1 .. This work is licensed under a Creative Commons Attribution 4.0 International License.
2 .. http://creativecommons.org/licenses/by/4.0
3 .. Copyright 2018 Amdocs, Bell Canada
6 .. _hardcoded-certiticates-label:
8 ONAP Hardcoded certificates
9 ###########################
11 ONAP current installation have hardcoded certificates.
12 Here's the list of these certificates:
14 +------------------------------------------------------------------------------------------------------------------------------------------------------------+
15 | Project | ONAP Certificate | Own Certificate | MSB Certificate | Path |
16 +==================+==================+==================+===================================================================================================+
17 | AAF | No | Yes | No | aaf/charts/aaf-cert-service/resources/ |
18 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
19 | AAF | Yes | No | No | aaf/components/aaf-sms/resources/certs/intermediate_root_ca.pem |
20 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
21 | AAI | Yes | No | No | aai/oom/resources/config/haproxy/aai.pem |
22 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
23 | AAI | Yes | No | No | aai/oom/resources/config/aai/aai_keystore |
24 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
25 | AAI/SEARCH-DATA | Yes | No | No | aai/oom/components/aai-search-data/resources/config/auth/tomcat_keystore |
26 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
27 | AAI/SPARKY-BE | Yes | No | No | aai/oom/components/aai-spary-be/resources/config/auth/org.onap.aai.p12 |
28 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
29 | AAI/BABEL | No | Yes | No | aai/oom/components/aai-babel/resources/config/auth/tomcat_keystore |
30 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
31 | AAI/MODEL-LOADER | Yes | Yes | No | aai/oom/components/aai-model-loaderresources/config/auth/tomcat_keystore |
32 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
33 | APPC | Yes | No | No | kubernetes/appc/resources/config/certs/org.onap.appc.keyfile |
34 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
35 | APPC | Yes | No | No | kubernetes/appc/resources/config/certs/org.onap.appc.p12 |
36 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
37 | certInitializer | Yes | No | No | kubernetes/common/certInitializer/resources |
38 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
39 | MSB | Yes | No? | Yes | kubernetes/msb/resources/config/certificates |
40 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
41 | MUSIC | Yes | No? | No? | kubernetes/common/music/charts/music/resources/keys/ |
42 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
43 | SDC | Yes | No? | No? | kubernetes/sdc/resources/cert |
44 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
45 | SO | Yes | No? | Yes | kubernetes/so/resources/config/certificates |
46 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
47 | SO/BPMN | Yes | No? | Yes | kubernetes/so/resources/config/certificates |
48 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
49 | SO/Catalog | Yes | No? | Yes | kubernetes/so/resources/config/certificates |
50 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
51 | SO/Monitoring | Yes | No? | Yes | kubernetes/so/resources/config/certificates |
52 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
53 | SO/OpenStack | Yes | No? | Yes | kubernetes/so/resources/config/certificates |
54 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
55 | SO/RequestDb | Yes | No? | Yes | kubernetes/so/resources/config/certificates |
56 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
57 | SO/SDC | Yes | No? | Yes | kubernetes/so/resources/config/certificates |
58 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
59 | SO/SDNC | Yes | No? | Yes | kubernetes/so/resources/config/certificates |
60 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
61 | SO/VE/VNFM | Yes | No? | Yes | kubernetes/so/resources/config/certificates |
62 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
63 | SO/VFC | Yes | No? | Yes | kubernetes/so/resources/config/certificates |
64 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
65 | SO/VNFM | Yes | No? | Yes | kubernetes/so/resources/config/certificates |
66 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
67 | SO/VNFM | No | Yes? | Yes | kubernetes/so/charts/so-secrets/resources/certs/org.onap.so.trust.jks |
68 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
69 | VID | No | Yes | No | kubernetes/vid/resources/cert |
70 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
71 | OOF/OOF-CMSO | Yes | No | No | kubernetes/oof/charts/oof-cmso/resources/certs |
72 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
73 | OOF/OOF-HAS | Yes | No | No | kubernetes/oof/charts/oof-has/resources/config |
74 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
75 | OOF/OOF-OSDF | Yes | No | No | kubernetes/oof/resources/config |
76 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
77 | CLI | No | Yes | No | kubernetes/cli/resources/certificates |
78 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
79 | CDS PY Executor | No | Yes | No | kubernetes/cds/charts/cds-py-executor/resources/certs |
80 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+
81 | CDS BP Executor | Yes | No | No | kubernetes/cds/charts/cds-blueprints-processor/resources/config/ONAP_RootCA.cer |
82 +------------------+------------------+------------------+---------------------------------------------------------------------------------------------------+