Hemanth Nakkina bd057784d5
Make keystone as certificate transfer provider
Add functionality to keystone to act as a
certificate transfer provider.
Add actions to add, remove, list CA certs
to keystone.
Add Certificate Transfer requires handler
in ops_sunbeam. Update keystone_auth section
cafile option if certificate is available
in receive-ca-cert relation.
Update metadata.yaml for keystone and rest of
k8s charms.

Change-Id: I9c800e8f8a0c9197b195331be7b445bafe794780
2024-02-14 17:10:28 +05:30
..
2024-01-27 14:29:40 +01:00
2023-09-15 08:18:59 +05:30
2023-11-30 15:32:39 +05:30
2023-09-29 10:41:04 +05:30
2023-09-15 08:18:59 +05:30
2023-10-11 11:29:51 +05:30
2023-11-30 15:32:39 +05:30

octavia-k8s

Description

octavia-k8s is an operator to manage the octavia services octavia api, octavia driver agent and octavia housekeeping on a Kubernetes based environment. This charm supports only Octavia OVN provider.

Usage

Deployment

octavia-k8s is deployed using below command:

juju deploy octavia-k8s octavia --trust

Now connect the octavia operator to existing database, keystone identity, ovn-central and certificates operators:

juju relate mysql:database octavia:database
juju relate keystone:identity-service octavia:identity-service
juju relate ovn-central:ovsdb-cms octavia:ovsdb-cms
juju relate self-signed-certificates:certificates octavia:certificates

Configuration

This section covers common and/or important configuration options. See file config.yaml for the full list of options, along with their descriptions and default values. See the Juju documentation for details on configuring applications.

Actions

This section covers Juju actions supported by the charm. Actions allow specific operations to be performed on a per-unit basis. To display action descriptions run juju actions octavia. If the charm is not deployed then see file actions.yaml.

Relations

octavia-k8s requires the following relations:

database: To connect to MySQL identity-service: To register endpoints in Keystone identity-ops: To register roles in Keystone (optional) ingress-internal: To expose service on underlying internal network ingress-public: To expose service on public network ovsdb-cms: To connect to OVN certificates: To retreive generated certificates

OCI Images

The charm by default uses following images:

ghcr.io/canonical/octavia-consolidated:2023.2

Contributing

Please see the Juju SDK docs for guidelines on enhancements to this charm following best practice guidelines, and CONTRIBUTING.md for developer guidance.

Bugs

Please report bugs on Launchpad.