Aleksandra Maciaga | 7a5e3f6 | 2020-03-03 12:35:16 +0100 | [diff] [blame] | 1 | version: "2.1" |
| 2 | |
| 3 | services: |
| 4 | ejbca: |
Aleksandra Maciaga | f630068 | 2020-03-04 17:11:30 +0100 | [diff] [blame] | 5 | image: primekey/ejbca-ce:6.15.2.5 |
Aleksandra Maciaga | 7a5e3f6 | 2020-03-03 12:35:16 +0100 | [diff] [blame] | 6 | hostname: cahostname |
| 7 | container_name: aafcert-ejbca |
| 8 | ports: |
Aleksandra Maciaga | 93f9ea4 | 2020-03-03 13:38:58 +0100 | [diff] [blame] | 9 | - "80:8080" |
| 10 | - "443:8443" |
Aleksandra Maciaga | 7a5e3f6 | 2020-03-03 12:35:16 +0100 | [diff] [blame] | 11 | volumes: |
Aleksandra Maciaga | 93f9ea4 | 2020-03-03 13:38:58 +0100 | [diff] [blame] | 12 | - $SCRIPTS_PATH:/opt/primekey/scripts |
Aleksandra Maciaga | 7a5e3f6 | 2020-03-03 12:35:16 +0100 | [diff] [blame] | 13 | healthcheck: |
| 14 | test: ["CMD-SHELL", "curl -kI https://localhost:8443/ejbca/publicweb/healthcheck/ejbcahealth"] |
Aleksandra Maciaga | 7ce0799 | 2020-03-09 10:01:12 +0100 | [diff] [blame] | 15 | interval: 20s |
Aleksandra Maciaga | 7a5e3f6 | 2020-03-03 12:35:16 +0100 | [diff] [blame] | 16 | timeout: 3s |
| 17 | retries: 9 |
Aleksandra Maciaga | 93f9ea4 | 2020-03-03 13:38:58 +0100 | [diff] [blame] | 18 | networks: |
| 19 | - certservice |
Aleksandra Maciaga | 7a5e3f6 | 2020-03-03 12:35:16 +0100 | [diff] [blame] | 20 | |
Aleksandra Maciaga | 13b7d05 | 2020-03-26 17:28:47 +0100 | [diff] [blame] | 21 | aaf-cert-service: |
Aleksandra Maciaga | 7a5e3f6 | 2020-03-03 12:35:16 +0100 | [diff] [blame] | 22 | image: nexus3.onap.org:10001/onap/org.onap.aaf.certservice.aaf-certservice-api:latest |
| 23 | volumes: |
| 24 | - $CONFIGURATION_PATH:/etc/onap/aaf/certservice/cmpServers.json |
Aleksandra Maciaga | 13b7d05 | 2020-03-26 17:28:47 +0100 | [diff] [blame] | 25 | - ./certs/truststore.jks:/etc/onap/aaf/certservice/certs/truststore.jks |
| 26 | - ./certs/root.crt:/etc/onap/aaf/certservice/certs/root.crt |
| 27 | - ./certs/certServiceServer-keystore.jks:/etc/onap/aaf/certservice/certs/certServiceServer-keystore.jks |
| 28 | - ./certs/certServiceServer-keystore.p12:/etc/onap/aaf/certservice/certs/certServiceServer-keystore.p12 |
| 29 | container_name: aafcert-service |
Aleksandra Maciaga | 7a5e3f6 | 2020-03-03 12:35:16 +0100 | [diff] [blame] | 30 | ports: |
Aleksandra Maciaga | 13b7d05 | 2020-03-26 17:28:47 +0100 | [diff] [blame] | 31 | - "8443:8443" |
Aleksandra Maciaga | 7a5e3f6 | 2020-03-03 12:35:16 +0100 | [diff] [blame] | 32 | depends_on: |
| 33 | ejbca: |
| 34 | condition: service_healthy |
Aleksandra Maciaga | 13b7d05 | 2020-03-26 17:28:47 +0100 | [diff] [blame] | 35 | healthcheck: |
| 36 | test: ["CMD-SHELL", "curl https://localhost:8443/actuator/health --cacert /etc/onap/aaf/certservice/certs/root.crt --cert-type p12 --cert /etc/onap/aaf/certservice/certs/certServiceServer-keystore.p12 --pass secret"] |
| 37 | interval: 10s |
| 38 | timeout: 3s |
| 39 | retries: 15 |
Aleksandra Maciaga | 93f9ea4 | 2020-03-03 13:38:58 +0100 | [diff] [blame] | 40 | networks: |
| 41 | - certservice |
| 42 | |
| 43 | |
| 44 | networks: |
| 45 | certservice: |
| 46 | driver: bridge |
Aleksandra Maciaga | 7a5e3f6 | 2020-03-03 12:35:16 +0100 | [diff] [blame] | 47 | |