1 # Copyright © 2019 Amdocs, Bell Canada
3 # Licensed under the Apache License, Version 2.0 (the "License");
4 # you may not use this file except in compliance with the License.
5 # You may obtain a copy of the License at
7 # http://www.apache.org/licenses/LICENSE-2.0
9 # Unless required by applicable law or agreed to in writing, software
10 # distributed under the License is distributed on an "AS IS" BASIS,
11 # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12 # See the License for the specific language governing permissions and
13 # limitations under the License.
15 #################################################################
16 # Global configuration overrides.
18 # These overrides will affect all helm charts (ie. applications)
19 # that are listed below and are 'enabled'.
20 #################################################################
22 # Change to an unused port prefix range to prevent port conflicts
23 # with other instances running within the same k8s cluster
25 nodePortPrefixExt: 304
28 # Install test components
29 # test components are out of the scope of ONAP but allow to have a entire
30 # environment to test the different features of ONAP
31 # Current tests environments provided:
32 # - netbox (needed for CDS IPAM)
33 # - AWX (needed for XXX)
34 # - EJBCA Server (needed for CMPv2 tests)
35 # Today, "contrib" chart that hosting these components must also be enabled
36 # in order to make it work. So `contrib.enabled` must have the same value than
37 # addTestingComponents
38 addTestingComponents: &testing false
41 # Uncomment the following to enable the use of a single docker
42 # repository but ONLY if your repository mirrors all ONAP
43 # docker images. This includes all images from dockerhub and
44 # any other repository that hosts images for ONAP components.
45 #repository: nexus3.onap.org:10001
49 dockerHubRepository: docker.io
52 readinessImage: onap/oom/readiness:3.0.1
55 curlImage: curlimages/curl:7.69.1
57 # logging agent - temporary repo until images migrated to nexus3
58 loggingRepository: docker.elastic.co
60 # dockerHub main repository
61 dockerHubRepository: docker.io
63 # busybox repo and image
64 busyboxRepository: docker.io
65 busyboxImage: busybox:1.30
68 kubectlImage: "bitnami/kubectl:1.15"
74 # {{ template "common.fullname" . }}.{{ template "common.namespace" . }}.svc.{{ .Values.global.clusterName }}
75 clusterName: cluster.local
77 # default mount path root directory referenced
78 # by persistent volumes and log files
80 mountPath: /dockerdata-nfs
81 enableDefaultStorageclass: false
83 storageclassProvisioner: kubernetes.io/no-provisioner
84 volumeReclaimPolicy: Retain
86 # override default resource limit flavor for all charts
89 # flag to enable debugging - application support required
92 # configuration to set log level to all components (the one that are using
93 # "common.log.level" to set this)
94 # can be overrided per components by setting logConfiguration.logLevelOverride
95 # to the desired value
98 #Global ingress configuration
103 baseurl: "simpledemo.onap.org"
105 # Global Service Mesh configuration
106 # POC Mode, don't use it in production
112 # POC Mode, only for use in development environment
113 # Keep it enabled in production
115 aafAgentImage: onap/aaf/aaf_agent:2.1.20
121 image: onap/org.onap.aaf.certservice.aaf-certservice-client:1.2.0
123 name: aaf-cert-service-client-tls-secret
124 mountPath: /etc/onap/aaf/certservice/certs/
126 # Certificate related
127 cmpv2Organization: "Linux-Foundation"
128 cmpv2OrganizationalUnit: "ONAP"
129 cmpv2Location: "San-Francisco"
130 cmpv2State: "California"
132 # Client configuration related
134 requestURL: "https://aaf-cert-service:8443/v1/certificate/"
135 requestTimeout: "30000"
136 keystorePath: "/etc/onap/aaf/certservice/certs/certServiceClient-keystore.jks"
137 keystorePassword: "secret"
138 truststorePath: "/etc/onap/aaf/certservice/certs/truststore.jks"
139 truststorePassword: "secret"
142 # Set to false if you want to disable TLS for NodePorts. Be aware that this
143 # will loosen your security.
144 # if set this element will force or not tls even if serviceMesh.tls is set.
148 # Currently, centralized logging is not in best shape so it's disabled by
150 centralizedLoggingEnabled: ¢ralizedLogging false
153 # Example of specific for the components where you want to disable TLS only for
155 # if set this element will force or not tls even if global.serviceMesh.tls and
156 # global.tlsEnabled is set otherwise.
160 # Global storage configuration
161 # Set to "-" for default, or with the name of the storage class
162 # Please note that if you use AAF, CDS, SDC, Netbox or Robot, you need a
163 # storageclass with RWX capabilities (or set specific configuration for these
168 # Example of specific for the components which requires RWX:
171 # storageClassOverride: "My_RWX_Storage_Class"
176 # storageClassOverride: "My_RWX_Storage_Class"
178 # cds-blueprints-processor:
180 # storageClassOverride: "My_RWX_Storage_Class"
184 # storageClassOverride: "My_RWX_Storage_Class"
186 #################################################################
187 # Enable/disable and configure helm charts (ie. applications)
188 # to customize the ONAP deployment.
189 #################################################################
197 openStackType: OpenStackProvider
198 openStackName: OpenStack
199 openStackKeyStoneUrl: http://localhost:8181/apidoc/explorer/index.html
200 openStackServiceTenantName: default
201 openStackDomain: default
202 openStackUserName: admin
203 openStackEncryptedPassword: admin
214 # Today, "contrib" chart that hosting these components must also be enabled
215 # in order to make it work. So `contrib.enabled` must have the same value than
216 # addTestingComponents
229 # Today, "logging" chart that perform the central part of logging must also be
230 # enabled in order to make it work. So `logging.enabled` must have the same
231 # value than centralizedLoggingEnabled
233 enabled: *centralizedLogging
247 # openstack configuration
248 openStackRegion: "Yolo"
249 openStackVNFTenantId: "1234"
259 # openStackEncryptedPasswordHere should match the encrypted string used in SO and APPC and overridden per environment
260 openStackEncryptedPasswordHere: "c124921a3a0efbe579782cde8227681e"
276 # necessary to disable liveness probe when setting breakpoints
277 # in debugger so K8s doesn't restart unresponsive container
280 # so server configuration
282 # message router configuration
284 # openstack configuration
285 openStackUserName: "vnf_user"
286 openStackRegion: "RegionOne"
287 openStackKeyStoneUrl: "http://1.2.3.4:5000"
288 openStackServiceTenantName: "service"
289 openStackEncryptedPasswordHere: "c124921a3a0efbe579782cde8227681e"
291 # configure embedded mariadb
294 mariadbRootPassword: password