friedrich goerz
710b85a275
DEV-380: added haproxy stuff to be ready for communication in case of M-M-replication for mariadb
4 years ago
Görz, Friedrich
0eac3f3d3c
DEV-429: mariadb upgrade
4 years ago
Sven Ketelsen
ea827b727e
feat: apt: added iotop to defaults
4 years ago
Görz, Friedrich
6c6dd5c1ae
DEV-442: added threshold for pg_repl_lag to avoid false positives on DEV-stage
4 years ago
Michael Haehnel
c112a780f1
Extend hetzner_ssh_keys for michael.haehnel
4 years ago
Michael Haehnel
10bd066617
DEV-456: Added SSH key for michael.haehnel
4 years ago
Sven Ketelsen
ab790591c2
chore: whitelisted admin ips
4 years ago
Görz, Friedrich
a2fa12ef40
DEV-396: changed diskspace alert from predictive to alert of current usage
4 years ago
Görz, Friedrich
62e0a64f26
DEV-414: follow-up tasks prod@hetzner-incident
4 years ago
Görz, Friedrich
49fc416764
DEV-382: enable SSL for postgres-connections
4 years ago
Sven Ketelsen
d99c9001bf
DEV-383: enable SSL for mariadb-connections
4 years ago
Sven Ketelsen
fec11415bc
MOB-28: added firewall whitelist for mobene - keycloak
4 years ago
Sven Ketelsen
7bb1c9eed3
chore: update of ip whitelist
4 years ago
Görz, Friedrich
43da648df6
DEV-389: added gpg-decryption for backup
4 years ago
Görz, Friedrich
0c9042da83
DEV-373: try to automate restore from database backup
4 years ago
Sven Ketelsen
49aa913213
bugfix: backup runs with gather_facts: false
4 years ago
Sven Ketelsen
68f1c76919
bugfix: timestamp wasn't stabel anymore
4 years ago
Sven Ketelsen
5733b20dc3
bugfix: server creation was broken due to backupuser
4 years ago
Sven Ketelsen
b35744a3b3
bugfix: used wrong email address for hetzner key
4 years ago
Sven Ketelsen
8dbd533c97
DEV-273 added branch to rollout for stages
...
- master/main -> DEV
- qa -> QA
- prodnso -> PRODNSO
4 years ago
Sven Ketelsen
42f0ae114a
DEV-273 added branch to rollout for stages
...
- master/main -> DEV
- qa -> QA
- prodnso -> PRODNSO
4 years ago
Sven Ketelsen
6394d9150c
bugfix: awx uses now own user for automation
4 years ago
Sven Ketelsen
92c11ecef4
bugfix: ansible user for awx
4 years ago
Ketelsen, Sven
e17c62f81e
DEV-371: added stuff to do remote backup
4 years ago
Görz, Friedrich
ac8998f212
DEV-273: automate rollout ansible by gitlab
4 years ago
Görz, Friedrich
ea2ef949c9
DEV-360: rollout k8s on prodnso
4 years ago
Görz, Friedrich
c732ab8eb3
DEV-341: tried to implement review critics
4 years ago
Sven Ketelsen
e353d718ba
bugfix: removed "ignore_errors: true" from patchday (kubernetes)
4 years ago
Sven Ketelsen
8b885a30b7
bugfix: patchay was broken due to missing pip dependency
...
- kubernetes
4 years ago
Ketelsen, Sven
5d604700dd
DEV-319: feat: split dev/qa into own hetzner projects
4 years ago
Sven Ketelsen
aa09887b9e
feat: rollout new tokens/passwords for qa stage
4 years ago
friedrich goerz
46e021d22c
DEV-327: added several stuff for new prodnso-stage + bugfixing and improving other stuff
4 years ago
Sven Ketelsen
cdd9c2543a
cleanup: removed vault for group/all > moved to stage groups
...
- every stage has now its own vault file
4 years ago
Sven Ketelsen
190b8394eb
feat: added metricbeat (inactive)
4 years ago
Sven Ketelsen
d314e164c7
bugfix: disabled blackbox exporter for connect management
...
- current config didn't works with 302 to login page
4 years ago
Sven Ketelsen
df0e320743
bugfix: fixed connect url for blackbox exporter
4 years ago
Görz, Friedrich
76289d2242
DEV-316: fixing linter problems
4 years ago
Sven Ketelsen
44c7509e11
feat: consolidation for harbor
...
- dev-docker-registry-01 -> dev-harbor-01
- qa-docker-registry-01 -> qa-harbor-01
4 years ago
Sven Ketelsen
212ef00807
bugfix: connect-wordpress orchestration
...
- added missing configuration to wordpress service
REALM_ID
REGISTRATION_ID
CLIENT_ID
CLIENT_SECRET
CLIENT_USERNAME
CLIENT_PASSWORD
SMARDIGO_AUTH_TOKEN_NAME
SMARDIGO_AUTH_TOKEN_VALUE
4 years ago
Görz, Friedrich
9f9a192432
DEV-269: added stuff to federate k8s-internal prometheus metrics
4 years ago
Sven Ketelsen
ea231be89f
DEV-277 feat: added stage for external usage
...
- stage without shared services
- setup isolated services
4 years ago
Görz, Friedrich
5bdff07d1b
DEV-253: digitalocean stuff - add droplet but not idempotentgit branch git branch plz check
4 years ago
Sven Ketelsen
0eafc32ec9
feat: added borken ip to whitelist
4 years ago
Sven Ketelsen
aeabec152c
SMARCH-106: added stuff for multi tenant setup
...
- workflow-index-postgres
- workflow-proxy-postgres
- workflow-proxy-realm
4 years ago
Sven Ketelsen
a9d6249762
feat: rollout gitea on qa
4 years ago
Sven Ketelsen
719a3e71d7
feat: kubernetes bootstrap
...
- ccm
- ingress
- certmanager
- argo-cd
{{ stage }}-kube-argocd.{{ domain }}
- prometheus
{{ stage }}-kube-grafana.{{ domain }}
4 years ago
Ketelsen, Sven
3d00fdc7a0
DEV-222 kubernetes setup with ansible
4 years ago
Sven Ketelsen
8df2970e7c
feat: reverse proxy configuration for gitea
...
- https://...
- ssh@...:2222
4 years ago
Sven Ketelsen
37cf451edd
chore: maintenance
...
- added tag awx_repository' > update repository on awx server
- moved wordpress database dump from /tmp to /backups
- switch wordpress dump from <dump>.tar.gz to <dump>.gz
- added hint for upload wordpress dump to README.md
4 years ago
Sven Ketelsen
49cf9e1612
cleanup: factor out docker-compose version (->group all)
4 years ago