SOT
    • Introduction
    • User manual
      • Basic operation
        • Create and delete a device as a favorite
        • Use the filter function
      • Process
        • Compare processes
        • Change axes in the diagram
        • Show and hide axis in the diagram
        • Show special values
        • Display measured values in the diagram
        • Display process data in the diagram
        • Displaying diagram content
        • Permanently highlight a process curve
        • Temporarily highlight a process curve
        • Monitoring processes
        • Configure columns
        • Export process data
    • Operations manual
      • Overview
      • System architecture and interfaces
      • System requirements
        • trinity/static-content
        • trinity/trinity-core-service
        • trinity/trinity-gateway-service
      • Migration from previous versions
        • Influx database migration
        • Deletion of an old CPM installation
      • Setup and configuration
        • AI add-on: Process Intelligence
        • Database configuration
        • Port configuration
        • HELM configuration
        • Application account roles provided
        • Relational database
        • General logging
        • General OpenTelemetry
        • trinity/static-content
        • trinity/trinity-core-service
        • trinity/trinity-gateway-service
      • Start and shutdown
      • Regular operations
      • Failure handling
        • Processes are not received
        • Module is not visible in the Web Portal
        • How to verify if the broker is out of sync
        • Devices are missing
      • Backup and restore
      • Logging and monitoring
        • Observability
        • Logging characteristics
        • Logging format
        • Logging level
        • Required monitoring
        • Request-based logging format
        • Security logging format
        • Lifecycle logging format
        • Health verification endpoints
      • Known limitations
    • API documentation
Process Quality
  • Smart Operations Toolkit
    • Deviation Processor
    • Multitenant Access Control
    • Notification Service
    • Ticket Management
    • Web Portal
  • Shopfloor Management
    • Andon Live
    • KPI Reporting
    • Operational Routines
    • Shift Book
    • Shopfloor Management Administration
  • Product & Quality
    • Process Quality
    • AI Services
  • Machine & Equipment
    • Condition Monitoring
    • Device Portal
  • Enterprise & Shopfloor Integration
    • Information Router
    • Master Data Management

SOT Learning Portal

  • Process Quality
  • Operations manual
  • Setup and configuration
  • trinity/trinity-gateway-service

trinity/trinity-gateway-service

Variable Name Required Description Defaults to

MACMA_URL

The URL of the MACMA installation with protocol host and port.

-

MACMA_PQM_BACKEND_CLIENT_ID

The Client-ID of PQM which is configured in MACMA.

-

MACMA_PQM_FRONTEND_CLIENT_ID

The MACMA frontend client id of PQM

-

MACMA_PQM_BACKEND_CLIENT_SCOPE

The MACMA private client id of PQM

aud:{{NEXEED_PPM_MACMA_CLIENT_ID}}

MACMA_PQM_BACKEND_CLIENT_SECRET

The Client-Secret of PPM which is configured in MACMA (e.g. <uuid>).

-

MACMA_MACMA_BACKEND_CLIENT_SCOPE

aud:{{NEXEED_MACMA_MACMA_CLIENT_ID}}

MACMA_MMPD_BACKEND_CLIENT_SCOPE

aud:{{NEXEED_MMPD_MACMA_CLIENT_ID}}

MACMA_PORTAL_BACKEND_CLIENT_SCOPE

aud:{{NEXEED_PORTAL_MACMA_CLIENT_ID}}

JAVA_CACERT_FILE

Filename including location of the trusted certificate file (cacerts)

/etc/ssl/java/cacerts

JAVA_CACERT_STORE_PASS

Trust store password

changeit

JAVA_CACERT_KEY_PASS

Key password (cannot be different than trust store password)

changeit

JAVA_SERVER_CERT_FILE

Certificate file for server TLS endpoint

server.crt

JAVA_SERVER_KEY_FILE

Key file for server TLS endpoint in /etc/ssl/server

server.key

JAVA_SERVER_KEY_PASS

Optional password for key file in /etc/ssl/server

secret

JAVA_SERVER_CACERT_FILE

Optional additional trusted certificate in /etc/ssl/trusted

-

JAVA_KEYSTORE_FILE

Filename of keystore (relative to certificate volume)

/etc/ssl/java/java.pfx

JAVA_KEYSTORE_PASS

Key store password

changeit

JAVA_TLS_DISABLE

Optionally disable TLS for Java for specific use-cases

false

TGW_PORT

Service Port

8080

GATEWAY_HTTPS_KEYPASS

Keystore pass

-

GATEWAY_HTTPS_KEYSTORE

Keystore file

-

PORTAL_URL

Used to set security headers.

-

NEXEED_SERVER_TLS_ENABLED

Enables/Disables TLS

true

STATIC_CONTENT_URL

Routing information

http://ppm-static-content:80

TRINITY_CORE_SERVICE_URL

Routing information

http://trinity-core-service:9560

TRINITY_CORE_SERVICE_WS_URL

Routing information

ws://trinity-core-service:9560

TGW_DISABLE_RATE_LIMITER

Enables or disables user based rate limiting on HTTP endpoints.

false

Contents

© Robert Bosch Manufacturing Solutions GmbH 2023-2026, all rights reserved

Changelog Corporate information Legal notice Data protection notice Third party licenses