aboutsummaryrefslogtreecommitdiffstats
path: root/kubernetes/policy/components/policy-clamp-fe/resources/config/default.conf
diff options
context:
space:
mode:
authorKrzysztof Opasiak <k.opasiak@samsung.com>2021-02-11 21:29:24 +0000
committerGerrit Code Review <gerrit@onap.org>2021-02-11 21:29:24 +0000
commit3465ee1be5636b48753bc7bf4d0bf8ca1fac5147 (patch)
treea4623b443678190d3ede570bab7259937df4dcc2 /kubernetes/policy/components/policy-clamp-fe/resources/config/default.conf
parentcacfe7b32bcd951a2bb173d8beab8cf22da67ac4 (diff)
parent5c4498813e10d25160a86f97fe7a95ea26f9ef7b (diff)
Merge "[POLICY] Migration of clamp to policy area"
Diffstat (limited to 'kubernetes/policy/components/policy-clamp-fe/resources/config/default.conf')
-rw-r--r--kubernetes/policy/components/policy-clamp-fe/resources/config/default.conf31
1 files changed, 31 insertions, 0 deletions
diff --git a/kubernetes/policy/components/policy-clamp-fe/resources/config/default.conf b/kubernetes/policy/components/policy-clamp-fe/resources/config/default.conf
new file mode 100644
index 0000000000..4cab734074
--- /dev/null
+++ b/kubernetes/policy/components/policy-clamp-fe/resources/config/default.conf
@@ -0,0 +1,31 @@
+server {
+
+ listen 2443 default ssl;
+ ssl_protocols TLSv1.2;
+ {{ if .Values.global.aafEnabled }}
+ ssl_certificate {{.Values.certInitializer.credsPath}}/{{.Values.certInitializer.clamp_pem}};
+ ssl_certificate_key {{.Values.certInitializer.credsPath}}/{{.Values.certInitializer.clamp_key}};
+ {{ else }}
+ ssl_certificate /etc/ssl/clamp.pem;
+ ssl_certificate_key /etc/ssl/clamp.key;
+ {{ end }}
+
+ ssl_verify_client optional_no_ca;
+ location /restservices/clds/ {
+ proxy_pass https://policy-clamp-be:8443;
+ proxy_set_header X-SSL-Cert $ssl_client_escaped_cert;
+ }
+
+ location / {
+ root /usr/share/nginx/html;
+ index index.html index.htm;
+ try_files $uri $uri/ /index.html;
+ }
+
+ error_page 500 502 503 504 /50x.html;
+
+ location = /50x.html {
+ root /usr/share/nginx/html;
+ }
+
+}