sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 1 | # Copyright © 2017 Amdocs, Bell Canada |
jhh | 999c224 | 2021-02-24 12:10:02 -0600 | [diff] [blame] | 2 | # Modifications Copyright © 2018-2021 AT&T |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 3 | # |
| 4 | # Licensed under the Apache License, Version 2.0 (the "License"); |
| 5 | # you may not use this file except in compliance with the License. |
| 6 | # You may obtain a copy of the License at |
| 7 | # |
| 8 | # http://www.apache.org/licenses/LICENSE-2.0 |
| 9 | # |
| 10 | # Unless required by applicable law or agreed to in writing, software |
| 11 | # distributed under the License is distributed on an "AS IS" BASIS, |
| 12 | # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. |
| 13 | # See the License for the specific language governing permissions and |
| 14 | # limitations under the License. |
| 15 | |
| 16 | ################################################################# |
| 17 | # Global configuration defaults. |
| 18 | ################################################################# |
| 19 | global: # global defaults |
| 20 | nodePortPrefix: 302 |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 21 | persistence: {} |
ChrisC | 2325efd | 2020-09-11 18:39:23 +0200 | [diff] [blame] | 22 | centralizedLoggingEnabled: true |
| 23 | #AAF service |
| 24 | aafEnabled: true |
| 25 | |
| 26 | ################################################################# |
| 27 | # AAF part |
| 28 | ################################################################# |
| 29 | certInitializer: |
| 30 | permission_user: 1000 |
| 31 | permission_group: 999 |
sebdet | ac61d3c | 2020-10-23 16:06:55 +0200 | [diff] [blame] | 32 | keystoreFile: 'org.onap.clamp.p12' |
| 33 | truststoreFile: 'org.onap.clamp.trust.jks' |
| 34 | keyFile: 'org.onap.clamp.keyfile' |
| 35 | truststoreFileONAP: 'truststoreONAPall.jks' |
ChrisC | 2325efd | 2020-09-11 18:39:23 +0200 | [diff] [blame] | 36 | nameOverride: clamp-backend-cert-initializer |
| 37 | aafDeployFqi: deployer@people.osaaf.org |
| 38 | aafDeployPass: demo123456! |
| 39 | fqdn: clamp |
| 40 | fqi: clamp@clamp.onap.org |
| 41 | public_fqdn: clamp.onap.org |
sebdet | ac61d3c | 2020-10-23 16:06:55 +0200 | [diff] [blame] | 42 | cadi_longitude: '-72.0' |
| 43 | cadi_latitude: '38.0' |
ChrisC | 2325efd | 2020-09-11 18:39:23 +0200 | [diff] [blame] | 44 | app_ns: org.osaaf.aaf |
| 45 | credsPath: /opt/app/osaaf/local |
| 46 | aaf_add_config: > |
sebdet | 9bac0c3 | 2021-04-22 10:23:53 +0200 | [diff] [blame] | 47 | /opt/app/aaf_config/bin/agent.sh local showpass {{.Values.fqi}} {{ .Values.fqdn }} > {{ .Values.credsPath }}/mycreds.prop; |
ChrisC | 2325efd | 2020-09-11 18:39:23 +0200 | [diff] [blame] | 48 | cd {{ .Values.credsPath }}; |
| 49 | chmod a+rx *; |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 50 | |
JulienBe | 26df320 | 2020-04-10 16:50:08 +0200 | [diff] [blame] | 51 | secrets: |
sebdet | 5c44988 | 2021-01-13 11:35:56 +0100 | [diff] [blame] | 52 | - uid: db-creds |
JulienBe | 26df320 | 2020-04-10 16:50:08 +0200 | [diff] [blame] | 53 | type: basicAuth |
sebdet | 5c44988 | 2021-01-13 11:35:56 +0100 | [diff] [blame] | 54 | externalSecret: '{{ tpl (default "" .Values.db.credsExternalSecret) . }}' |
JulienBe | 26df320 | 2020-04-10 16:50:08 +0200 | [diff] [blame] | 55 | login: '{{ .Values.db.user }}' |
| 56 | password: '{{ .Values.db.password }}' |
| 57 | passwordPolicy: required |
sebdet | 9bac0c3 | 2021-04-22 10:23:53 +0200 | [diff] [blame] | 58 | - uid: sdc-creds |
| 59 | type: password |
| 60 | externalSecret: '{{ tpl (default "" .Values.sdc.sdcClientExternalSecret) . }}' |
| 61 | password: '{{ .Values.sdc.clientPassword }}' |
| 62 | passwordPolicy: required |
saul.gill | 6238df4 | 2021-09-21 15:09:55 +0100 | [diff] [blame] | 63 | - uid: runtime-be-secret |
| 64 | type: basicAuth |
| 65 | externalSecret: '{{ tpl (default "" .Values.config.appUserExternalSecret) . }}' |
| 66 | login: '{{ .Values.config.policyAppUserName }}' |
| 67 | password: '{{ .Values.config.policyAppUserPassword }}' |
| 68 | passwordPolicy: required |
JulienBe | 26df320 | 2020-04-10 16:50:08 +0200 | [diff] [blame] | 69 | |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 70 | flavor: small |
| 71 | |
| 72 | # application image |
liamfallon | 66c78e5 | 2021-10-14 13:15:45 +0100 | [diff] [blame] | 73 | image: onap/policy-clamp-backend:6.1.3 |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 74 | pullPolicy: Always |
| 75 | |
| 76 | # flag to enable debugging - application support required |
| 77 | debugEnabled: false |
| 78 | |
Sylvain Desbureaux | 8c2a162 | 2020-04-22 10:50:26 +0200 | [diff] [blame] | 79 | # log configuration |
| 80 | log: |
| 81 | path: /var/log/onap |
| 82 | |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 83 | ################################################################# |
| 84 | # Application configuration defaults. |
| 85 | ################################################################# |
JulienBe | 26df320 | 2020-04-10 16:50:08 +0200 | [diff] [blame] | 86 | |
ChrisC | 2325efd | 2020-09-11 18:39:23 +0200 | [diff] [blame] | 87 | #####dummy values for db user and password to pass lint!!!####### |
sebdet | 9bac0c3 | 2021-04-22 10:23:53 +0200 | [diff] [blame] | 88 | sdc: |
| 89 | clientPassword: Kp8bJ4SXszM0WXlhak3eHlcse2gAw84vaoGGmJvUy2U |
| 90 | |
ChrisC | 2325efd | 2020-09-11 18:39:23 +0200 | [diff] [blame] | 91 | db: |
sebdet | 5c44988 | 2021-01-13 11:35:56 +0100 | [diff] [blame] | 92 | user: policy_user |
| 93 | password: policy_user |
| 94 | image: mariadb:10.5.8 |
| 95 | service: |
| 96 | name: policy-mariadb |
| 97 | internalPort: 3306 |
JulienBe | 26df320 | 2020-04-10 16:50:08 +0200 | [diff] [blame] | 98 | |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 99 | config: |
saul.gill | 6238df4 | 2021-09-21 15:09:55 +0100 | [diff] [blame] | 100 | policyAppUserName: runtimeUser |
| 101 | policyAppUserPassword: none |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 102 | log: |
| 103 | logstashServiceName: log-ls |
| 104 | logstashPort: 5044 |
| 105 | mysqlPassword: strong_pitchou |
| 106 | dataRootDir: /dockerdata-nfs |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 107 | |
| 108 | # default number of instances |
| 109 | replicaCount: 1 |
| 110 | |
| 111 | nodeSelector: {} |
| 112 | |
| 113 | affinity: {} |
| 114 | |
| 115 | # probe configuration parameters |
| 116 | liveness: |
| 117 | initialDelaySeconds: 120 |
| 118 | periodSeconds: 10 |
sebdet | 5a13fbf | 2020-10-13 09:37:19 +0200 | [diff] [blame] | 119 | timeoutSeconds: 3 |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 120 | # necessary to disable liveness probe when setting breakpoints |
| 121 | # in debugger so K8s doesn't restart unresponsive container |
| 122 | enabled: true |
| 123 | |
| 124 | readiness: |
| 125 | initialDelaySeconds: 10 |
| 126 | periodSeconds: 10 |
sebdet | 5a13fbf | 2020-10-13 09:37:19 +0200 | [diff] [blame] | 127 | timeoutSeconds: 3 |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 128 | |
| 129 | service: |
| 130 | type: ClusterIP |
sebdet | 5c44988 | 2021-01-13 11:35:56 +0100 | [diff] [blame] | 131 | name: policy-clamp-be |
| 132 | portName: policy-clamp-be |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 133 | internalPort: 8443 |
sebdet | 5c44988 | 2021-01-13 11:35:56 +0100 | [diff] [blame] | 134 | externalPort: 8443 |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 135 | |
| 136 | ingress: |
| 137 | enabled: false |
| 138 | |
| 139 | #resources: {} |
sebdet | ac61d3c | 2020-10-23 16:06:55 +0200 | [diff] [blame] | 140 | # We usually recommend not to specify default resources and to leave this as a conscious |
| 141 | # choice for the user. This also increases chances charts run on environments with little |
| 142 | # resources, such as Minikube. If you do want to specify resources, uncomment the following |
| 143 | # lines, adjust them as necessary, and remove the curly braces after 'resources:'. |
| 144 | # |
| 145 | # Example: |
| 146 | # Configure resource requests and limits |
| 147 | # ref: http://kubernetes.io/docs/user-guide/compute-resources/ |
| 148 | # Minimum memory for development is 2 CPU cores and 4GB memory |
| 149 | # Minimum memory for production is 4 CPU cores and 8GB memory |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 150 | resources: |
| 151 | small: |
| 152 | limits: |
| 153 | cpu: 1 |
sebdet | 5a13fbf | 2020-10-13 09:37:19 +0200 | [diff] [blame] | 154 | memory: 1Gi |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 155 | requests: |
sebdet | ac61d3c | 2020-10-23 16:06:55 +0200 | [diff] [blame] | 156 | cpu: 1m |
sebdet | 5a13fbf | 2020-10-13 09:37:19 +0200 | [diff] [blame] | 157 | memory: 1Gi |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 158 | large: |
| 159 | limits: |
| 160 | cpu: 1 |
sebdet | 5a13fbf | 2020-10-13 09:37:19 +0200 | [diff] [blame] | 161 | memory: 3Gi |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 162 | requests: |
| 163 | cpu: 10m |
sebdet | 5a13fbf | 2020-10-13 09:37:19 +0200 | [diff] [blame] | 164 | memory: 3Gi |
sebdet | d85e24c | 2019-09-04 18:35:26 +0200 | [diff] [blame] | 165 | unlimited: {} |
farida azmy | c117837 | 2021-04-11 12:55:33 +0200 | [diff] [blame] | 166 | |
| 167 | #Pods Service Account |
| 168 | serviceAccount: |
| 169 | nameOverride: policy-clamp-be |
| 170 | roles: |
| 171 | - read |