friedrich goerz
45f4fd20f3
DEV-537: added availability check for kube-awx-domain
3 years ago
Hoan To
6027ba958e
added hoan.to ssh-key
3 years ago
Eichhorn, Philipp
6200deea76
DEV-489: add ssh key for philipp.eichhorn@netgo.de
4 years ago
Görz, Friedrich
84a013d169
MOB-148: added k8s cluster for mobene stuff
4 years ago
Sven Ketelsen
05ccebc851
feat: added initial password creation to portal
...
- randomize passwords according to password policies
2 Uppercase Characters
2 Lowercase Characters
2 Special Characters
1 Digits
4 years ago
Sven Ketelsen
51c1a79eb1
chore: apt: removed duplicated iotop entry
4 years ago
Görz, Friedrich
0eac3f3d3c
DEV-429: mariadb upgrade
4 years ago
Sven Ketelsen
ea827b727e
feat: apt: added iotop to defaults
4 years ago
Görz, Friedrich
6c6dd5c1ae
DEV-442: added threshold for pg_repl_lag to avoid false positives on DEV-stage
4 years ago
Michael Haehnel
c112a780f1
Extend hetzner_ssh_keys for michael.haehnel
4 years ago
Michael Haehnel
10bd066617
DEV-456: Added SSH key for michael.haehnel
4 years ago
Sven Ketelsen
ab790591c2
chore: whitelisted admin ips
4 years ago
Görz, Friedrich
a2fa12ef40
DEV-396: changed diskspace alert from predictive to alert of current usage
4 years ago
Görz, Friedrich
62e0a64f26
DEV-414: follow-up tasks prod@hetzner-incident
4 years ago
Görz, Friedrich
49fc416764
DEV-382: enable SSL for postgres-connections
4 years ago
Sven Ketelsen
d99c9001bf
DEV-383: enable SSL for mariadb-connections
4 years ago
Sven Ketelsen
6297ad954e
feat: removed admin ips from firewalls
4 years ago
Sven Ketelsen
0b18fc9bc2
MOB-28: added custom whitelisted ips for services
4 years ago
Sven Ketelsen
fec11415bc
MOB-28: added firewall whitelist for mobene - keycloak
4 years ago
Sven Ketelsen
7bb1c9eed3
chore: update of ip whitelist
4 years ago
Görz, Friedrich
43da648df6
DEV-389: added gpg-decryption for backup
4 years ago
Görz, Friedrich
0c9042da83
DEV-373: try to automate restore from database backup
4 years ago
Sven Ketelsen
49aa913213
bugfix: backup runs with gather_facts: false
4 years ago
Sven Ketelsen
68f1c76919
bugfix: timestamp wasn't stabel anymore
4 years ago
Sven Ketelsen
5733b20dc3
bugfix: server creation was broken due to backupuser
4 years ago
Sven Ketelsen
b35744a3b3
bugfix: used wrong email address for hetzner key
4 years ago
Sven Ketelsen
8dbd533c97
DEV-273 added branch to rollout for stages
...
- master/main -> DEV
- qa -> QA
- prodnso -> PRODNSO
4 years ago
Sven Ketelsen
42f0ae114a
DEV-273 added branch to rollout for stages
...
- master/main -> DEV
- qa -> QA
- prodnso -> PRODNSO
4 years ago
Sven Ketelsen
6394d9150c
bugfix: awx uses now own user for automation
4 years ago
Sven Ketelsen
92c11ecef4
bugfix: ansible user for awx
4 years ago
Ketelsen, Sven
e17c62f81e
DEV-371: added stuff to do remote backup
4 years ago
Görz, Friedrich
ac8998f212
DEV-273: automate rollout ansible by gitlab
4 years ago
Görz, Friedrich
ea2ef949c9
DEV-360: rollout k8s on prodnso
4 years ago
Görz, Friedrich
c732ab8eb3
DEV-341: tried to implement review critics
4 years ago
Sven Ketelsen
e353d718ba
bugfix: removed "ignore_errors: true" from patchday (kubernetes)
4 years ago
Sven Ketelsen
8b885a30b7
bugfix: patchay was broken due to missing pip dependency
...
- kubernetes
4 years ago
Ketelsen, Sven
5d604700dd
DEV-319: feat: split dev/qa into own hetzner projects
4 years ago
Sven Ketelsen
aa09887b9e
feat: rollout new tokens/passwords for qa stage
4 years ago
Görz, Friedrich
59a409fc32
DEV-342: added patchday playbook
4 years ago
friedrich goerz
46e021d22c
DEV-327: added several stuff for new prodnso-stage + bugfixing and improving other stuff
4 years ago
Sven Ketelsen
cdd9c2543a
cleanup: removed vault for group/all > moved to stage groups
...
- every stage has now its own vault file
4 years ago
Sven Ketelsen
190b8394eb
feat: added metricbeat (inactive)
4 years ago
Sven Ketelsen
d314e164c7
bugfix: disabled blackbox exporter for connect management
...
- current config didn't works with 302 to login page
4 years ago
Sven Ketelsen
df0e320743
bugfix: fixed connect url for blackbox exporter
4 years ago
Görz, Friedrich
76289d2242
DEV-316: fixing linter problems
4 years ago
Sven Ketelsen
44c7509e11
feat: consolidation for harbor
...
- dev-docker-registry-01 -> dev-harbor-01
- qa-docker-registry-01 -> qa-harbor-01
4 years ago
Sven Ketelsen
212ef00807
bugfix: connect-wordpress orchestration
...
- added missing configuration to wordpress service
REALM_ID
REGISTRATION_ID
CLIENT_ID
CLIENT_SECRET
CLIENT_USERNAME
CLIENT_PASSWORD
SMARDIGO_AUTH_TOKEN_NAME
SMARDIGO_AUTH_TOKEN_VALUE
4 years ago
Görz, Friedrich
9f9a192432
DEV-269: added stuff to federate k8s-internal prometheus metrics
4 years ago
Sven Ketelsen
ea231be89f
DEV-277 feat: added stage for external usage
...
- stage without shared services
- setup isolated services
4 years ago
Görz, Friedrich
5bdff07d1b
DEV-253: digitalocean stuff - add droplet but not idempotentgit branch git branch plz check
4 years ago
Ketelsen, Sven
54d6b82f1f
DEV-244 feat: added power dns to stage dev
4 years ago
Sven Ketelsen
0eafc32ec9
feat: added borken ip to whitelist
4 years ago
Sven Ketelsen
aeabec152c
SMARCH-106: added stuff for multi tenant setup
...
- workflow-index-postgres
- workflow-proxy-postgres
- workflow-proxy-realm
4 years ago
Sven Ketelsen
8f94c4aae0
feat: added hetzner csi plugin
4 years ago
Sven Ketelsen
a9d6249762
feat: rollout gitea on qa
4 years ago
Sven Ketelsen
719a3e71d7
feat: kubernetes bootstrap
...
- ccm
- ingress
- certmanager
- argo-cd
{{ stage }}-kube-argocd.{{ domain }}
- prometheus
{{ stage }}-kube-grafana.{{ domain }}
4 years ago
Ketelsen, Sven
3d00fdc7a0
DEV-222 kubernetes setup with ansible
4 years ago
Sven Ketelsen
8df2970e7c
feat: reverse proxy configuration for gitea
...
- https://...
- ssh@...:2222
4 years ago
Sven Ketelsen
37cf451edd
chore: maintenance
...
- added tag awx_repository' > update repository on awx server
- moved wordpress database dump from /tmp to /backups
- switch wordpress dump from <dump>.tar.gz to <dump>.gz
- added hint for upload wordpress dump to README.md
4 years ago
Sven Ketelsen
49cf9e1612
cleanup: factor out docker-compose version (->group all)
4 years ago
Görz, Friedrich
99d301234a
DEV-216: added ssh pubkey for fgoerz; changed lookup to find also non-RSA-pubkeys
4 years ago
Sven Ketelsen
d3278b62ac
bugfix: stage-qa configuration
...
- email
- connect api token
4 years ago
Sven Ketelsen
1c2da22ef6
feat: synchronize authorized keys for root
4 years ago
Sven Ketelsen
335e3bb9dd
chore: cors for swagger on connect/iam
4 years ago
Sven Ketelsen
8ee702fb68
chore: removed outdated tasks
4 years ago
Sven Ketelsen
ffb714d7ad
SMARCH-92: setup qa up to docker registry
...
- consolidation between dev/qa
- moved/split variables into vaults for dev/qa
4 years ago
Peter Heise
c86ccc48aa
Added postgres exporter + dashboard.
4 years ago
Peter Heise
7c0f9c597b
Added mysql/maria-exporter + dashboard.
4 years ago
Sven Ketelsen
ad861db16e
SMARCH-92: split elastic stack services for qa
...
- elasticsearch
- logstash
- kibana
4 years ago
Sven Ketelsen
a8b60e9069
chore: teams alerting hook can now be stage specific
...
- added var netgo_msteams_hook_alerting (DEV)
4 years ago
Sven Ketelsen
d7704681ee
bugifx: awx polling configuration produces wrong instance
...
- <url>:80 -> <url>
4 years ago
Sven Ketelsen
259da9685f
DEV-173: bugfix: oidc configuration for connect/wordpress
4 years ago
Sven Ketelsen
ebad4eade4
chore: new playbook to update local ssh config file
...
{for each host on stage}
Host dev-...
HostName 1.2.3.4
{endfor}
4 years ago
Sven Ketelsen
38b103e363
DEV-173: review/regression/cleanup: connect + wordpress
4 years ago
Sven Ketelsen
7f4b338477
SMARCH-89: feat: added setup for connect wordpress with database dump
4 years ago
Gordon, Alexander
b01ae836f5
DEV-167: feat: creating maria database for connect-wordpres provisioning
4 years ago
Sven Ketelsen
45dcef38e3
bugfix: added missing variable local_ssh_config
4 years ago
Sven Ketelsen
ea5c025101
SMARCH-52: setup awx on dev-awx-01
4 years ago
Alexander Gordon
03604a5708
Added alexander.gordon ssh-key
4 years ago
Ketelsen, Sven
3c60e35668
SMARCH-81: feat: added webdav as shared service
4 years ago
Ketelsen, Sven
be4a9c3f5c
SMARCH-63: Feat: Anlegen/Konfigurieren einer Datenbank auf dem DB-Server (DEV)
4 years ago
Sven Ketelsen
84bceb730d
review: setup awx server with ansible
4 years ago
Heise, Peter
6034d87f97
feature/postgresql-cluster
4 years ago
Sven Ketelsen
6e38f3e9aa
chore: removed daniel.dz
4 years ago
Paetow, Claus
f1e22a9bff
SMARCH-71: SSH Server Zugriff für Hetzner hinzufügen
4 years ago
Sven Ketelsen
8819c64bf5
chore: removed daniel.dz
4 years ago
Sven Ketelsen
4bb091adb0
chore: consolidation
4 years ago
Sven Ketelsen
736c89b6c1
chore: added wordpress (wip)
4 years ago
Sven Ketelsen
0e9c26e439
chore: switched workflow search to elastic mode
5 years ago
Sven Ketelsen
7b66778cda
chore: added netgo teams hook configuration
5 years ago
Sven Ketelsen
7632da1019
chore: cleanup
5 years ago
Sven Ketelsen
bf8ed74d3f
SMARCH-46: smardigo self service portal (wip)
5 years ago
Sven Ketelsen
0fed0dbdb8
SMARCH-46: smardigo self service portal (wip)
5 years ago
Sven Ketelsen
7f7054244b
SMARCH-46: smardigo self service portal (wip)
5 years ago
Sven Ketelsen
1a93b40658
feat: provisioning playbook with dynamic inventory (wip)
5 years ago
Sven Ketelsen
18f3fd3102
SMARCH-40: monitoring for harbor
5 years ago
Sven Ketelsen
ea45d111d9
SMARCH-46: smardigo self service portal (wip)
5 years ago
Sven Ketelsen
51ba3f7c16
SMARCH-33: added elastic stack setup
5 years ago
Dziedzicki, Daniel
308383f9ec
Feature/smarch 44
5 years ago
Sven Ketelsen
b438a9c12a
feat: hetzner default root users
5 years ago
Sven Ketelsen
1bce1bb3f5
feat: added users
5 years ago
Sven Ketelsen
46b2367622
chore: harbor playground
5 years ago
Sven Ketelsen
53352252da
feat: added connect/keycloak setup
5 years ago
Sven Ketelsen
4b8ea52d05
feat: setup connect servers
5 years ago
Sven Ketelsen
57ff124d00
feat: setup prometheus stack
5 years ago
Sven Ketelsen
c10d556038
chore: setup docker-registry
5 years ago
Sven Ketelsen
c63d557861
feat: added traefik and node_exporter
5 years ago
Sven Ketelsen
7eefe6b28f
feat: setup servers on hetzner cloud
5 years ago
Sven Ketelsen
6c50019d6d
feat: setup servers on hetzner cloud
5 years ago