Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 1 | # Copyright © 2020 Samsung Electronics, highstreet technologies GmbH |
vaibhav_16dec | e04b2fe | 2018-03-22 09:07:12 +0000 | [diff] [blame] | 2 | # Copyright © 2017 Amdocs, Bell Canada |
Remigiusz Janeczek | 42177a1 | 2020-12-10 13:10:15 +0100 | [diff] [blame] | 3 | # Copyright © 2021 Nokia |
vaibhav_16dec | e04b2fe | 2018-03-22 09:07:12 +0000 | [diff] [blame] | 4 | # |
| 5 | # Licensed under the Apache License, Version 2.0 (the "License"); |
| 6 | # you may not use this file except in compliance with the License. |
| 7 | # You may obtain a copy of the License at |
| 8 | # |
| 9 | # http://www.apache.org/licenses/LICENSE-2.0 |
| 10 | # |
| 11 | # Unless required by applicable law or agreed to in writing, software |
| 12 | # distributed under the License is distributed on an "AS IS" BASIS, |
| 13 | # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. |
| 14 | # See the License for the specific language governing permissions and |
| 15 | # limitations under the License. |
| 16 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 17 | ################################################################# |
| 18 | # Global configuration defaults. |
| 19 | ################################################################# |
| 20 | global: |
| 21 | nodePortPrefix: 302 |
jmac | 0e4f717 | 2018-09-07 18:06:43 +0000 | [diff] [blame] | 22 | nodePortPrefixExt: 304 |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 23 | persistence: |
| 24 | mountPath: /dockerdata-nfs |
Agarwal, Ruchira (ra1926) | ec7c75e | 2019-10-01 17:36:24 +0000 | [diff] [blame] | 25 | aafEnabled: true |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 26 | mariadbGalera: |
| 27 | #This flag allows SO to instantiate its own mariadb-galera cluster |
| 28 | #If shared instance is used, this chart assumes that DB already exists |
| 29 | localCluster: false |
| 30 | service: mariadb-galera |
| 31 | internalPort: 3306 |
| 32 | nameOverride: mariadb-galera |
Remigiusz Janeczek | 42177a1 | 2020-12-10 13:10:15 +0100 | [diff] [blame] | 33 | # Enabling CMPv2 with CertManager |
Jan Malkiewicz | 0e53c9f | 2020-12-08 15:08:01 +0100 | [diff] [blame] | 34 | CMPv2CertManagerIntegration: false |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 35 | |
| 36 | ################################################################# |
| 37 | # Secrets metaconfig |
| 38 | ################################################################# |
| 39 | secrets: |
| 40 | - uid: db-root-password |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 41 | name: &rootDbSecret '{{ include "common.release" . }}-sdnc-db-root-password' |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 42 | type: password |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 43 | # If we're using shared mariadb, we need to use the secret name (second |
| 44 | # part). |
| 45 | # If not, we do the same trick than for user db secret hat allows you |
| 46 | # override this secret using external one with the same field that is used |
| 47 | # to pass this to subchart. |
Krzysztof Opasiak | ab7a6bb | 2020-03-24 03:30:51 +0100 | [diff] [blame] | 48 | externalSecret: '{{ .Values.global.mariadbGalera.localCluster | |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 49 | ternary ((hasSuffix "sdnc-db-root-password" (index .Values "mariadb-galera" "rootUser" "externalSecret")) | |
| 50 | ternary |
| 51 | "" |
| 52 | (tpl (default "" (index .Values "mariadb-galera" "rootUser" "externalSecret")) .)) |
| 53 | (include "common.mariadb.secret.rootPassSecretName" |
| 54 | (dict "dot" . |
| 55 | "chartName" .Values.global.mariadbGalera.nameOverride)) }}' |
| 56 | password: '{{ (index .Values "mariadb-galera" "rootUser" "password") }}' |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 57 | - uid: db-secret |
| 58 | name: &dbSecretName '{{ include "common.release" . }}-sdnc-db-secret' |
| 59 | type: basicAuth |
| 60 | # This is a nasty trick that allows you override this secret using external one |
| 61 | # with the same field that is used to pass this to subchart |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 62 | externalSecret: '{{ (hasSuffix "sdnc-db-secret" (index .Values "mariadb-galera" "db" "externalSecret")) | |
| 63 | ternary |
| 64 | "" |
| 65 | (tpl (default "" (index .Values "mariadb-galera" "db" "externalSecret")) .) }}' |
| 66 | login: '{{ index .Values "mariadb-galera" "db" "user" }}' |
| 67 | password: '{{ index .Values "mariadb-galera" "db" "password" }}' |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 68 | - uid: odl-creds |
| 69 | name: &odlCredsSecretName '{{ include "common.release" . }}-sdnc-odl-creds' |
| 70 | type: basicAuth |
| 71 | externalSecret: '{{ .Values.config.odlCredsExternalSecret }}' |
| 72 | login: '{{ .Values.config.odlUser }}' |
| 73 | password: '{{ .Values.config.odlPassword }}' |
| 74 | # For now this is left hardcoded but should be revisited in a future |
| 75 | passwordPolicy: required |
demskeq8 | 9d26b33 | 2021-01-14 16:45:28 +0100 | [diff] [blame] | 76 | - uid: dmaap-proxy-creds |
| 77 | name: &dmaapProxyCredsSecretName '{{ include "common.release" . }}-sdnc-dmaap-proxy-creds' |
| 78 | type: basicAuth |
| 79 | externalSecret: '{{ .Values.config.dmaapProxyCredsExternalSecret }}' |
| 80 | login: '{{ .Values.config.sdnr.dmaapProxy.user }}' |
| 81 | password: '{{ .Values.config.sdnr.dmaapProxy.password }}' |
| 82 | # For now this is left hardcoded but should be revisited in a future |
| 83 | passwordPolicy: required |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 84 | - uid: netbox-apikey |
| 85 | type: password |
| 86 | externalSecret: '{{ .Values.config.netboxApikeyExternalSecret }}' |
| 87 | password: '{{ .Values.config.netboxApikey }}' |
| 88 | passwordPolicy: required |
Dan Timoney | 9e310e7 | 2021-02-23 11:25:39 -0500 | [diff] [blame] | 89 | - uid: aai-truststore-password |
| 90 | type: password |
| 91 | externalSecret: '{{ .Values.config.aaiTruststoreExternalSecret }}' |
| 92 | password: '{{ .Values.config.aaiTruststorePassword }}' |
| 93 | passwordPolicy: required |
| 94 | - uid: ansible-truststore-password |
| 95 | type: password |
| 96 | externalSecret: '{{ .Values.config.ansibleTruststoreExternalSecret }}' |
| 97 | password: '{{ .Values.config.ansibleTruststorePassword }}' |
| 98 | passwordPolicy: required |
| 99 | - uid: truststore-password |
| 100 | type: password |
| 101 | externalSecret: '{{ .Values.config.truststoreExternalSecret }}' |
| 102 | password: '{{ .Values.config.truststorePassword }}' |
| 103 | passwordPolicy: required |
| 104 | - uid: keystore-password |
| 105 | type: password |
| 106 | externalSecret: '{{ .Values.config.keystoreExternalSecret }}' |
| 107 | password: '{{ .Values.config.keystorePassword }}' |
| 108 | passwordPolicy: required |
| 109 | - uid: dmaap-authkey |
| 110 | type: password |
| 111 | externalSecret: '{{ .Values.config.dmaapAuthKeyExternalSecret }}' |
| 112 | password: '{{ .Values.config.dmaapAuthKey }}' |
| 113 | passwordPolicy: required |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 114 | - uid: aai-user-creds |
| 115 | type: basicAuth |
| 116 | externalSecret: '{{ .Values.config.aaiCredsExternalSecret}}' |
| 117 | login: '{{ .Values.config.aaiUser }}' |
| 118 | password: '{{ .Values.config.aaiPassword }}' |
| 119 | passwordPolicy: required |
Dan Timoney | 9e310e7 | 2021-02-23 11:25:39 -0500 | [diff] [blame] | 120 | - uid: so-user-creds |
| 121 | type: basicAuth |
| 122 | externalSecret: '{{ .Values.config.soCredsExternalSecret}}' |
| 123 | login: '{{ .Values.config.soUser }}' |
| 124 | password: '{{ .Values.config.soPassword }}' |
| 125 | passwordPolicy: required |
| 126 | - uid: neng-user-creds |
| 127 | type: basicAuth |
| 128 | externalSecret: '{{ .Values.config.nengCredsExternalSecret}}' |
| 129 | login: '{{ .Values.config.nengUser }}' |
| 130 | password: '{{ .Values.config.nengPassword }}' |
| 131 | passwordPolicy: required |
| 132 | - uid: cds-user-creds |
| 133 | type: basicAuth |
| 134 | externalSecret: '{{ .Values.config.cdsCredsExternalSecret}}' |
| 135 | login: '{{ .Values.config.cdsUser }}' |
| 136 | password: '{{ .Values.config.cdsPassword }}' |
| 137 | passwordPolicy: required |
| 138 | - uid: honeycomb-user-creds |
| 139 | type: basicAuth |
| 140 | externalSecret: '{{ .Values.config.honeycombCredsExternalSecret}}' |
| 141 | login: '{{ .Values.config.honeycombUser }}' |
| 142 | password: '{{ .Values.config.honeycombPassword }}' |
| 143 | passwordPolicy: required |
| 144 | - uid: dmaap-user-creds |
| 145 | type: basicAuth |
| 146 | externalSecret: '{{ .Values.config.dmaapCredsExternalSecret}}' |
| 147 | login: '{{ .Values.config.dmaapUser }}' |
| 148 | password: '{{ .Values.config.dmaapPassword }}' |
| 149 | passwordPolicy: required |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 150 | - uid: modeling-user-creds |
| 151 | type: basicAuth |
| 152 | externalSecret: '{{ .Values.config.modelingCredsExternalSecret}}' |
| 153 | login: '{{ .Values.config.modelingUser }}' |
| 154 | password: '{{ .Values.config.modelingPassword }}' |
| 155 | passwordPolicy: required |
| 156 | - uid: restconf-creds |
| 157 | type: basicAuth |
| 158 | externalSecret: '{{ .Values.config.restconfCredsExternalSecret}}' |
| 159 | login: '{{ .Values.config.restconfUser }}' |
| 160 | password: '{{ .Values.config.restconfPassword }}' |
| 161 | passwordPolicy: required |
| 162 | - uid: ansible-creds |
| 163 | name: &ansibleSecretName '{{ include "common.release" . }}-sdnc-ansible-creds' |
| 164 | type: basicAuth |
| 165 | externalSecret: '{{ .Values.config.ansibleCredsExternalSecret}}' |
| 166 | login: '{{ .Values.config.ansibleUser }}' |
| 167 | password: '{{ .Values.config.ansiblePassword }}' |
| 168 | passwordPolicy: required |
| 169 | - uid: scaleout-creds |
| 170 | type: basicAuth |
| 171 | externalSecret: '{{ .Values.config.scaleoutCredsExternalSecret}}' |
| 172 | login: '{{ .Values.config.scaleoutUser }}' |
| 173 | password: '{{ .Values.config.scaleoutPassword }}' |
| 174 | passwordPolicy: required |
demskeq8 | b43e92c | 2021-02-12 15:43:48 +0100 | [diff] [blame] | 175 | - uid: oauth-token-secret |
| 176 | type: password |
| 177 | externalSecret: '{{ ternary (tpl (default "" .Values.config.sdnr.oauth.tokenExternalSecret) .) "oauth-disabled" .Values.config.sdnr.oauth.enabled }}' |
| 178 | password: '{{ .Values.config.sdnr.oauth.tokenSecret }}' |
| 179 | passwordPolicy: required |
| 180 | - uid: keycloak-secret |
| 181 | type: password |
| 182 | externalSecret: '{{ ternary (tpl (default "" .Values.config.sdnr.oauth.providersSecrets.keycloakExternalSecret) .) "oauth-disabled" .Values.config.sdnr.oauth.enabled }}' |
| 183 | password: '{{ .Values.config.sdnr.oauth.providersSecrets.keycloak }}' |
| 184 | passwordPolicy: required |
| 185 | |
Jan Malkiewicz | 0e53c9f | 2020-12-08 15:08:01 +0100 | [diff] [blame] | 186 | ################################################################# |
| 187 | # Certificates |
| 188 | ################################################################# |
| 189 | certificates: |
Remigiusz Janeczek | 42177a1 | 2020-12-10 13:10:15 +0100 | [diff] [blame] | 190 | - mountPath: /var/custom-certs |
| 191 | commonName: sdnc.simpledemo.onap.org |
Jan Malkiewicz | 0e53c9f | 2020-12-08 15:08:01 +0100 | [diff] [blame] | 192 | dnsNames: |
| 193 | - sdnc.simpledemo.onap.org |
Piotr Marcinkiewicz | 5957101 | 2021-01-12 17:37:08 +0100 | [diff] [blame] | 194 | keystore: |
| 195 | outputType: |
| 196 | - jks |
Jan Malkiewicz | 0e53c9f | 2020-12-08 15:08:01 +0100 | [diff] [blame] | 197 | passwordSecretRef: |
Piotr Marcinkiewicz | 5957101 | 2021-01-12 17:37:08 +0100 | [diff] [blame] | 198 | name: sdnc-cmpv2-keystore-password |
Jan Malkiewicz | 0e53c9f | 2020-12-08 15:08:01 +0100 | [diff] [blame] | 199 | key: password |
Piotr Marcinkiewicz | 5957101 | 2021-01-12 17:37:08 +0100 | [diff] [blame] | 200 | issuer: |
| 201 | group: certmanager.onap.org |
| 202 | kind: CMPv2Issuer |
| 203 | name: cmpv2-issuer-onap |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 204 | ################################################################# |
| 205 | # Application configuration defaults. |
| 206 | ################################################################# |
| 207 | # application images |
Alexander Dehn | 238450f | 2020-10-27 13:03:53 +0000 | [diff] [blame] | 208 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 209 | pullPolicy: Always |
Dan Timoney | 3df0068 | 2021-04-12 13:17:41 -0400 | [diff] [blame] | 210 | image: onap/sdnc-image:2.1.5 |
Timoney, Dan (dt5972) | a3bc1a5 | 2019-06-26 16:16:52 -0400 | [diff] [blame] | 211 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 212 | # flag to enable debugging - application support required |
| 213 | debugEnabled: false |
| 214 | |
| 215 | # application configuration |
BorislavG | 5f3b619 | 2018-03-25 18:12:38 +0300 | [diff] [blame] | 216 | config: |
Timoney, Dan (dt5972) | ba4d2eb | 2019-05-07 13:32:42 -0400 | [diff] [blame] | 217 | odlUid: 100 |
| 218 | odlGid: 101 |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 219 | odlUser: admin |
jmac | a68f4cb | 2018-05-10 22:44:19 +0000 | [diff] [blame] | 220 | odlPassword: Kp8bJ4SXszM0WXlhak3eHlcse2gAw84vaoGGmJvUy2U |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 221 | # odlCredsExternalSecret: some secret |
| 222 | netboxApikey: onceuponatimeiplayedwithnetbox20180814 |
| 223 | # netboxApikeyExternalSecret: some secret |
Dan Timoney | 9e310e7 | 2021-02-23 11:25:39 -0500 | [diff] [blame] | 224 | aaiTruststorePassword: changeit |
| 225 | # aaiTruststoreExternalSecret: some secret |
| 226 | ansibleTruststorePassword: changeit |
| 227 | # ansibleTruststoreExternalSecret: some secret |
| 228 | truststorePassword: adminadmin |
| 229 | # truststoreExternalSecret: some secret |
| 230 | keystorePassword: adminadmin |
| 231 | # keystoreExternalSecret: some secret |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 232 | aaiUser: sdnc@sdnc.onap.org |
| 233 | aaiPassword: demo123456! |
| 234 | # aaiCredsExternalSecret: some secret |
Dan Timoney | 9e310e7 | 2021-02-23 11:25:39 -0500 | [diff] [blame] | 235 | soUser: sdncaBpmn |
| 236 | soPassword: password1$ |
| 237 | # soCredsExternalSecret: some secret |
| 238 | nengUser: ccsdkapps |
| 239 | nengPassword: ccsdkapps |
| 240 | # nengCredsExternalSecret: some secret |
| 241 | cdsUser: ccsdkapps |
| 242 | cdsPassword: ccsdkapps |
| 243 | # cdsCredsExternalSecret: some secret |
| 244 | honeycombUser: admin |
| 245 | honeycombPassword: admin |
| 246 | # honeycombCredsExternalSecret: some secret |
| 247 | dmaapUser: admin |
| 248 | dmaapPassword: admin |
| 249 | dmaapAuthKey: "fs20cKwalJ6ry4kX:7Hqm6BDZK47IKxGRkOPFk33qMYs=" |
| 250 | # dmaapCredsExternalSecret: some secret |
| 251 | # dmaapAuthKeyExternalSecret: some secret |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 252 | modelingUser: ccsdkapps |
| 253 | modelingPassword: ccsdkapps |
| 254 | # modelingCredsExternalSecret: some secret |
| 255 | restconfUser: admin |
| 256 | restconfPassword: admin |
| 257 | # restconfCredsExternalSecret: some secret |
| 258 | scaleoutUser: admin |
| 259 | scaleoutPassword: admin |
| 260 | # scaleoutExternalSecret: some secret |
| 261 | ansibleUser: sdnc |
| 262 | ansiblePassword: sdnc |
| 263 | # ansibleCredsExternalSecret: some secret |
| 264 | dbSdnctlDatabase: &sdncDbName sdnctl |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 265 | enableClustering: true |
Timoney, Dan (dt5972) | a3bc1a5 | 2019-06-26 16:16:52 -0400 | [diff] [blame] | 266 | sdncHome: /opt/onap/sdnc |
jmac | a68f4cb | 2018-05-10 22:44:19 +0000 | [diff] [blame] | 267 | binDir: /opt/onap/sdnc/bin |
Timoney, Dan (dt5972) | a3bc1a5 | 2019-06-26 16:16:52 -0400 | [diff] [blame] | 268 | etcDir: /opt/onap/sdnc/data |
Trevor Tait | 567ff1e | 2018-05-01 16:20:54 -0400 | [diff] [blame] | 269 | geoEnabled: false |
Neha Jain | 7b0d6c6 | 2018-05-17 14:34:49 -0400 | [diff] [blame] | 270 | # if geoEnabled is set to true here, mysql.geoEnabled must be set to true |
Trevor Tait | 567ff1e | 2018-05-01 16:20:54 -0400 | [diff] [blame] | 271 | # if geoEnabled is set to true the following 3 values must be set to their proper values |
| 272 | myODLCluster: 127.0.0.1 |
| 273 | peerODLCluster: 127.0.0.1 |
Mohammadreza Pasandideh | b642ee5 | 2018-06-19 15:19:53 -0400 | [diff] [blame] | 274 | isPrimaryCluster: true |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 275 | configDir: /opt/onap/sdnc/data/properties |
Konrad Bańka | 5ea1db3 | 2020-04-06 14:32:46 +0200 | [diff] [blame] | 276 | ccsdkConfigDir: /opt/onap/ccsdk/data/properties |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 277 | dmaapTopic: SUCCESS |
jmac | a68f4cb | 2018-05-10 22:44:19 +0000 | [diff] [blame] | 278 | dmaapPort: 3904 |
BorislavG | 5f3b619 | 2018-03-25 18:12:38 +0300 | [diff] [blame] | 279 | logstashServiceName: log-ls |
| 280 | logstashPort: 5044 |
jmac | 7c43467 | 2018-05-11 20:14:17 +0000 | [diff] [blame] | 281 | ansibleServiceName: sdnc-ansible-server |
| 282 | ansiblePort: 8000 |
Dan Timoney | a98765b | 2020-09-14 11:57:55 -0400 | [diff] [blame] | 283 | javaHome: /opt/java/openjdk |
jmac | 7c43467 | 2018-05-11 20:14:17 +0000 | [diff] [blame] | 284 | |
Timoney, Dan (dt5972) | 5877477 | 2019-08-21 16:50:54 -0400 | [diff] [blame] | 285 | odl: |
| 286 | etcDir: /opt/opendaylight/etc |
| 287 | binDir: /opt/opendaylight/bin |
Dan Timoney | a98765b | 2020-09-14 11:57:55 -0400 | [diff] [blame] | 288 | gcLogDir: /opt/opendaylight/data/log |
Timoney, Dan (dt5972) | 5877477 | 2019-08-21 16:50:54 -0400 | [diff] [blame] | 289 | salConfigDir: /opt/opendaylight/system/org/opendaylight/controller/sal-clustering-config |
Dan Timoney | 9520e7c | 2021-01-12 11:10:58 -0500 | [diff] [blame] | 290 | salConfigVersion: 1.10.4 |
Timoney, Dan (dt5972) | 5877477 | 2019-08-21 16:50:54 -0400 | [diff] [blame] | 291 | akka: |
| 292 | seedNodeTimeout: 15s |
| 293 | circuitBreaker: |
| 294 | maxFailures: 10 |
| 295 | callTimeout: 90s |
| 296 | resetTimeout: 30s |
| 297 | recoveryEventTimeout: 90s |
| 298 | datastore: |
| 299 | persistentActorRestartMinBackoffInSeconds: 10 |
| 300 | persistentActorRestartMaxBackoffInSeconds: 40 |
| 301 | persistentActorRestartResetBackoffInSeconds: 20 |
| 302 | shardTransactionCommitTimeoutInSeconds: 120 |
| 303 | shardIsolatedLeaderCheckIntervalInMillis: 30000 |
| 304 | operationTimeoutInSeconds: 120 |
| 305 | javaOptions: |
| 306 | maxGCPauseMillis: 100 |
| 307 | parallelGCThreads : 3 |
Dan Timoney | a98765b | 2020-09-14 11:57:55 -0400 | [diff] [blame] | 308 | numberGCLogFiles: 10 |
| 309 | minMemory: 512m |
| 310 | maxMemory: 2048m |
| 311 | gcLogOptions: "" |
| 312 | # Next line enables gc logging |
| 313 | # gcLogOptions: "-Xlog:gc=trace:file={{.Values.config.odl.gcLogDir}}/gc-%t.log}:time,level,tags:filecount={{.Values.config.odl.javaOptions.numberGCLogFiles}}" |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 314 | # enables sdnr functionality |
| 315 | sdnr: |
Alexander Dehn | 5c1105e | 2020-09-14 20:55:56 +0000 | [diff] [blame] | 316 | enabled: true |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 317 | # mode: web - SDNC contains device manager only plus dedicated webserver service for ODLUX (default), |
| 318 | # mode: dm - SDNC contains sdnr device manager + ODLUX components |
| 319 | mode: dm |
| 320 | # sdnronly: true starts sdnc container with odl and sdnrwt features only |
| 321 | sdnronly: false |
| 322 | sdnrdbTrustAllCerts: true |
| 323 | mountpointRegistrarEnabled: false |
| 324 | mountpointStateProviderEnabled: false |
demskeq8 | b43e92c | 2021-02-12 15:43:48 +0100 | [diff] [blame] | 325 | # |
demskeq8 | 9d26b33 | 2021-01-14 16:45:28 +0100 | [diff] [blame] | 326 | # enable and set dmaap-proxy for mountpointRegistrar |
| 327 | dmaapProxy: |
| 328 | enabled: false |
| 329 | usepwd: true |
| 330 | user: addUserHere |
| 331 | password: addPasswordHere |
| 332 | url: addProxyUrlHere |
demskeq8 | b43e92c | 2021-02-12 15:43:48 +0100 | [diff] [blame] | 333 | oauth: |
| 334 | enabled: false |
| 335 | tokenIssuer: ONAP SDNC |
| 336 | tokenSecret: secret |
| 337 | supportOdlusers: true |
| 338 | redirectUri: null |
| 339 | publicUrl: none |
| 340 | odluxRbac: |
| 341 | enabled: true |
| 342 | # example definition for a oauth provider |
| 343 | providersSecrets: |
| 344 | keycloak: d8d7ed52-0691-4353-9ac6-5383e72e9c46 |
| 345 | providers: |
| 346 | - id: keycloak |
| 347 | type: KEYCLOAK |
| 348 | host: http://keycloak:8080 |
| 349 | clientId: odlux.app |
| 350 | secret: ${KEYCLOAK_SECRET} |
| 351 | scope: openid |
| 352 | title: ONAP Keycloak Provider |
| 353 | roleMapping: |
| 354 | mykeycloak: admin |
Timoney, Dan (dt5972) | 5877477 | 2019-08-21 16:50:54 -0400 | [diff] [blame] | 355 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 356 | # dependency / sub-chart configuration |
Krzysztof Opasiak | 8ab4547 | 2020-05-12 12:53:50 +0200 | [diff] [blame] | 357 | certInitializer: |
| 358 | nameOverride: sdnc-cert-initializer |
Jozsef Csongvai | 9d4d5af | 2020-07-13 11:10:25 -0400 | [diff] [blame] | 359 | truststoreMountpath: /opt/onap/sdnc/data/stores |
Krzysztof Opasiak | 6bab0cc | 2020-04-29 00:55:47 +0200 | [diff] [blame] | 360 | fqdn: "sdnc" |
| 361 | app_ns: "org.osaaf.aaf" |
| 362 | fqi: "sdnc@sdnc.onap.org" |
| 363 | fqi_namespace: org.onap.sdnc |
| 364 | public_fqdn: "sdnc.onap.org" |
| 365 | aafDeployFqi: "deployer@people.osaaf.org" |
| 366 | aafDeployPass: demo123456! |
| 367 | cadi_latitude: "38.0" |
| 368 | cadi_longitude: "-72.0" |
Krzysztof Opasiak | 6bab0cc | 2020-04-29 00:55:47 +0200 | [diff] [blame] | 369 | credsPath: /opt/app/osaaf/local |
Krzysztof Opasiak | 8ab4547 | 2020-05-12 12:53:50 +0200 | [diff] [blame] | 370 | aaf_add_config: > |
| 371 | cd /opt/app/osaaf/local; |
| 372 | /opt/app/aaf_config/bin/agent.sh local showpass {{.Values.fqi}} {{ .Values.fqdn }} | grep cadi_keystore_password= | cut -d= -f 2 > {{ .Values.credsPath }}/.pass 2>&1 |
Agarwal, Ruchira (ra1926) | ec7c75e | 2019-10-01 17:36:24 +0000 | [diff] [blame] | 373 | |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 374 | # dependency / sub-chart configuration |
| 375 | network-name-gen: |
| 376 | enabled: true |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 377 | mariadb-galera: &mariadbGalera |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 378 | nameOverride: &sdnc-db sdnc-db |
Konrad Bańka | a9d4403 | 2020-03-19 18:31:34 +0100 | [diff] [blame] | 379 | config: &mariadbGaleraConfig |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 380 | rootPasswordExternalSecret: *rootDbSecret |
| 381 | userName: &dbUser sdnctl |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 382 | userCredentialsExternalSecret: *dbSecretName |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 383 | rootUser: |
| 384 | externalSecret: *rootDbSecret |
| 385 | db: |
| 386 | user: *dbUser |
| 387 | externalSecret: *dbSecretName |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 388 | service: |
| 389 | name: sdnc-dbhost |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 390 | sdnctlPrefix: sdnc |
| 391 | persistence: |
Mahendra Raghuwanshi | b76cb28 | 2019-04-09 10:13:07 +0000 | [diff] [blame] | 392 | mountSubPath: sdnc/mariadb-galera |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 393 | enabled: true |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 394 | replicaCount: 1 |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 395 | serviceAccount: |
| 396 | nameOverride: *sdnc-db |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 397 | |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 398 | cds: |
| 399 | enabled: false |
| 400 | |
| 401 | dmaap-listener: |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 402 | enabled: true |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 403 | nameOverride: sdnc-dmaap-listener |
| 404 | mariadb-galera: |
Konrad Bańka | a9d4403 | 2020-03-19 18:31:34 +0100 | [diff] [blame] | 405 | <<: *mariadbGalera |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 406 | config: |
Konrad Bańka | a9d4403 | 2020-03-19 18:31:34 +0100 | [diff] [blame] | 407 | <<: *mariadbGaleraConfig |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 408 | mysqlDatabase: *sdncDbName |
| 409 | config: |
| 410 | sdncChartName: sdnc |
| 411 | dmaapPort: 3904 |
| 412 | sdncPort: 8282 |
| 413 | configDir: /opt/onap/sdnc/data/properties |
| 414 | odlCredsExternalSecret: *odlCredsSecretName |
| 415 | |
| 416 | ueb-listener: |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 417 | enabled: true |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 418 | mariadb-galera: |
Konrad Bańka | a9d4403 | 2020-03-19 18:31:34 +0100 | [diff] [blame] | 419 | <<: *mariadbGalera |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 420 | config: |
Konrad Bańka | a9d4403 | 2020-03-19 18:31:34 +0100 | [diff] [blame] | 421 | <<: *mariadbGaleraConfig |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 422 | mysqlDatabase: *sdncDbName |
| 423 | nameOverride: sdnc-ueb-listener |
| 424 | config: |
| 425 | sdncPort: 8282 |
| 426 | sdncChartName: sdnc |
| 427 | configDir: /opt/onap/sdnc/data/properties |
| 428 | odlCredsExternalSecret: *odlCredsSecretName |
| 429 | |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 430 | sdnc-ansible-server: |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 431 | enabled: true |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 432 | config: |
| 433 | restCredsExternalSecret: *ansibleSecretName |
| 434 | mariadb-galera: |
Konrad Bańka | a9d4403 | 2020-03-19 18:31:34 +0100 | [diff] [blame] | 435 | <<: *mariadbGalera |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 436 | config: |
Konrad Bańka | a9d4403 | 2020-03-19 18:31:34 +0100 | [diff] [blame] | 437 | <<: *mariadbGaleraConfig |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 438 | mysqlDatabase: ansible |
| 439 | service: |
| 440 | name: sdnc-ansible-server |
| 441 | internalPort: 8000 |
| 442 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 443 | dgbuilder: |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 444 | enabled: true |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 445 | nameOverride: sdnc-dgbuilder |
Dan Timoney | cb0a81f | 2020-07-15 17:31:43 -0400 | [diff] [blame] | 446 | certInitializer: |
| 447 | nameOverride: sdnc-dgbuilder-cert-initializer |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 448 | config: |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 449 | db: |
| 450 | dbName: *sdncDbName |
Sylvain Desbureaux | 93a5b49 | 2020-11-27 11:07:42 +0100 | [diff] [blame] | 451 | rootPasswordExternalSecret: '{{ .Values.global.mariadbGalera.localCluster | |
| 452 | ternary |
| 453 | (printf "%s-sdnc-db-root-password" (include "common.release" .)) |
| 454 | (include "common.mariadb.secret.rootPassSecretName" |
| 455 | (dict "dot" . "chartName" "mariadb-galera")) }}' |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 456 | userCredentialsExternalSecret: *dbSecretName |
Mahendra Raghuwanshi | b76cb28 | 2019-04-09 10:13:07 +0000 | [diff] [blame] | 457 | dbPodName: mariadb-galera |
| 458 | dbServiceName: mariadb-galera |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 459 | # This should be revisited and changed to plain text |
jmac | 70863e1 | 2018-05-16 14:53:03 +0000 | [diff] [blame] | 460 | dgUserPassword: cc03e747a6afbbcbf8be7668acfebee5 |
Krzysztof Opasiak | cc97c73 | 2020-02-25 23:31:20 +0100 | [diff] [blame] | 461 | mariadb-galera: |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 462 | service: |
BorislavG | 1ffbd99 | 2018-04-24 07:56:27 +0000 | [diff] [blame] | 463 | name: sdnc-dgbuilder |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 464 | nodePort: "03" |
| 465 | |
Sylvain Desbureaux | e54644e | 2020-05-04 11:45:16 +0200 | [diff] [blame] | 466 | ingress: |
| 467 | enabled: false |
| 468 | service: |
| 469 | - baseaddr: "sdnc-dgbuilder" |
| 470 | name: "sdnc-dgbuilder" |
| 471 | port: 3000 |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 472 | - baseaddr: "sdnc-web-service" |
| 473 | name: "sdnc-web-service" |
| 474 | port: 8443 |
Sylvain Desbureaux | e54644e | 2020-05-04 11:45:16 +0200 | [diff] [blame] | 475 | config: |
| 476 | ssl: "redirect" |
| 477 | |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 478 | |
| 479 | |
Alexander Dehn | ab86ec1 | 2020-02-05 14:38:54 +0000 | [diff] [blame] | 480 | # local elasticsearch cluster |
| 481 | localElasticCluster: true |
| 482 | elasticsearch: |
Sylvain Desbureaux | 829344b | 2020-11-19 17:07:26 +0100 | [diff] [blame] | 483 | nameOverride: &elasticSearchName sdnrdb |
Alexander Dehn | ab86ec1 | 2020-02-05 14:38:54 +0000 | [diff] [blame] | 484 | name: sdnrdb-cluster |
Krzysztof Opasiak | c6152ce | 2020-05-09 01:43:08 +0200 | [diff] [blame] | 485 | certInitializer: |
Alexander Dehn | ab86ec1 | 2020-02-05 14:38:54 +0000 | [diff] [blame] | 486 | fqdn: "sdnc" |
| 487 | fqi_namespace: org.onap.sdnc |
| 488 | fqi: "sdnc@sdnc.onap.org" |
| 489 | service: |
Sylvain Desbureaux | 829344b | 2020-11-19 17:07:26 +0100 | [diff] [blame] | 490 | name: *elasticSearchName |
Alexander Dehn | ab86ec1 | 2020-02-05 14:38:54 +0000 | [diff] [blame] | 491 | master: |
| 492 | replicaCount: 3 |
| 493 | # dedicatednode: "yes" |
| 494 | # working as master node only, in this case increase replicaCount for elasticsearch-data |
| 495 | # dedicatednode: "no" |
| 496 | # handles master and data node functionality |
| 497 | dedicatednode: "no" |
Sylvain Desbureaux | 829344b | 2020-11-19 17:07:26 +0100 | [diff] [blame] | 498 | nameOverride: *elasticSearchName |
demskeq8 | eb56da7 | 2021-02-19 12:11:48 +0100 | [diff] [blame] | 499 | cluster_name: sdnrdb-cluster |
Alexander Dehn | 9b797d6 | 2020-04-21 09:53:50 +0000 | [diff] [blame] | 500 | # enable |
| 501 | sdnc-web: |
Alexander Dehn | 8789a72 | 2020-10-16 14:29:05 +0000 | [diff] [blame] | 502 | enabled: true |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 503 | # default number of instances |
| 504 | replicaCount: 1 |
| 505 | |
| 506 | nodeSelector: {} |
| 507 | |
| 508 | affinity: {} |
| 509 | |
| 510 | # probe configuration parameters |
| 511 | liveness: |
| 512 | initialDelaySeconds: 10 |
| 513 | periodSeconds: 10 |
| 514 | # necessary to disable liveness probe when setting breakpoints |
| 515 | # in debugger so K8s doesn't restart unresponsive container |
| 516 | enabled: true |
| 517 | |
| 518 | readiness: |
| 519 | initialDelaySeconds: 10 |
| 520 | periodSeconds: 10 |
| 521 | |
| 522 | service: |
| 523 | type: NodePort |
| 524 | name: sdnc |
BorislavG | 1ffbd99 | 2018-04-24 07:56:27 +0000 | [diff] [blame] | 525 | portName: sdnc |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 526 | internalPort: 8181 |
| 527 | internalPort2: 8101 |
| 528 | internalPort3: 8080 |
Timoney, Dan (dt5972) | c6de269 | 2019-08-14 14:22:37 -0400 | [diff] [blame] | 529 | internalPort4: 8443 |
Mohammadreza Pasandideh | b756fb7 | 2018-04-03 10:06:45 -0400 | [diff] [blame] | 530 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 531 | #port |
| 532 | externalPort: 8282 |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 533 | |
| 534 | externalPort2: 8202 |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 535 | |
| 536 | externalPort3: 8280 |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 537 | |
jmac | a68f4cb | 2018-05-10 22:44:19 +0000 | [diff] [blame] | 538 | externalPort4: 8443 |
| 539 | nodePort4: 67 |
| 540 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 541 | clusterPort: 2550 |
Mohammadreza Pasandideh | b756fb7 | 2018-04-03 10:06:45 -0400 | [diff] [blame] | 542 | clusterPort2: 2650 |
| 543 | clusterPort3: 2681 |
| 544 | |
| 545 | geoNodePort1: 61 |
| 546 | geoNodePort2: 62 |
| 547 | geoNodePort3: 63 |
| 548 | geoNodePort4: 64 |
| 549 | geoNodePort5: 65 |
| 550 | geoNodePort6: 66 |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 551 | |
jmac | 8d6dc96 | 2018-04-26 14:26:55 +0000 | [diff] [blame] | 552 | ## Persist data to a persitent volume |
| 553 | persistence: |
| 554 | enabled: true |
| 555 | |
| 556 | ## A manually managed Persistent Volume and Claim |
| 557 | ## Requires persistence.enabled: true |
| 558 | ## If defined, PVC must be created manually before volume will be bound |
| 559 | # existingClaim: |
| 560 | volumeReclaimPolicy: Retain |
| 561 | |
| 562 | ## database data Persistent Volume Storage Class |
| 563 | ## If defined, storageClassName: <storageClass> |
| 564 | ## If set to "-", storageClassName: "", which disables dynamic provisioning |
| 565 | ## If undefined (the default) or set to null, no storageClassName spec is |
| 566 | ## set, choosing the default provisioner. (gp2 on AWS, standard on |
| 567 | ## GKE, AWS & OpenStack) |
| 568 | accessMode: ReadWriteOnce |
| 569 | size: 1Gi |
| 570 | mountPath: /dockerdata-nfs |
| 571 | mountSubPath: sdnc/mdsal |
Dan Timoney | 2ee28a5 | 2021-01-15 16:39:50 -0500 | [diff] [blame] | 572 | mdsalPath: /opt/opendaylight/mdsal |
demskeq8 | a86300a | 2021-02-10 09:53:33 +0100 | [diff] [blame] | 573 | daeximPath: /opt/opendaylight/mdsal/daexim |
Dan Timoney | 2ee28a5 | 2021-01-15 16:39:50 -0500 | [diff] [blame] | 574 | journalPath: /opt/opendaylight/journal |
| 575 | snapshotsPath: /opt/opendaylight/snapshots |
jmac | 8d6dc96 | 2018-04-26 14:26:55 +0000 | [diff] [blame] | 576 | |
egernug | 2757833 | 2020-03-26 10:27:55 +0000 | [diff] [blame] | 577 | certpersistence: |
| 578 | enabled: true |
| 579 | |
| 580 | ## A manually managed Persistent Volume and Claim |
| 581 | ## Requires persistence.enabled: true |
| 582 | ## If defined, PVC must be created manually before volume will be bound |
| 583 | # existingClaim: |
| 584 | |
| 585 | volumeReclaimPolicy: Retain |
| 586 | accessMode: ReadWriteOnce |
| 587 | size: 50Mi |
| 588 | mountPath: /dockerdata-nfs |
| 589 | mountSubPath: sdnc/certs |
| 590 | certPath: /opt/app/osaaf |
| 591 | ##storageClass: "manual" |
| 592 | |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 593 | ingress: |
| 594 | enabled: false |
Lucjan Bryndza | 0844840 | 2019-11-27 14:26:54 +0100 | [diff] [blame] | 595 | service: |
Lucjan Bryndza | 0564965 | 2020-04-29 08:52:33 +0000 | [diff] [blame] | 596 | - baseaddr: "sdnc.api" |
Lucjan Bryndza | 0844840 | 2019-11-27 14:26:54 +0100 | [diff] [blame] | 597 | name: "sdnc" |
| 598 | port: 8443 |
| 599 | config: |
| 600 | ssl: "redirect" |
jmac | 065e2ce | 2018-03-29 01:18:02 +0000 | [diff] [blame] | 601 | |
toshrajbhardwaj | 72b5f0f | 2018-09-13 02:45:22 +0000 | [diff] [blame] | 602 | #Resource Limit flavor -By Default using small |
| 603 | flavor: small |
| 604 | #segregation for different envionment (Small and Large) |
| 605 | |
| 606 | resources: |
Mandeep Khinda | de04571 | 2018-09-19 18:11:57 +0000 | [diff] [blame] | 607 | small: |
| 608 | limits: |
| 609 | cpu: 2 |
| 610 | memory: 4Gi |
| 611 | requests: |
Mandeep Khinda | 3c13425 | 2018-09-19 23:56:37 +0000 | [diff] [blame] | 612 | cpu: 1 |
| 613 | memory: 2Gi |
Mandeep Khinda | de04571 | 2018-09-19 18:11:57 +0000 | [diff] [blame] | 614 | large: |
| 615 | limits: |
| 616 | cpu: 4 |
| 617 | memory: 8Gi |
| 618 | requests: |
Mandeep Khinda | 3c13425 | 2018-09-19 23:56:37 +0000 | [diff] [blame] | 619 | cpu: 2 |
| 620 | memory: 4Gi |
Mandeep Khinda | 60d36d4 | 2018-09-24 15:15:48 +0000 | [diff] [blame] | 621 | unlimited: {} |