...
Code Block |
---|
# Keystore used to protect RestConf's REST API: collector.keystore.file.location: "/opt/app/restconfcollector/etc/sdnc.p12" collector.keystore.passwordfile: "/opt/app/restconfcollector/etc/passwordfile" # Seems this alias is used to lookup correct certificate from Keystore to proetect RestConf's REST API: collector.rcc.keystore.alias: "dynamically generated" # Keystore used to protect communication between RestConf collector and external controllers: collector.rcc.keystore.file.location: "/opt/app/restconfcollector/etc/keystore" collector.rcc.keystore.passwordfile: "/opt/app/restconfcollector/etc/rcc_passwordfile" # Truststore used to protect both external communications collector.rcc.truststore.file.location: "/opt/app/restconfcollector/etc/truststore.onap.client.jks" collector.rcc.truststore.passwordfile: "/opt/app/restconfcollector/etc/trustpasswordfile" |
Way forward
Blueprint generator
...
and K8s plugin
So, to implement goal of this feature, both: blueprint generator and K8s plugin must be enhanced to support following new blueprint properties in new external_cert section and configuration parameters stored in CBS listed in following table. Additionally only K8s plugin must be enhanced to support extra properties in K8s plugin configuration and configuration parameters stored in CBS listed in following table:
...