1 # Copyright © 2018 AT&T USA
3 # Licensed under the Apache License, Version 2.0 (the "License");
4 # you may not use this file except in compliance with the License.
5 # You may obtain a copy of the License at
7 # http://www.apache.org/licenses/LICENSE-2.0
9 # Unless required by applicable law or agreed to in writing, software
10 # distributed under the License is distributed on an "AS IS" BASIS,
11 # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12 # See the License for the specific language governing permissions and
13 # limitations under the License.
14 apiVersion: extensions/v1beta1
17 name: {{ include "common.fullname" . }}
18 namespace: {{ include "common.namespace" . }}
20 app: {{ include "common.fullname" . }}
21 chart: {{ .Chart.Name }}-{{ .Chart.Version | replace "+" "_" }}
22 release: {{ include "common.release" . }}
24 replicas: {{ index .Values.replicaCount }}
25 minReadySeconds: {{ index .Values.minReadySeconds }}
27 type: {{ index .Values.updateStrategy.type }}
29 maxUnavailable: {{ index .Values.updateStrategy.maxUnavailable }}
30 maxSurge: {{ index .Values.updateStrategy.maxSurge }}
34 app: {{ include "common.name" . }}
35 release: {{ include "common.release" . }}
37 initContainers: {{ include "so.certificate.container_importer" . | nindent 6 }}
39 - name: {{ include "common.name" . }}
40 image: {{ include "common.repository" . }}/{{ .Values.image }}
42 {{ include "common.resources" . | indent 12 }}
47 name: {{ include "common.release" . }}-so-db-secrets
48 key: mariadb.readwrite.host
52 name: {{ include "common.release" . }}-so-db-secrets
53 key: mariadb.readwrite.port
55 {{- include "common.secret.envFromSecretFast" (dict "global" . "uid" "db-user-creds" "key" "login") | indent 10 }}
57 {{- include "common.secret.envFromSecretFast" (dict "global" . "uid" "db-user-creds" "key" "password") | indent 10 }}
58 - name: DB_ADMIN_USERNAME
59 {{- include "common.secret.envFromSecretFast" (dict "global" . "uid" "db-admin-creds" "key" "login") | indent 10 }}
60 - name: DB_ADMIN_PASSWORD
61 {{- include "common.secret.envFromSecretFast" (dict "global" . "uid" "db-admin-creds" "key" "password") | indent 10 }}
62 {{- if eq .Values.global.security.aaf.enabled true }}
64 value: /app/org.onap.so.trust.jks
65 - name: TRUSTSTORE_PASSWORD
68 name: {{ .Release.Name}}-so-client-certs-secret
69 key: trustStorePassword
71 value: /app/org.onap.so.jks
72 - name: KEYSTORE_PASSWORD
75 name: {{ .Release.Name}}-so-client-certs-secret
80 name: {{ include "common.fullname" . }}-configmap
81 imagePullPolicy: {{ .Values.global.pullPolicy | default .Values.pullPolicy }}
82 volumeMounts: {{ include "so.certificate.volume-mounts" . | nindent 8 }}
86 mountPath: /app/config
88 - name: {{ include "common.fullname" . }}-logs
89 mountPath: /var/log/onap
90 {{ include "helpers.livenessProbe" .| indent 8 }}
92 - containerPort: {{ index .Values.containerPort }}
93 name: {{ .Values.service.portName }}
95 # Filebeat sidecar container
96 - name: {{ include "common.name" . }}-filebeat-onap
97 image: "{{ .Values.global.loggingRepository }}/{{ .Values.global.loggingImage }}"
98 imagePullPolicy: {{ .Values.global.pullPolicy | default .Values.pullPolicy }}
100 - name: {{ include "common.fullname" . }}-filebeat-conf
101 mountPath: /usr/share/filebeat/filebeat.yml
102 subPath: filebeat.yml
103 - name: {{ include "common.fullname" . }}-data-filebeat
104 mountPath: /usr/share/filebeat/data
106 mountPath: /var/log/onap/so
107 - name: {{ include "common.fullname" . }}-logs
108 mountPath: /var/log/onap
109 volumes: {{ include "so.certificate.volumes" . | nindent 6 }}
114 name: {{ include "common.fullname" . }}-app-configmap
115 - name: {{ include "common.fullname" . }}-log-conf
117 name: {{ include "common.fullname" . }}-log
118 - name: {{ include "common.fullname" . }}-filebeat-conf
120 name: {{ .Release.Name }}-so-filebeat-configmap
121 - name: {{ include "common.fullname" . }}-data-filebeat
123 - name: {{ include "common.fullname" . }}-logs
126 - name: "{{ include "common.namespace" . }}-docker-registry-key"