Code Review
/
oom.git
/ blobdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
review
|
tree
raw
|
inline
| side by side
[OOM] Fixing k8s resources and limits
[oom.git]
/
kubernetes
/
so
/
components
/
so-etsi-nfvo-ns-lcm
/
values.yaml
diff --git
a/kubernetes/so/components/so-etsi-nfvo-ns-lcm/values.yaml
b/kubernetes/so/components/so-etsi-nfvo-ns-lcm/values.yaml
index
a7fad4d
..
5d3807e
100644
(file)
--- a/
kubernetes/so/components/so-etsi-nfvo-ns-lcm/values.yaml
+++ b/
kubernetes/so/components/so-etsi-nfvo-ns-lcm/values.yaml
@@
-19,12
+19,6
@@
global:
nodePortPrefixExt: 304
persistence:
mountPath: /dockerdata-nfs
nodePortPrefixExt: 304
persistence:
mountPath: /dockerdata-nfs
- security:
- aaf:
- enabled: false
- aaf:
- auth:
- header: Basic c29Ac28ub25hcC5vcmc6ZGVtbzEyMzQ1Ngo=
mariadbGalera:
serviceName: mariadb-galera
servicePort: '3306'
mariadbGalera:
serviceName: mariadb-galera
servicePort: '3306'
@@
-55,7
+49,7
@@
secrets:
#################################################################
# Application configuration defaults.
#################################################################
#################################################################
# Application configuration defaults.
#################################################################
-image: onap/so/so-etsi-nfvo-ns-lcm:1.
7.11
+image: onap/so/so-etsi-nfvo-ns-lcm:1.
9.0
pullPolicy: Always
aai:
pullPolicy: Always
aai:
@@
-85,7
+79,6
@@
logPath: ./logs/so-etsi-nfvo-ns-lcm/
app: so-etsi-nfvo-ns-lcm
service:
type: ClusterIP
app: so-etsi-nfvo-ns-lcm
service:
type: ClusterIP
- name: so-etsi-nfvo-ns-lcm
annotations:
service.alpha.kubernetes.io/tolerate-unready-endpoints: 'true'
msb.onap.org/service-info: |
annotations:
service.alpha.kubernetes.io/tolerate-unready-endpoints: 'true'
msb.onap.org/service-info: |
@@
-111,12
+104,6
@@
updateStrategy:
# soHelpers part
#################################################################
soHelpers:
# soHelpers part
#################################################################
soHelpers:
- nameOverride: so-nfvo-cert-init
- certInitializer:
- nameOverride: so-nfvo-cert-init
- credsPath: /opt/app/osaaf/local
- cadi:
- apiEnforcement: org.onap.so.nfvoAdapterPerm
containerPort: *containerPort
# Resource Limit flavor -By Default using small
containerPort: *containerPort
# Resource Limit flavor -By Default using small
@@
-125,18
+112,18
@@
flavor: small
resources:
small:
limits:
resources:
small:
limits:
- memory:
4
Gi
- cpu:
2000m
+ memory:
1
Gi
+ cpu:
999
requests:
memory: 1Gi
requests:
memory: 1Gi
- cpu:
500m
+ cpu:
0.5
large:
limits:
large:
limits:
- memory:
8
Gi
- cpu:
4000m
+ memory:
5
Gi
+ cpu:
999
requests:
memory: 2Gi
requests:
memory: 2Gi
- cpu:
1000m
+ cpu:
4
unlimited: {}
livenessProbe:
unlimited: {}
livenessProbe:
@@
-150,14
+137,27
@@
livenessProbe:
ingress:
enabled: false
service:
ingress:
enabled: false
service:
- - baseaddr: 'so
etsinfvonslcm
'
+ - baseaddr: 'so
-etsi-nfvo-ns-lcm-api
'
name: 'so-etsi-nfvo-ns-lcm'
port: 9095
config:
ssl: 'redirect'
name: 'so-etsi-nfvo-ns-lcm'
port: 9095
config:
ssl: 'redirect'
+serviceMesh:
+ authorizationPolicy:
+ authorizedPrincipals:
+ - serviceAccount: so-read
+ - serviceAccount: istio-ingress
+ namespace: istio-ingress
+
nodeSelector: {}
tolerations: []
affinity: {}
nodeSelector: {}
tolerations: []
affinity: {}
+
+#Pods Service Account
+serviceAccount:
+ nameOverride: so-etsi-nfvo-ns-lcm
+ roles:
+ - read