1 # Copyright © 2018 Amdocs, AT&T
2 # Modifications Copyright © 2018 Bell Canada
4 # Licensed under the Apache License, Version 2.0 (the "License");
5 # you may not use this file except in compliance with the License.
6 # You may obtain a copy of the License at
8 # http://www.apache.org/licenses/LICENSE-2.0
10 # Unless required by applicable law or agreed to in writing, software
11 # distributed under the License is distributed on an "AS IS" BASIS,
12 # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 # See the License for the specific language governing permissions and
14 # limitations under the License.
16 apiVersion: extensions/v1beta1
19 name: {{ include "common.fullname" . }}
20 namespace: {{ include "common.namespace" . }}
22 app: {{ include "common.name" . }}
23 chart: {{ .Chart.Name }}-{{ .Chart.Version | replace "+" "_" }}
24 release: {{ .Release.Name }}
25 heritage: {{ .Release.Service }}
27 replicas: {{ .Values.replicaCount }}
31 app: {{ include "common.name" . }}
32 release: {{ .Release.Name }}
34 {{ if .Values.global.installSidecarSecurity }}
36 - ip: {{ .Values.global.aaf.serverIp }}
38 - {{ .Values.global.aaf.serverHostname }}
41 - name: {{ .Values.global.tproxyConfig.name }}
42 image: "{{ include "common.repository" . }}/{{ .Values.global.tproxyConfig.image }}"
43 imagePullPolicy: {{ .Values.global.pullPolicy | default .Values.pullPolicy }}
48 - name: {{ include "common.name" . }}
49 image: "{{ include "common.repository" . }}/{{ .Values.image }}"
50 imagePullPolicy: {{ .Values.global.pullPolicy | default .Values.pullPolicy }}
52 - containerPort: {{ .Values.service.internalPort }}
53 # disable liveness probe when breakpoints set in debugger
54 # so K8s doesn't restart unresponsive container
55 {{ if .Values.liveness.enabled }}
58 port: {{ .Values.service.internalPort }}
59 initialDelaySeconds: {{ .Values.liveness.initialDelaySeconds }}
60 periodSeconds: {{ .Values.liveness.periodSeconds }}
64 port: {{ .Values.service.internalPort }}
65 initialDelaySeconds: {{ .Values.readiness.initialDelaySeconds }}
66 periodSeconds: {{ .Values.readiness.periodSeconds }}
69 value: /opt/app/babel/config
70 - name: KEY_STORE_PASSWORD
73 name: {{ template "common.fullname" . }}-pass
74 key: KEY_STORE_PASSWORD
75 - name: KEY_MANAGER_PASSWORD
78 name: {{ template "common.fullname" . }}-pass
79 key: KEY_MANAGER_PASSWORD
81 - mountPath: /etc/localtime
84 - mountPath: /opt/app/babel/config/artifact-generator.properties
85 name: {{ include "common.fullname" . }}-config
86 subPath: artifact-generator.properties
87 - mountPath: /opt/app/babel/config/filter-types.properties
88 name: {{ include "common.fullname" . }}-config
89 subPath: filter-types.properties
90 - mountPath: /opt/app/babel/config/babel-auth.properties
91 name: {{ include "common.fullname" . }}-config
92 subPath: babel-auth.properties
93 - mountPath: /opt/app/babel/config/auth
94 name: {{ include "common.fullname" . }}-secrets
95 - mountPath: /var/log/onap
96 name: {{ include "common.fullname" . }}-logs
97 - mountPath: /opt/app/babel/config/logback.xml
98 name: {{ include "common.fullname" . }}-config
101 {{ include "common.resources" . }}
102 {{- if .Values.nodeSelector }}
104 {{ toYaml .Values.nodeSelector | indent 8 }}
106 {{- if .Values.affinity }}
108 {{ toYaml .Values.affinity | indent 8 }}
111 # side car containers
112 - name: filebeat-onap
113 image: "{{ .Values.global.loggingRepository }}/{{ .Values.global.loggingImage }}"
114 imagePullPolicy: {{ .Values.global.pullPolicy | default .Values.pullPolicy }}
116 - mountPath: /usr/share/filebeat/filebeat.yml
117 subPath: filebeat.yml
119 - mountPath: /var/log/onap
120 name: {{ include "common.fullname" . }}-logs
121 - mountPath: /usr/share/filebeat/data
124 {{ if .Values.global.installSidecarSecurity }}
125 - name: {{ .Values.global.rproxy.name }}
126 image: "{{ include "common.repository" . }}/{{ .Values.global.rproxy.image }}"
127 imagePullPolicy: {{ .Values.global.pullPolicy | default .Values.pullPolicy }}
130 value: "/opt/app/rproxy/config"
131 - name: KEY_STORE_PASSWORD
132 value: {{ .Values.config.keyStorePassword }}
133 - name: spring_profiles_active
134 value: {{ .Values.global.rproxy.activeSpringProfiles }}
136 - name: {{ include "common.fullname" . }}-rproxy-config
137 mountPath: /opt/app/rproxy/config/forward-proxy.properties
138 subPath: forward-proxy.properties
139 - name: {{ include "common.fullname" . }}-rproxy-config
140 mountPath: /opt/app/rproxy/config/primary-service.properties
141 subPath: primary-service.properties
142 - name: {{ include "common.fullname" . }}-rproxy-config
143 mountPath: /opt/app/rproxy/config/reverse-proxy.properties
144 subPath: reverse-proxy.properties
145 - name: {{ include "common.fullname" . }}-rproxy-config
146 mountPath: /opt/app/rproxy/config/cadi.properties
147 subPath: cadi.properties
148 - name: {{ include "common.fullname" . }}-rproxy-log-config
149 mountPath: /opt/app/rproxy/config/logback-spring.xml
150 subPath: logback-spring.xml
151 - name: {{ include "common.fullname" . }}-rproxy-auth-config
152 mountPath: /opt/app/rproxy/config/auth/tomcat_keystore
153 subPath: tomcat_keystore
154 - name: {{ include "common.fullname" . }}-rproxy-auth-config
155 mountPath: /opt/app/rproxy/config/auth/client-cert.p12
156 subPath: client-cert.p12
157 - name: {{ include "common.fullname" . }}-rproxy-auth-config
158 mountPath: /opt/app/rproxy/config/auth/uri-authorization.json
159 subPath: uri-authorization.json
160 - name: {{ include "common.fullname" . }}-rproxy-auth-config
161 mountPath: /opt/app/rproxy/config/auth/aaf_truststore.jks
162 subPath: aaf_truststore.jks
163 - name: {{ include "common.fullname" . }}-rproxy-security-config
164 mountPath: /opt/app/rproxy/config/security/keyfile
168 - containerPort: {{ .Values.global.rproxy.port }}
170 - name: {{ .Values.global.fproxy.name }}
171 image: "{{ include "common.repository" . }}/{{ .Values.global.fproxy.image }}"
172 imagePullPolicy: {{ .Values.global.pullPolicy | default .Values.pullPolicy }}
175 value: "/opt/app/fproxy/config"
176 - name: KEY_STORE_PASSWORD
177 value: {{ .Values.config.keyStorePassword }}
178 - name: spring_profiles_active
179 value: {{ .Values.global.fproxy.activeSpringProfiles }}
181 - name: {{ include "common.fullname" . }}-fproxy-config
182 mountPath: /opt/app/fproxy/config/fproxy.properties
183 subPath: fproxy.properties
184 - name: {{ include "common.fullname" . }}-fproxy-log-config
185 mountPath: /opt/app/fproxy/config/logback-spring.xml
186 subPath: logback-spring.xml
187 - name: {{ include "common.fullname" . }}-fproxy-auth-config
188 mountPath: /opt/app/fproxy/config/auth/tomcat_keystore
189 subPath: tomcat_keystore
190 - name: {{ include "common.fullname" . }}-fproxy-auth-config
191 mountPath: /opt/app/fproxy/config/auth/client-cert.p12
192 subPath: client-cert.p12
194 - containerPort: {{ .Values.global.fproxy.port }}
201 - name: {{ include "common.fullname" . }}-config
203 name: {{ include "common.fullname" . }}-configmap
205 - key: artifact-generator.properties
206 path: artifact-generator.properties
207 - key: filter-types.properties
208 path: filter-types.properties
209 - key: babel-auth.properties
210 path: babel-auth.properties
213 - name: {{ include "common.fullname" . }}-secrets
215 secretName: {{ include "common.fullname" . }}-babel-secrets
216 - name: filebeat-conf
219 - name: {{ include "common.fullname" . }}-logs
223 {{ if .Values.global.installSidecarSecurity }}
224 - name: {{ include "common.fullname" . }}-rproxy-config
226 name: {{ include "common.fullname" . }}-rproxy-config
227 - name: {{ include "common.fullname" . }}-rproxy-log-config
229 name: {{ include "common.fullname" . }}-rproxy-log-config
230 - name: {{ include "common.fullname" . }}-rproxy-auth-config
232 secretName: {{ include "common.fullname" . }}-rproxy-auth-config
233 - name: {{ include "common.fullname" . }}-rproxy-security-config
235 secretName: {{ include "common.fullname" . }}-rproxy-security-config
236 - name: {{ include "common.fullname" . }}-fproxy-config
238 name: {{ include "common.fullname" . }}-fproxy-config
239 - name: {{ include "common.fullname" . }}-fproxy-log-config
241 name: {{ include "common.fullname" . }}-fproxy-log-config
242 - name: {{ include "common.fullname" . }}-fproxy-auth-config
244 secretName: {{ include "common.fullname" . }}-fproxy-auth-config
248 - name: "{{ include "common.namespace" . }}-docker-registry-key"