1 # Copyright © 2018 Amdocs, AT&T
2 # Modifications Copyright © 2018 Bell Canada
4 # Licensed under the Apache License, Version 2.0 (the "License");
5 # you may not use this file except in compliance with the License.
6 # You may obtain a copy of the License at
8 # http://www.apache.org/licenses/LICENSE-2.0
10 # Unless required by applicable law or agreed to in writing, software
11 # distributed under the License is distributed on an "AS IS" BASIS,
12 # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 # See the License for the specific language governing permissions and
14 # limitations under the License.
16 apiVersion: extensions/v1beta1
19 name: {{ include "common.fullname" . }}
20 namespace: {{ include "common.namespace" . }}
22 app: {{ include "common.name" . }}
23 chart: {{ .Chart.Name }}-{{ .Chart.Version | replace "+" "_" }}
24 release: {{ .Release.Name }}
25 heritage: {{ .Release.Service }}
27 replicas: {{ .Values.replicaCount }}
31 app: {{ include "common.name" . }}
32 release: {{ .Release.Name }}
34 {{ if .Values.global.installSidecarSecurity }}
36 - ip: {{ .Values.global.aaf.serverIp }}
38 - {{ .Values.global.aaf.serverHostname }}
51 fieldPath: metadata.namespace
52 image: "{{ .Values.global.readinessRepository }}/{{ .Values.global.readinessImage }}"
53 imagePullPolicy: {{ .Values.global.pullPolicy | default .Values.pullPolicy }}
54 name: {{ include "common.name" . }}-readiness
55 {{ if .Values.global.installSidecarSecurity }}
56 - name: {{ .Values.global.tproxyConfig.name }}
57 image: "{{ include "common.repository" . }}/{{ .Values.global.tproxyConfig.image }}"
58 imagePullPolicy: {{ .Values.global.pullPolicy | default .Values.pullPolicy }}
63 - name: {{ include "common.name" . }}
64 image: "{{ include "common.repository" . }}/{{ .Values.image }}"
65 imagePullPolicy: {{ .Values.global.pullPolicy | default .Values.pullPolicy }}
67 - containerPort: {{ .Values.service.internalPort }}
68 # disable liveness probe when breakpoints set in debugger
69 # so K8s doesn't restart unresponsive container
70 {{ if .Values.liveness.enabled }}
73 port: {{ .Values.service.internalPort }}
74 initialDelaySeconds: {{ .Values.liveness.initialDelaySeconds }}
75 periodSeconds: {{ .Values.liveness.periodSeconds }}
79 port: {{ .Values.service.internalPort }}
80 initialDelaySeconds: {{ .Values.readiness.initialDelaySeconds }}
81 periodSeconds: {{ .Values.readiness.periodSeconds }}
84 value: "/opt/app/champ-service/appconfig"
87 - name: KEY_STORE_PASSWORD
90 name: {{ template "common.fullname" . }}-pass
91 key: KEY_STORE_PASSWORD
92 - name: KEY_MANAGER_PASSWORD
95 name: {{ template "common.fullname" . }}-pass
96 key: KEY_MANAGER_PASSWORD
98 value: "/opt/app/champ-service/dynamic/conf"
100 - mountPath: /etc/localtime
103 - mountPath: /opt/app/champ-service/appconfig/champ-api.properties
104 name: {{ include "common.fullname" . }}-config
105 subPath: champ-api.properties
106 - mountPath: /opt/app/champ-service/appconfig/auth
107 name: {{ include "common.fullname" . }}-secrets
108 - mountPath: /opt/app/champ-service/dynamic/conf/champ-beans.xml
109 name: {{ include "common.fullname" . }}-dynamic-config
110 subPath: champ-beans.xml
111 - mountPath: /opt/app/champ-service/bundleconfig/etc/logback.xml
112 name: {{ include "common.fullname" . }}-logback-config
114 - mountPath: /var/log/onap
115 name: {{ include "common.fullname" . }}-logs
117 {{ include "common.resources" . | indent 12 }}
118 {{- if .Values.nodeSelector }}
120 {{ toYaml .Values.nodeSelector | indent 10 }}
122 {{- if .Values.affinity }}
124 {{ toYaml .Values.affinity | indent 10 }}
127 # side car containers
128 - name: filebeat-onap
129 image: "{{ .Values.global.loggingRepository }}/{{ .Values.global.loggingImage }}"
130 imagePullPolicy: {{ .Values.global.pullPolicy | default .Values.pullPolicy }}
132 - mountPath: /usr/share/filebeat/filebeat.yml
133 subPath: filebeat.yml
135 - mountPath: /var/log/onap
136 name: {{ include "common.fullname" . }}-logs
137 - mountPath: /usr/share/filebeat/data
139 {{ if .Values.global.installSidecarSecurity }}
140 - name: {{ .Values.global.rproxy.name }}
141 image: "{{ include "common.repository" . }}/{{ .Values.global.rproxy.image }}"
142 imagePullPolicy: {{ .Values.global.pullPolicy | default .Values.pullPolicy }}
145 value: "/opt/app/rproxy/config"
146 - name: KEY_STORE_PASSWORD
147 value: {{ .Values.config.keyStorePassword }}
148 - name: spring_profiles_active
149 value: {{ .Values.global.rproxy.activeSpringProfiles }}
151 - name: {{ include "common.fullname" . }}-rproxy-config
152 mountPath: /opt/app/rproxy/config/forward-proxy.properties
153 subPath: forward-proxy.properties
154 - name: {{ include "common.fullname" . }}-rproxy-config
155 mountPath: /opt/app/rproxy/config/primary-service.properties
156 subPath: primary-service.properties
157 - name: {{ include "common.fullname" . }}-rproxy-config
158 mountPath: /opt/app/rproxy/config/reverse-proxy.properties
159 subPath: reverse-proxy.properties
160 - name: {{ include "common.fullname" . }}-rproxy-config
161 mountPath: /opt/app/rproxy/config/cadi.properties
162 subPath: cadi.properties
163 - name: {{ include "common.fullname" . }}-rproxy-log-config
164 mountPath: /opt/app/rproxy/config/logback-spring.xml
165 subPath: logback-spring.xml
166 - name: {{ include "common.fullname" . }}-rproxy-auth-config
167 mountPath: /opt/app/rproxy/config/auth/tomcat_keystore
168 subPath: tomcat_keystore
169 - name: {{ include "common.fullname" . }}-rproxy-auth-config
170 mountPath: /opt/app/rproxy/config/auth/client-cert.p12
171 subPath: client-cert.p12
172 - name: {{ include "common.fullname" . }}-rproxy-auth-config
173 mountPath: /opt/app/rproxy/config/auth/uri-authorization.json
174 subPath: uri-authorization.json
175 #- name: {{ include "common.fullname" . }}-rproxy-auth-config
176 # mountPath: /opt/app/rproxy/config/auth/aaf_truststore.jks
177 # subPath: aaf_truststore.jks
178 - name: {{ include "common.fullname" . }}-rproxy-security-config
179 mountPath: /opt/app/rproxy/config/security/keyfile
183 - containerPort: {{ .Values.global.rproxy.port }}
185 - name: {{ .Values.global.fproxy.name }}
186 image: "{{ include "common.repository" . }}/{{ .Values.global.fproxy.image }}"
187 imagePullPolicy: {{ .Values.global.pullPolicy | default .Values.pullPolicy }}
190 value: "/opt/app/fproxy/config"
191 - name: KEY_STORE_PASSWORD
192 value: {{ .Values.config.keyStorePassword }}
193 - name: spring_profiles_active
194 value: {{ .Values.global.fproxy.activeSpringProfiles }}
196 - name: {{ include "common.fullname" . }}-fproxy-config
197 mountPath: /opt/app/fproxy/config/fproxy.properties
198 subPath: fproxy.properties
199 - name: {{ include "common.fullname" . }}-fproxy-log-config
200 mountPath: /opt/app/fproxy/config/logback-spring.xml
201 subPath: logback-spring.xml
202 - name: {{ include "common.fullname" . }}-fproxy-auth-config
203 mountPath: /opt/app/fproxy/config/auth/tomcat_keystore
204 subPath: tomcat_keystore
205 - name: {{ include "common.fullname" . }}-fproxy-auth-config
206 mountPath: /opt/app/fproxy/config/auth/client-cert.p12
207 subPath: client-cert.p12
209 - containerPort: {{ .Values.global.fproxy.port }}
216 - name: {{ include "common.fullname" . }}-config
218 name: {{ include "common.fullname" . }}
220 - key: champ-api.properties
221 path: champ-api.properties
222 - name: {{ include "common.fullname" . }}-secrets
224 secretName: {{ include "common.fullname" . }}-champ
225 - name: {{ include "common.fullname" . }}-dynamic-config
227 name: {{ include "common.fullname" . }}-dynamic
229 - key: champ-beans.xml
230 path: champ-beans.xml
231 - name: {{ include "common.fullname" . }}-logs
233 - name: {{ include "common.fullname" . }}-logback-config
235 name: {{ include "common.fullname" . }}-log-configmap
239 - name: filebeat-conf
244 {{ if .Values.global.installSidecarSecurity }}
245 - name: {{ include "common.fullname" . }}-rproxy-config
247 name: {{ include "common.fullname" . }}-rproxy-config
248 - name: {{ include "common.fullname" . }}-rproxy-log-config
250 name: {{ include "common.fullname" . }}-rproxy-log-config
251 - name: {{ include "common.fullname" . }}-rproxy-auth-config
253 secretName: {{ include "common.fullname" . }}-rproxy-auth-config
254 - name: {{ include "common.fullname" . }}-rproxy-security-config
256 secretName: {{ include "common.fullname" . }}-rproxy-security-config
257 - name: {{ include "common.fullname" . }}-fproxy-config
259 name: {{ include "common.fullname" . }}-fproxy-config
260 - name: {{ include "common.fullname" . }}-fproxy-log-config
262 name: {{ include "common.fullname" . }}-fproxy-log-config
263 - name: {{ include "common.fullname" . }}-fproxy-auth-config
265 secretName: {{ include "common.fullname" . }}-fproxy-auth-config
268 - name: "{{ include "common.namespace" . }}-docker-registry-key"