Age | Commit message (Collapse) | Author | Files | Lines |
|
|
|
|
|
|
|
* changes:
[CONSUL] Make consul server run as non-root
[CONSUL] Make consul run as non-root
|
|
This files are never processed as helm's template, so comments
should be in yaml style.
Signed-off-by: Jakub Latusek <j.latusek@samsung.com>
Issue-ID: OOM-2562
Change-Id: Id97f1b2640d7d96324f891b54780a12ec28e5d02
|
|
|
|
|
|
The release version of so-etsi-nfvo-ns-lcm is updated from 1.7.4-snapshot to 1.7.7
Issue-ID: SO-3351
Signed-off-by: seshukm <seshu.kumar.m@huawei.com>
Change-Id: I0e167bc37f3bb02d7f63ae5aaa6cbed37840b5c3
|
|
These parameters trigger an error when installing on windriver
so if the file is used, installation will fail due to yaml issue
Issue-ID: OOM-2620
Signed-off-by: mrichomme <morgan.richomme@orange.com>
Change-Id: I572d7d26067f7b632aaec4fd88a19d28b80b9d68
|
|
Modify the entrypoint to eliminate root process from container.
Issue-ID: REQ-362
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: Ic1302ac2858dda1bac71be4449ea74cfc73ba197
|
|
Use our recently build consul image (still based on the same old
consul version) and modify the deployment to make sure that it is able
to run as non-root user.
Issue-ID: REQ-362
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: I43584b7f07fda1943447a4e58ee7444d20660097
|
|
|
|
|
|
|
|
|
|
Checking if images are in release repository.
Signed-off-by: Jakub Latusek <j.latusek@samsung.com>
Issue-ID: OOM-2616
Change-Id: Ibb4f7e51fb3a1afcebaecd04ca3e1a4bf62dd467
|
|
|
|
- Use the newest OCLIP 6.0.0 in the refrepo image
Issue-ID: VNFSDK-704
Signed-off-by: Zebek Bogumil <bogumil.zebek@nokia.com>
Change-Id: Ifb8cc0639e6971a8d3ce654941e86ec2e1737e86
|
|
Some SO components are using readiness check init container. In "gating"
mode, so image and readiness image are not coming from the same
repository.
By using readinessCheck charts, we can control that.
Issue-ID: OOM-2617
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Change-Id: I44a4e9daf72d1a42d3d84b6d56b588cd7d44fb08
|
|
so-db-secrets was used to create secrets
for db creds. But now, they are being created
from secrets metaconfig. It is not needed
Issue-ID: OOM-2534
Signed-off-by: Krishna Moorthy <krishna.moorthy6@wipro.com>
Change-Id: I0f0514b0b704e4643253b793ea4bd9ad92329759
|
|
SO secret was used to give truststore to SO components.
As we're using dynamic certificate retrieval, it's not needed anymore.
Issue-ID: OOM-2534
Issue-ID: SO-3348
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Change-Id: I0eb2e052096923fc69bf5f1a1876d9a76a22102b
|
|
|
|
|
|
Current version was pointing to Honolulu candidate image, while before
branch-off, it should contain Guilin one.
Issue-ID: CCSDK-2962
Signed-off-by: Konrad Bańka <k.banka@samsung.com>
Change-Id: I732203d0c3cdf0f5e5d833e6bbd060ee03783075
|
|
Add helm chart for cnf-adapter to oom
Issue-ID: SO-3164
Signed-off-by: sekharhuawei <reddi.shekhar@huawei.com>
Change-Id: I12551f8403c55b7f0d0e54dea0d003413039b6a6
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
|
|
1.Update image of nslcm 2.Update annotations
Change-Id: Ib34a1596e43f08e13d1c3f691b7428e8ed103e59
Issue-ID: VFC-1763
Signed-off-by: dyh <dengyuanhong@chinamobile.com>
|
|
Released images 1.7.2 updated for RC1
Issue-ID: SDC-3323
Signed-off-by: ChrisC <christophe.closset@intl.att.com>
Change-Id: I78c928a7ae1840545da7c002d512ddc94ea5346c
|
|
Limits set seemed to be to hard, loosening them in order to make it
work.
Issue-ID: REQ-362
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Change-Id: I99aa55fb2564683f4968e5831e9e7b9aaa751054
|
|
|
|
|
|
- SO-Monitoring service exposed as NodePort
- Certs are retrieved dynamically using certInitializer
Issue-ID: SO-2920
Signed-off-by: Krzysztof Gajewski <krzysztof.gajewski@nokia.com>
Change-Id: I04e6556bcddc3c67afc2a76c5b4fecb59a134911
|
|
|
|
Do the release 5.1.4 + fix potential issue with memory taken by clamp backend.
Heap is now dynamic so resources must be set by default, onap/values overwrites the current flavor to unlimited.
Issue-ID: CLAMP-956
Signed-off-by: sebdet <sebastien.determe@intl.att.com>
Change-Id: I349b9454ca0d7a3f2724aa27c041a4ea2da3689f
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
* Update kubernetes/aai from branch 'master'
to bac40922e4043c632e1a8a5fe1531a640cbfe6c2
- Release the 1.7.11 docker release for the network slicing functional use case
Issue-ID: AAI-3211
Signed-off-by: wreehil <wr148d@att.com>
Change-Id: I304c09b646cdf55b848f89b0fa1f1ee08ad3acf3
|
|
Update CertServiceClient to new version (2.1.0)
Issue-ID: OOM-2580
Signed-off-by: Maciej Malewski <maciej.malewski@nokia.com>
Change-Id: I8e7f42a5edb1832932eb8b6b66950612ec33a21f
|
|
Update portal-widget HELM charts to use non-
root user access to the portal mariadb
backend
Issue-ID: OOM-2601
Signed-off-by: SandeepLinux <ss048t@att.com>
Change-Id: I434ce85f1d0922d87fca35f692064a9b5e757954
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
|
|
|
|
Use trim function in order to remove the 4 first spaces that breaks
configuration when aaf add config is a multiline (a.k.a uses `|`) YAML
entry.
Issue-ID: OOM-2611
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Change-Id: Ib53a8a87f896a66ba613d542cfca833804ef1d7a
|
|
Instead of setting TLS termination at POD level, it may be interesting
to terminate it at Ingress level.
This patch add the ability to do that using "Ingress" templates.
In order to achieve it, you need to configure it this way in
`values.yaml`:
```yaml
ingress:
enabled: false
service:
- baseaddr: 'my-endpoint'
name: 'my-service'
port: 8080
config:
tls:
secret: my-service-ingress-certs
```
Secret (here `my-service-ingress-certs`) must follow Kubernetest
`kubernetes.io/tls` type: https://kubernetes.io/docs/concepts/services-networking/ingress/#tls
Issue-ID: SO-3078
Issue-ID: SO-3237
Issue-ID: OOM-2609
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Change-Id: I76c0929d53289a581bc26d0d03cc8b9bd72d0fd1
|
|
SO BPMN infra uses "v1" version for VNF handling, which is not
compatible with multicloud.
This patch allows to choose which version to use, defaulting to "v2"
version.
Issue-ID: SO-3342
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Change-Id: I548f9f1e264ea7a21ee2d604e5de5c3b65599943
|
|
Having limits is important in order to have safe deployment.
cassandra didn't had one so let's add them.
Issue-ID: OOM-2230
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Change-Id: Id3fef8c351f1be977eab49abd111304b9edd9151
|
|
|