Code Review
/
oom.git
/ blobdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
review
|
tree
raw
|
inline
| side by side
[OOM] Fixing k8s resources and limits
[oom.git]
/
kubernetes
/
so
/
components
/
so-sdnc-adapter
/
values.yaml
diff --git
a/kubernetes/so/components/so-sdnc-adapter/values.yaml
b/kubernetes/so/components/so-sdnc-adapter/values.yaml
index
d087b15
..
d05213c
100755
(executable)
--- a/
kubernetes/so/components/so-sdnc-adapter/values.yaml
+++ b/
kubernetes/so/components/so-sdnc-adapter/values.yaml
@@
-22,14
+22,6
@@
global:
#This configuration specifies Service and port for SDNC OAM interface
sdncOamService: sdnc-oam
sdncOamPort: 8282
#This configuration specifies Service and port for SDNC OAM interface
sdncOamService: sdnc-oam
sdncOamPort: 8282
- security:
- aaf:
- enabled: false
- aaf:
- auth:
- header: Basic c29Ac28ub25hcC5vcmc6ZGVtbzEyMzQ1Ngo=
- encrypted: 3EDC974C5CD7FE54C47C7490AF4D3B474CDD7D0FFA35A7ACDE3E209631E45F428976EAC0858874F17390A13149E63C90281DD8D20456
- #encryptedSecret: some secret
mariadbGalera:
serviceName: mariadb-galera
servicePort: '3306'
mariadbGalera:
serviceName: mariadb-galera
servicePort: '3306'
@@
-55,11
+47,6
@@
secrets:
type: password
externalSecret: '{{ tpl (default "" .Values.mso.msoKeySecret) . }}'
password: '{{ .Values.mso.msoKey }}'
type: password
externalSecret: '{{ tpl (default "" .Values.mso.msoKeySecret) . }}'
password: '{{ .Values.mso.msoKey }}'
- - uid: sdnc-adapter-aaf-auth
- name: '{{ include "common.release" . }}-so-sdnc-aaf-auth'
- type: password
- externalSecret: '{{ tpl (default "" .Values.global.aaf.auth.encryptedSecret) . }}'
- password: '{{ .Values.global.aaf.auth.encrypted }}'
- uid: sdnc-adapter-mso-auth
name: '{{ include "common.release" . }}-so-sdnc-mso-auth'
type: password
- uid: sdnc-adapter-mso-auth
name: '{{ include "common.release" . }}-so-sdnc-mso-auth'
type: password
@@
-72,7
+59,7
@@
secrets:
#################################################################
# Application configuration defaults.
#################################################################
#################################################################
# Application configuration defaults.
#################################################################
-image: onap/so/sdnc-adapter:1.
9
.2
+image: onap/so/sdnc-adapter:1.
12
.2
pullPolicy: Always
org:
pullPolicy: Always
org:
@@
-107,26
+94,19
@@
containerPort: &containerPort 8086
logPath: ./logs/sdnc/
app: sdnc-adapter
service:
logPath: ./logs/sdnc/
app: sdnc-adapter
service:
-
type: ClusterIP
- internalPort: *containerPort
- externalPort: *containerPort
-
portName: so-sdnc-p
ort
+ type: ClusterIP
+ ports:
+ - name: http
+
port: *containerP
ort
updateStrategy:
updateStrategy:
- type: RollingUpdate
- maxUnavailable: 1
- maxSurge: 1
-
+ type: RollingUpdate
+ maxUnavailable: 1
+ maxSurge: 1
#################################################################
# soHelpers part
#################################################################
soHelpers:
#################################################################
# soHelpers part
#################################################################
soHelpers:
- nameOverride: so-sdnc-cert-init
- certInitializer:
- nameOverride: so-sdnc-cert-init
- credsPath: /opt/app/osaaf/local
- cadi:
- apiEnforcement: org.onap.so.sdncAdapterPerm
containerPort: *containerPort
# Resource Limit flavor -By Default using small
containerPort: *containerPort
# Resource Limit flavor -By Default using small
@@
-135,30
+115,36
@@
flavor: small
resources:
small:
limits:
resources:
small:
limits:
- memory:
4
Gi
- cpu:
2000m
+ memory:
1.5
Gi
+ cpu:
999
requests:
requests:
- memory: 1Gi
- cpu:
500m
+ memory: 1
.5
Gi
+ cpu:
0.5
large:
limits:
large:
limits:
- memory:
8
Gi
- cpu:
4000m
+ memory:
3
Gi
+ cpu:
999
requests:
requests:
- memory:
2
Gi
- cpu: 1
000m
+ memory:
3
Gi
+ cpu: 1
unlimited: {}
livenessProbe:
unlimited: {}
livenessProbe:
-
path: /manage/health
-
port: 8086
-
scheme: HTTP
-
initialDelaySeconds: 600
-
periodSeconds: 60
-
timeoutSeconds: 10
-
successThreshold: 1
-
failureThreshold: 3
+ path: /manage/health
+ port: 8086
+ scheme: HTTP
+ initialDelaySeconds: 600
+ periodSeconds: 60
+ timeoutSeconds: 10
+ successThreshold: 1
+ failureThreshold: 3
ingress:
enabled: false
ingress:
enabled: false
+serviceMesh:
+ authorizationPolicy:
+ authorizedPrincipals:
+ - serviceAccount: robot-read
+ - serviceAccount: so-bpmn-infra-read
+ - serviceAccount: so-read
nodeSelector: {}
tolerations: []
affinity: {}
nodeSelector: {}
tolerations: []
affinity: {}