X-Git-Url: https://gerrit.onap.org/r/gitweb?a=blobdiff_plain;f=kubernetes%2Fplatform%2Fcomponents%2Foom-cert-service%2Fvalues.yaml;h=c1a75aefc1c1a313cc740d1842eacc3f7dbe3ba5;hb=db8167bbf6923c8f316ebadd6cec1dd4891428a1;hp=fbd545c12ebc8bb897fae8f8347b5a55ce344767;hpb=d292a1df5c5430b3deafe5086781b76788c3d428;p=oom.git diff --git a/kubernetes/platform/components/oom-cert-service/values.yaml b/kubernetes/platform/components/oom-cert-service/values.yaml index fbd545c12e..c1a75aefc1 100644 --- a/kubernetes/platform/components/oom-cert-service/values.yaml +++ b/kubernetes/platform/components/oom-cert-service/values.yaml @@ -22,6 +22,16 @@ global: # Standard OOM pullPolicy: "Always" repository: "nexus3.onap.org:10001" + ingress: + enabled: true + # All http requests via ingress will be redirected + config: + ssl: "redirect" + # you can set an own Secret containing a certificate + # tls: + # secret: 'my-ingress-cert' + # optional: Namespace of the Istio IngressGateway + namespace: &ingressNamespace istio-ingress # Service configuration @@ -34,7 +44,7 @@ service: # Deployment configuration repository: "nexus3.onap.org:10001" -image: onap/org.onap.oom.platform.cert-service.oom-certservice-api:2.4.0 +image: onap/org.onap.oom.platform.cert-service.oom-certservice-api:2.6.0 pullPolicy: Always replicaCount: 1 @@ -51,17 +61,17 @@ flavor: small resources: small: limits: - cpu: 0.5 - memory: 1Gi + cpu: 1 + memory: 0.5Gi requests: - cpu: 0.2 - memory: 512Mi + cpu: 0.5 + memory: 0.5Gi large: limits: - cpu: 1 - memory: 2Gi + cpu: 2 + memory: 1Gi requests: - cpu: 0.4 + cpu: 1 memory: 1Gi unlimited: {} @@ -79,9 +89,17 @@ tls: selfsigning: name: &selfSigningIssuer cmpv2-selfsigning-issuer ca: - name: &caIssuer cmpv2-ca-issuer + name: &caIssuer cmpv2-issuer-onap secret: name: &caKeyPairSecret cmpv2-ca-key-pair + ingressSelfsigned: + name: ingress-selfsigned-issuer + namespace: *ingressNamespace + ingressCa: + name: ingress-ca-issuer + namespace: *ingressNamespace + secret: + name: ingress-ca-key-pair server: secret: name: &serverSecret oom-cert-service-server-tls-secret