aboutsummaryrefslogtreecommitdiffstats
path: root/kubernetes/policy/components/policy-gui/resources/config/default.conf
diff options
context:
space:
mode:
authorktimoney <kevin.timoney@est.tech>2021-09-13 08:27:58 +0100
committerktimoney <kevin.timoney@est.tech>2021-10-04 18:16:53 +0100
commitb3aef7b242d410d040f33d0db126d601cce69bee (patch)
tree01db567b9384f27ef7dc24d498baf46d6e422bc6 /kubernetes/policy/components/policy-gui/resources/config/default.conf
parent0866aa1ed5305ffa24fd718001ed72cc424f9e3e (diff)
[POLICY] Add helm chart for policy-gui
Added helm chart for policy gui Issue-ID: POLICY-3593 Change-Id: I8e0e1b7a31258bb860b304a1635f785517b443ae Signed-off-by: ktimoney <kevin.timoney@est.tech>
Diffstat (limited to 'kubernetes/policy/components/policy-gui/resources/config/default.conf')
-rw-r--r--kubernetes/policy/components/policy-gui/resources/config/default.conf32
1 files changed, 32 insertions, 0 deletions
diff --git a/kubernetes/policy/components/policy-gui/resources/config/default.conf b/kubernetes/policy/components/policy-gui/resources/config/default.conf
new file mode 100644
index 0000000000..98417cd822
--- /dev/null
+++ b/kubernetes/policy/components/policy-gui/resources/config/default.conf
@@ -0,0 +1,32 @@
+server {
+
+ listen 2443 default ssl;
+ ssl_protocols TLSv1.2;
+ {{ if .Values.global.aafEnabled }}
+ ssl_certificate {{.Values.certInitializer.credsPath}}/{{.Values.certInitializer.clamp_pem}};
+ ssl_certificate_key {{.Values.certInitializer.credsPath}}/{{.Values.certInitializer.clamp_key}};
+ {{ else }}
+ ssl_certificate /etc/ssl/clamp.pem;
+ ssl_certificate_key /etc/ssl/clamp.key;
+ {{ end }}
+
+ ssl_verify_client optional_no_ca;
+ absolute_redirect off;
+
+ location / {
+ root /usr/share/nginx/html;
+ index index.html index.htm;
+ try_files $uri $uri/ =404;
+ }
+
+ location /clamp/restservices/clds/ {
+ proxy_pass https://policy-clamp-be:8443/restservices/clds/;
+ proxy_set_header X-SSL-Cert $ssl_client_escaped_cert;
+ }
+
+ location = /50x.html {
+ root /var/lib/nginx/html;
+ }
+ error_page 500 502 503 504 /50x.html;
+ error_log /var/log/nginx/error.log warn;
+}