Sven Ketelsen
|
55ebe36758
|
MOB-102: office 365 email account (QA/PROD)
|
4 years ago |
friedrich goerz
|
8180523963
|
DEV-480: decrease prometheus retention time for DEV-stage
|
4 years ago |
friedrich goerz
|
ebf2d41e48
|
DEV-473: changed custom metric queries to reduce messages in error.log
|
4 years ago |
Görz, Friedrich
|
1c5b1c44dd
|
DEV-391: fix merge problems + fixing linter problems
|
4 years ago |
Sven Ketelsen
|
05ccebc851
|
feat: added initial password creation to portal
- randomize passwords according to password policies
2 Uppercase Characters
2 Lowercase Characters
2 Special Characters
1 Digits
|
4 years ago |
Sven Ketelsen
|
00ca2bc3f1
|
feat: added initial password creation to portal
- randomize passwords according to password policies
2 Uppercase Characters
2 Lowercase Characters
2 Special Characters
1 Digits
|
4 years ago |
Ketelsen, Sven
|
8c69471639
|
DEV-477 bugfix: delete wordpress database when service is deleted by portal
|
4 years ago |
Görz, Friedrich
|
0eac3f3d3c
|
DEV-429: mariadb upgrade
|
4 years ago |
Sven Ketelsen
|
06a395855b
|
feat: argo-cd
- activated json logging
- disabled application set controller
|
4 years ago |
Sven Ketelsen
|
25bd87846c
|
feat: kibana - default index patterns
- uncategorized-*
- {{ stage }}-*-authlog-*
- {{ stage }}-*-syslog-*
- {{ stage }}-monitoring-*
- {{ stage }}-management-*-connect-*
|
4 years ago |
friedrich goerz
|
0d5976898a
|
NOTICKET: corrected bloody typo
|
4 years ago |
Görz, Friedrich
|
4bf4167216
|
DEV-386: to use techn.user to scrape metrics for ssh-root-login
|
4 years ago |
Michael Hähnel
|
ff9c0d94a1
|
Extended Monitoring/Alerting for PostgreSQL
|
4 years ago |
Sven Ketelsen
|
acee683569
|
feat: added workflow heatmap flag to portal
- SMA_WORKFLOW_HEATMAP_ENABLED: [false]|true
|
4 years ago |
friedrich goerz
|
5d1b951f39
|
DEV-466: added missing but needed package
|
4 years ago |
friedrich goerz
|
0fe89b4985
|
DEV-452: tried to fix some stuff
|
4 years ago |
friedrich goerz
|
0c8bfdb3d9
|
DEV-452: tried to fix some stuff
|
4 years ago |
friedrich goerz
|
a3bf98465a
|
DEV-452: added workaround to fix problem with missing hetzner internal network
|
4 years ago |
friedrich goerz
|
cd09b5bb5e
|
DEV-452: added workaround to fix problem with missing hetzner internal network
|
4 years ago |
friedrich goerz
|
f7a43f5981
|
DEV-452: added workaround to fix problem with missing hetzner internal network
|
4 years ago |
friedrich goerz
|
31e79f7ee6
|
DEV-452: added DEBUG statements to get more information in case of problems
|
4 years ago |
friedrich goerz
|
5ce99dbb58
|
DEV-452: pimped recursive _set_server_state.yml - bugfixed
|
4 years ago |
Görz, Friedrich
|
37ca359842
|
DEv-452: added recursive _set_server_state.yml to work around hetzners...
|
4 years ago |
Sven Ketelsen
|
c4a7359e6c
|
chore: added argo-cd projects
- bootstrap
- kube-system
- infrastructure
|
4 years ago |
Sven Ketelsen
|
104ede597d
|
chore: removed stage prefix from pull secret (namespace)
|
4 years ago |
Sven Ketelsen
|
ae1e2854dc
|
chore: removed stage prefix from pull secret (namespace)
|
4 years ago |
Ketelsen, Sven
|
60a6c73be6
|
DEV-424 export for wordpress database (maria)
|
4 years ago |
friedrich goerz
|
dac7002ad9
|
DEV-452: added potential fixes for our hetzner create_server - is locked/message problem
|
4 years ago |
Sven Ketelsen
|
fff42dea2c
|
chore: removed ignore_errors due to a bug in smardigo
|
4 years ago |
Görz, Friedrich
|
b4937db87a
|
DEV-375: bugfix to run stuff for testdb only when is set
|
4 years ago |
Sven Ketelsen
|
750b109b54
|
chore: added ignore_errors due to a bug in smardigo
|
4 years ago |
Sven Ketelsen
|
ad80ceeaaa
|
SMARCH-126: bootstrap argocd with argocd
|
4 years ago |
Sven Ketelsen
|
20c745eeb4
|
SMARCH-126: bootstrap argocd with argocd
|
4 years ago |
Sven Ketelsen
|
80c94ef184
|
SMARCH-126: bootstrap argocd with argocd
|
4 years ago |
Ketelsen, Sven
|
8923ab7574
|
SMARCH-126: Bootstrap ArgoCD by ArgoCD
|
4 years ago |
Görz, Friedrich
|
315bee648d
|
DEV-439: removed leftovers from mariadb-transport-encyrption
|
4 years ago |
Görz, Friedrich
|
f0eab6d3ae
|
DEv-421: refactored installation for postgres-exporter + installed newer...
|
4 years ago |
friedrich goerz
|
f4c97a9a04
|
DEV-432: ansible stuff to change ssh ciphers on serverside + added new ssh key for fgoerz
|
4 years ago |
friedrich goerz
|
819a658e50
|
DEV-422: mariadb deactivate ssl stuff to ensure stable smardigo-ENV
|
4 years ago |
friedrich goerz
|
ea2e31cd27
|
DEV-383: fixing bug
|
4 years ago |
Görz, Friedrich
|
62e0a64f26
|
DEV-414: follow-up tasks prod@hetzner-incident
|
4 years ago |
Görz, Friedrich
|
49fc416764
|
DEV-382: enable SSL for postgres-connections
|
4 years ago |
Sven Ketelsen
|
d99c9001bf
|
DEV-383: enable SSL for mariadb-connections
|
4 years ago |
friedrich goerz
|
7d7dbcf622
|
NOTICKET: hetzner bugfix
|
4 years ago |
friedrich goerz
|
fc5745eac2
|
NOTICKET: fix broken playbook due to renamed yml file
|
4 years ago |
Sven Ketelsen
|
fe66a12c6e
|
bugfix: typo
|
4 years ago |
Sven Ketelsen
|
5a728d97be
|
bugfix: typo
|
4 years ago |
Görz, Friedrich
|
6fbc3af3c4
|
DEV-374: implemented logical restore-test to check if restore was succussful
|
4 years ago |
Görz, Friedrich
|
43da648df6
|
DEV-389: added gpg-decryption for backup
|
4 years ago |
Görz, Friedrich
|
0c9042da83
|
DEV-373: try to automate restore from database backup
|
4 years ago |
Sven Ketelsen
|
80b321cd65
|
DEV-375 feat: new process for backup scheduling
|
4 years ago |
Sven Ketelsen
|
49aa913213
|
bugfix: backup runs with gather_facts: false
|
4 years ago |
Sven Ketelsen
|
1ee340fdd3
|
bugfix: added awx templates
- create-remote-database-backup
|
4 years ago |
Sven Ketelsen
|
5733b20dc3
|
bugfix: server creation was broken due to backupuser
|
4 years ago |
Sven Ketelsen
|
42f0ae114a
|
DEV-273 added branch to rollout for stages
- master/main -> DEV
- qa -> QA
- prodnso -> PRODNSO
|
4 years ago |
Sven Ketelsen
|
6394d9150c
|
bugfix: awx uses now own user for automation
|
4 years ago |
Sven Ketelsen
|
92c11ecef4
|
bugfix: ansible user for awx
|
4 years ago |
Sven Ketelsen
|
81d9923332
|
bugfix: updated ssh key configuration
- + peter.heise
- + gitlabci
- - ansible
- added date suffix to outdated ssh keys
- updating root ssh key is now active per default
|
4 years ago |
Ketelsen, Sven
|
e17c62f81e
|
DEV-371: added stuff to do remote backup
|
4 years ago |
Sven Ketelsen
|
9d5105f764
|
feat: updated awx-operator/awx
- extracted argocd revision into variable
- on dev stage revision is main
- default revision is <stage> (qa, prodnso, ...)
|
4 years ago |
Ketelsen, Sven
|
30c2e8f45a
|
DEV-379: bugfix: k9s is not installed on kube control plane
|
4 years ago |
Görz, Friedrich
|
ac8998f212
|
DEV-273: automate rollout ansible by gitlab
|
4 years ago |
friedrich goerz
|
4b8a80a4ef
|
DEV-309: added keycloak PW-policy stuff
|
4 years ago |
friedrich goerz
|
2b86dfc20c
|
DEV-308: fixed user keycloak interaction stuff for some technical users
|
4 years ago |
Görz, Friedrich
|
ea2ef949c9
|
DEV-360: rollout k8s on prodnso
|
4 years ago |
Sven Ketelsen
|
7c891e472c
|
feat: activated jaeger traecing on dev
- traefik
- connect
- iam
|
4 years ago |
Sven Ketelsen
|
4b74d64949
|
review: added changes discussed with fgrz
|
4 years ago |
Sven Ketelsen
|
45a6d3c90b
|
bugfix: filter k8s execution to first master node
|
4 years ago |
Ketelsen, Sven
|
74e4174826
|
SMAR-21: feat: added jaeger tracing
|
4 years ago |
Ketelsen, Sven
|
65df2886e3
|
DEV-359: feat: added jaeger-operator/jaeger
|
4 years ago |
Sven Ketelsen
|
bd6fb2f189
|
DEV-341: cleanup after merge
- removed shared_service_awx_hostname
|
4 years ago |
Görz, Friedrich
|
c732ab8eb3
|
DEV-341: tried to implement review critics
|
4 years ago |
Sven Ketelsen
|
df8a544a3a
|
cleanup
|
4 years ago |
Sven Ketelsen
|
4a62bf9813
|
bugfix: keycloak clients for connect
- redirect_uris are broken
- web_origins are broken
|
4 years ago |
Sven Ketelsen
|
a5ff2d53c9
|
bugfix: rollout new kubernetes cluster
|
4 years ago |
Sven Ketelsen
|
243aa4c584
|
bugfix: downgraded grafana version to 8.3.5
- 8.4.1 is not backwards compatible
|
4 years ago |
Sven Ketelsen
|
1031348887
|
feat updated prometheus/grafana
|
4 years ago |
Sven Ketelsen
|
af4341f571
|
bugfix: gitea metrics endpoint is now enabled by default
|
4 years ago |
Sven Ketelsen
|
8b885a30b7
|
bugfix: patchay was broken due to missing pip dependency
- kubernetes
|
4 years ago |
Sven Ketelsen
|
d8acf8b894
|
consolidation: renamed hetzner-ansible project on gitea
- gitea-admin/hetzner-ansible-copy.git
gitea-admin/hetzner-ansible.git
|
4 years ago |
Sven Ketelsen
|
211039f7e6
|
bugfix: kubernetes deployment without root user and global become
|
4 years ago |
Ketelsen, Sven
|
5d604700dd
|
DEV-319: feat: split dev/qa into own hetzner projects
|
4 years ago |
Görz, Friedrich
|
b24ab2e823
|
DEV-326: added stuff to configure AWX installation
|
4 years ago |
Sven Ketelsen
|
39c4ee6eb0
|
bugfix: removed hard coded staged service (dev)
|
4 years ago |
friedrich goerz
|
9b7ce348eb
|
DEV-323: added some stuff
|
4 years ago |
Sven Ketelsen
|
199e49432c
|
bugfix: connect uses now netgo_msteams_hook_cd as connection
- <CI/CD> vs. <Alerting {{ stage }}> channel
|
4 years ago |
Sven Ketelsen
|
aa09887b9e
|
feat: rollout new tokens/passwords for qa stage
|
4 years ago |
Sven Ketelsen
|
9c7cdfd24b
|
feat: rollout new tokens/passwords for dev stage
|
4 years ago |
friedrich goerz
|
7bd1a1436b
|
DEv-323: try to fix merge-conflict
|
4 years ago |
Sven Ketelsen
|
68bde6085e
|
DEV-322: enable ApplicationSet CRD for argoCD
- added mechanism to apply defined argocd CRD-objects
|
4 years ago |
Görz, Friedrich
|
5fc9e3233a
|
DEV-322: enable ApplicationSet CRD for argoCD; added mechanism to apply defined argocd CRD-objects
|
4 years ago |
Görz, Friedrich
|
59a409fc32
|
DEV-342: added patchday playbook
|
4 years ago |
friedrich goerz
|
78d2661c4a
|
DEV-339: added anti-affinity-rule to improve distribution of ingress-controller pods
|
4 years ago |
Sven Ketelsen
|
11352747b2
|
feat: added connect feature to portal
- webdav
- resubmission
- element_template
- config_delete_Scope
- external_tasks_script_worker
|
4 years ago |
Ketelsen, Sven
|
1e2dfc3212
|
SMARCH-112 feat: read docker images directly from harbor
|
4 years ago |
friedrich goerz
|
46e021d22c
|
DEV-327: added several stuff for new prodnso-stage + bugfixing and improving other stuff
|
4 years ago |
Sven Ketelsen
|
b33fbc3f55
|
cleanup: removed empty handler/meta files
|
4 years ago |
Sven Ketelsen
|
cdd9c2543a
|
cleanup: removed vault for group/all > moved to stage groups
- every stage has now its own vault file
|
4 years ago |
Sven Ketelsen
|
190b8394eb
|
feat: added metricbeat (inactive)
|
4 years ago |
Sven Ketelsen
|
6bd573ec24
|
bugifx: create docker networks only when docker_enabled
|
4 years ago |