Skip to content

Commit 20001a0

Browse files
authored
chore: fjerner ubrukt konfig, fjerner systembruker innhenting, bytter til distroless. (#2630)
* chore: fjerner ubrukt konfig * chore: fjerner innhenting av systembruker, bytter til distroless image. * Rydder opp i test * chore: legger inn vault: true pga postgres * chore: fjerner unyttig devOnly flagg * chore: fjerner azure-token-generator siden AAP teamer har ikke behov for den lenger.
1 parent 18b0ab8 commit 20001a0

7 files changed

+3
-29
lines changed

.deploy/dev-fss-teamforeldrepenger.json

-1
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,6 @@
11
{
22
"environment": "dev",
33
"kafkaPool": "nav-dev",
4-
"serviceuserkv": "serviceuser/data/dev/srvfpabakus",
54
"minReplicas": "1",
65
"maxReplicas": "2",
76
"limits": {

.deploy/naiserator.yaml

-3
Original file line numberDiff line numberDiff line change
@@ -56,9 +56,6 @@ spec:
5656
- id: "elastic-apm"
5757
vault:
5858
enabled: true
59-
paths:
60-
- mountPath: /var/run/secrets/nais.io/serviceuser
61-
kvPath: {{serviceuserkv}}
6259
envFrom:
6360
- secret: fpabakus
6461
azure:

.deploy/prod-fss-teamforeldrepenger.json

-1
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,6 @@
11
{
22
"environment": "prod",
33
"kafkaPool": "nav-prod",
4-
"serviceuserkv": "serviceuser/data/prod/srvfpabakus",
54
"minReplicas": "2",
65
"maxReplicas": "6",
76
"limits": {

Dockerfile

+2-11
Original file line numberDiff line numberDiff line change
@@ -1,17 +1,8 @@
1-
FROM ghcr.io/navikt/fp-baseimages/java:21
1+
# Denne containeren kjører med en non-root bruker
2+
FROM ghcr.io/navikt/fp-baseimages/distroless:21
23

34
LABEL org.opencontainers.image.source=https://github.com/navikt/fp-abakus
4-
ENV TZ=Europe/Oslo
55

6-
RUN mkdir lib
7-
RUN mkdir conf
8-
9-
ENV JAVA_OPTS="-Djava.security.egd=file:/dev/urandom \
10-
-Dlogback.configurationFile=conf/logback.xml"
11-
12-
# Config
136
COPY web/target/classes/logback*.xml ./conf/
14-
15-
# Application Container (Jetty)
167
COPY web/target/lib/*.jar ./lib/
178
COPY web/target/app.jar ./

web/src/main/resources/application-prod-fss.properties

+1
Original file line numberDiff line numberDiff line change
@@ -5,6 +5,7 @@ aareg.rs.url=http://aareg-services-nais.arbeidsforhold/api/v1/arbeidstaker
55
aareg.scopes=api://prod-fss.arbeidsforhold.aareg-services-nais/.default
66
sigrunpgi.rs.url=http://sigrun.team-inntekt/api/v1/pensjonsgivendeinntektforfolketrygden
77
sigrunpgi.scopes=api://prod-fss.team-inntekt.sigrun/.default
8+
89
fpabakus.it.ps.scopes=api://prod-fss.k9saksbehandling.k9-infotrygd-grunnlag-paaroerende-sykdom/.default
910
fpabakus.it.sp.scopes=api://prod-fss.teamforeldrepenger.fp-infotrygd-sykepenger/.default
1011

web/src/main/resources/application.properties

-8
Original file line numberDiff line numberDiff line change
@@ -1,16 +1,8 @@
11
# Jetty
22
server.port=8080
33
context.path=/fpabakus
4-
application.name=fpabakus
5-
6-
azure.http.proxy=http://webproxy.nais:8088
7-
8-
# Systembruker
9-
# systembruker.username=<leses inn fra vault ved oppstart gjennom import-users.sh>
10-
# systembruker.password=<leses inn fra vault ved oppstart gjennom import-users.sh>
114

125
# Auditlogger
13-
auditlogger.enabled=true
146
auditlogger.vendor=Foreldrepenger
157
auditlogger.product=fpabakus
168

web/src/test/resources/application-vtp.properties

-5
Original file line numberDiff line numberDiff line change
@@ -1,12 +1,7 @@
11
# Jetty
22
server.port=8015
33

4-
# Systembruker
5-
systembruker.username=vtp
6-
systembruker.password=vtp
7-
84
## Sikkerhet
9-
105
# Azure
116
azure.app.well.known.url=http://localhost:8060/rest/azuread/.well-known/openid-configuration
127
azure.app.client.id=vtp

0 commit comments

Comments
 (0)