 10
2015-09-18 16:31:01 -04:00
; ( optional ) if your website runs behind a reverse proxy or load balancer ,
; set the HTTP header containing the visitors IP address , i . e . X_FORWARDED_FOR
; header = " X_FORWARDED_FOR "
; directory to store the traffic limits in
2012-05-19 17:59:41 -04:00
dir = PATH " data "
2012-04-30 16:58:08 -04:00
2016-07-18 03:13:23 -04:00
[ purge ]
; minimum time limit between two purgings of expired pastes , it is only
; triggered when pastes are created
2016-07-18 08:47:32 -04:00
; Set this to 0 to run a purge every time a paste is created .
2016-07-18 03:13:23 -04:00
limit = 300
; maximum amount of expired pastes to delete in one purge
; Set this to 0 to disable purging . Set it higher , if you are running a large
; site
batchsize = 10
; directory to store the purge limit in
dir = PATH " data "
2012-05-19 17:59:41 -04:00
[ model ]
2012-04-29 13:15:06 -04:00
; name of data model class to load and directory for storage
2016-08-09 05:54:42 -04:00
; the default model " Filesystem " stores everything in the filesystem
class = Filesystem
2015-08-30 18:01:35 -04:00
[ model_options ]
dir = PATH " data "
2012-04-29 13:15:06 -04:00
2012-05-19 17:59:41 -04:00
;[ model ]
2012-04-29 13:15:06 -04:00
; example of DB configuration for MySQL
2016-08-09 05:54:42 -04:00
; class = Database
2012-05-19 17:59:41 -04:00
;[ model_options ]
2016-07-11 05:58:15 -04:00
; dsn = " mysql:host=localhost;dbname=privatebin;charset=UTF8 "
; tbl = " privatebin_ " ; table prefix
; usr = " privatebin "
2012-05-19 17:59:41 -04:00
; pwd = " Z3r0P4ss "
; opt [ 12 ] = true ; PDO :: ATTR_PERSISTENT
2012-04-29 13:15:06 -04:00
2012-05-19 17:59:41 -04:00
;[ model ]
2012-04-29 13:15:06 -04:00
; example of DB configuration for SQLite
2016-08-09 05:54:42 -04:00
; class = Database
2015-08-30 18:01:35 -04:00
;[ model_options ]
; dsn = " sqlite: " PATH " data/db.sq3 "
; usr = null
; pwd = null
2016-07-06 05:37:13 -04:00
; opt [ 12 ] = true ; PDO :: ATTR_PERSISTENT