aboutsummaryrefslogtreecommitdiffstats
path: root/kubernetes
AgeCommit message (Collapse)AuthorFilesLines
2021-03-31Merge "[CCSDK] Correct permissions of mounted configmaps" into guilinSylvain Desbureaux1-1/+1
2021-03-30Merge "[CDS] Update hardcoded certificates" into guilinKrzysztof Opasiak4-0/+61
2021-03-30[CCSDK] Correct permissions of mounted configmapsKonrad Bańka1-1/+1
One configmap contains scripts that need to be executable. It turns out that by mistake such file permissions were granted to wrong volume by mistake. Issue-ID: CCSDK-2958 Signed-off-by: Konrad Bańka <k.banka@samsung.com> Change-Id: If02b4579981bcf3ba52304013f3be4ec43e2672c
2021-03-25[CDS] Update hardcoded certificatesSylvain Desbureaux4-0/+61
Update CDS UI certificates in order to have validity for one year Issue-ID: CCSDK-3207 Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> Change-Id: Id7a0dbdfb6a59ac7e76e00fd106855f05482b041
2021-03-24[VID] Update certificateSylvain Desbureaux2-1/+1
Update certificate in order to have one with one year. Issue-ID: VID-959 Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> Change-Id: I4647a42d26777b4c35d738cd3e372c0c3a47a92d
2021-03-24[DMAAP][DR] Fix bad templatingSylvain Desbureaux2-2/+2
In DR deployments, use of `{{- end -}}` at the of affinity makes the next line to "glue" to resources information. And it seems that in recent kubernetes, it makes it break. Issue-ID: OOM-2671 Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> Change-Id: Ief6fcdf18b9bea1bff728924d7c9a25465ac8a47 (cherry picked from commit e615343e219ee091fcdf7ac29201ed665996f7a2)
2021-02-12Merge "[MUSIC] Update certificate" into guilinKrzysztof Opasiak2-2/+1
2021-02-12Update git submodulesKajur, Harish (vk250x)1-0/+0
* Update kubernetes/aai from branch 'guilin' to 59980bb001946b3b61766a205a17b9461b512eba - Update sparky cert expiring in march Issue-ID: AAI-2841 Change-Id: I07ffdacdabcd46eb270b0f47808f7a195ed21189 Signed-off-by: Kajur, Harish (vk250x) <vk250x@att.com>
2021-02-12[MUSIC] Update certificateSylvain Desbureaux2-2/+1
Use fresh certificate in Music Issue-ID: OOM-2673 Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> Change-Id: I410f459ed2446bbae290e277747314708f5f97a5
2021-02-09Update git submoduleswr148d1-0/+0
* Update kubernetes/aai from branch 'guilin' to 14c17d95ee813dddec59de57f6c5a4a1e6ba9fc4 - Updating the schema service to 1.7.14 version for guilin maintenance release and mdons use case Issue-ID: AAI-3225 Signed-off-by: wr148d <wr148d@att.com> Change-Id: I09869f3fcf2a26f48595d9f11b363c4b165355aa
2021-02-04Update git submodulesManisha Aggarwal1-0/+0
* Update kubernetes/aai from branch 'guilin' to 8a9c0c7f2b29147bb0e3f1367e9b7dfbd558b4ce - Merge "Dmaap event publishing fix to post to https dmaap" into guilin - Dmaap event publishing fix to post to https dmaap Issue-ID: AAI-3219 Change-Id: Id81b34477cf90565d882e04c7c0ce7a14a7f4953 Signed-off-by: Harish Venkata Kajur <vk250x@att.com>
2021-02-04Update git submodulesKajur, Harish (vk250x)1-0/+0
* Update kubernetes/aai from branch 'guilin' to bc8d72d199ba2e1699e7ade44d6d558813a83a61 - Update certs and will be valid until Jan 2022 Issue-ID: AAI-2841 Change-Id: I5e866c9b710026168bcd84ed0d4a40f4a382fb55 Signed-off-by: Kajur, Harish (vk250x) <vk250x@att.com>
2021-01-26[COMMON][ETCD] Skip startup self-discovery for etcd nodesKonrad Bańka1-0/+4
Current startup script of etcd checks whether all assumed other nodes are already running, before proceeding. This check, however, also includes checking localhost, but due to using headless service statefulset pod DNS discovery, it doesnt succeed immediately. In some deployments k8s DNS server may be laggy, thus failing startup script to finish before liveness check. This patch fixes such failures of 1 pod etcd clusters, and improves startup time for any size ones. Signed-off-by: Konrad Bańka <k.banka@samsung.com> Issue-ID: OOM-2668 Change-Id: I2f9263a0f4964b0a495631775d0cbbceef25e85b
2021-01-21Merge "[COMMON][CERTS] Use sh to onboard custom certs" into guilinKrzysztof Opasiak2-8/+14
2021-01-20Merge "[SDNC] Move ODL persistent data to pvc" into guilinKrzysztof Opasiak4-48/+106
2021-01-20Merge "Release 7.0.0" into guilinKrzysztof Opasiak1-0/+6
2021-01-20Merge "[SDNC] Bump versions for Guilin mtce release 1" into guilinKrzysztof Opasiak5-5/+5
2021-01-20Merge "[SO] Update SO to 1.7.11 (CNF and slicing bugfixes)" into guilinKrzysztof Opasiak14-14/+25
2021-01-20[SDNC] Move ODL persistent data to pvcDan Timoney4-48/+106
In OpenDaylight, there are three types of data that we want to retain: - exported backups (stored in /opt/opendaylight/daexim) - journals (stored in /opt/opendaylight/journal) - snapshots (stored in /opt/opendaylight/snapshots) This change saves all 3 directories to the sdnc persistent volume so that they are retained across restarts. Issue-ID: SDNC-1455 Signed-off-by: Dan Timoney <dtimoney@att.com> Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> Change-Id: I6b068c7a7bce294f94f9697a34027010bb5bfe8f (cherry picked from commit 2ee28a5a7a82116e1854d92713a315490c9f259b)
2021-01-20Merge "[SDNC] Tuning fixes for SDNC" into guilinSylvain Desbureaux3-1/+5
2021-01-20Merge "[COMMON] Configure paths for Ingress" into guilinKrzysztof Opasiak6-45/+26
2021-01-20[SDNC] Bump versions for Guilin mtce release 1Dan Timoney5-5/+5
Bump SDNC docker version to 2.0.5 for Guilin maintenance release. This release contains bug fixes related to the Transport Slicing use case (see Issue-ID footers for list of Jiras addressed) Issue-ID: SDNC-1431 Issue-ID: CCSDK-3075 Issue-ID: CCSDK-3013 Signed-off-by: Dan Timoney <dtimoney@att.com> Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> Change-Id: I87526ad058b413692cb731d3cad1457efbefc108 (cherry picked from commit d1f39e32d1d506323b98ee1d45d7c4732c079954)
2021-01-19[SDNC] Tuning fixes for SDNCDan Timoney3-1/+5
Corrected issue in values.yaml that was causing OpenDaylight akka configuration file override not to be loaded properly. As a result, we are seeing memory-related exceptions (circuit-breaker exception), whic seems to be contributing to a memory leak error. Also, updated configuration to enhance logging so that summary of messages in/out (aka 'audit log') is written for debugging purposes. Issue-ID: SDNC-1430 Signed-off-by: Dan Timoney <dtimoney@att.com> Change-Id: I2a3950ecde1c53f8e68b11bbc9c0ddc136f67b54 (cherry picked from commit 9520e7cfed1474213930a9c877e223902a15eae5)
2021-01-19[COMMON][CERTS] Use sh to onboard custom certsSylvain Desbureaux2-8/+14
Today, onboarding custom certificates relies on `bash`. But image used for that doesn't have bash. Therefore, we need to use `sh` in order to onboard the certs. Issue-ID: OOM-2666 Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> Change-Id: Ia8087bd9484a013ac76044681059f634a4e45eb8
2021-01-19Release 7.0.0Sylvain Desbureaux1-0/+6
Issue-ID: OOM-2472 Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> Change-Id: I07efb26e3303e3dc6eef627c0e1830858300d903
2021-01-14[SO] Update SO to 1.7.11 (CNF and slicing bugfixes)deen198514-14/+25
Update SO containers to 1.7.11, solve CNF and E2E NW slicing bugfixes: Containers: + name: 'so/vnfm-adapter' + name: 'so/catalog-db-adapter' + name: 'so/request-db-adapter' + name: 'so/openstack-adapter' + name: 'so/sdnc-adapter' + name: 'so/vfc-adapter' + name: 'so/sdc-controller' + name: 'so/bpmn-infra' + name: 'so/so-monitoring' + name: 'so/api-handler-infra' + name: 'so/nssmf-adapter' + name: 'so/mso-cnf-adapter' + name: 'so/so-oof-adapter' + name: 'so/so-etsi-nfvo-ns-lcm' Change-Id: I6755bef5a6ee019afa6ad41ec20c42f9703182d8 Signed-off-by: Damian Nowak <damian.nowak@nokia.com> Issue-ID: SO-3431
2021-01-14[DCAEGEN2] Update HV-VES imageRemigiusz Janeczek1-1/+1
HV-VES fixed to allow it to recover after exception in CBS communication. Issue-ID: DCAEGEN2-2516 Signed-off-by: Remigiusz Janeczek <remigiusz.janeczek@nokia.com> Change-Id: Ie7aa5281c29dbb95593c3245aacbd08b3618d482
2021-01-13Merge "[GLOBAL] Fix Makefile typo" into guilinKrzysztof Opasiak1-1/+1
2021-01-12Update git submodulesmrichomme1-0/+0
* Update kubernetes/robot from branch 'guilin' to c83c44b97583bcb814b096e14a8ed4eff24dd638 - [Version] Bump 1.7.3 version for Guilin Maintenance Release Issue-ID: TEST-283 Signed-off-by: mrichomme <morgan.richomme@orange.com> Change-Id: I1f979b86c3d5b016b86a431f3278478907310142
2021-01-07[PLATFORM] Update cert service images to 2.1.1Piotr Marcinkiewicz4-5/+5
Align Cert Service Api to RFC4210. Fix Cert Service Client CA_NAME validation. Issue-ID: OOM-2656 Signed-off-by: Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com> Change-Id: Ia510b67b3d4e993df89a6be2c0899115b7e31dc7
2021-01-07[COMMON] Configure paths for IngressSylvain Desbureaux6-45/+26
Instead of globally choosing between virtualhosts and path based ingress, it's better to allow to choose it per component. Issue-ID: OOM-2641 Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> Change-Id: I952826d03722693ebae7c95a083b95bf83752d68 (cherry picked from commit afae229d3a7eb8c20633e049d3f597fb2eab7bbc)
2021-01-06[GLOBAL] Fix Makefile typoSylvain Desbureaux1-1/+1
One of Makefile action is to copy `helm` directory into `packages` one. Change done in order to choose helm binary accidentally made this behavior to work _only_ if helm binary is `helm`. This patch set it back to previous behaviour for this particular command. Issue-ID: OOM-2562 Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> Change-Id: I22c52d538f9f396bd4028b6e0f0adcecb8e8df61 (cherry picked from commit a0b1fb1a677d01d0900eee39e07829cdb93a1b7b)
2020-12-10Revert "[COMMON] add pre upgrade script for mariadb-galera"Sylvain Desbureaux5-437/+1
This reverts the following commits: * eb9eb59171a43d25fb012aaad0a1d37ca86bc2bf * a72170b49e04aacb2ff476965904900fe5559fef Reason for revert: upgrade script is not working well in all situations Issue-ID: INT-1633 Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> Change-Id: Ia61a08d1e6cc4499525d82c5b2dfd83cf2d6a3e8
2020-12-02Merge "[GENERAL] Update chart version to Guilin" into guilin7.0.0Krzysztof Opasiak1-1/+1
2020-12-02Update git submodulesBrian Freeman1-0/+0
* Update kubernetes/robot from branch 'guilin' to 77e8485534c1ba1c0eb80bbb4c0b882a8383cd5d - Removed heatbridge Issue-ID: INT-1791 Change-Id: I6ef364f1110b6aeb1d43a8cb8609b7d24f836458 Signed-off-by: Brian Freeman <bf1936@att.com> (cherry picked from commit e781c175fbb3cc8f2ac17bc9c3d7353966389b9d)
2020-12-02[GENERAL] Update chart version to GuilinSylvain Desbureaux1-1/+1
Issue-ID: OOM-2638 Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> Change-Id: I2738206390b07c4bb5d0fa191368d8297eb2ba5e (cherry picked from commit da55a47342d9e2047eba6941237cb628ad691def)
2020-12-02[SDNC-WEB] Remove invalid parameter from deploymentGrzegorz-Lis1-1/+0
Remove serviceName parameter from deployment. Parameter reserved for startefulSet. Issue-ID: SDNC-1427 Signed-off-by: Grzegorz Lis <grzegorz.lis@nokia.com> Change-Id: Ic949e1a465c3bb632cbb7c0c325ef7d358935e99 (cherry picked from commit d88f6c95185a55b9c5e2608df18df6ec7baa0cf7)
2020-12-02Merge "[CONSUL] Make consul run as non-root" into guilinSylvain Desbureaux4-13/+52
2020-12-01[CONSUL] Make consul run as non-rootKrzysztof Opasiak4-13/+52
Use our recently build consul image (still based on the same old consul version) and modify the deployment to make sure that it is able to run as non-root user. Yes, I know that moving consul-server to component would be more proper solution but as this commit is supposed to be cherry-picked to guilin I've tried to make as little changes as possible. Issue-ID: REQ-362 Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com> Change-Id: Idfc09ee225d4f89bb699683fa5e4ae3b86491c08
2020-11-30[SO] helm chart for cnf-adaptersekharhuawei11-27/+552
Add helm chart for cnf-adapter to oom Issue-ID: SO-3164 Signed-off-by: sekharhuawei <reddi.shekhar@huawei.com> Change-Id: Ib96c130b05d31a11e42603300f5e7e0f43cb9aa1 Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> (cherry picked from commit 2e799e9f775198f95491a5e02fc99171b9fa8d43)
2020-11-30[COMMON][DOC] Bump version GuilinSylvain Desbureaux382-618/+615
Update charts and requirements to 7.0.0. Create release notes for Guilin Update documentation Issue-ID: OOM-2638 Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> Change-Id: I965ed6b6ebb7d74bfddaff73edd3dd55a657841c (cherry picked from commit 4f9902b6e7b5c70588160266276904ab81832867)
2020-11-30Merge "[COMMON] Readiness check has an improper image" into guilinKrzysztof Opasiak1-0/+2
2020-11-30Merge "Drop repo name in Helm's v3 "repo update" subcommand" into guilinKrzysztof Opasiak1-1/+1
2020-11-30Merge "[PLATFORM] Add new fake deployment to fix offline certificates ↵Sylvain Desbureaux4-3/+47
generation" into guilin
2020-11-26Drop repo name in Helm's v3 "repo update" subcommandBartek Grzybowski1-1/+1
"helm repo update" accepts no arguments Change-Id: I216d50d9fa98f59191795f5625ec835158458978 Issue-ID: OOM-2562 Signed-off-by: Bartek Grzybowski <b.grzybowski@partner.samsung.com> (cherry picked from commit 380f9b87472820704216ed057a77c622200ccd56)
2020-11-26Merge "Revert "[CONSUL] Make consul server run as non-root"" into guilinKrzysztof Opasiak1-3/+1
2020-11-26Merge "[SDNC] Upgrade to final SDNC Guilin docker version" into guilinKrzysztof Opasiak5-5/+5
2020-11-26[COMMON] Readiness check has an improper imageSylvain Desbureaux1-0/+2
when repository is not globally set, readinessCheck gives back "empty" value for repository, leading to a bad rendered chart. Issue-ID: OOM-2592 Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com> Change-Id: Ic4e8553ca4dfed8e476ecb743d4434e0562ba295
2020-11-26[PLATFORM] Add new fake deployment to fix offline certificates generationAdam Wudzinski4-3/+47
Add new fake deployment to CertService, controlled by new global flag global.offlineDeployment, which is disabled as default. Change Makefile to use java image from ONAP Nexus for certificate generation. Signed-off-by: Adam Wudzinski <adam.wudzinski@nokia.com> Issue-ID: OOM-2588 Change-Id: I2f9fe4b626604c5bfd8512449d893015bdc6ca98
2020-11-25[MSB] Make consul run as non-rootKrzysztof Opasiak4-0/+149
Start whole consul container as non-root and ensure that both dumb-init and consul are able to start and run as non-root. Issue-ID: REQ-362 Change-Id: If5a737953122cc6cd22b8d43ac603b40f4b22727 Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com> (cherry picked from commit bc6a6674f749efc1693c4b6bd58a27f8c37a0ae0)