| # Copyright © 2018 AT&T USA |
| # Copyright © 2020 Huawei |
| # Licensed under the Apache License, Version 2.0 (the "License"); |
| # you may not use this file except in compliance with the License. |
| # You may obtain a copy of the License at |
| # |
| # http://www.apache.org/licenses/LICENSE-2.0 |
| # |
| # Unless required by applicable law or agreed to in writing, software |
| # distributed under the License is distributed on an "AS IS" BASIS, |
| # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. |
| # See the License for the specific language governing permissions and |
| # limitations under the License. |
| ################################################################# |
| # Global configuration defaults. |
| ################################################################# |
| global: |
| nodePortPrefix: 302 |
| nodePortPrefixExt: 304 |
| persistence: |
| mountPath: /dockerdata-nfs |
| security: |
| aaf: |
| enabled: false |
| aaf: |
| auth: |
| encrypted: 3EDC974C5CD7FE54C47C7490AF4D3B474CDD7D0FFA35A7ACDE3E209631E45F428976EAC0858874F17390A13149E63C90281DD8D20456 |
| mariadbGalera: |
| serviceName: mariadb-galera |
| servicePort: '3306' |
| |
| readinessCheck: |
| wait_for: |
| jobs: |
| - '{{ include "common.release" . }}-so-mariadb-config-job' |
| |
| ################################################################# |
| # Secrets metaconfig |
| ################################################################# |
| secrets: |
| - uid: db-user-creds |
| type: basicAuth |
| externalSecret: '{{ tpl (default "" .Values.db.userCredsExternalSecret) . }}' |
| login: '{{ .Values.db.userName }}' |
| password: '{{ .Values.db.userPassword }}' |
| passwordPolicy: required |
| - uid: db-admin-creds |
| type: basicAuth |
| externalSecret: '{{ tpl (default "" .Values.db.adminCredsExternalSecret) . }}' |
| login: '{{ .Values.db.adminName }}' |
| password: '{{ .Values.db.adminPassword }}' |
| passwordPolicy: required |
| |
| #secretsFilePaths: | |
| # - 'my file 1' |
| # - '{{ include "templateThatGeneratesFileName" . }}' |
| |
| ################################################################# |
| # Application configuration defaults. |
| ################################################################# |
| image: onap/so/openstack-adapter:1.9.2 |
| pullPolicy: Always |
| |
| db: |
| userName: so_user |
| userPassword: so_User123 |
| # userCredsExternalSecret: some secret |
| adminName: so_admin |
| adminPassword: so_Admin123 |
| # adminCredsExternalSecret: some secret |
| |
| aai: |
| auth: 2A11B07DB6214A839394AA1EC5844695F5114FC407FF5422625FB00175A3DCB8A1FF745F22867EFA72D5369D599BBD88DA8BED4233CF5586 |
| aaf: |
| auth: |
| encrypted: 7F182B0C05D58A23A1C4966B9CDC9E0B8BC5CD53BC8C7B4083D869F8D53E9BDC3EFD55C94B1D3F |
| org: |
| onap: |
| so: |
| adapters: |
| bpelauth: D1A67FA93B6A6419132D0F83CC771AF774FD3C60853C50C22C8C6FC5088CC79E9E81EDE9EA39F22B2F66A0068E |
| mso: |
| msoKey: 07a7159d3bf51a0e53be7a8f89699be7 |
| basicUser: poBpmn |
| auth: BEA8637716A7EB617DF472BA6552D22F68C1CB17B0D094D77DDA562F4ADAAC4457CAB848E1A4 |
| db: |
| auth: Basic YnBlbDpwYXNzd29yZDEk |
| |
| replicaCount: 1 |
| minReadySeconds: 10 |
| containerPort: &containerPort 8087 |
| logPath: ./logs/openstack/ |
| app: openstack-adapter |
| service: |
| type: ClusterIP |
| internalPort: *containerPort |
| externalPort: *containerPort |
| portName: so-optack-port |
| updateStrategy: |
| type: RollingUpdate |
| maxUnavailable: 1 |
| maxSurge: 1 |
| |
| ################################################################# |
| # soHelper part |
| ################################################################# |
| soHelpers: |
| nameOverride: so-openstack-cert-init |
| certInitializer: |
| nameOverride: so-openstack-cert-init |
| credsPath: /opt/app/osaaf/local |
| cadi: |
| apiEnforcement: org.onap.so.openStackAdapterPerm |
| containerPort: *containerPort |
| |
| # Resource Limit flavor -By Default using small |
| flavor: small |
| # Segregation for Different environment (Small and Large) |
| resources: |
| small: |
| limits: |
| memory: 4Gi |
| cpu: 2000m |
| requests: |
| memory: 1Gi |
| cpu: 500m |
| large: |
| limits: |
| memory: 8Gi |
| cpu: 4000m |
| requests: |
| memory: 2Gi |
| cpu: 1000m |
| unlimited: {} |
| livenessProbe: |
| path: /manage/health |
| port: 8087 |
| scheme: HTTP |
| initialDelaySeconds: 600 |
| periodSeconds: 60 |
| timeoutSeconds: 10 |
| successThreshold: 1 |
| failureThreshold: 3 |
| ingress: |
| enabled: false |
| config: |
| openStackUserName: "vnf_user" |
| openStackRegion: "RegionOne" |
| openStackKeyStoneUrl: "http://1.2.3.4:5000/v2.0" |
| openStackServiceTenantName: "service" |
| openStackEncryptedPasswordHere: "c124921a3a0efbe579782cde8227681e" |
| openStackTenantId: "d570c718cbc545029f40e50b75eb13df" |
| # "KEYSTONE" for keystone v2, "KEYSTONE_V3" for keystone v3 |
| openStackKeystoneVersion: "KEYSTONE" |
| nodeSelector: {} |
| tolerations: [] |
| affinity: {} |
| |
| #Pods Service Account |
| serviceAccount: |
| nameOverride: so-openstack-adapter |
| roles: |
| - read |