Code Review
/
oom.git
/ blobdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
review
|
tree
raw
|
inline
| side by side
Merge "[DMAAP] DMaaP ServiceMesh compatibility"
[oom.git]
/
kubernetes
/
contrib
/
components
/
ejbca
/
values.yaml
diff --git
a/kubernetes/contrib/components/ejbca/values.yaml
b/kubernetes/contrib/components/ejbca/values.yaml
index
82bc03c
..
b777a7d
100644
(file)
--- a/
kubernetes/contrib/components/ejbca/values.yaml
+++ b/
kubernetes/contrib/components/ejbca/values.yaml
@@
-12,8
+12,6
@@
# See the License for the specific language governing permissions and
# limitations under the License.
global:
# See the License for the specific language governing permissions and
# limitations under the License.
global:
- readinessRepository: oomk8s
- readinessImage: readiness-check:2.0.1
mariadbGalera: &mariadbGalera
#This flag allows EJBCA to instantiate its own mariadb-galera cluster
localCluster: false
mariadbGalera: &mariadbGalera
#This flag allows EJBCA to instantiate its own mariadb-galera cluster
localCluster: false
@@
-56,16
+54,14
@@
mysqlDatabase: &dbName ejbca
replicaCount: 1
ejbca:
replicaCount: 1
ejbca:
- image: primekey/ejbca-ce:
6.15.2.5
+ image: primekey/ejbca-ce:
7.4.3.2
pullPolicy: Always
mariadb-galera:
pullPolicy: Always
mariadb-galera:
- # '&mariadbConfig' means we "store" the values for later use in the file
- # with '*mariadbConfig' pointer.
- config: &mariadbConfig
- userCredentialsExternalSecret: *ejbca-db-secret
- mysqlDatabase: *dbName
- nameOverride: ejbca-galera
+ db:
+ externalSecret: *ejbca-db-secret
+ name: *dbName
+ nameOverride: &ejbca-galera ejbca-galera
service:
name: ejbca-galera
portName: ejbca-galera
service:
name: ejbca-galera
portName: ejbca-galera
@@
-74,9
+70,13
@@
mariadb-galera:
persistence:
enabled: true
mountSubPath: ejbca/maria/data
persistence:
enabled: true
mountSubPath: ejbca/maria/data
+ serviceAccount:
+ nameOverride: *ejbca-galera
mariadb-init:
mariadb-init:
- config: *mariadbConfig
+ config:
+ userCredentialsExternalSecret: *ejbca-db-secret
+ mysqlDatabase: *dbName
nameOverride: ejbca-config
nodeSelector: {}
nameOverride: ejbca-config
nodeSelector: {}
@@
-86,14
+86,14
@@
affinity: {}
# probe configuration parameters
liveness:
path: /ejbca/publicweb/healthcheck/ejbcahealth
# probe configuration parameters
liveness:
path: /ejbca/publicweb/healthcheck/ejbcahealth
- port:
api
- initialDelaySeconds:
3
0
+ port:
8443
+ initialDelaySeconds:
18
0
periodSeconds: 30
readiness:
path: /ejbca/publicweb/healthcheck/ejbcahealth
periodSeconds: 30
readiness:
path: /ejbca/publicweb/healthcheck/ejbcahealth
- port:
api
- initialDelaySeconds:
3
0
+ port:
8443
+ initialDelaySeconds:
18
0
periodSeconds: 30
service:
periodSeconds: 30
service:
@@
-104,3
+104,29
@@
service:
port: 8443
plain_port: 8080
port_protocol: http
port: 8443
plain_port: 8080
port_protocol: http
+
+# Resource Limit flavor -By Default using small
+flavor: unlimited
+# Segregation for Different environment (Small and Large)
+resources:
+ small:
+ limits:
+ cpu: 1500m
+ memory: 1536Mi
+ requests:
+ cpu: 10m
+ memory: 750Mi
+ large:
+ limits:
+ cpu: 2
+ memory: 2Gi
+ requests:
+ cpu: 20m
+ memory: 1Gi
+ unlimited: {}
+
+#Pods Service Account
+serviceAccount:
+ nameOverride: ejbca
+ roles:
+ - read