Hi Kavita, PODs might got up, but have you checked the communication happening between SO and AAI, which is actually affecting the Certificate expiry.
BR// Vishal Sharma From: [email protected] <[email protected]> On Behalf Of Kavitha Papanna via lists.onap.org Sent: 01 February 2022 14:50 To: [email protected]; Kavitha Papanna <[email protected]> Cc: [email protected] Subject: Re: [onap-discuss] AAI Certificate for earlier versions of ONAP #aai Hi All, We did the following steps , after which AAI pods were up and running successfully. 1. Downloaded aai_keystore file given in below ticket and copied this to oom/kubernetes/aai/resources/config/aai/aai_keystore https://gerrit.onap.org/r/c/oom/+/125633<https://aus01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fgerrit.onap.org%2Fr%2Fc%2Foom%2F%2B%2F125633&data=04%7C01%7CVishal.Sharma%40spark.co.nz%7C517b1276b4e2499586a608d9e5640097%7Cf6b3cec6a8624a409ab400d6e11e6f0f%7C0%7C0%7C637793040915338460%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=YUupI9bBSlZYKBGyaS1NuD5qQWdBmHj0jok80c3izCg%3D&reserved=0> 2. undeployed ONAP 3. Build the oom helm ~/oom/kubernetes $ make SKIP_LINT=TRUE all ~/oom/kubernetes $ make onap -e SKIP_LINT=TRUE 4. create onap namespace $ kubectl create namespace onap 5. Deploy onap using helm deploy Regards, Kavitha On Tue, Feb 1, 2022 at 9:09 AM Kavitha Papanna via lists.onap.org<https://aus01.safelinks.protection.outlook.com/?url=http%3A%2F%2Flists.onap.org%2F&data=04%7C01%7CVishal.Sharma%40spark.co.nz%7C517b1276b4e2499586a608d9e5640097%7Cf6b3cec6a8624a409ab400d6e11e6f0f%7C0%7C0%7C637793040915338460%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=%2FpMlbNeUt5pKdMC4PazuNslfv7iGIQHAUXaNQtGnRXo%3D&reserved=0> <[email protected]<mailto:[email protected]>> wrote: Hi All, We also have the same issue , AAI resource and Transversal pods are not coming up due to certificates Expired. I see there is only kubernetes/aai/resources/config/aai/aai_keystore uploaded into the ticket below , however no key files related to resources and Transversal. https://gerrit.onap.org/r/c/oom/+/125633<https://aus01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fgerrit.onap.org%2Fr%2Fc%2Foom%2F%2B%2F125633&data=04%7C01%7CVishal.Sharma%40spark.co.nz%7C517b1276b4e2499586a608d9e5640097%7Cf6b3cec6a8624a409ab400d6e11e6f0f%7C0%7C0%7C637793040915338460%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=YUupI9bBSlZYKBGyaS1NuD5qQWdBmHj0jok80c3izCg%3D&reserved=0> Please let us know if there are any documentation to generate this .keyfile and .p12 files for AAI components . Regards, Kavitha On Thu, Jan 27, 2022 at 10:17 PM ullaskumar_y via lists.onap.org<https://aus01.safelinks.protection.outlook.com/?url=http%3A%2F%2Flists.onap.org%2F&data=04%7C01%7CVishal.Sharma%40spark.co.nz%7C517b1276b4e2499586a608d9e5640097%7Cf6b3cec6a8624a409ab400d6e11e6f0f%7C0%7C0%7C637793040915338460%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000&sdata=%2FpMlbNeUt5pKdMC4PazuNslfv7iGIQHAUXaNQtGnRXo%3D&reserved=0> <[email protected]<mailto:[email protected]>> wrote: Hello All, Please let us know what is the way forward for certificate expiration in AAI. Are are any steps to create org.onap.aai.keyfile / org.onap.aai.p12 files ? Regards, Ullas This email, including any attachments, is confidential. If you have received this email in error, please let me know and then delete it - do not read, use, or distribute it or its contents. This email does not designate an information system for the purposes of the Contract and Commercial Law Act 2017. -=-=-=-=-=-=-=-=-=-=-=- Links: You receive all messages sent to this group. View/Reply Online (#23775): https://lists.onap.org/g/onap-discuss/message/23775 Mute This Topic: https://lists.onap.org/mt/88672513/21656 Mute #aai:https://lists.onap.org/g/onap-discuss/mutehashtag/aai Group Owner: [email protected] Unsubscribe: https://lists.onap.org/g/onap-discuss/unsub [[email protected]] -=-=-=-=-=-=-=-=-=-=-=-
