Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 1 | # Copyright © 2020 Samsung Electronics, highstreet technologies GmbH |
vaibhav_16dec | e04b2fe | 2018-03-22 09:07:12 +0000 | [diff] [blame] | 2 | # Copyright © 2017 Amdocs, Bell Canada |
Remigiusz Janeczek | 42177a1 | 2020-12-10 13:10:15 +0100 | [diff] [blame] | 3 | # Copyright © 2021 Nokia |
vaibhav_16dec | e04b2fe | 2018-03-22 09:07:12 +0000 | [diff] [blame] | 4 | # |
| 5 | # Licensed under the Apache License, Version 2.0 (the "License"); |
| 6 | # you may not use this file except in compliance with the License. |
| 7 | # You may obtain a copy of the License at |
| 8 | # |
| 9 | # http://www.apache.org/licenses/LICENSE-2.0 |
| 10 | # |
| 11 | # Unless required by applicable law or agreed to in writing, software |
| 12 | # distributed under the License is distributed on an "AS IS" BASIS, |
| 13 | # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. |
| 14 | # See the License for the specific language governing permissions and |
| 15 | # limitations under the License. |
| 16 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 17 | ################################################################# |
| 18 | # Global configuration defaults. |
| 19 | ################################################################# |
| 20 | global: |
| 21 | nodePortPrefix: 302 |
jmac | 0e4f717 | 2018-09-07 18:06:43 +0000 | [diff] [blame] | 22 | nodePortPrefixExt: 304 |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 23 | persistence: |
| 24 | mountPath: /dockerdata-nfs |
Agarwal, Ruchira (ra1926) | ec7c75e | 2019-10-01 17:36:24 +0000 | [diff] [blame] | 25 | aafEnabled: true |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 26 | mariadbGalera: |
| 27 | #This flag allows SO to instantiate its own mariadb-galera cluster |
| 28 | #If shared instance is used, this chart assumes that DB already exists |
| 29 | localCluster: false |
| 30 | service: mariadb-galera |
| 31 | internalPort: 3306 |
| 32 | nameOverride: mariadb-galera |
| 33 | |
| 34 | ################################################################# |
| 35 | # Secrets metaconfig |
| 36 | ################################################################# |
| 37 | secrets: |
| 38 | - uid: db-root-password |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 39 | name: &rootDbSecret '{{ include "common.release" . }}-sdnc-db-root-password' |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 40 | type: password |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 41 | # If we're using shared mariadb, we need to use the secret name (second |
| 42 | # part). |
| 43 | # If not, we do the same trick than for user db secret hat allows you |
| 44 | # override this secret using external one with the same field that is used |
| 45 | # to pass this to subchart. |
Krzysztof Opasiak | ab7a6bb | 2020-03-24 03:30:51 +0100 | [diff] [blame] | 46 | externalSecret: '{{ .Values.global.mariadbGalera.localCluster | |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 47 | ternary ((hasSuffix "sdnc-db-root-password" (index .Values "mariadb-galera" "rootUser" "externalSecret")) | |
| 48 | ternary |
| 49 | "" |
| 50 | (tpl (default "" (index .Values "mariadb-galera" "rootUser" "externalSecret")) .)) |
| 51 | (include "common.mariadb.secret.rootPassSecretName" |
| 52 | (dict "dot" . |
| 53 | "chartName" .Values.global.mariadbGalera.nameOverride)) }}' |
| 54 | password: '{{ (index .Values "mariadb-galera" "rootUser" "password") }}' |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 55 | - uid: db-secret |
| 56 | name: &dbSecretName '{{ include "common.release" . }}-sdnc-db-secret' |
| 57 | type: basicAuth |
| 58 | # This is a nasty trick that allows you override this secret using external one |
| 59 | # with the same field that is used to pass this to subchart |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 60 | externalSecret: '{{ (hasSuffix "sdnc-db-secret" (index .Values "mariadb-galera" "db" "externalSecret")) | |
| 61 | ternary |
| 62 | "" |
| 63 | (tpl (default "" (index .Values "mariadb-galera" "db" "externalSecret")) .) }}' |
| 64 | login: '{{ index .Values "mariadb-galera" "db" "user" }}' |
| 65 | password: '{{ index .Values "mariadb-galera" "db" "password" }}' |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 66 | - uid: odl-creds |
| 67 | name: &odlCredsSecretName '{{ include "common.release" . }}-sdnc-odl-creds' |
| 68 | type: basicAuth |
| 69 | externalSecret: '{{ .Values.config.odlCredsExternalSecret }}' |
| 70 | login: '{{ .Values.config.odlUser }}' |
| 71 | password: '{{ .Values.config.odlPassword }}' |
| 72 | # For now this is left hardcoded but should be revisited in a future |
| 73 | passwordPolicy: required |
demskeq8 | 9d26b33 | 2021-01-14 16:45:28 +0100 | [diff] [blame] | 74 | - uid: dmaap-proxy-creds |
| 75 | name: &dmaapProxyCredsSecretName '{{ include "common.release" . }}-sdnc-dmaap-proxy-creds' |
| 76 | type: basicAuth |
| 77 | externalSecret: '{{ .Values.config.dmaapProxyCredsExternalSecret }}' |
| 78 | login: '{{ .Values.config.sdnr.dmaapProxy.user }}' |
| 79 | password: '{{ .Values.config.sdnr.dmaapProxy.password }}' |
| 80 | # For now this is left hardcoded but should be revisited in a future |
| 81 | passwordPolicy: required |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 82 | - uid: netbox-apikey |
| 83 | type: password |
| 84 | externalSecret: '{{ .Values.config.netboxApikeyExternalSecret }}' |
| 85 | password: '{{ .Values.config.netboxApikey }}' |
| 86 | passwordPolicy: required |
Dan Timoney | 9e310e7 | 2021-02-23 11:25:39 -0500 | [diff] [blame] | 87 | - uid: aai-truststore-password |
| 88 | type: password |
| 89 | externalSecret: '{{ .Values.config.aaiTruststoreExternalSecret }}' |
| 90 | password: '{{ .Values.config.aaiTruststorePassword }}' |
| 91 | passwordPolicy: required |
| 92 | - uid: ansible-truststore-password |
| 93 | type: password |
| 94 | externalSecret: '{{ .Values.config.ansibleTruststoreExternalSecret }}' |
| 95 | password: '{{ .Values.config.ansibleTruststorePassword }}' |
| 96 | passwordPolicy: required |
| 97 | - uid: truststore-password |
| 98 | type: password |
| 99 | externalSecret: '{{ .Values.config.truststoreExternalSecret }}' |
| 100 | password: '{{ .Values.config.truststorePassword }}' |
| 101 | passwordPolicy: required |
| 102 | - uid: keystore-password |
| 103 | type: password |
| 104 | externalSecret: '{{ .Values.config.keystoreExternalSecret }}' |
| 105 | password: '{{ .Values.config.keystorePassword }}' |
| 106 | passwordPolicy: required |
| 107 | - uid: dmaap-authkey |
| 108 | type: password |
| 109 | externalSecret: '{{ .Values.config.dmaapAuthKeyExternalSecret }}' |
| 110 | password: '{{ .Values.config.dmaapAuthKey }}' |
| 111 | passwordPolicy: required |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 112 | - uid: aai-user-creds |
| 113 | type: basicAuth |
| 114 | externalSecret: '{{ .Values.config.aaiCredsExternalSecret}}' |
| 115 | login: '{{ .Values.config.aaiUser }}' |
| 116 | password: '{{ .Values.config.aaiPassword }}' |
| 117 | passwordPolicy: required |
Dan Timoney | 9e310e7 | 2021-02-23 11:25:39 -0500 | [diff] [blame] | 118 | - uid: so-user-creds |
| 119 | type: basicAuth |
| 120 | externalSecret: '{{ .Values.config.soCredsExternalSecret}}' |
| 121 | login: '{{ .Values.config.soUser }}' |
| 122 | password: '{{ .Values.config.soPassword }}' |
| 123 | passwordPolicy: required |
| 124 | - uid: neng-user-creds |
| 125 | type: basicAuth |
| 126 | externalSecret: '{{ .Values.config.nengCredsExternalSecret}}' |
| 127 | login: '{{ .Values.config.nengUser }}' |
| 128 | password: '{{ .Values.config.nengPassword }}' |
| 129 | passwordPolicy: required |
| 130 | - uid: cds-user-creds |
| 131 | type: basicAuth |
| 132 | externalSecret: '{{ .Values.config.cdsCredsExternalSecret}}' |
| 133 | login: '{{ .Values.config.cdsUser }}' |
| 134 | password: '{{ .Values.config.cdsPassword }}' |
| 135 | passwordPolicy: required |
| 136 | - uid: honeycomb-user-creds |
| 137 | type: basicAuth |
| 138 | externalSecret: '{{ .Values.config.honeycombCredsExternalSecret}}' |
| 139 | login: '{{ .Values.config.honeycombUser }}' |
| 140 | password: '{{ .Values.config.honeycombPassword }}' |
| 141 | passwordPolicy: required |
| 142 | - uid: dmaap-user-creds |
| 143 | type: basicAuth |
| 144 | externalSecret: '{{ .Values.config.dmaapCredsExternalSecret}}' |
| 145 | login: '{{ .Values.config.dmaapUser }}' |
| 146 | password: '{{ .Values.config.dmaapPassword }}' |
| 147 | passwordPolicy: required |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 148 | - uid: modeling-user-creds |
| 149 | type: basicAuth |
| 150 | externalSecret: '{{ .Values.config.modelingCredsExternalSecret}}' |
| 151 | login: '{{ .Values.config.modelingUser }}' |
| 152 | password: '{{ .Values.config.modelingPassword }}' |
| 153 | passwordPolicy: required |
| 154 | - uid: restconf-creds |
| 155 | type: basicAuth |
| 156 | externalSecret: '{{ .Values.config.restconfCredsExternalSecret}}' |
| 157 | login: '{{ .Values.config.restconfUser }}' |
| 158 | password: '{{ .Values.config.restconfPassword }}' |
| 159 | passwordPolicy: required |
| 160 | - uid: ansible-creds |
| 161 | name: &ansibleSecretName '{{ include "common.release" . }}-sdnc-ansible-creds' |
| 162 | type: basicAuth |
| 163 | externalSecret: '{{ .Values.config.ansibleCredsExternalSecret}}' |
| 164 | login: '{{ .Values.config.ansibleUser }}' |
| 165 | password: '{{ .Values.config.ansiblePassword }}' |
| 166 | passwordPolicy: required |
| 167 | - uid: scaleout-creds |
| 168 | type: basicAuth |
| 169 | externalSecret: '{{ .Values.config.scaleoutCredsExternalSecret}}' |
| 170 | login: '{{ .Values.config.scaleoutUser }}' |
| 171 | password: '{{ .Values.config.scaleoutPassword }}' |
| 172 | passwordPolicy: required |
demskeq8 | b43e92c | 2021-02-12 15:43:48 +0100 | [diff] [blame] | 173 | - uid: oauth-token-secret |
| 174 | type: password |
| 175 | externalSecret: '{{ ternary (tpl (default "" .Values.config.sdnr.oauth.tokenExternalSecret) .) "oauth-disabled" .Values.config.sdnr.oauth.enabled }}' |
| 176 | password: '{{ .Values.config.sdnr.oauth.tokenSecret }}' |
| 177 | passwordPolicy: required |
| 178 | - uid: keycloak-secret |
| 179 | type: password |
| 180 | externalSecret: '{{ ternary (tpl (default "" .Values.config.sdnr.oauth.providersSecrets.keycloakExternalSecret) .) "oauth-disabled" .Values.config.sdnr.oauth.enabled }}' |
| 181 | password: '{{ .Values.config.sdnr.oauth.providersSecrets.keycloak }}' |
| 182 | passwordPolicy: required |
| 183 | |
Jan Malkiewicz | 0e53c9f | 2020-12-08 15:08:01 +0100 | [diff] [blame] | 184 | ################################################################# |
| 185 | # Certificates |
| 186 | ################################################################# |
| 187 | certificates: |
Remigiusz Janeczek | 42177a1 | 2020-12-10 13:10:15 +0100 | [diff] [blame] | 188 | - mountPath: /var/custom-certs |
| 189 | commonName: sdnc.simpledemo.onap.org |
Jan Malkiewicz | 0e53c9f | 2020-12-08 15:08:01 +0100 | [diff] [blame] | 190 | dnsNames: |
| 191 | - sdnc.simpledemo.onap.org |
Piotr Marcinkiewicz | 5957101 | 2021-01-12 17:37:08 +0100 | [diff] [blame] | 192 | keystore: |
| 193 | outputType: |
| 194 | - jks |
Jan Malkiewicz | 0e53c9f | 2020-12-08 15:08:01 +0100 | [diff] [blame] | 195 | passwordSecretRef: |
Piotr Marcinkiewicz | 3267293 | 2021-03-26 13:06:35 +0100 | [diff] [blame] | 196 | create: true |
Piotr Marcinkiewicz | 5957101 | 2021-01-12 17:37:08 +0100 | [diff] [blame] | 197 | name: sdnc-cmpv2-keystore-password |
Jan Malkiewicz | 0e53c9f | 2020-12-08 15:08:01 +0100 | [diff] [blame] | 198 | key: password |
Piotr Marcinkiewicz | 5957101 | 2021-01-12 17:37:08 +0100 | [diff] [blame] | 199 | issuer: |
| 200 | group: certmanager.onap.org |
| 201 | kind: CMPv2Issuer |
| 202 | name: cmpv2-issuer-onap |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 203 | ################################################################# |
| 204 | # Application configuration defaults. |
| 205 | ################################################################# |
| 206 | # application images |
Alexander Dehn | 238450f | 2020-10-27 13:03:53 +0000 | [diff] [blame] | 207 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 208 | pullPolicy: Always |
Dan Timoney | b303574 | 2021-05-11 19:06:34 -0400 | [diff] [blame] | 209 | image: onap/sdnc-image:2.1.6 |
Timoney, Dan (dt5972) | a3bc1a5 | 2019-06-26 16:16:52 -0400 | [diff] [blame] | 210 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 211 | # flag to enable debugging - application support required |
| 212 | debugEnabled: false |
| 213 | |
| 214 | # application configuration |
BorislavG | 5f3b619 | 2018-03-25 18:12:38 +0300 | [diff] [blame] | 215 | config: |
Timoney, Dan (dt5972) | ba4d2eb | 2019-05-07 13:32:42 -0400 | [diff] [blame] | 216 | odlUid: 100 |
| 217 | odlGid: 101 |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 218 | odlUser: admin |
jmac | a68f4cb | 2018-05-10 22:44:19 +0000 | [diff] [blame] | 219 | odlPassword: Kp8bJ4SXszM0WXlhak3eHlcse2gAw84vaoGGmJvUy2U |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 220 | # odlCredsExternalSecret: some secret |
| 221 | netboxApikey: onceuponatimeiplayedwithnetbox20180814 |
| 222 | # netboxApikeyExternalSecret: some secret |
Dan Timoney | 9e310e7 | 2021-02-23 11:25:39 -0500 | [diff] [blame] | 223 | aaiTruststorePassword: changeit |
| 224 | # aaiTruststoreExternalSecret: some secret |
| 225 | ansibleTruststorePassword: changeit |
| 226 | # ansibleTruststoreExternalSecret: some secret |
| 227 | truststorePassword: adminadmin |
| 228 | # truststoreExternalSecret: some secret |
| 229 | keystorePassword: adminadmin |
| 230 | # keystoreExternalSecret: some secret |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 231 | aaiUser: sdnc@sdnc.onap.org |
| 232 | aaiPassword: demo123456! |
| 233 | # aaiCredsExternalSecret: some secret |
Dan Timoney | 9e310e7 | 2021-02-23 11:25:39 -0500 | [diff] [blame] | 234 | soUser: sdncaBpmn |
| 235 | soPassword: password1$ |
| 236 | # soCredsExternalSecret: some secret |
| 237 | nengUser: ccsdkapps |
| 238 | nengPassword: ccsdkapps |
| 239 | # nengCredsExternalSecret: some secret |
| 240 | cdsUser: ccsdkapps |
| 241 | cdsPassword: ccsdkapps |
| 242 | # cdsCredsExternalSecret: some secret |
| 243 | honeycombUser: admin |
| 244 | honeycombPassword: admin |
| 245 | # honeycombCredsExternalSecret: some secret |
| 246 | dmaapUser: admin |
| 247 | dmaapPassword: admin |
| 248 | dmaapAuthKey: "fs20cKwalJ6ry4kX:7Hqm6BDZK47IKxGRkOPFk33qMYs=" |
| 249 | # dmaapCredsExternalSecret: some secret |
| 250 | # dmaapAuthKeyExternalSecret: some secret |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 251 | modelingUser: ccsdkapps |
| 252 | modelingPassword: ccsdkapps |
| 253 | # modelingCredsExternalSecret: some secret |
| 254 | restconfUser: admin |
| 255 | restconfPassword: admin |
| 256 | # restconfCredsExternalSecret: some secret |
| 257 | scaleoutUser: admin |
| 258 | scaleoutPassword: admin |
| 259 | # scaleoutExternalSecret: some secret |
| 260 | ansibleUser: sdnc |
| 261 | ansiblePassword: sdnc |
| 262 | # ansibleCredsExternalSecret: some secret |
| 263 | dbSdnctlDatabase: &sdncDbName sdnctl |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 264 | enableClustering: true |
Timoney, Dan (dt5972) | a3bc1a5 | 2019-06-26 16:16:52 -0400 | [diff] [blame] | 265 | sdncHome: /opt/onap/sdnc |
jmac | a68f4cb | 2018-05-10 22:44:19 +0000 | [diff] [blame] | 266 | binDir: /opt/onap/sdnc/bin |
Timoney, Dan (dt5972) | a3bc1a5 | 2019-06-26 16:16:52 -0400 | [diff] [blame] | 267 | etcDir: /opt/onap/sdnc/data |
Trevor Tait | 567ff1e | 2018-05-01 16:20:54 -0400 | [diff] [blame] | 268 | geoEnabled: false |
Neha Jain | 7b0d6c6 | 2018-05-17 14:34:49 -0400 | [diff] [blame] | 269 | # if geoEnabled is set to true here, mysql.geoEnabled must be set to true |
Trevor Tait | 567ff1e | 2018-05-01 16:20:54 -0400 | [diff] [blame] | 270 | # if geoEnabled is set to true the following 3 values must be set to their proper values |
| 271 | myODLCluster: 127.0.0.1 |
| 272 | peerODLCluster: 127.0.0.1 |
Mohammadreza Pasandideh | b642ee5 | 2018-06-19 15:19:53 -0400 | [diff] [blame] | 273 | isPrimaryCluster: true |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 274 | configDir: /opt/onap/sdnc/data/properties |
Konrad Bańka | 5ea1db3 | 2020-04-06 14:32:46 +0200 | [diff] [blame] | 275 | ccsdkConfigDir: /opt/onap/ccsdk/data/properties |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 276 | dmaapTopic: SUCCESS |
jmac | a68f4cb | 2018-05-10 22:44:19 +0000 | [diff] [blame] | 277 | dmaapPort: 3904 |
BorislavG | 5f3b619 | 2018-03-25 18:12:38 +0300 | [diff] [blame] | 278 | logstashServiceName: log-ls |
| 279 | logstashPort: 5044 |
jmac | 7c43467 | 2018-05-11 20:14:17 +0000 | [diff] [blame] | 280 | ansibleServiceName: sdnc-ansible-server |
| 281 | ansiblePort: 8000 |
Dan Timoney | a98765b | 2020-09-14 11:57:55 -0400 | [diff] [blame] | 282 | javaHome: /opt/java/openjdk |
jmac | 7c43467 | 2018-05-11 20:14:17 +0000 | [diff] [blame] | 283 | |
Timoney, Dan (dt5972) | 5877477 | 2019-08-21 16:50:54 -0400 | [diff] [blame] | 284 | odl: |
| 285 | etcDir: /opt/opendaylight/etc |
| 286 | binDir: /opt/opendaylight/bin |
Dan Timoney | a98765b | 2020-09-14 11:57:55 -0400 | [diff] [blame] | 287 | gcLogDir: /opt/opendaylight/data/log |
Timoney, Dan (dt5972) | 5877477 | 2019-08-21 16:50:54 -0400 | [diff] [blame] | 288 | salConfigDir: /opt/opendaylight/system/org/opendaylight/controller/sal-clustering-config |
Dan Timoney | 9520e7c | 2021-01-12 11:10:58 -0500 | [diff] [blame] | 289 | salConfigVersion: 1.10.4 |
Timoney, Dan (dt5972) | 5877477 | 2019-08-21 16:50:54 -0400 | [diff] [blame] | 290 | akka: |
| 291 | seedNodeTimeout: 15s |
| 292 | circuitBreaker: |
| 293 | maxFailures: 10 |
| 294 | callTimeout: 90s |
| 295 | resetTimeout: 30s |
| 296 | recoveryEventTimeout: 90s |
| 297 | datastore: |
| 298 | persistentActorRestartMinBackoffInSeconds: 10 |
| 299 | persistentActorRestartMaxBackoffInSeconds: 40 |
| 300 | persistentActorRestartResetBackoffInSeconds: 20 |
| 301 | shardTransactionCommitTimeoutInSeconds: 120 |
| 302 | shardIsolatedLeaderCheckIntervalInMillis: 30000 |
| 303 | operationTimeoutInSeconds: 120 |
| 304 | javaOptions: |
| 305 | maxGCPauseMillis: 100 |
| 306 | parallelGCThreads : 3 |
Dan Timoney | a98765b | 2020-09-14 11:57:55 -0400 | [diff] [blame] | 307 | numberGCLogFiles: 10 |
| 308 | minMemory: 512m |
| 309 | maxMemory: 2048m |
| 310 | gcLogOptions: "" |
| 311 | # Next line enables gc logging |
| 312 | # gcLogOptions: "-Xlog:gc=trace:file={{.Values.config.odl.gcLogDir}}/gc-%t.log}:time,level,tags:filecount={{.Values.config.odl.javaOptions.numberGCLogFiles}}" |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 313 | # enables sdnr functionality |
| 314 | sdnr: |
Alexander Dehn | 5c1105e | 2020-09-14 20:55:56 +0000 | [diff] [blame] | 315 | enabled: true |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 316 | # mode: web - SDNC contains device manager only plus dedicated webserver service for ODLUX (default), |
| 317 | # mode: dm - SDNC contains sdnr device manager + ODLUX components |
| 318 | mode: dm |
| 319 | # sdnronly: true starts sdnc container with odl and sdnrwt features only |
| 320 | sdnronly: false |
| 321 | sdnrdbTrustAllCerts: true |
| 322 | mountpointRegistrarEnabled: false |
| 323 | mountpointStateProviderEnabled: false |
demskeq8 | 2785466 | 2021-04-08 14:49:47 +0200 | [diff] [blame] | 324 | netconfCallHome: |
| 325 | enabled: true |
demskeq8 | b43e92c | 2021-02-12 15:43:48 +0100 | [diff] [blame] | 326 | # |
demskeq8 | 9d26b33 | 2021-01-14 16:45:28 +0100 | [diff] [blame] | 327 | # enable and set dmaap-proxy for mountpointRegistrar |
| 328 | dmaapProxy: |
| 329 | enabled: false |
| 330 | usepwd: true |
| 331 | user: addUserHere |
| 332 | password: addPasswordHere |
| 333 | url: addProxyUrlHere |
demskeq8 | b43e92c | 2021-02-12 15:43:48 +0100 | [diff] [blame] | 334 | oauth: |
| 335 | enabled: false |
| 336 | tokenIssuer: ONAP SDNC |
| 337 | tokenSecret: secret |
| 338 | supportOdlusers: true |
| 339 | redirectUri: null |
| 340 | publicUrl: none |
| 341 | odluxRbac: |
| 342 | enabled: true |
| 343 | # example definition for a oauth provider |
| 344 | providersSecrets: |
| 345 | keycloak: d8d7ed52-0691-4353-9ac6-5383e72e9c46 |
| 346 | providers: |
| 347 | - id: keycloak |
| 348 | type: KEYCLOAK |
| 349 | host: http://keycloak:8080 |
| 350 | clientId: odlux.app |
| 351 | secret: ${KEYCLOAK_SECRET} |
| 352 | scope: openid |
| 353 | title: ONAP Keycloak Provider |
| 354 | roleMapping: |
| 355 | mykeycloak: admin |
Timoney, Dan (dt5972) | 5877477 | 2019-08-21 16:50:54 -0400 | [diff] [blame] | 356 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 357 | # dependency / sub-chart configuration |
Krzysztof Opasiak | 8ab4547 | 2020-05-12 12:53:50 +0200 | [diff] [blame] | 358 | certInitializer: |
| 359 | nameOverride: sdnc-cert-initializer |
Jozsef Csongvai | 9d4d5af | 2020-07-13 11:10:25 -0400 | [diff] [blame] | 360 | truststoreMountpath: /opt/onap/sdnc/data/stores |
Krzysztof Opasiak | 6bab0cc | 2020-04-29 00:55:47 +0200 | [diff] [blame] | 361 | fqdn: "sdnc" |
| 362 | app_ns: "org.osaaf.aaf" |
| 363 | fqi: "sdnc@sdnc.onap.org" |
| 364 | fqi_namespace: org.onap.sdnc |
| 365 | public_fqdn: "sdnc.onap.org" |
| 366 | aafDeployFqi: "deployer@people.osaaf.org" |
| 367 | aafDeployPass: demo123456! |
| 368 | cadi_latitude: "38.0" |
| 369 | cadi_longitude: "-72.0" |
Krzysztof Opasiak | 6bab0cc | 2020-04-29 00:55:47 +0200 | [diff] [blame] | 370 | credsPath: /opt/app/osaaf/local |
Krzysztof Opasiak | 8ab4547 | 2020-05-12 12:53:50 +0200 | [diff] [blame] | 371 | aaf_add_config: > |
| 372 | cd /opt/app/osaaf/local; |
| 373 | /opt/app/aaf_config/bin/agent.sh local showpass {{.Values.fqi}} {{ .Values.fqdn }} | grep cadi_keystore_password= | cut -d= -f 2 > {{ .Values.credsPath }}/.pass 2>&1 |
Agarwal, Ruchira (ra1926) | ec7c75e | 2019-10-01 17:36:24 +0000 | [diff] [blame] | 374 | |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 375 | # dependency / sub-chart configuration |
| 376 | network-name-gen: |
| 377 | enabled: true |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 378 | mariadb-galera: &mariadbGalera |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 379 | nameOverride: &sdnc-db sdnc-db |
Konrad Bańka | a9d4403 | 2020-03-19 18:31:34 +0100 | [diff] [blame] | 380 | config: &mariadbGaleraConfig |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 381 | rootPasswordExternalSecret: *rootDbSecret |
| 382 | userName: &dbUser sdnctl |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 383 | userCredentialsExternalSecret: *dbSecretName |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 384 | rootUser: |
| 385 | externalSecret: *rootDbSecret |
| 386 | db: |
| 387 | user: *dbUser |
| 388 | externalSecret: *dbSecretName |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 389 | service: |
| 390 | name: sdnc-dbhost |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 391 | sdnctlPrefix: sdnc |
| 392 | persistence: |
Mahendra Raghuwanshi | b76cb28 | 2019-04-09 10:13:07 +0000 | [diff] [blame] | 393 | mountSubPath: sdnc/mariadb-galera |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 394 | enabled: true |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 395 | replicaCount: 1 |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 396 | serviceAccount: |
| 397 | nameOverride: *sdnc-db |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 398 | |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 399 | cds: |
| 400 | enabled: false |
| 401 | |
| 402 | dmaap-listener: |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 403 | enabled: true |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 404 | nameOverride: sdnc-dmaap-listener |
| 405 | mariadb-galera: |
Konrad Bańka | a9d4403 | 2020-03-19 18:31:34 +0100 | [diff] [blame] | 406 | <<: *mariadbGalera |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 407 | config: |
Konrad Bańka | a9d4403 | 2020-03-19 18:31:34 +0100 | [diff] [blame] | 408 | <<: *mariadbGaleraConfig |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 409 | mysqlDatabase: *sdncDbName |
| 410 | config: |
| 411 | sdncChartName: sdnc |
| 412 | dmaapPort: 3904 |
| 413 | sdncPort: 8282 |
| 414 | configDir: /opt/onap/sdnc/data/properties |
| 415 | odlCredsExternalSecret: *odlCredsSecretName |
| 416 | |
| 417 | ueb-listener: |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 418 | enabled: true |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 419 | mariadb-galera: |
Konrad Bańka | a9d4403 | 2020-03-19 18:31:34 +0100 | [diff] [blame] | 420 | <<: *mariadbGalera |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 421 | config: |
Konrad Bańka | a9d4403 | 2020-03-19 18:31:34 +0100 | [diff] [blame] | 422 | <<: *mariadbGaleraConfig |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 423 | mysqlDatabase: *sdncDbName |
| 424 | nameOverride: sdnc-ueb-listener |
| 425 | config: |
| 426 | sdncPort: 8282 |
| 427 | sdncChartName: sdnc |
| 428 | configDir: /opt/onap/sdnc/data/properties |
| 429 | odlCredsExternalSecret: *odlCredsSecretName |
| 430 | |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 431 | sdnc-ansible-server: |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 432 | enabled: true |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 433 | config: |
| 434 | restCredsExternalSecret: *ansibleSecretName |
| 435 | mariadb-galera: |
Konrad Bańka | a9d4403 | 2020-03-19 18:31:34 +0100 | [diff] [blame] | 436 | <<: *mariadbGalera |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 437 | config: |
Konrad Bańka | a9d4403 | 2020-03-19 18:31:34 +0100 | [diff] [blame] | 438 | <<: *mariadbGaleraConfig |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 439 | mysqlDatabase: ansible |
| 440 | service: |
| 441 | name: sdnc-ansible-server |
| 442 | internalPort: 8000 |
| 443 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 444 | dgbuilder: |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 445 | enabled: true |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 446 | nameOverride: sdnc-dgbuilder |
Dan Timoney | cb0a81f | 2020-07-15 17:31:43 -0400 | [diff] [blame] | 447 | certInitializer: |
| 448 | nameOverride: sdnc-dgbuilder-cert-initializer |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 449 | config: |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 450 | db: |
| 451 | dbName: *sdncDbName |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 452 | rootPasswordExternalSecret: '{{ .Values.global.mariadbGalera.localCluster | |
| 453 | ternary |
| 454 | (printf "%s-sdnc-db-root-password" (include "common.release" .)) |
| 455 | (include "common.mariadb.secret.rootPassSecretName" |
| 456 | (dict "dot" . "chartName" "mariadb-galera")) }}' |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 457 | userCredentialsExternalSecret: *dbSecretName |
Mahendra Raghuwanshi | b76cb28 | 2019-04-09 10:13:07 +0000 | [diff] [blame] | 458 | dbPodName: mariadb-galera |
| 459 | dbServiceName: mariadb-galera |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 460 | # This should be revisited and changed to plain text |
jmac | 70863e1 | 2018-05-16 14:53:03 +0000 | [diff] [blame] | 461 | dgUserPassword: cc03e747a6afbbcbf8be7668acfebee5 |
farida azmy | dc9aef0 | 2021-04-07 17:07:09 +0200 | [diff] [blame] | 462 | serviceAccount: |
| 463 | nameOverride: sdnc-dgbuilder |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 464 | mariadb-galera: |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 465 | service: |
BorislavG | 1ffbd99 | 2018-04-24 07:56:27 +0000 | [diff] [blame] | 466 | name: sdnc-dgbuilder |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 467 | nodePort: "03" |
| 468 | |
Sylvain Desbureaux | e54644e | 2020-05-04 11:45:16 +0200 | [diff] [blame] | 469 | ingress: |
| 470 | enabled: false |
| 471 | service: |
| 472 | - baseaddr: "sdnc-dgbuilder" |
| 473 | name: "sdnc-dgbuilder" |
| 474 | port: 3000 |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 475 | - baseaddr: "sdnc-web-service" |
| 476 | name: "sdnc-web-service" |
| 477 | port: 8443 |
Sylvain Desbureaux | e54644e | 2020-05-04 11:45:16 +0200 | [diff] [blame] | 478 | config: |
| 479 | ssl: "redirect" |
| 480 | |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 481 | |
| 482 | |
Alexander Dehn | ab86ec1 | 2020-02-05 14:38:54 +0000 | [diff] [blame] | 483 | # local elasticsearch cluster |
| 484 | localElasticCluster: true |
| 485 | elasticsearch: |
Sylvain Desbureaux | 829344b | 2020-11-19 17:07:26 +0100 | [diff] [blame] | 486 | nameOverride: &elasticSearchName sdnrdb |
Alexander Dehn | ab86ec1 | 2020-02-05 14:38:54 +0000 | [diff] [blame] | 487 | name: sdnrdb-cluster |
Krzysztof Opasiak | c6152ce | 2020-05-09 01:43:08 +0200 | [diff] [blame] | 488 | certInitializer: |
Alexander Dehn | ab86ec1 | 2020-02-05 14:38:54 +0000 | [diff] [blame] | 489 | fqdn: "sdnc" |
| 490 | fqi_namespace: org.onap.sdnc |
| 491 | fqi: "sdnc@sdnc.onap.org" |
| 492 | service: |
Sylvain Desbureaux | 829344b | 2020-11-19 17:07:26 +0100 | [diff] [blame] | 493 | name: *elasticSearchName |
Alexander Dehn | ab86ec1 | 2020-02-05 14:38:54 +0000 | [diff] [blame] | 494 | master: |
| 495 | replicaCount: 3 |
| 496 | # dedicatednode: "yes" |
| 497 | # working as master node only, in this case increase replicaCount for elasticsearch-data |
| 498 | # dedicatednode: "no" |
| 499 | # handles master and data node functionality |
| 500 | dedicatednode: "no" |
Sylvain Desbureaux | 829344b | 2020-11-19 17:07:26 +0100 | [diff] [blame] | 501 | nameOverride: *elasticSearchName |
demskeq8 | eb56da7 | 2021-02-19 12:11:48 +0100 | [diff] [blame] | 502 | cluster_name: sdnrdb-cluster |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 503 | # enable |
| 504 | sdnc-web: |
Alexander Dehn | 8789a72 | 2020-10-16 14:29:05 +0000 | [diff] [blame] | 505 | enabled: true |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 506 | # default number of instances |
| 507 | replicaCount: 1 |
| 508 | |
| 509 | nodeSelector: {} |
| 510 | |
| 511 | affinity: {} |
| 512 | |
| 513 | # probe configuration parameters |
| 514 | liveness: |
| 515 | initialDelaySeconds: 10 |
| 516 | periodSeconds: 10 |
| 517 | # necessary to disable liveness probe when setting breakpoints |
| 518 | # in debugger so K8s doesn't restart unresponsive container |
| 519 | enabled: true |
| 520 | |
| 521 | readiness: |
| 522 | initialDelaySeconds: 10 |
| 523 | periodSeconds: 10 |
| 524 | |
| 525 | service: |
| 526 | type: NodePort |
| 527 | name: sdnc |
BorislavG | 1ffbd99 | 2018-04-24 07:56:27 +0000 | [diff] [blame] | 528 | portName: sdnc |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 529 | internalPort: 8181 |
| 530 | internalPort2: 8101 |
| 531 | internalPort3: 8080 |
Timoney, Dan (dt5972) | c6de269 | 2019-08-14 14:22:37 -0400 | [diff] [blame] | 532 | internalPort4: 8443 |
Mohammadreza Pasandideh | b756fb7 | 2018-04-03 10:06:45 -0400 | [diff] [blame] | 533 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 534 | #port |
| 535 | externalPort: 8282 |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 536 | |
| 537 | externalPort2: 8202 |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 538 | |
| 539 | externalPort3: 8280 |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 540 | |
jmac | a68f4cb | 2018-05-10 22:44:19 +0000 | [diff] [blame] | 541 | externalPort4: 8443 |
| 542 | nodePort4: 67 |
| 543 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 544 | clusterPort: 2550 |
Mohammadreza Pasandideh | b756fb7 | 2018-04-03 10:06:45 -0400 | [diff] [blame] | 545 | clusterPort2: 2650 |
| 546 | clusterPort3: 2681 |
| 547 | |
| 548 | geoNodePort1: 61 |
| 549 | geoNodePort2: 62 |
| 550 | geoNodePort3: 63 |
| 551 | geoNodePort4: 64 |
| 552 | geoNodePort5: 65 |
| 553 | geoNodePort6: 66 |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 554 | |
demskeq8 | 2785466 | 2021-04-08 14:49:47 +0200 | [diff] [blame] | 555 | callHomePort: 6666 |
| 556 | callHomeNodePort: 66 |
| 557 | |
jmac | 8d6dc96 | 2018-04-26 14:26:55 +0000 | [diff] [blame] | 558 | ## Persist data to a persitent volume |
| 559 | persistence: |
| 560 | enabled: true |
| 561 | |
| 562 | ## A manually managed Persistent Volume and Claim |
| 563 | ## Requires persistence.enabled: true |
| 564 | ## If defined, PVC must be created manually before volume will be bound |
| 565 | # existingClaim: |
| 566 | volumeReclaimPolicy: Retain |
| 567 | |
| 568 | ## database data Persistent Volume Storage Class |
| 569 | ## If defined, storageClassName: <storageClass> |
| 570 | ## If set to "-", storageClassName: "", which disables dynamic provisioning |
| 571 | ## If undefined (the default) or set to null, no storageClassName spec is |
| 572 | ## set, choosing the default provisioner. (gp2 on AWS, standard on |
| 573 | ## GKE, AWS & OpenStack) |
| 574 | accessMode: ReadWriteOnce |
| 575 | size: 1Gi |
| 576 | mountPath: /dockerdata-nfs |
| 577 | mountSubPath: sdnc/mdsal |
Dan Timoney | 2ee28a5 | 2021-01-15 16:39:50 -0500 | [diff] [blame] | 578 | mdsalPath: /opt/opendaylight/mdsal |
demskeq8 | a86300a | 2021-02-10 09:53:33 +0100 | [diff] [blame] | 579 | daeximPath: /opt/opendaylight/mdsal/daexim |
Dan Timoney | 2ee28a5 | 2021-01-15 16:39:50 -0500 | [diff] [blame] | 580 | journalPath: /opt/opendaylight/journal |
| 581 | snapshotsPath: /opt/opendaylight/snapshots |
jmac | 8d6dc96 | 2018-04-26 14:26:55 +0000 | [diff] [blame] | 582 | |
egernug | 2757833 | 2020-03-26 10:27:55 +0000 | [diff] [blame] | 583 | certpersistence: |
| 584 | enabled: true |
| 585 | |
| 586 | ## A manually managed Persistent Volume and Claim |
| 587 | ## Requires persistence.enabled: true |
| 588 | ## If defined, PVC must be created manually before volume will be bound |
| 589 | # existingClaim: |
| 590 | |
| 591 | volumeReclaimPolicy: Retain |
| 592 | accessMode: ReadWriteOnce |
| 593 | size: 50Mi |
| 594 | mountPath: /dockerdata-nfs |
| 595 | mountSubPath: sdnc/certs |
| 596 | certPath: /opt/app/osaaf |
| 597 | ##storageClass: "manual" |
| 598 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 599 | ingress: |
| 600 | enabled: false |
Lucjan Bryndza | 0844840 | 2019-11-27 14:26:54 +0100 | [diff] [blame] | 601 | service: |
Lucjan Bryndza | 0564965 | 2020-04-29 08:52:33 +0000 | [diff] [blame] | 602 | - baseaddr: "sdnc.api" |
Lucjan Bryndza | 0844840 | 2019-11-27 14:26:54 +0100 | [diff] [blame] | 603 | name: "sdnc" |
| 604 | port: 8443 |
| 605 | config: |
| 606 | ssl: "redirect" |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 607 | |
toshrajbhardwaj | 72b5f0f | 2018-09-13 02:45:22 +0000 | [diff] [blame] | 608 | #Resource Limit flavor -By Default using small |
| 609 | flavor: small |
| 610 | #segregation for different envionment (Small and Large) |
| 611 | |
| 612 | resources: |
Mandeep Khinda | de04571 | 2018-09-19 18:11:57 +0000 | [diff] [blame] | 613 | small: |
| 614 | limits: |
| 615 | cpu: 2 |
| 616 | memory: 4Gi |
| 617 | requests: |
Mandeep Khinda | 3c13425 | 2018-09-19 23:56:37 +0000 | [diff] [blame] | 618 | cpu: 1 |
| 619 | memory: 2Gi |
Mandeep Khinda | de04571 | 2018-09-19 18:11:57 +0000 | [diff] [blame] | 620 | large: |
| 621 | limits: |
| 622 | cpu: 4 |
| 623 | memory: 8Gi |
| 624 | requests: |
Mandeep Khinda | 3c13425 | 2018-09-19 23:56:37 +0000 | [diff] [blame] | 625 | cpu: 2 |
| 626 | memory: 4Gi |
Mandeep Khinda | 60d36d4 | 2018-09-24 15:15:48 +0000 | [diff] [blame] | 627 | unlimited: {} |