Re: OOM 3.0.2-ONAP: PolicyPKIX path validation failed #oom #policy


jkzcristiano
 

Dear Jorge,

thank you for your reply.

I was actually trying to follow your wiki here to disable AAF support for Policy. However, none of the two methods seemed to work:

Before deploying policy service:
I updated the file in ~/oom/kubernetes/policy/charts/drools/resources/config/opt/policy/config/drools/base.conf 

...
# AAF
 
AAF=false
AAF_NAMESPACE=org.onap.policy
AAF_HOST=aaf-locate.{{.Release.Namespace}}
...

Unfortunately, after make all; make onap; helm deploy it does not seem to change anything.

If I try the option of updating policy service when it is already running (and AAF=true in base.conf), I cannot find the entries you mention in the wiki:

ubuntu@rancher:~/oom/kubernetes$ POD=$(kubectl --namespace onap get pods | sed 's/ .*//'| grep drools); kubectl exec -it ${POD} -n onap -- bash
 
policy@dev-policy-drools-0:/tmp/policy-install$
policy@dev-policy-drools-0:/tmp/policy-install$
policy@dev-policy-drools-0:/tmp/policy-install$
policy@dev-policy-drools-0:/tmp/policy-install$
policy@dev-policy-drools-0:/tmp/policy-install$
policy@dev-policy-drools-0:/tmp/policy-install$ ls

README.controlloop.apps.txt
README.controlloop.artifacts.txt
apps-controlloop-installer
apps-controlloop.zip
artifacts-controlloop-1.3.7.zip
base-1.3.7.tar.gz
base.conf
basex-controlloop-1.3.7.tar.gz
config
do-start.sh
docker-install.sh
feature-active-standby-management-1.3.7.zip
feature-controlloop-amsterdam-1.3.7.zip
feature-controlloop-casablanca-1.3.7.zip
feature-controlloop-trans-1.3.7.zip
feature-controlloop-utils-1.3.7.zip
feature-distributed-locking-1.3.7.zip
feature-eelf-1.3.7.zip
feature-healthcheck-1.3.7.zip
feature-healthcheck.conf
feature-pooling-dmaap-1.3.7.zip
feature-pooling-dmaap.conf
feature-session-persistence-1.3.7.zip
feature-state-management-1.3.7.zip
feature-test-transaction-1.3.7.zip
install.log.20190617-113359
policy-management-1.3.7.zip
policy-management.conf
wait-for-port.sh
wait_logback.log

policy@dev-policy-drools-0:/tmp/policy-install$
policy@dev-policy-drools-0:/tmp/policy-install$
policy@dev-policy-drools-0:/tmp/policy-install$ cd config/
policy@dev-policy-drools-0:/tmp/policy-install/config$
policy@dev-policy-drools-0:/tmp/policy-install/config$

policy@dev-policy-drools-0:/tmp/policy-install/config$ ls
apps-install.sh       drools-tweaks.sh            policy-management.conf
base.conf             feature-healthcheck.conf
drools-preinstall.sh  feature-pooling-dmaap.conf

policy@dev-policy-drools-0:/tmp/policy-install/config$
policy@dev-policy-drools-0:/tmp/policy-install/config$
policy@dev-policy-drools-0:/tmp/policy-install/config$ grep -r * -e '.aaf=true'

# cannot find any file with entries:
http.server.services.SECURED-CONFIG.aaf=false
or
http.server.services.HEALTHCHECK.aaf=false

I also tried to disable AAF for MR as it is shown in this wiki but it doesn't seem to work either :S

Do you know root password of drools container?

policy@dev-policy-drools-0:/tmp/policy-install$ sudo su
[sudo] password for policy:
Sorry, try again.
[sudo] password for policy:

Hope DMaap people can provide some help!

Kind regards Jorge,
Xoan
 

Join onap-discuss@lists.onap.org to automatically receive all group messages.