From 2954823e469dc10ec45f8170dac5a8041ab3fd44 Mon Sep 17 00:00:00 2001 From: Sylvain Desbureaux Date: Wed, 21 Oct 2020 18:15:08 +0200 Subject: [SO] Import various CAs in truststore Per default, SO truststore has only one CA, the ONAP one. But we also need MSB root CA. The process to onboard was broken and this patch solves it We also needs "common root CAs" in order to discuss with other components such as the underneath OpenStack. In this patch we also import all "known" root CA from truststoreONAPall. Issue-ID: OOM-2606 Issue-ID: OOM-2607 Signed-off-by: Sylvain Desbureaux Change-Id: Ia67bd4aec7a0b122fb9fda11e1e48c4e6e55430c --- kubernetes/so/components/so-etsi-nfvo-ns-lcm/templates/deployment.yaml | 1 + 1 file changed, 1 insertion(+) (limited to 'kubernetes/so/components/so-etsi-nfvo-ns-lcm/templates/deployment.yaml') diff --git a/kubernetes/so/components/so-etsi-nfvo-ns-lcm/templates/deployment.yaml b/kubernetes/so/components/so-etsi-nfvo-ns-lcm/templates/deployment.yaml index 45668eda98..2327e19b67 100644 --- a/kubernetes/so/components/so-etsi-nfvo-ns-lcm/templates/deployment.yaml +++ b/kubernetes/so/components/so-etsi-nfvo-ns-lcm/templates/deployment.yaml @@ -39,6 +39,7 @@ spec: {{- if .Values.global.aafEnabled }} export $(grep '^c' {{ .Values.soHelpers.certInitializer.credsPath }}/mycreds.prop | xargs -0) export TRUSTSTORE_PASSWORD="${cadi_truststore_password}" + export TRUSTSTORE="file:/${TRUSTSTORE}" {{- if .Values.global.security.aaf.enabled }} export KEYSTORE_PASSWORD="${cadi_keystore_password}" {{- end }} -- cgit 1.2.3-korg