Hoan To
969b4bb54e
Dev-997: provisioning galaxy role
3 years ago
Hoan To
2ad91fb877
DEV-974: added keycloak backup
3 years ago
friedrich goerz
7ad848df2e
DEV-985: bugfix commit - added missing escaped double quotes
3 years ago
Michael Hähnel
b9f753fa92
DEV-720 Recreate feature branch for new playbook
3 years ago
Görz, Friedrich
96da6ef83f
Feature/dev 962 es clsuter activehards alert
3 years ago
friedrich goerz
f42dc09f09
DEV-927: fixing problems
3 years ago
friedrich goerz
fc20866399
DEV-927: fixing ansible VAR for argocd-keycloak-integration
3 years ago
Hoan To
955a40448c
Feature/dev 930
3 years ago
Michael Hähnel
6b1fd778b5
Feature/dev 927
3 years ago
Sven Ketelsen
3edc177855
DEV-909 added configuration for connect/nsompm
3 years ago
Ketelsen, Sven
b73a8a4723
DEV-914 bugfix of regression from customer specific domains
3 years ago
Hoan To
ef8cb4f2fb
Dev-631: backup minio
3 years ago
Ketelsen, Sven
e4a391be7f
DEV-873 added custom node exporter polling for EXT stage
3 years ago
friedrich goerz
6e0ed8fcd6
DEV-876: pinned used helm chart version for ingress
3 years ago
Görz, Friedrich
cfd44dc938
DEV-830: removed pip-dependencty for debugigng purpose
3 years ago
friedrich goerz
2d8e7c84ef
DEV-831: inc. wal_keep_size to fix broken backup-process
3 years ago
Ketelsen, Sven
f1e7c4683a
DEV-844 bugfix increased dependency version
3 years ago
Ketelsen, Sven
c4e0e2201e
DEV-845 changed hetzner ingress/loadbalancer default config
3 years ago
friedrich goerz
8f0927c7ef
DEV-831: increase niceness for gpg and pigz process
3 years ago
Hoan To
7100fdf891
DEV-816: Added Volumes to Postgres Slave removed Volumes from Postgres Master
3 years ago
Görz, Friedrich
8a9e7bfee5
DEV-788: increased keycloak version - pimped dockercompose jinja template due...
3 years ago
Sven Ketelsen
d2b9312539
DEV-785 bugfix filter empty elements
3 years ago
friedrich goerz
10763a08be
NOTICKET: argocd loglevel decrease to WARN to reduce wasting argo logmessages
3 years ago
Hoan To
3cb0d8e01d
DEV-769: fixed typo for linter
3 years ago
Hoan To
4e82754c78
DEV-769: subtituted base_requirements_backup with lv_with_hetzner_volumes role
3 years ago
Görz, Friedrich
16b59b9d79
DEV-758: added new but needed envVAR
3 years ago
Michael Hähnel
76c7b4b628
DEV-679 New Role+Playbook for infrastructure realm
3 years ago
Ketelsen, Sven
a12c9c3973
DEV-735 updated default firewall rules
3 years ago
Sven Ketelsen
80bfb06f61
DEV-704 removed DEV-701 kernel fix task
3 years ago
friedrich goerz
ebcd915658
DEV-730: keylcoak integration - commit ins abentuerland
3 years ago
Görz, Friedrich
e1d05f5e81
DEV-721: exclude restore-servers from patchday - avoiding broken...
3 years ago
Hoan To
2fc032f047
DEV-701_kernel set to newest kernel
3 years ago
Michael Hähnel
212d889e1c
DEV-708 Added new time zone env var
3 years ago
Sven Ketelsen
07fc9c607e
DEV-601 bugfix kibana wasn't available after reboot
...
- wrong url for traefik label
- added domain entry creation
3 years ago
friedrich goerz
e922bfe258
NOTICKET: added stage label for better identifying of alerts
3 years ago
friedrich goerz
a4b58dd3c9
DEV-669: added IMPORTANT param to secret for private helm repo
3 years ago
Görz, Friedrich
2ef6773ed3
DEV-701: changed node-exporter installation from ubuntu-repo to...
3 years ago
Ketelsen, Sven
d72b6a3fda
DEV-700 pmci: bugfix for elastic search feature
3 years ago
friedrich goerz
8146179308
DEV-699: removed label, added assert-stmt for catching error
3 years ago
Hoan To
b21690184c
DEV-696: fix regression from DEV-628
3 years ago
Sven Ketelsen
3abcaeed5a
DEV-696 chore removed duplicated line
3 years ago
Ketelsen, Sven
d912762383
DEV-628 pmci: added spk bz prod configuration as host_vars file
3 years ago
Görz, Friedrich
2da1f1ee28
DEV-687 aachen ip hcloud fw
3 years ago
Sven Ketelsen
c9c09828bb
DEV-677 update hetzner firewall rules for new k8s worker node on dev
3 years ago
Sven Ketelsen
f90a83e80e
DEV-526 added pmci-callback playbook for testing purposes
...
- new pmci playbook api
3 years ago
friedrich goerz
e473c19792
DEV-606: added pruning
3 years ago
Sven Ketelsen
a7da70d1a0
DEV-526 added pmci-callback playbook for testing purposes
...
- new pmci playbook api
3 years ago
Sven Ketelsen
415ea47204
DEV-526 extended template with datasource-actions
3 years ago
Hoan To
1bbd04b131
DEV-533: added IP for aachen to whitelist and firewalls
3 years ago
Hoan To
8db347934f
DEV-479: added bruteforce detection to keycloak realm configuration
3 years ago
Sven Ketelsen
fbca9f1234
bugfix: keycloak/_configure_realm.yml: Could not create client Conflict
...
Removed management of field i. Same client_id in different realms isn't
possible due to database constraints for field id. Keyclloak uses now a
generated uuid.
3 years ago
Sven Ketelsen
954b961ab6
MA-2005 added new feature flag for datasource-action
3 years ago
Sven Ketelsen
16bee429de
DEV-666 added iam configuration for mpmexec
3 years ago
Sven Ketelsen
101f3e9005
DEV-666 added iam configuration for mpmexec
3 years ago
sven.ketelsen
5449de1de4
DEV-656 prepare rollout - moved docker cron job to role common
3 years ago
Ketelsen, Sven
8adf30109c
DEV-655 adjusted filebeat and logstash config
3 years ago
Ketelsen, Sven
e343b5f76e
DEV-647 added hetzner domain smardigo.dev
3 years ago
friedrich goerz
d5ae2fe00a
DEV-652: pinned argocd chart version
3 years ago
Ketelsen, Sven
0641e6b03a
DEV-646 skip docker network removal by nightly cron job
3 years ago
sven.ketelsen
ad6f470920
Revert "DEV-647 added hetzner domain smardigo.dev"
...
This reverts commit 0b7b2a0f01 .
3 years ago
Ketelsen, Sven
0b7b2a0f01
DEV-647 added hetzner domain smardigo.dev
3 years ago
Görz, Friedrich
a9c0e86f36
Revert "DEV-647 added hetzner domain smardigo.dev"
3 years ago
Ketelsen, Sven
7cdc602534
DEV-647 added hetzner domain smardigo.dev
3 years ago
Hoan To
8f4b884ba1
added bootstrap for prodwork01
3 years ago
Michael Hähnel
87a286dd60
DEV-624 New alert for failed db backups
3 years ago
friedrich goerz
89d11d1d06
NOTICKET: detected bug in failed rollout helm secret due to missing RBAC permissions
3 years ago
Michael Hähnel
43b77acefd
DEV-624 adjust mtime to find files older 48h
3 years ago
friedrich goerz
f873092498
DEV-624: bugfixed create-restore-backup stuff
3 years ago
Michael Hähnel
b9e48a3260
DEV-601 added playbook for bdev demo setup
3 years ago
Hoan To
593b1fb743
added volume to backup storage space
3 years ago
sven.ketelsen
c59cd4c715
DEV-579 add basic auth to prometheus stack
3 years ago
Ketelsen, Sven
db57bcb7ca
DEV-579 add basic auth to prometheus stack
3 years ago
Hoan To
b3d75c4da8
DEV-585: added new infrastructure project in harbor
3 years ago
friedrich goerz
664edd2d43
DEV-592: added stuff for argocd to enable helm sops decryption
3 years ago
Michael Haehnel
0b0cb3dd95
DEV-568: Decreased process priority and count of parallel processes for pg backup task
3 years ago
Ketelsen, Sven
ccdff552f1
DEV-596 playbook update-monitoring is broken
3 years ago
Hoan To
98c5f39c85
DEV-579: added prometheus basic auth
3 years ago
Ketelsen, Sven
f47c5dc345
DEV-578 investigation for hetzner api rate limits
3 years ago
Ketelsen, Sven
9919985e3d
DEV-593 updated versions
3 years ago
Görz, Friedrich
01049bf031
DEV-548: testcluster
3 years ago
friedrich goerz
bad109ad83
DEV-582: rollback prom2teamsd version due to problems during container start
3 years ago
friedrich goerz
0b1ef4f671
DEV-558: pinned helm chart version + adding some values for knative monitoring
3 years ago
Ketelsen, Sven
ac7285bbcf
DEV-572: alertmanager metrics
3 years ago
Hoan To
a49e2923d5
DEV-529: Dynamic shared memory type fix from posix to mmap
3 years ago
Hoan To
1a529cf787
DEV-553: added remove hcloud volumes at the end of restore playbook
3 years ago
friedrich goerz
9e6f28c62a
DEV-563: added hetzner dashboard + svennes dashboard + refactoring alert for hetzner_api_rate_limit
3 years ago
Görz, Friedrich
01c972771b
Rollout main=>qa 13.09.2022
3 years ago
Hoan To
d644293f9b
Dev 544 backup storage
3 years ago
Ketelsen, Sven
e6dddbe4c9
DEV 534: Added hetzner volume to prodnso-postgres-01 for /backups
3 years ago
Görz, Friedrich
ea79ce2a29
DEV-517: changed DO-token due to 'too many request' problem
3 years ago
Sven Ketelsen
4d8ea01578
DEV-507 process start from wordpress is broken
...
- after connect/wordpress update through the portal the
wordpress used a wrong useris in communication with
the connect backend
4 years ago
friedrich goerz
b1541dc747
DEV-497/DEV-505: changed startupprobe params for gitea
4 years ago
Philipp Eichhorn
ab5cba3c7c
SC-05: add devscr variables to create harbor-pull secret
4 years ago
Görz, Friedrich
beb013aca3
DEV-497: added stuff for gitea to for bootstrapping k8s-clsuter
4 years ago
Ketelsen, Sven
ca121933ea
DEV-503: bugfix: added missing configuration for harbor realm
4 years ago
Görz, Friedrich
c744eaa837
DEV-497: created new branch due to git-problems - dunno what exactly
4 years ago
Sven Ketelsen
41a065b048
bugfix: regression for etc/hosts update
...
- shouldn't run for non hcloud servers at all
when expression was wrongly negated
4 years ago
Sven Ketelsen
f00fdbe808
bugfix: fixed when expression (regression from DEV-492)
4 years ago
friedrich goerz
b23b571f79
DEV-492: fix /etc/hosts-issue for DO-VMs
4 years ago
friedrich goerz
9d418ccf11
DEV-476: consolidate dev-blackbox-01 on digitalocean platform
4 years ago
Sven Ketelsen
0186de2e94
feat: rollout certs on qa
4 years ago
Sven Ketelsen
acd2205aed
bugfix: removed variable k8s_namespace
...
- has to be set when a k8s namespace should be created
4 years ago
Sven Ketelsen
1fd63f3676
feat: updated elastic certs on dev stage
...
- create new certificates (--days 1095)
- rollout with playbook smardigo.yml + -t update_certs
all elasticsearch
all kibana
all logstash
- rollout with playbook setup.yml + -t update_certs
all filebeat
- manually updates connect certs
use smardigo.yml + -t update_certs - with connect role
4 years ago
Görz, Friedrich
84a013d169
MOB-148: added k8s cluster for mobene stuff
4 years ago
Görz, Friedrich
0f69260711
DEV-416: added stuff to enable filebeat for postgres + mariabb instances
4 years ago
Sven Ketelsen
55ebe36758
MOB-102: office 365 email account (QA/PROD)
4 years ago
friedrich goerz
8180523963
DEV-480: decrease prometheus retention time for DEV-stage
4 years ago
friedrich goerz
ebf2d41e48
DEV-473: changed custom metric queries to reduce messages in error.log
4 years ago
Görz, Friedrich
1c5b1c44dd
DEV-391: fix merge problems + fixing linter problems
4 years ago
Sven Ketelsen
05ccebc851
feat: added initial password creation to portal
...
- randomize passwords according to password policies
2 Uppercase Characters
2 Lowercase Characters
2 Special Characters
1 Digits
4 years ago
Sven Ketelsen
00ca2bc3f1
feat: added initial password creation to portal
...
- randomize passwords according to password policies
2 Uppercase Characters
2 Lowercase Characters
2 Special Characters
1 Digits
4 years ago
Ketelsen, Sven
8c69471639
DEV-477 bugfix: delete wordpress database when service is deleted by portal
4 years ago
Görz, Friedrich
0eac3f3d3c
DEV-429: mariadb upgrade
4 years ago
Sven Ketelsen
06a395855b
feat: argo-cd
...
- activated json logging
- disabled application set controller
4 years ago
Sven Ketelsen
25bd87846c
feat: kibana - default index patterns
...
- uncategorized-*
- {{ stage }}-*-authlog-*
- {{ stage }}-*-syslog-*
- {{ stage }}-monitoring-*
- {{ stage }}-management-*-connect-*
4 years ago
friedrich goerz
0d5976898a
NOTICKET: corrected bloody typo
4 years ago
Görz, Friedrich
4bf4167216
DEV-386: to use techn.user to scrape metrics for ssh-root-login
4 years ago
Michael Hähnel
ff9c0d94a1
Extended Monitoring/Alerting for PostgreSQL
4 years ago
Sven Ketelsen
acee683569
feat: added workflow heatmap flag to portal
...
- SMA_WORKFLOW_HEATMAP_ENABLED: [false]|true
4 years ago
friedrich goerz
5d1b951f39
DEV-466: added missing but needed package
4 years ago
friedrich goerz
0fe89b4985
DEV-452: tried to fix some stuff
4 years ago
friedrich goerz
0c8bfdb3d9
DEV-452: tried to fix some stuff
4 years ago
friedrich goerz
a3bf98465a
DEV-452: added workaround to fix problem with missing hetzner internal network
4 years ago
friedrich goerz
cd09b5bb5e
DEV-452: added workaround to fix problem with missing hetzner internal network
4 years ago
friedrich goerz
f7a43f5981
DEV-452: added workaround to fix problem with missing hetzner internal network
4 years ago
friedrich goerz
31e79f7ee6
DEV-452: added DEBUG statements to get more information in case of problems
4 years ago
friedrich goerz
5ce99dbb58
DEV-452: pimped recursive _set_server_state.yml - bugfixed
4 years ago
Görz, Friedrich
37ca359842
DEv-452: added recursive _set_server_state.yml to work around hetzners...
4 years ago
Sven Ketelsen
c4a7359e6c
chore: added argo-cd projects
...
- bootstrap
- kube-system
- infrastructure
4 years ago
Sven Ketelsen
104ede597d
chore: removed stage prefix from pull secret (namespace)
4 years ago
Sven Ketelsen
ae1e2854dc
chore: removed stage prefix from pull secret (namespace)
4 years ago
Ketelsen, Sven
60a6c73be6
DEV-424 export for wordpress database (maria)
4 years ago
friedrich goerz
dac7002ad9
DEV-452: added potential fixes for our hetzner create_server - is locked/message problem
4 years ago
Sven Ketelsen
fff42dea2c
chore: removed ignore_errors due to a bug in smardigo
4 years ago
Görz, Friedrich
b4937db87a
DEV-375: bugfix to run stuff for testdb only when is set
4 years ago
Sven Ketelsen
750b109b54
chore: added ignore_errors due to a bug in smardigo
4 years ago
Sven Ketelsen
ad80ceeaaa
SMARCH-126: bootstrap argocd with argocd
4 years ago
Sven Ketelsen
20c745eeb4
SMARCH-126: bootstrap argocd with argocd
4 years ago
Sven Ketelsen
80c94ef184
SMARCH-126: bootstrap argocd with argocd
4 years ago
Ketelsen, Sven
8923ab7574
SMARCH-126: Bootstrap ArgoCD by ArgoCD
4 years ago
Görz, Friedrich
315bee648d
DEV-439: removed leftovers from mariadb-transport-encyrption
4 years ago
Görz, Friedrich
f0eab6d3ae
DEv-421: refactored installation for postgres-exporter + installed newer...
4 years ago
friedrich goerz
f4c97a9a04
DEV-432: ansible stuff to change ssh ciphers on serverside + added new ssh key for fgoerz
4 years ago
friedrich goerz
819a658e50
DEV-422: mariadb deactivate ssl stuff to ensure stable smardigo-ENV
4 years ago
friedrich goerz
ea2e31cd27
DEV-383: fixing bug
4 years ago
Görz, Friedrich
62e0a64f26
DEV-414: follow-up tasks prod@hetzner-incident
4 years ago
Görz, Friedrich
49fc416764
DEV-382: enable SSL for postgres-connections
4 years ago
Sven Ketelsen
d99c9001bf
DEV-383: enable SSL for mariadb-connections
4 years ago
friedrich goerz
7d7dbcf622
NOTICKET: hetzner bugfix
4 years ago
friedrich goerz
fc5745eac2
NOTICKET: fix broken playbook due to renamed yml file
4 years ago