# Copyright © 2018 AT&T USA # Copyright © 2020 Huawei # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. ################################################################# # Global configuration defaults. ################################################################# global: nodePortPrefix: 302 nodePortPrefixExt: 304 persistence: mountPath: /dockerdata-nfs security: aaf: enabled: false aaf: auth: encrypted: 3EDC974C5CD7FE54C47C7490AF4D3B474CDD7D0FFA35A7ACDE3E209631E45F428976EAC0858874F17390A13149E63C90281DD8D20456 mariadbGalera: serviceName: mariadb-galera servicePort: '3306' readinessCheck: wait_for: jobs: - '{{ include "common.release" . }}-so-mariadb-config-job' ################################################################# # Secrets metaconfig ################################################################# secrets: - uid: db-user-creds type: basicAuth externalSecret: '{{ tpl (default "" .Values.db.userCredsExternalSecret) . }}' login: '{{ .Values.db.userName }}' password: '{{ .Values.db.userPassword }}' passwordPolicy: required - uid: db-admin-creds type: basicAuth externalSecret: '{{ tpl (default "" .Values.db.adminCredsExternalSecret) . }}' login: '{{ .Values.db.adminName }}' password: '{{ .Values.db.adminPassword }}' passwordPolicy: required #secretsFilePaths: | # - 'my file 1' # - '{{ include "templateThatGeneratesFileName" . }}' ################################################################# # Application configuration defaults. ################################################################# image: onap/so/openstack-adapter:1.10.0 pullPolicy: Always db: userName: so_user userPassword: so_User123 # userCredsExternalSecret: some secret adminName: so_admin adminPassword: so_Admin123 # adminCredsExternalSecret: some secret aai: auth: 2A11B07DB6214A839394AA1EC5844695F5114FC407FF5422625FB00175A3DCB8A1FF745F22867EFA72D5369D599BBD88DA8BED4233CF5586 aaf: auth: encrypted: 7F182B0C05D58A23A1C4966B9CDC9E0B8BC5CD53BC8C7B4083D869F8D53E9BDC3EFD55C94B1D3F org: onap: so: adapters: bpelauth: D1A67FA93B6A6419132D0F83CC771AF774FD3C60853C50C22C8C6FC5088CC79E9E81EDE9EA39F22B2F66A0068E mso: msoKey: 07a7159d3bf51a0e53be7a8f89699be7 basicUser: poBpmn auth: BEA8637716A7EB617DF472BA6552D22F68C1CB17B0D094D77DDA562F4ADAAC4457CAB848E1A4 db: auth: Basic YnBlbDpwYXNzd29yZDEk replicaCount: 1 minReadySeconds: 10 containerPort: &containerPort 8087 logPath: ./logs/openstack/ app: openstack-adapter service: type: ClusterIP internalPort: *containerPort externalPort: *containerPort portName: http updateStrategy: type: RollingUpdate maxUnavailable: 1 maxSurge: 1 ################################################################# # soHelper part ################################################################# soHelpers: nameOverride: so-openstack-cert-init certInitializer: nameOverride: so-openstack-cert-init credsPath: /opt/app/osaaf/local cadi: apiEnforcement: org.onap.so.openStackAdapterPerm containerPort: *containerPort # Resource Limit flavor -By Default using small flavor: small # Segregation for Different environment (Small and Large) resources: small: limits: memory: 4Gi cpu: 2000m requests: memory: 1Gi cpu: 500m large: limits: memory: 8Gi cpu: 4000m requests: memory: 2Gi cpu: 1000m unlimited: {} livenessProbe: path: /manage/health port: 8087 scheme: HTTP initialDelaySeconds: 600 periodSeconds: 60 timeoutSeconds: 10 successThreshold: 1 failureThreshold: 3 ingress: enabled: false config: openStackUserName: "vnf_user" openStackRegion: "RegionOne" openStackKeyStoneUrl: "http://1.2.3.4:5000/v2.0" openStackServiceTenantName: "service" openStackEncryptedPasswordHere: "c124921a3a0efbe579782cde8227681e" openStackTenantId: "d570c718cbc545029f40e50b75eb13df" # "KEYSTONE" for keystone v2, "KEYSTONE_V3" for keystone v3 openStackKeystoneVersion: "KEYSTONE" nodeSelector: {} tolerations: [] affinity: {} #Pods Service Account serviceAccount: nameOverride: so-openstack-adapter roles: - read #Logs configuration log: path: /var/log/onap logConfigMapNamePrefix: '{{ include "common.fullname" . }}'