yangyan [Thu, 6 Feb 2020 02:27:01 +0000 (10:27 +0800)]
Make use msb iag with https
Change-Id: I8602f2cbe425a061470e62d2a6fc490904f42256
Issue-ID: VFC-1601
Signed-off-by: yangyan <yangyanyj@chinamobile.com>
Sylvain Desbureaux [Wed, 12 Feb 2020 07:34:22 +0000 (07:34 +0000)]
Merge "These OOM changes are related AAF Integration"
Sylvain Desbureaux [Wed, 12 Feb 2020 07:32:03 +0000 (07:32 +0000)]
Merge "Sync up the properties file with current CDS version."
Morgan Richomme [Mon, 10 Feb 2020 21:06:33 +0000 (21:06 +0000)]
Merge "[APPC] Fix APPC health check failure"
mrichomme [Mon, 10 Feb 2020 16:08:49 +0000 (17:08 +0100)]
Update git submodules
* Update kubernetes/robot from branch 'master'
to
591bfdea4f1d833abee3c7e60f084da546d9082a
- Create INFO.yaml for testsuite/oom
same contributors than testsuite
Issue-ID: INT-1386
Signed-off-by: mrichomme <morgan.richomme@orange.com>
Change-Id: I37465c46dd5b025cf284157df4a12b140eb9d487
Krzysztof Opasiak [Mon, 10 Feb 2020 15:39:35 +0000 (16:39 +0100)]
[APPC] Fix APPC health check failure
In commit:
e74ed5cd24d ("[APPC] Don't hardcode mariadb root password")
startOdl.sh script has been updated to take the root password from the
environment variable. Unfortunately there was a typo in variable name
which resulted in using empty string instead of password.
Issue-ID: APPC-1830
Fixes:
e74ed5cd24d ("[APPC] Don't hardcode mariadb root password")
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: I537e3e24ee4bbbc20d5ebc07dddd9f0d3cbe26d8
Sylvain Desbureaux [Mon, 10 Feb 2020 07:51:59 +0000 (07:51 +0000)]
Merge "Bump dmaap-dr image versions"
efiacor [Fri, 7 Feb 2020 19:02:15 +0000 (19:02 +0000)]
Bump dmaap-dr image versions
# Also, need to add ready check for aaf-cm
Change-Id: I757f56f5eaa79c1cbecec43aeb99f2701afd7fae
Signed-off-by: efiacor <fiachra.corcoran@est.tech>
Issue-ID: DMAAP-1195
Krzysztof Opasiak [Fri, 7 Feb 2020 14:49:54 +0000 (15:49 +0100)]
[NBI] Don't hardcode mariadb-galera password
Let's use common secret template to generate user credentials for NBI
DB and depend on mariadb-galera to generate secure enough root
password.
BTW.
Don't be surprised for now mariadb-galera has a hardcoded root
password but as soon as we move all charts that use it to common
secret template it will be auto generated.
Issue-ID: OOM-2291
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: I5d16f6c26aa63a46db98ba3dab3a76267b4049f1
Krzysztof Opasiak [Thu, 6 Feb 2020 16:04:05 +0000 (17:04 +0100)]
[COMMON] Remove pgpool
It seems that pgpool is never thus there is no need to spend
time moving it to common secret template
Issue-ID: OOM-2250
Change-Id: I237f9e01cec80bd47ff47c7eb4db282471cfad07
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Krzysztof Opasiak [Tue, 4 Feb 2020 20:16:50 +0000 (21:16 +0100)]
[COMMON] Use common secret template in postgres
Use common secret template for storing DB credentials
Issue-ID: OOM-2250
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: Ic640bba21a368cf3dd7d3a712abd13907b86a217
Sylvain Desbureaux [Fri, 7 Feb 2020 16:00:59 +0000 (16:00 +0000)]
Merge "[COMMON] Share deployment configuration in Postgres"
Sylvain Desbureaux [Fri, 7 Feb 2020 16:00:12 +0000 (16:00 +0000)]
Merge "[OOF] fix secret names for mariadb-galera"
Sylvain Desbureaux [Fri, 7 Feb 2020 15:54:48 +0000 (15:54 +0000)]
Merge "update DMaaP MR docker image version to 1.1.17"
Krzysztof Opasiak [Fri, 7 Feb 2020 14:07:04 +0000 (15:07 +0100)]
Update git submodules
* Update kubernetes/robot from branch 'master'
to
df719f4a3e63cff0d5d832945f0b8ba18230635c
- [ONAP-wide] Replace .Release.Name with common.release
ONAP is too big to be deployed using helm install so we need to
use a custom helm plugin helm deploy. This script deloys onap
component by component instead of deploying evrything at
once. Unfortunately this script also modifies the helm release by
appending component name to it.
As a result of this behavior our objects are called for example:
onap-mariadb-galera-mariadb-galera-0
instead of just being called onap-mariadb-galera-0.
This patch simplifies this naming convention by replacing all direct
usages of .Release.Name with common.release macro which strips the
component specific part from the release name.
Issue-ID: OOM-2275
Change-Id: I3384bf30c663764339b0b41527ca4eb7168f0d49
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Ramesh Parthasarathy [Wed, 5 Feb 2020 17:02:28 +0000 (17:02 +0000)]
These OOM changes are related AAF Integration
Here we have the ability to optionally disable AAF integration.
A global variable global.security.aaf.enabled=true
will turn on AAF security. with global.security.aaf.enabled=false
it will use spring.security to ensure backward compatibilty. updated
based on review comments
Issue-ID: SO-2452
Signed-off-by: Ramesh Parthasarathy(rp6768)<ramesh.parthasarathy@att.com>
Change-Id: Ia83622ad681cfd122ee906ccd1654b10b5e31fe4
Krzysztof Opasiak [Tue, 4 Feb 2020 15:07:20 +0000 (16:07 +0100)]
[COMMON] Share deployment configuration in Postgres
When I did diff between deployment-primary and deployment-replica it
turned out that this is pretty much the same file apart from primary
and replica words.
To avoid making the same changes in both files, let's just introduce a
template that can be included with parameter.
Issue-ID: OOM-2246
Change-Id: Ia13b993b9f23008d6be6b3d0e8b745446048de4e
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Krzysztof Opasiak [Thu, 6 Feb 2020 22:29:30 +0000 (23:29 +0100)]
[OOF] fix secret names for mariadb-galera
It looks like AAF issues masked my real mistakes of letting
some of oof services failing because of bad secret names.
Let's fix that quickly by just setting them to the corrent names
temporarly as later oof will be ported to use common secret template
anyway.
Issue-ID: OOM-2053
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: I9de1804dbd5399df25a3ef98354f41d39d073bf7
Marek Szwalkiewicz [Thu, 6 Feb 2020 08:49:08 +0000 (08:49 +0000)]
Sync up the properties file with current CDS version.
File application.properties needs to be synced from time to time between oom charts and
original CDS code.
Issue-ID: CCSDK-1922
Change-Id: Id2a62ce92e8708b7352ca2d21b248b0887fcb5c8
Signed-off-by: Marek Szwalkiewicz <marek.szwalkiewicz@external.t-mobile.pl>
Borislav Glozman [Thu, 6 Feb 2020 08:46:04 +0000 (08:46 +0000)]
Merge "[COMMON] Create templates for services and PV"
efiacor [Wed, 5 Feb 2020 20:42:47 +0000 (20:42 +0000)]
Removing pass_enc_key from DMaaP prov props
# Also adding AAF ready check for dr-node
Change-Id: I7e6fc29a7f5607cc168f9fd61642a40a9185c55b
Signed-off-by: efiacor <fiachra.corcoran@est.tech>
Issue-ID: DMAAP-1367
Morgan Richomme [Wed, 5 Feb 2020 07:31:50 +0000 (07:31 +0000)]
Merge "Enable multicloud openstack https endpoints"
Sylvain Desbureaux [Tue, 4 Feb 2020 16:30:02 +0000 (16:30 +0000)]
Merge "Fix problem with wrong volume mount names"
Bin Yang [Mon, 3 Feb 2020 17:03:14 +0000 (01:03 +0800)]
Enable multicloud openstack https endpoints
Make use of msb iag with https as well
Issue-ID: MULTICLOUD-978
Signed-off-by: Bin Yang <bin.yang@windriver.com>
Change-Id: I79c988e2ac13f1c11be8ca5ac9ccd44c21418cb4
Sylvain Desbureaux [Thu, 12 Dec 2019 13:35:01 +0000 (14:35 +0100)]
[COMMON] Create templates for services and PV
Proposition of common templates to make service declaration and PV
declaration consistent accross OOM.
Propositions of templates for sub parties of resource definitions
such as metadatas, selector and containerPorts.
I've also made an example with cassandra.
Change-Id: I8b8aa8eb61dafba75e89add1979114a0eefce243
Issue-ID: OOM-1971
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Krzysztof Opasiak [Mon, 3 Feb 2020 20:04:22 +0000 (21:04 +0100)]
Update git submodules
* Update kubernetes/aai from branch 'master'
to
1c9c9bba658057f6147276fba4f84e7db9117e70
- [ONAP-wide] Replace .Release.Name with common.release
ONAP is too big to be deployed using helm install so we need to
use a custom helm plugin helm deploy. This script deloys onap
component by component instead of deploying evrything at
once. Unfortunately this script also modifies the helm release by
appending component name to it.
As a result of this behavior our objects are called for example:
onap-mariadb-galera-mariadb-galera-0
instead of just being called onap-mariadb-galera-0.
This patch simplifies this naming convention by replacing all direct
usages of .Release.Name with common.release macro which strips the
component specific part from the release name.
Issue-ID: OOM-2275
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: I450057f5b4a10842f09665ecccc58e4ed727cd89
Morgan Richomme [Mon, 3 Feb 2020 16:50:13 +0000 (16:50 +0000)]
Merge "Revert "Make cassandra service mesh compliant""
Borislav Glozman [Mon, 3 Feb 2020 13:50:34 +0000 (13:50 +0000)]
Merge "Expose multicloud endpoints in https"
Sylvain Desbureaux [Mon, 3 Feb 2020 13:39:00 +0000 (13:39 +0000)]
Revert "Make cassandra service mesh compliant"
This reverts commit
239bb3e18494584587ee1a6eb482f022b9e32d44.
Reason for revert: mandatory template functions not merged yet
Issue-ID: OOM-2252
Change-Id: I80444a7103e12aea4568f03ded08e348bba927fb
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Bin Yang [Thu, 23 Jan 2020 02:46:07 +0000 (02:46 +0000)]
Expose multicloud endpoints in https
Make use of msb iag with https as well
Change-Id: I46320cb7a3012320091b8b802ed8531285b78b45
Issue-ID: MULTICLOUD-978
Signed-off-by: Bin Yang <bin.yang@windriver.com>
Borislav Glozman [Sun, 2 Feb 2020 13:33:15 +0000 (13:33 +0000)]
Merge "Update PRH version to 1.5.0"
Borislav Glozman [Sun, 2 Feb 2020 13:32:41 +0000 (13:32 +0000)]
Merge "Add override flag to the ingress template"
Borislav Glozman [Sun, 2 Feb 2020 13:31:03 +0000 (13:31 +0000)]
Merge "redis config optimization"
Borislav Glozman [Sun, 2 Feb 2020 13:30:36 +0000 (13:30 +0000)]
Merge "Update ves collector image"
Borislav Glozman [Sun, 2 Feb 2020 13:29:30 +0000 (13:29 +0000)]
Merge "[Modeling] Use common secret template for mariadb root password"
Sylvain Desbureaux [Wed, 18 Dec 2019 12:15:57 +0000 (13:15 +0100)]
[COMMON] Make cassandra service mesh compliant
When service mesh is enabled, cassandra needs to listen to `127.0.0.1`
instead of POD_IP but must broadcast using POD_IP.
Change-Id: If96acd56a092a893f524a69ee83406c9cb70b3e7
Issue-ID: OOM-2252
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Borislav Glozman [Sun, 2 Feb 2020 13:26:36 +0000 (13:26 +0000)]
Merge "[Modeling] Move mariadb-galera to etsicatalog"
Borislav Glozman [Sun, 2 Feb 2020 13:23:12 +0000 (13:23 +0000)]
Merge "[APPC] Don't hardcode mariadb root password"
Borislav Glozman [Sun, 2 Feb 2020 13:21:57 +0000 (13:21 +0000)]
Merge "[COMMON] Don't create dummy mysql DB by default in a shared instance"
Borislav Glozman [Sun, 2 Feb 2020 13:20:30 +0000 (13:20 +0000)]
Merge "[COMMON] Allow to lint chart without master password"
Borislav Glozman [Sun, 2 Feb 2020 13:18:41 +0000 (13:18 +0000)]
Merge "[COMMON] Make network-name-gen use common secrets template"
Borislav Glozman [Sun, 2 Feb 2020 13:18:28 +0000 (13:18 +0000)]
Merge "[COMMON] Provide convenience templates for mariadb secrets"
Borislav Glozman [Sun, 2 Feb 2020 13:15:51 +0000 (13:15 +0000)]
Merge "[COMMON] Expose common.secret.genName template"
Borislav Glozman [Sun, 2 Feb 2020 13:15:34 +0000 (13:15 +0000)]
Merge "[COMMON] Allow to generate fullname based on passed chart name"
Borislav Glozman [Sun, 2 Feb 2020 13:11:09 +0000 (13:11 +0000)]
Merge "[COMMON] Allow to search secret by uid even if name is Overridden"
Borislav Glozman [Sun, 2 Feb 2020 13:08:38 +0000 (13:08 +0000)]
Merge "[COMMON] Use common secret template in mariadb-init"
Borislav Glozman [Sun, 2 Feb 2020 13:08:20 +0000 (13:08 +0000)]
Merge "Add ONAP core deployment type override"
Borislav Glozman [Sun, 2 Feb 2020 13:02:59 +0000 (13:02 +0000)]
Merge "release 1.7.0 APPC in Frankfurt"
Krzysztof Opasiak [Fri, 31 Jan 2020 22:28:25 +0000 (23:28 +0100)]
[Modeling] Use common secret template for mariadb root password
Remove hardcoded root password from the modeling chart.
Because of huge number of issues in modeling docker image
(see onap-discuss for details) I don't want to touch it.
That's why I just made an awful hack to concatenate DB
username and password before the entrypoint script.
Please keep in mind that this eliminates only hardcoded
root password but there is plenty of other credentials that
are boiled into container image (DB, SDC, VCF-REDIS(!) etc).
Issue-ID: OOM-2286
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: Id85a03ec7f55885b606179d10e8b6528c6cb6947
Krzysztof Opasiak [Fri, 31 Jan 2020 13:26:54 +0000 (14:26 +0100)]
[Modeling] Move mariadb-galera to etsicatalog
etsicatalog is the only component inside modeling which use this DB
thus there is no point to keep it outside of this component.
Passwords and other bad stuff is left intentionally as this is just a
first patch for this transition.
Issue-ID: OOM-2286
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: I4f592b736a86c7acf9ee43b0f6e136e5f1506847
Krzysztof Opasiak [Thu, 23 Jan 2020 10:49:25 +0000 (11:49 +0100)]
[APPC] Don't hardcode mariadb root password
You should never ever assume that secretpassword is a production
ready password for your mariadb-galera instance. Instead let's
just share a secret with our instance of mariadb-galera.
Issue-ID: OOM-2275
Change-Id: I25486ad81a2ec428dbbd379ab3529c84f55acc4b
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Krzysztof Opasiak [Thu, 23 Jan 2020 00:03:41 +0000 (01:03 +0100)]
[COMMON] Don't create dummy mysql DB by default in a shared instance
When deploying a shared mariadb-galera instance using common chart
a dummy database is created based on the default values n the chart.
This is obviously unnecessary and creates an obviousl security issue.
That's why let's make sure that when we deploy a shared mariadb
instance no dummy databases are created.
Issue-ID: OOM-2053
Change-Id: I1130cb8eb555b15a2d8b365102d69e32259233eb
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Krzysztof Opasiak [Wed, 22 Jan 2020 23:55:46 +0000 (00:55 +0100)]
[COMMON] Allow to lint chart without master password
When you type make in kubernetes directory all charts are linted.
If one of them try to generate password whole linting process
ends with an error because masterPassword has not been provided
and there is no default value for it.
To avoid this issue but still don't provide any default value
whcih would be obviously insecure in this context, let's just
test current release name. If it matches "testRelease" we treat whis
as a special case and use predefined master key.
Security implication:
You should never, ever name your productional deployment "testRelease"
nor use it as a master password.
Issue-ID: OOM-2052
Change-Id: I7a2132e81f6910dfea562e8930c7eacd7aa7a00b
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Krzysztof Opasiak [Tue, 21 Jan 2020 23:08:05 +0000 (00:08 +0100)]
[COMMON] Make network-name-gen use common secrets template
For now we use it only for DB secret but in a future also
other secrets should be replaced.
Issue-ID: OOM-2249
Change-Id: Ie6515806c39c6a2cd94be378b5210156b78f4afb
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Krzysztof Opasiak [Tue, 21 Jan 2020 23:06:32 +0000 (00:06 +0100)]
[COMMON] Provide convenience templates for mariadb secrets
Usage of plain strings is very fragile especially when you try
to change them. That's why instead of depending on strings let's
just define a few convenience templates to be used in projects
that use mariadb-galera chart.
Issue-ID: OOM-2249
Change-Id: Ib867d34090b06a15ea3898a9524f5e3d04a656c0
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Krzysztof Opasiak [Tue, 21 Jan 2020 23:03:45 +0000 (00:03 +0100)]
[COMMON] Expose common.secret.genName template
This template used to be for internal use only but it turned out
to be very useful in number of places so let's just expose it.
Issue-ID: OOM-2249
Change-Id: I57cd31681fb5edb4ac95b0b7b2446a364ce826d2
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Krzysztof Opasiak [Fri, 24 Jan 2020 23:00:07 +0000 (00:00 +0100)]
[COMMON] Allow to generate fullname based on passed chart name
By default common.fullname uses .Chart.Name or
.Values.nameOverride to generate a "full name" used in many
places.
In some cases it may be convenient to be able to generate this
full name for a specific, well known chart name.
Issue-ID: OOM-2249
Change-Id: I68034c1c5df81ae9533f5f4bc6fab58f2416623a
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Krzysztof Opasiak [Thu, 9 Jan 2020 20:53:55 +0000 (21:53 +0100)]
[COMMON] Allow to search secret by uid even if name is Overridden
In some cases it is useful to bypass default policy for secret name
generation and provide a custom name for a secret. In this case
current search implementation got confused and couln't find a secret
based on uid. This patch fixes the issue by comaring not only name
but also uid.
Issue-ID: OOM-2246
Change-Id: Iaea7a23fee09aa388968aad792ba7f7e1fbf2f21
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Krzysztof Opasiak [Thu, 30 Jan 2020 11:10:40 +0000 (12:10 +0100)]
[COMMON] Use common secret template in mariadb-init
Use common secret template for all passwords that are used
inside this chart.
Issue-ID: OOM-2248
Change-Id: Ia94b87a4d0316a3d334fd492521be5a255c14b4e
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Krzysztof Opasiak [Fri, 24 Jan 2020 22:49:11 +0000 (23:49 +0100)]
[ONAP-wide] Replace .Release.Name with common.release
ONAP is too big to be deployed using helm install so we need to
use a custom helm plugin helm deploy. This script deloys onap
component by component instead of deploying evrything at
once. Unfortunately this script also modifies the helm release by
appending component name to it.
As a result of this behavior our objects are called for example:
onap-mariadb-galera-mariadb-galera-0
instead of just being called onap-mariadb-galera-0.
This patch simplifies this naming convention by replacing all direct
usages of .Release.Name with common.release macro which strips the
component specific part from the release name.
Issue-ID: OOM-2275
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: Ia8cead50d305adb00eef666d0a1ace74479b5183
Krzysztof Opasiak [Fri, 24 Jan 2020 21:45:16 +0000 (22:45 +0100)]
Remove additional _helpers files
Helm by default creates some useful templates in _helpers.tpl
file. This is fine for stand alone charts but when they become
part of ONAP those helpers are no longer needed as our common
components already provides all required functions
Issue-ID: OOM-2278
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: I659e4b45b031e87cc87f7bbbb22bf9e23cd74e61
mprzybys [Fri, 31 Jan 2020 10:09:02 +0000 (10:09 +0000)]
Fix problem with wrong volume mount names
Issue-ID: DMAAP-1378
Signed-off-by: Marcin Przybysz <marcin.przybysz@nokia.com>
Change-Id: Ibac712760dca757475e57129cc1857be5c1086e0
Marco Platania [Thu, 30 Jan 2020 15:32:12 +0000 (15:32 +0000)]
Update git submodules
* Update kubernetes/robot from branch 'master'
to
091f164a832479cb40ad6f5d7e4960269e75f87f
- Merge "Adjust ETE runner for security tests"
- Adjust ETE runner for security tests
This patch adds gathering data which cannot be easily obtained from
within "robot" pod (without granting it access to "kubectl" tool and as
a side effect - cluster modifications).
It introduces dependency to python3 on operator's machine (to convert
"kubectl" tool filtered output to JSON).
Issue-ID: SECCOM-261
Change-Id: Ie5057f65f79337896191b51cfad1b3e06623f80b
Signed-off-by: Pawel Wieczorek <p.wieczorek2@samsung.com>
Morgan Richomme [Thu, 30 Jan 2020 14:50:18 +0000 (14:50 +0000)]
Merge "Revert "basic auth for so-monitoring""
Pawel Wieczorek [Fri, 24 Jan 2020 11:38:22 +0000 (12:38 +0100)]
Add ONAP core deployment type override
This patch makes heavy use of Orange accomplishments [1][2][3]. This
deployment override will probably succeed "minimal-onap.yaml" used in
e.g. "integration/bootstrap/vagrant-minimal-onap" setup.
Cassandra replicaCount is increased to 3 to allow reaching quorum.
[1] https://gitlab.com/Orange-OpenSource/lfn/onap/onap_oom_automatic_installation
[2] https://wiki.lfnetworking.org/display/LN/Call%20for%20ONAP%20DDF%20Topics%20-%20Prague%202020#CallforONAPDDFTopics-Prague2020-OOM-IntroductionofServicemesh
[3] https://wiki.lfnetworking.org/download/attachments/
25364127/OOM%20Service%20Mesh%20Prague.pptx
Issue-ID: ONAPARC-551
Change-Id: Ibaec41f088f11f7fb4e7c476f742d12d29c5740b
Signed-off-by: Pawel Wieczorek <p.wieczorek2@samsung.com>
pwielebs [Wed, 29 Jan 2020 11:35:14 +0000 (12:35 +0100)]
Update PRH version to 1.5.0
Issue-ID: OOM-2281
Signed-off-by: Piotr Wielebski <piotr.wielebski@nokia.com>
Change-Id: I0330b2c239af12f48202062954a623c18ca1ac7f
Morgan Richomme [Wed, 29 Jan 2020 10:20:25 +0000 (10:20 +0000)]
Merge changes Ia6344de1,I642bdc7a
* changes:
VID: Update to version 6.0.2 (Frankfurt wave 1)
VID logging adjustments to portal-sdk 2.6.0
Morgan Richomme [Tue, 28 Jan 2020 16:10:13 +0000 (16:10 +0000)]
Merge "Add VID to onap-vfw overrides"
Krzysztof Opasiak [Tue, 28 Jan 2020 15:52:48 +0000 (16:52 +0100)]
Update git submodules
* Update kubernetes/aai from branch 'master'
to
f636b1cc2bf7d391dc76956e906a6f497ef1b092
- Remove space from file name
Remove the awkward space from the file name and replace it with a
dash.
Issue-ID: OOM-2275
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Change-Id: Ia0d55fae839d5ef865ac53659d93cbda5ba4212a
Pawel [Tue, 28 Jan 2020 13:22:23 +0000 (14:22 +0100)]
Update ves collector image
Issue-ID: OOM-2280
Signed-off-by: Pawel <pawel.kasperkiewicz@nokia.com>
Change-Id: Iaa80eb212ba0c31ffdceb79e776cd92d38b304d6
Taka Cho [Mon, 27 Jan 2020 16:43:09 +0000 (11:43 -0500)]
release 1.7.0 APPC in Frankfurt
Neon SR1 ODL version compliance
APPC docker image released
Issue-ID: APPC-1816
Change-Id: I8f6a04eab39e3876bffc232ad1329931711ba60b
Signed-off-by: Taka Cho <takamune.cho@att.com>
Ittay Stern [Mon, 27 Jan 2020 11:27:48 +0000 (13:27 +0200)]
VID: Update to version 6.0.2 (Frankfurt wave 1)
Issue-ID: VID-716
Change-Id: Ia6344de1aa524d25a8818e18bfe693cacffc26c8
Signed-off-by: Ittay Stern <ittay.stern@att.com>
Ittay Stern [Wed, 22 Jan 2020 11:40:35 +0000 (13:40 +0200)]
VID logging adjustments to portal-sdk 2.6.0
Issue-ID: VID-253
Issue-ID: VID-471
Change-Id: I642bdc7a3926bf3be897f959aa1886617b2978d6
Signed-off-by: Ittay Stern <ittay.stern@att.com>
Borislav Glozman [Sun, 26 Jan 2020 07:36:58 +0000 (07:36 +0000)]
Merge "[AAF] Fix PVC for sshsm"
Borislav Glozman [Sun, 26 Jan 2020 07:36:14 +0000 (07:36 +0000)]
Merge "[COMMON] Fix PV/PVC for postgres"
su622b [Fri, 24 Jan 2020 19:07:31 +0000 (14:07 -0500)]
update DMaaP MR docker image version to 1.1.17
Issue-ID: DMAAP-1356
Change-Id: Ia4e662a284270a1cbd369738f336fe4be1f5dae6
Signed-off-by: su622b <su622b@att.com>
Forsyth, James (jf2512) [Thu, 23 Jan 2020 16:10:39 +0000 (11:10 -0500)]
Update git submodules
* Update kubernetes/aai from branch 'master'
to
69f85c4ba9f621e5f5172c0dd637048fe7ef3cfd
- Update charts for released containers
Issue-ID: AAI-2763
Change-Id: Ie005febc51040e1dd7fffb104171ee1ee2ccdd98
Signed-off-by: Forsyth, James (jf2512) <jf2512@att.com>
Sylvain Desbureaux [Thu, 23 Jan 2020 12:17:31 +0000 (12:17 +0000)]
Merge "[COMMON] Add missing ! in db_init.sh script"
Sylvain Desbureaux [Thu, 23 Jan 2020 10:45:43 +0000 (11:45 +0100)]
[COMMON] Fix PV/PVC for postgres
When creating https://gerrit.onap.org/r/c/oom/+/99478, forgot to
backport storage class part of https://gerrit.onap.org/r/c/oom/+/98962.
Issue-ID: OOM-2234
Issue-ID: OOM-1227
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Change-Id: I3c42b28ad5bea67eda004b0209c8a21783b539f1
Sylvain Desbureaux [Thu, 23 Jan 2020 10:29:00 +0000 (11:29 +0100)]
[AAF] Fix PVC for sshsm
https://gerrit.onap.org/r/c/oom/+/98938 forgot to remove selectors for
PVC and prevent it to work with storage class.
Issue-ID: OOM-1227
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Change-Id: Ieb45ecbe8c046d6c3bc72e47776df3c9d64de2e5
Lucjan Bryndza [Tue, 21 Jan 2020 10:17:04 +0000 (11:17 +0100)]
Add override flag to the ingress template
Issue-ID: OOM-2267
Change-Id: I0ee8b3bc35d5f71dda6322b35766b3dec105b9c0
Signed-off-by: Lucjan Bryndza <l.bryndza@samsung.com>
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Krzysztof Opasiak [Wed, 22 Jan 2020 15:22:18 +0000 (16:22 +0100)]
[COMMON] Add missing ! in db_init.sh script
For some reason unknown to me I was stupid enough to forget to
put ! in a front of variable name in the final vesion of script.
Let's just quickly fix that so that not too many people notice;)
Issue-ID: OOM-2248
Change-Id: I0b8891b94856b21f4b1fad1d6731c461bae2c1aa
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>
Sylvain Desbureaux [Wed, 22 Jan 2020 14:30:46 +0000 (16:30 +0200)]
Update git submodules
* Update kubernetes/robot from branch 'master'
to
4bd799e5dbcbf2131a685bf73319e962ace86f5c
- Move Storage access to RWO
Today when deploying Robot with OOM, the PersistentVolumeClaim needs the
"ReadWriteMany" (or "RWX") capability.
According to Kubernetes Documentation (https://kubernetes.io/docs/concepts/storage/persistent-volumes/#access-modes),
ReadWriteMany stands for "the volume can be mounted as read-write by many nodes".
That means that a particular PVC needs to be read and written from many pods.
That also means that your code takes that into account and do the work to avoid
write at the same place at the same time.
An issue on RWX mode is that most "official" storage driver from Kubernetes doesn't
support it (13 over the 19 drivers doesn't support it, espacially OpenStack, Amazon
and Google storage classes).
Robot PVC is used only for one Robot instance. Thus we don't need RWX.
Issue-ID: INT-1230
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Change-Id: I300e34a9d4be40b36153812d2a99c458cae6b2c9
Sylvain Desbureaux [Wed, 22 Jan 2020 12:24:44 +0000 (12:24 +0000)]
Merge "aaf auto cert generation"
Vijay Venkatesh Kumar [Tue, 21 Jan 2020 21:06:32 +0000 (21:06 +0000)]
redis config optimization
- replication count set to 3
- removing nodeport
Change-Id: Ie3431c59ffdd44f207eddfbc013ab4fc3f6ed5f9
Signed-off-by: Vijay Venkatesh Kumar <vv770d@att.com>
Issue-ID: DCAEGEN2-1720
Issue-ID: OJSI-187
Agarwal, Ruchira (ra1926) [Tue, 1 Oct 2019 17:36:24 +0000 (17:36 +0000)]
aaf auto cert generation
Add support for AAF init container for config and cert generation
Issue-ID: SDNC-755
Signed-off-by: Agarwal, Ruchira (ra1926) <ra1926@att.com>
Change-Id: I06ee7921b6dbb1b4b9ca64cf276a374256af3a45
Signed-off-by: Agarwal, Ruchira (ra1926) <ra1926@att.com>
Sylvain Desbureaux [Tue, 21 Jan 2020 14:22:21 +0000 (14:22 +0000)]
Merge "Add CDS application properties for custom headers for aai calls"
Sylvain Desbureaux [Tue, 21 Jan 2020 08:19:44 +0000 (08:19 +0000)]
Merge "[COMMON] Improve mariadb-init job script"
Sylvain Desbureaux [Tue, 21 Jan 2020 08:17:31 +0000 (08:17 +0000)]
Merge "Update SO-VNFM-Adapter override.yaml for ETSI"
Mike Elliott [Mon, 20 Jan 2020 18:09:47 +0000 (18:09 +0000)]
Merge "[COMMON] Use deployment for postgresql"
Daniel Rose [Mon, 20 Jan 2020 17:53:30 +0000 (17:53 +0000)]
Update git submodules
* Update kubernetes/robot from branch 'master'
to
80a8b8c11d94af39ed26701dc10f2d3fc9e9a042
- Merge "Add ingress controler support to ROBOT"
- Add ingress controler support to ROBOT
Issue-ID: OOM-2186
Signed-off-by: Lucjan Bryndza <l.bryndza@samsung.com>
Change-Id: Id6b6f6d1a5d9ea83f73b914509098f7711a6418a
James Forsyth [Fri, 17 Jan 2020 16:13:50 +0000 (16:13 +0000)]
Update git submodules
* Update kubernetes/aai from branch 'master'
to
c8663688eb2755ca5adc4f570c7acf76b6f9a077
- Merge "Remove the usage of uuidv4 since it was causing the deployment to change at every "helm deploy" causing AAI ha proxy pod to restart and cause AAI outage."
- Remove the usage of uuidv4 since it was causing the deployment
to change at every "helm deploy" causing AAI ha proxy
pod to restart and cause AAI outage.
Issue-ID: OOM-2226
Signed-off-by: Sebastien Premont-Tendland <sebastien.premont@bell.ca>
Change-Id: I03aa47240251fe182ecd841a99a9b99a20c88d65
Brian Freeman [Fri, 17 Jan 2020 15:49:23 +0000 (10:49 -0500)]
Add VID to onap-vfw overrides
Issue-ID: OOM-2266
Change-Id: I0c571c765cb099b1f2e7886bc686e24a436f290e
Signed-off-by: Brian Freeman <bf1936@att.com>
rajendrajaiswal [Fri, 17 Jan 2020 14:24:29 +0000 (14:24 +0000)]
Update git submodules
* Update kubernetes/robot from branch 'master'
to
ff678657c0fa534840d063131432e1994829f660
- Update DCAE username and password
Change-Id: I575be45bbbd2c53a897eac87f303e45cc2fce976
Issue-ID: INT-1375
Signed-off-by: rajendrajaiswal <rajendra.jaiswal@ericsson.com>
dfx1971 [Thu, 16 Jan 2020 07:55:27 +0000 (09:55 +0200)]
OOM-2261 readiness-check does not track DaemonSet
Issue-ID: OOM-2261
Signed-off-by: Avi Ziv<avi.ziv@amdocs.com>
Change-Id: I7f220f8b6b64165c33ed8d707834091240136199
Signed-off-by: Avi Ziv<avi.ziv@amdocs.com>
Change-Id: I7f220f8b6b64165c33ed8d707834091240136199
Sylvain Desbureaux [Wed, 15 Jan 2020 15:30:30 +0000 (15:30 +0000)]
Merge "Add ingress controler support to APPC"
rope252 [Thu, 2 Jan 2020 11:03:59 +0000 (11:03 +0000)]
Update SO-VNFM-Adapter override.yaml for ETSI
Change-Id: I6b99ccf9bd50d2ec50693df9d4122417b22bcf7a
Issue-ID: SO-2575
Signed-off-by: rope252 <gareth.roper@est.tech>
Sylvain Desbureaux [Mon, 13 Jan 2020 16:35:04 +0000 (17:35 +0100)]
[Contrib] Force version on AWX
As latest are buggy
Change-Id: I8bad9075bc7f4cbcb4bd8274bfbef3d24b15f843
Issue-ID: OOM-2260
Signed-off-by: Sylvain Desbureaux <sylvain.desbureaux@orange.com>
Harish Venkata Kajur [Mon, 13 Jan 2020 14:48:40 +0000 (09:48 -0500)]
Update git submodules
* Update kubernetes/aai from branch 'master'
to
d801a6ee395220b11bfac773c3111489282e735c
- Use the frankfurt release data router image
Issue-ID: AAI-2727
Change-Id: I85fc2b830156e913abc845b91348990ff2127b20
Signed-off-by: Harish Venkata Kajur <vk250x@att.com>
Krzysztof Opasiak [Wed, 8 Jan 2020 17:35:44 +0000 (18:35 +0100)]
[COMMON] Improve mariadb-init job script
Replace two sets of commands with a simple loop.
Issue-ID: OOM-2248
Change-Id: I83a748cdad256e7206310d45a987530b4acc621b
Signed-off-by: Krzysztof Opasiak <k.opasiak@samsung.com>