1 # ============LICENSE_START=======================================================
2 # Copyright (C) 2019 Nordix Foundation.
3 # Modifications Copyright (C) 2019-2021 AT&T Intellectual Property.
4 # Modifications Copyright (C) 2020-2022 Bell Canada. All rights reserved.
5 # ================================================================================
6 # Licensed under the Apache License, Version 2.0 (the "License");
7 # you may not use this file except in compliance with the License.
8 # You may obtain a copy of the License at
10 # http://www.apache.org/licenses/LICENSE-2.0
12 # Unless required by applicable law or agreed to in writing, software
13 # distributed under the License is distributed on an "AS IS" BASIS,
14 # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
15 # See the License for the specific language governing permissions and
16 # limitations under the License.
18 # SPDX-License-Identifier: Apache-2.0
19 # ============LICENSE_END=========================================================
21 #################################################################
22 # Global configuration defaults.
23 #################################################################
25 nodePortPrefixExt: 304
29 #################################################################
31 #################################################################
35 externalSecret: '{{ tpl (default "" .Values.db.credsExternalSecret) . }}'
36 login: '{{ .Values.db.user }}'
37 password: '{{ .Values.db.password }}'
38 passwordPolicy: required
39 - uid: restserver-secret
41 externalSecret: '{{ tpl (default "" .Values.restServer.papUserExternalSecret) . }}'
42 login: '{{ .Values.restServer.user }}'
43 password: '{{ .Values.restServer.password }}'
44 passwordPolicy: required
47 externalSecret: '{{ tpl (default "" .Values.restServer.apiUserExternalSecret) . }}'
48 login: '{{ .Values.healthCheckRestClient.api.user }}'
49 password: '{{ .Values.healthCheckRestClient.api.password }}'
50 passwordPolicy: required
51 - uid: distribution-secret
53 externalSecret: '{{ tpl (default "" .Values.healthCheckRestClient.distribution.credsExternalSecret) . }}'
54 login: '{{ .Values.healthCheckRestClient.distribution.user }}'
55 password: '{{ .Values.healthCheckRestClient.distribution.password }}'
56 passwordPolicy: required
57 - uid: keystore-password
59 externalSecret: '{{ tpl (default "" .Values.certStores.keyStorePasswordExternalSecret) . }}'
60 password: '{{ .Values.certStores.keyStorePassword }}'
61 passwordPolicy: required
62 - uid: truststore-password
64 externalSecret: '{{ tpl (default "" .Values.certStores.trustStorePasswordExternalSecret) . }}'
65 password: '{{ .Values.certStores.trustStorePassword }}'
66 passwordPolicy: required
69 keyStorePassword: Pol1cy_0nap
70 trustStorePassword: Pol1cy_0nap
73 nameOverride: policy-pap-cert-initializer
74 aafDeployFqi: deployer@people.osaaf.org
75 aafDeployPass: demo123456!
77 fqi: policy@policy.onap.org
78 public_fqdn: policy.onap.org
81 credsPath: /opt/app/osaaf/local
86 echo "export KEYSTORE='{{ .Values.credsPath }}/org.onap.policy.p12'" > {{ .Values.credsPath }}/.ci;
87 echo "export KEYSTORE_PASSWD='${cadi_keystore_password_p12}'" >> {{ .Values.credsPath }}/.ci;
88 chown -R {{ .Values.uid }}:{{ .Values.gid }} $(dirname {{ .Values.credsPath }});
91 #################################################################
92 # Application configuration defaults.
93 #################################################################
95 image: onap/policy-pap:2.6.3
98 # flag to enable debugging - application support required
101 # application configuration
105 password: policy_user
114 healthCheckRestClient:
122 # default number of instances
129 # probe configuration parameters
131 initialDelaySeconds: 60
133 # necessary to disable liveness probe when setting breakpoints
134 # in debugger so K8s doesn't restart unresponsive container
139 initialDelaySeconds: 10
142 api: /policy/pap/v1/healthcheck
178 #Pods Service Account
180 nameOverride: policy-pap
186 # Override the labels based on the Prometheus config parameter: serviceMonitorSelector.
187 # The default operator for prometheus enforces the below label.
196 externalSecretNameSuffix: policy-pap-user-creds
197 externalSecretUserKey: login
198 externalSecretPasswordKey: password