Commit Graph

318 Commits (d199433a57507611ef7702037f59dbb59b8f11af)

Author SHA1 Message Date
Görz, Friedrich 315bee648d DEV-439: removed leftovers from mariadb-transport-encyrption 4 years ago
Görz, Friedrich f0eab6d3ae DEv-421: refactored installation for postgres-exporter + installed newer... 4 years ago
friedrich goerz f4c97a9a04 DEV-432: ansible stuff to change ssh ciphers on serverside + added new ssh key for fgoerz 4 years ago
friedrich goerz 819a658e50 DEV-422: mariadb deactivate ssl stuff to ensure stable smardigo-ENV 4 years ago
friedrich goerz ea2e31cd27 DEV-383: fixing bug 4 years ago
Görz, Friedrich 62e0a64f26 DEV-414: follow-up tasks prod@hetzner-incident 4 years ago
Görz, Friedrich 49fc416764 DEV-382: enable SSL for postgres-connections 4 years ago
Sven Ketelsen d99c9001bf DEV-383: enable SSL for mariadb-connections 4 years ago
friedrich goerz 7d7dbcf622 NOTICKET: hetzner bugfix 4 years ago
friedrich goerz fc5745eac2 NOTICKET: fix broken playbook due to renamed yml file 4 years ago
Sven Ketelsen fe66a12c6e bugfix: typo 4 years ago
Sven Ketelsen 5a728d97be bugfix: typo 4 years ago
Görz, Friedrich 6fbc3af3c4 DEV-374: implemented logical restore-test to check if restore was succussful 4 years ago
Görz, Friedrich 43da648df6 DEV-389: added gpg-decryption for backup 4 years ago
Görz, Friedrich 0c9042da83 DEV-373: try to automate restore from database backup 4 years ago
Sven Ketelsen 80b321cd65 DEV-375 feat: new process for backup scheduling 4 years ago
Sven Ketelsen 49aa913213 bugfix: backup runs with gather_facts: false 4 years ago
Sven Ketelsen 1ee340fdd3 bugfix: added awx templates
- create-remote-database-backup
4 years ago
Sven Ketelsen 5733b20dc3 bugfix: server creation was broken due to backupuser 4 years ago
Sven Ketelsen 42f0ae114a DEV-273 added branch to rollout for stages
- master/main -> DEV
- qa -> QA
- prodnso -> PRODNSO
4 years ago
Sven Ketelsen 6394d9150c bugfix: awx uses now own user for automation 4 years ago
Sven Ketelsen 92c11ecef4 bugfix: ansible user for awx 4 years ago
Sven Ketelsen 81d9923332 bugfix: updated ssh key configuration
- + peter.heise
- + gitlabci
- - ansible
- added date suffix to outdated ssh keys
- updating root ssh key is now active per default
4 years ago
Ketelsen, Sven e17c62f81e DEV-371: added stuff to do remote backup 4 years ago
Sven Ketelsen 9d5105f764 feat: updated awx-operator/awx
- extracted argocd revision into variable
- on dev stage revision is main
- default revision is <stage> (qa, prodnso, ...)
4 years ago
Ketelsen, Sven 30c2e8f45a DEV-379: bugfix: k9s is not installed on kube control plane 4 years ago
Görz, Friedrich ac8998f212 DEV-273: automate rollout ansible by gitlab 4 years ago
friedrich goerz 4b8a80a4ef DEV-309: added keycloak PW-policy stuff 4 years ago
friedrich goerz 2b86dfc20c DEV-308: fixed user keycloak interaction stuff for some technical users 4 years ago
Görz, Friedrich ea2ef949c9 DEV-360: rollout k8s on prodnso 4 years ago
Sven Ketelsen 7c891e472c feat: activated jaeger traecing on dev
- traefik
- connect
- iam
4 years ago
Sven Ketelsen 4b74d64949 review: added changes discussed with fgrz 4 years ago
Sven Ketelsen 45a6d3c90b bugfix: filter k8s execution to first master node 4 years ago
Ketelsen, Sven 74e4174826 SMAR-21: feat: added jaeger tracing 4 years ago
Ketelsen, Sven 65df2886e3 DEV-359: feat: added jaeger-operator/jaeger 4 years ago
Sven Ketelsen bd6fb2f189 DEV-341: cleanup after merge
- removed shared_service_awx_hostname
4 years ago
Görz, Friedrich c732ab8eb3 DEV-341: tried to implement review critics 4 years ago
Sven Ketelsen df8a544a3a cleanup 4 years ago
Sven Ketelsen 4a62bf9813 bugfix: keycloak clients for connect
- redirect_uris are broken
- web_origins are broken
4 years ago
Sven Ketelsen a5ff2d53c9 bugfix: rollout new kubernetes cluster 4 years ago
Sven Ketelsen 243aa4c584 bugfix: downgraded grafana version to 8.3.5
- 8.4.1 is not backwards compatible
4 years ago
Sven Ketelsen 1031348887 feat updated prometheus/grafana 4 years ago
Sven Ketelsen af4341f571 bugfix: gitea metrics endpoint is now enabled by default 4 years ago
Sven Ketelsen 8b885a30b7 bugfix: patchay was broken due to missing pip dependency
- kubernetes
4 years ago
Sven Ketelsen d8acf8b894 consolidation: renamed hetzner-ansible project on gitea
- gitea-admin/hetzner-ansible-copy.git
  gitea-admin/hetzner-ansible.git
4 years ago
Sven Ketelsen 211039f7e6 bugfix: kubernetes deployment without root user and global become 4 years ago
Ketelsen, Sven 5d604700dd DEV-319: feat: split dev/qa into own hetzner projects 4 years ago
Görz, Friedrich b24ab2e823 DEV-326: added stuff to configure AWX installation 4 years ago
Sven Ketelsen 39c4ee6eb0 bugfix: removed hard coded staged service (dev) 4 years ago
friedrich goerz 9b7ce348eb DEV-323: added some stuff 4 years ago
Sven Ketelsen 199e49432c bugfix: connect uses now netgo_msteams_hook_cd as connection
- <CI/CD> vs. <Alerting {{ stage }}> channel
4 years ago
Sven Ketelsen aa09887b9e feat: rollout new tokens/passwords for qa stage 4 years ago
Sven Ketelsen 9c7cdfd24b feat: rollout new tokens/passwords for dev stage 4 years ago
friedrich goerz 7bd1a1436b DEv-323: try to fix merge-conflict 4 years ago
Sven Ketelsen 68bde6085e DEV-322: enable ApplicationSet CRD for argoCD
- added mechanism to apply defined argocd CRD-objects
4 years ago
Görz, Friedrich 5fc9e3233a DEV-322: enable ApplicationSet CRD for argoCD; added mechanism to apply defined argocd CRD-objects 4 years ago
Görz, Friedrich 59a409fc32 DEV-342: added patchday playbook 4 years ago
friedrich goerz 78d2661c4a DEV-339: added anti-affinity-rule to improve distribution of ingress-controller pods 4 years ago
Sven Ketelsen 11352747b2 feat: added connect feature to portal
- webdav
- resubmission
- element_template
- config_delete_Scope
- external_tasks_script_worker
4 years ago
Ketelsen, Sven 1e2dfc3212 SMARCH-112 feat: read docker images directly from harbor 4 years ago
friedrich goerz 46e021d22c DEV-327: added several stuff for new prodnso-stage + bugfixing and improving other stuff 4 years ago
Sven Ketelsen b33fbc3f55 cleanup: removed empty handler/meta files 4 years ago
Sven Ketelsen cdd9c2543a cleanup: removed vault for group/all > moved to stage groups
- every stage has now its own vault file
4 years ago
Sven Ketelsen 190b8394eb feat: added metricbeat (inactive) 4 years ago
Sven Ketelsen 6bd573ec24 bugifx: create docker networks only when docker_enabled 4 years ago
Sven Ketelsen 70af623ba4 feat: elastic - activated syslog and authlog
- filebeat will now ship syslog
  {{ inventory_hostname }}-syslog-...
- filebeat will now ship authlog
  {{ inventory_hostname }}-authlog-...
- updated filebeat/logstash to "7.16.3"
4 years ago
Sven Ketelsen dc7ab93632 bugfix: harbor - removed full qualified project group 4 years ago
Sven Ketelsen b545432b6a bugfix: harbor - removed full qualified admin group 4 years ago
Sven Ketelsen 7d211d93ad bugfix: prometheus update_config didn't reload config
- container isn't restarted always anymore
- added reload by rest api
4 years ago
Sven Ketelsen 58413ca173 bugfix: update awx repository was broken 4 years ago
Görz, Friedrich 4004b34b64 Feature/dev 316 3rd 4 years ago
Görz, Friedrich 76289d2242 DEV-316: fixing linter problems 4 years ago
Sven Ketelsen 56f7859314 feat: add access to create/edit dashboards/visualizations 4 years ago
Görz, Friedrich 19fa1db9c8 Feature/dev 315 4 years ago
Sven Ketelsen b7624efbca feat: configuration of connections for connect management installation
- awx
- teams
4 years ago
Sven Ketelsen 77c27e706b feat: configuration of connections for connect management installation
- awx
- teams
4 years ago
friedrich goerz 9ae762b6e1 DEV-315: fixed ansible error to get ansible-lint initially running 4 years ago
Görz, Friedrich 591e40a283 DEV-310: git-rm docker-role from geerlingguy - can be used via include... 4 years ago
Sven Ketelsen 44c7509e11 feat: consolidation for harbor
- dev-docker-registry-01 -> dev-harbor-01
- qa-docker-registry-01 -> qa-harbor-01
4 years ago
Görz, Friedrich d1b41daa87 Feature/dev 302 4 years ago
Görz, Friedrich 37d94b5166 DEV-302: abolish manual installation steps 4 years ago
Sven Ketelsen 0f35703e03 bugfix: fixed retry logic for hetzner network check 4 years ago
Sven Ketelsen 05a6f8a67f feat: added service filtering for kibana dashboard 4 years ago
Sven Ketelsen 40e0a44043 DEV-279: review / vaulted variables 4 years ago
friedrich goerz 333823fb4c DEV-279: implemented 'svensons' review critics 4 years ago
Sven Ketelsen f3fc209a02 feat: default configuration for keycloak master realm
- mail
- events
- language
4 years ago
Sven Ketelsen 1d8b7dae90 bugfix: added group mapper to default keycloak client config 4 years ago
Görz, Friedrich 3d304f4ec1 DEV-279: added oidc/rbac for argocd setup (keycloak) 4 years ago
friedrich goerz 20a2e8a2e3 DEV-257: implemented wish for smardigo star-architect <<sken>> :P 4 years ago
Görz, Friedrich 820b162b15 DEV-271: added systemd-file as workaround for hazzle with container start order 4 years ago
Sven Ketelsen baed2bf51b bugfix: smardigo_user_token creation doesn't require become 4 years ago
Sven Ketelsen 79cad695e7 feat: updated keycloak image version
- keycloak 12.0.4 -> 14.0.0
- updated smardigo images (netgo branding)
4 years ago
Sven Ketelsen ed4ebc8630 feat: updated keycloak image version
- keycloak 12.0.4 -> 14.0.0
- updated smardigo images (netgo branding)
4 years ago
Sven Ketelsen 3cffeed705 feat: updated keycloak image version
- keycloak 12.0.4 -> 14.0.0
- updated smardigo images (netgo branding)
4 years ago
Sven Ketelsen 9eb945812d feat: uptade prometheus stack images to current versions 4 years ago
Sven Ketelsen c1460fa045 chore: set storage.tsdb.retention.time from 12w to 4w 4 years ago
Ketelsen, Sven d9d980b009 DEV-282: feat: added configuration of parameters through web portal 4 years ago
Görz, Friedrich 34a88236f3 DEV-298: added hacky shell script to make harbor upgrade a little bit easier 4 years ago
Sven Ketelsen c9131276e3 bugfix: connect-wordpress orchestration
- added missing configuration to wordpress service
  REALM_ID
  REGISTRATION_ID
  CLIENT_ID
  CLIENT_SECRET
  CLIENT_USERNAME
  CLIENT_PASSWORD
  SMARDIGO_AUTH_TOKEN_NAME
  SMARDIGO_AUTH_TOKEN_VALUE
4 years ago
Sven Ketelsen 212ef00807 bugfix: connect-wordpress orchestration
- added missing configuration to wordpress service
  REALM_ID
  REGISTRATION_ID
  CLIENT_ID
  CLIENT_SECRET
  CLIENT_USERNAME
  CLIENT_PASSWORD
  SMARDIGO_AUTH_TOKEN_NAME
  SMARDIGO_AUTH_TOKEN_VALUE
4 years ago