friedrich goerz
f4c97a9a04
DEV-432: ansible stuff to change ssh ciphers on serverside + added new ssh key for fgoerz
4 years ago
friedrich goerz
819a658e50
DEV-422: mariadb deactivate ssl stuff to ensure stable smardigo-ENV
4 years ago
friedrich goerz
ea2e31cd27
DEV-383: fixing bug
4 years ago
Görz, Friedrich
62e0a64f26
DEV-414: follow-up tasks prod@hetzner-incident
4 years ago
Görz, Friedrich
49fc416764
DEV-382: enable SSL for postgres-connections
4 years ago
Sven Ketelsen
d99c9001bf
DEV-383: enable SSL for mariadb-connections
4 years ago
friedrich goerz
7d7dbcf622
NOTICKET: hetzner bugfix
4 years ago
friedrich goerz
fc5745eac2
NOTICKET: fix broken playbook due to renamed yml file
4 years ago
Sven Ketelsen
fe66a12c6e
bugfix: typo
4 years ago
Sven Ketelsen
5a728d97be
bugfix: typo
4 years ago
Görz, Friedrich
6fbc3af3c4
DEV-374: implemented logical restore-test to check if restore was succussful
4 years ago
Görz, Friedrich
43da648df6
DEV-389: added gpg-decryption for backup
4 years ago
Görz, Friedrich
0c9042da83
DEV-373: try to automate restore from database backup
4 years ago
Sven Ketelsen
80b321cd65
DEV-375 feat: new process for backup scheduling
4 years ago
Sven Ketelsen
49aa913213
bugfix: backup runs with gather_facts: false
4 years ago
Sven Ketelsen
1ee340fdd3
bugfix: added awx templates
...
- create-remote-database-backup
4 years ago
Sven Ketelsen
5733b20dc3
bugfix: server creation was broken due to backupuser
4 years ago
Sven Ketelsen
42f0ae114a
DEV-273 added branch to rollout for stages
...
- master/main -> DEV
- qa -> QA
- prodnso -> PRODNSO
4 years ago
Sven Ketelsen
6394d9150c
bugfix: awx uses now own user for automation
4 years ago
Sven Ketelsen
92c11ecef4
bugfix: ansible user for awx
4 years ago
Sven Ketelsen
81d9923332
bugfix: updated ssh key configuration
...
- + peter.heise
- + gitlabci
- - ansible
- added date suffix to outdated ssh keys
- updating root ssh key is now active per default
4 years ago
Ketelsen, Sven
e17c62f81e
DEV-371: added stuff to do remote backup
4 years ago
Sven Ketelsen
9d5105f764
feat: updated awx-operator/awx
...
- extracted argocd revision into variable
- on dev stage revision is main
- default revision is <stage> (qa, prodnso, ...)
4 years ago
Ketelsen, Sven
30c2e8f45a
DEV-379: bugfix: k9s is not installed on kube control plane
4 years ago
Görz, Friedrich
ac8998f212
DEV-273: automate rollout ansible by gitlab
4 years ago
friedrich goerz
4b8a80a4ef
DEV-309: added keycloak PW-policy stuff
4 years ago
friedrich goerz
2b86dfc20c
DEV-308: fixed user keycloak interaction stuff for some technical users
4 years ago
Görz, Friedrich
ea2ef949c9
DEV-360: rollout k8s on prodnso
4 years ago
Sven Ketelsen
7c891e472c
feat: activated jaeger traecing on dev
...
- traefik
- connect
- iam
4 years ago
Sven Ketelsen
4b74d64949
review: added changes discussed with fgrz
4 years ago
Sven Ketelsen
45a6d3c90b
bugfix: filter k8s execution to first master node
4 years ago
Ketelsen, Sven
74e4174826
SMAR-21: feat: added jaeger tracing
4 years ago
Ketelsen, Sven
65df2886e3
DEV-359: feat: added jaeger-operator/jaeger
4 years ago
Sven Ketelsen
bd6fb2f189
DEV-341: cleanup after merge
...
- removed shared_service_awx_hostname
4 years ago
Görz, Friedrich
c732ab8eb3
DEV-341: tried to implement review critics
4 years ago
Sven Ketelsen
df8a544a3a
cleanup
4 years ago
Sven Ketelsen
4a62bf9813
bugfix: keycloak clients for connect
...
- redirect_uris are broken
- web_origins are broken
4 years ago
Sven Ketelsen
a5ff2d53c9
bugfix: rollout new kubernetes cluster
4 years ago
Sven Ketelsen
243aa4c584
bugfix: downgraded grafana version to 8.3.5
...
- 8.4.1 is not backwards compatible
4 years ago
Sven Ketelsen
1031348887
feat updated prometheus/grafana
4 years ago
Sven Ketelsen
af4341f571
bugfix: gitea metrics endpoint is now enabled by default
4 years ago
Sven Ketelsen
8b885a30b7
bugfix: patchay was broken due to missing pip dependency
...
- kubernetes
4 years ago
Sven Ketelsen
d8acf8b894
consolidation: renamed hetzner-ansible project on gitea
...
- gitea-admin/hetzner-ansible-copy.git
gitea-admin/hetzner-ansible.git
4 years ago
Sven Ketelsen
211039f7e6
bugfix: kubernetes deployment without root user and global become
4 years ago
Ketelsen, Sven
5d604700dd
DEV-319: feat: split dev/qa into own hetzner projects
4 years ago
Görz, Friedrich
b24ab2e823
DEV-326: added stuff to configure AWX installation
4 years ago
Sven Ketelsen
39c4ee6eb0
bugfix: removed hard coded staged service (dev)
4 years ago
friedrich goerz
9b7ce348eb
DEV-323: added some stuff
4 years ago
Sven Ketelsen
199e49432c
bugfix: connect uses now netgo_msteams_hook_cd as connection
...
- <CI/CD> vs. <Alerting {{ stage }}> channel
4 years ago
Sven Ketelsen
aa09887b9e
feat: rollout new tokens/passwords for qa stage
4 years ago
Sven Ketelsen
9c7cdfd24b
feat: rollout new tokens/passwords for dev stage
4 years ago
friedrich goerz
7bd1a1436b
DEv-323: try to fix merge-conflict
4 years ago
Sven Ketelsen
68bde6085e
DEV-322: enable ApplicationSet CRD for argoCD
...
- added mechanism to apply defined argocd CRD-objects
4 years ago
Görz, Friedrich
5fc9e3233a
DEV-322: enable ApplicationSet CRD for argoCD; added mechanism to apply defined argocd CRD-objects
4 years ago
Görz, Friedrich
59a409fc32
DEV-342: added patchday playbook
4 years ago
friedrich goerz
78d2661c4a
DEV-339: added anti-affinity-rule to improve distribution of ingress-controller pods
4 years ago
Sven Ketelsen
11352747b2
feat: added connect feature to portal
...
- webdav
- resubmission
- element_template
- config_delete_Scope
- external_tasks_script_worker
4 years ago
Ketelsen, Sven
1e2dfc3212
SMARCH-112 feat: read docker images directly from harbor
4 years ago
friedrich goerz
46e021d22c
DEV-327: added several stuff for new prodnso-stage + bugfixing and improving other stuff
4 years ago
Sven Ketelsen
b33fbc3f55
cleanup: removed empty handler/meta files
4 years ago
Sven Ketelsen
cdd9c2543a
cleanup: removed vault for group/all > moved to stage groups
...
- every stage has now its own vault file
4 years ago
Sven Ketelsen
190b8394eb
feat: added metricbeat (inactive)
4 years ago
Sven Ketelsen
6bd573ec24
bugifx: create docker networks only when docker_enabled
4 years ago
Sven Ketelsen
70af623ba4
feat: elastic - activated syslog and authlog
...
- filebeat will now ship syslog
{{ inventory_hostname }}-syslog-...
- filebeat will now ship authlog
{{ inventory_hostname }}-authlog-...
- updated filebeat/logstash to "7.16.3"
4 years ago
Sven Ketelsen
dc7ab93632
bugfix: harbor - removed full qualified project group
4 years ago
Sven Ketelsen
b545432b6a
bugfix: harbor - removed full qualified admin group
4 years ago
Sven Ketelsen
7d211d93ad
bugfix: prometheus update_config didn't reload config
...
- container isn't restarted always anymore
- added reload by rest api
4 years ago
Sven Ketelsen
58413ca173
bugfix: update awx repository was broken
4 years ago
Görz, Friedrich
4004b34b64
Feature/dev 316 3rd
4 years ago
Görz, Friedrich
76289d2242
DEV-316: fixing linter problems
4 years ago
Sven Ketelsen
56f7859314
feat: add access to create/edit dashboards/visualizations
4 years ago
Görz, Friedrich
19fa1db9c8
Feature/dev 315
4 years ago
Sven Ketelsen
b7624efbca
feat: configuration of connections for connect management installation
...
- awx
- teams
4 years ago
Sven Ketelsen
77c27e706b
feat: configuration of connections for connect management installation
...
- awx
- teams
4 years ago
friedrich goerz
9ae762b6e1
DEV-315: fixed ansible error to get ansible-lint initially running
4 years ago
Görz, Friedrich
591e40a283
DEV-310: git-rm docker-role from geerlingguy - can be used via include...
4 years ago
Sven Ketelsen
44c7509e11
feat: consolidation for harbor
...
- dev-docker-registry-01 -> dev-harbor-01
- qa-docker-registry-01 -> qa-harbor-01
4 years ago
Görz, Friedrich
d1b41daa87
Feature/dev 302
4 years ago
Görz, Friedrich
37d94b5166
DEV-302: abolish manual installation steps
4 years ago
Sven Ketelsen
0f35703e03
bugfix: fixed retry logic for hetzner network check
4 years ago
Sven Ketelsen
05a6f8a67f
feat: added service filtering for kibana dashboard
4 years ago
Sven Ketelsen
40e0a44043
DEV-279: review / vaulted variables
4 years ago
friedrich goerz
333823fb4c
DEV-279: implemented 'svensons' review critics
4 years ago
Sven Ketelsen
f3fc209a02
feat: default configuration for keycloak master realm
...
- mail
- events
- language
4 years ago
Sven Ketelsen
1d8b7dae90
bugfix: added group mapper to default keycloak client config
4 years ago
Görz, Friedrich
3d304f4ec1
DEV-279: added oidc/rbac for argocd setup (keycloak)
4 years ago
friedrich goerz
20a2e8a2e3
DEV-257: implemented wish for smardigo star-architect <<sken>> :P
4 years ago
Görz, Friedrich
820b162b15
DEV-271: added systemd-file as workaround for hazzle with container start order
4 years ago
Sven Ketelsen
baed2bf51b
bugfix: smardigo_user_token creation doesn't require become
4 years ago
Sven Ketelsen
79cad695e7
feat: updated keycloak image version
...
- keycloak 12.0.4 -> 14.0.0
- updated smardigo images (netgo branding)
4 years ago
Sven Ketelsen
ed4ebc8630
feat: updated keycloak image version
...
- keycloak 12.0.4 -> 14.0.0
- updated smardigo images (netgo branding)
4 years ago
Sven Ketelsen
3cffeed705
feat: updated keycloak image version
...
- keycloak 12.0.4 -> 14.0.0
- updated smardigo images (netgo branding)
4 years ago
Sven Ketelsen
9eb945812d
feat: uptade prometheus stack images to current versions
4 years ago
Sven Ketelsen
c1460fa045
chore: set storage.tsdb.retention.time from 12w to 4w
4 years ago
Ketelsen, Sven
d9d980b009
DEV-282: feat: added configuration of parameters through web portal
4 years ago
Görz, Friedrich
34a88236f3
DEV-298: added hacky shell script to make harbor upgrade a little bit easier
4 years ago
Sven Ketelsen
c9131276e3
bugfix: connect-wordpress orchestration
...
- added missing configuration to wordpress service
REALM_ID
REGISTRATION_ID
CLIENT_ID
CLIENT_SECRET
CLIENT_USERNAME
CLIENT_PASSWORD
SMARDIGO_AUTH_TOKEN_NAME
SMARDIGO_AUTH_TOKEN_VALUE
4 years ago
Sven Ketelsen
212ef00807
bugfix: connect-wordpress orchestration
...
- added missing configuration to wordpress service
REALM_ID
REGISTRATION_ID
CLIENT_ID
CLIENT_SECRET
CLIENT_USERNAME
CLIENT_PASSWORD
SMARDIGO_AUTH_TOKEN_NAME
SMARDIGO_AUTH_TOKEN_VALUE
4 years ago
Sven Ketelsen
abbe742118
feat: set storage.tsdb.retention.time from 15w to 12w
4 years ago
Sven Ketelsen
34e5f301e4
bugfix: disabled argocd dex server
...
- service isn't used at all
4 years ago