# Copyright © 2017 Amdocs, Bell Canada # # Licensed under the Apache License, Version 2.0 (the "License"); # you may not use this file except in compliance with the License. # You may obtain a copy of the License at # # http://www.apache.org/licenses/LICENSE-2.0 # # Unless required by applicable law or agreed to in writing, software # distributed under the License is distributed on an "AS IS" BASIS, # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. # See the License for the specific language governing permissions and # limitations under the License. apiVersion: extensions/v1beta1 kind: Deployment metadata: name: {{ include "common.fullname" . }} namespace: {{ include "common.namespace" . }} labels: app: {{ include "common.name" . }} chart: {{ .Chart.Name }}-{{ .Chart.Version | replace "+" "_" }} release: {{ .Release.Name }} heritage: {{ .Release.Service }} spec: replicas: {{ .Values.replicaCount }} template: metadata: labels: app: {{ include "common.name" . }} release: {{ .Release.Name }} spec: containers: - name: {{ include "common.name" . }} image: "{{ include "common.repository" . }}/{{ .Values.image }}" imagePullPolicy: {{ .Values.global.pullPolicy | default .Values.pullPolicy }} ports: - containerPort: {{ .Values.service.internalPort }} # disable liveness probe when breakpoints set in debugger # so K8s doesn't restart unresponsive container {{ if .Values.liveness.enabled }} livenessProbe: tcpSocket: port: {{ .Values.service.internalPort }} initialDelaySeconds: {{ .Values.liveness.initialDelaySeconds }} periodSeconds: {{ .Values.liveness.periodSeconds }} {{ end }} {{ if .Values.readiness.enabled }} readinessProbe: tcpSocket: port: {{ .Values.service.internalPort }} initialDelaySeconds: {{ .Values.readiness.initialDelaySeconds }} periodSeconds: {{ .Values.readiness.periodSeconds }} {{ end }} env: - name: APP_HOME value: "{{ .Values.config.appDir }}" - name: CONFIG_HOME value: "{{ .Values.config.configDir }}" - name: MAX_HEAP value: "{{ .Values.config.maxHeap }}" volumeMounts: - mountPath: /etc/localtime name: localtime readOnly: true - mountPath: {{ .Values.config.appDir }}/application.properties name: root-config-app-prop subPath: application.properties - mountPath: {{ .Values.config.configDir }}/ name: properties - mountPath: {{ .Values.config.configAuthDir }}/ name: config-auth - mountPath: {{ .Values.config.configTopicsDir }}/ name: config-topics resources: {{ toYaml .Values.resources | indent 12 }} {{- if .Values.nodeSelector }} nodeSelector: {{ toYaml .Values.nodeSelector | indent 10 }} {{- end -}} {{- if .Values.affinity }} affinity: {{ toYaml .Values.affinity | indent 10 }} {{- end }} volumes: - name: localtime hostPath: path: /etc/localtime - name: root-config-app-prop configMap: name: {{ include "common.fullname" . }}-root-config defaultMode: 0644 - name: properties configMap: name: {{ include "common.fullname" . }}-config-properties defaultMode: 0644 items: - key: validation-service.properties path: validation-service.properties - key: validation-service-auth.properties path: validation-service-auth.properties - key: rule-indexing.properties path: rule-indexing.properties - key: aai-environment.properties path: aai-environment.properties - key: schemaIngest.properties path: schemaIngest.properties - key: auth_policy.json path: auth_policy.json - name: config-auth secret: secretName: {{ include "common.fullname" . }}-config-auth-secret items: - key: tomcat_keystore path: tomcat_keystore - key: client-cert-onap.p12 path: client-cert-onap.p12 - name: config-topics configMap: name: {{ include "common.fullname" . }}-config-topics defaultMode: 0644 items: - key: topic-poa-audit-result.properties path: topic-poa-audit-result.properties - key: topic-poa-rule-validation.properties path: topic-poa-rule-validation.properties imagePullSecrets: - name: "{{ include "common.namespace" . }}-docker-registry-key"