diff options
author | Krzysztof Opasiak <k.opasiak@samsung.com> | 2021-02-11 21:29:24 +0000 |
---|---|---|
committer | Gerrit Code Review <gerrit@onap.org> | 2021-02-11 21:29:24 +0000 |
commit | 3465ee1be5636b48753bc7bf4d0bf8ca1fac5147 (patch) | |
tree | a4623b443678190d3ede570bab7259937df4dcc2 /kubernetes/policy/components/policy-clamp-fe/resources/config/default.conf | |
parent | cacfe7b32bcd951a2bb173d8beab8cf22da67ac4 (diff) | |
parent | 5c4498813e10d25160a86f97fe7a95ea26f9ef7b (diff) |
Merge "[POLICY] Migration of clamp to policy area"
Diffstat (limited to 'kubernetes/policy/components/policy-clamp-fe/resources/config/default.conf')
-rw-r--r-- | kubernetes/policy/components/policy-clamp-fe/resources/config/default.conf | 31 |
1 files changed, 31 insertions, 0 deletions
diff --git a/kubernetes/policy/components/policy-clamp-fe/resources/config/default.conf b/kubernetes/policy/components/policy-clamp-fe/resources/config/default.conf new file mode 100644 index 0000000000..4cab734074 --- /dev/null +++ b/kubernetes/policy/components/policy-clamp-fe/resources/config/default.conf @@ -0,0 +1,31 @@ +server { + + listen 2443 default ssl; + ssl_protocols TLSv1.2; + {{ if .Values.global.aafEnabled }} + ssl_certificate {{.Values.certInitializer.credsPath}}/{{.Values.certInitializer.clamp_pem}}; + ssl_certificate_key {{.Values.certInitializer.credsPath}}/{{.Values.certInitializer.clamp_key}}; + {{ else }} + ssl_certificate /etc/ssl/clamp.pem; + ssl_certificate_key /etc/ssl/clamp.key; + {{ end }} + + ssl_verify_client optional_no_ca; + location /restservices/clds/ { + proxy_pass https://policy-clamp-be:8443; + proxy_set_header X-SSL-Cert $ssl_client_escaped_cert; + } + + location / { + root /usr/share/nginx/html; + index index.html index.htm; + try_files $uri $uri/ /index.html; + } + + error_page 500 502 503 504 /50x.html; + + location = /50x.html { + root /usr/share/nginx/html; + } + +} |