Jonas Juselius
|
61379ad665
|
fix: update vcluster adn remove kyverno policies
|
2024-10-09 14:07:23 +02:00 |
|
Jonas Juselius
|
eb2eebaa34
|
feat: simplify charts, resources, kustomizations and applications for atlantis SPMSA
|
2024-10-08 16:54:58 +02:00 |
|
juselius
|
2e00aceed1
|
fix: fix volumes and secrets for atlantis
|
2024-10-04 14:28:09 +02:00 |
|
juselius
|
1eb0e6c630
|
fix: tweak atlantis chart for SPMSA monolith.
|
2024-10-04 13:43:55 +02:00 |
|
juselius
|
bcf6d5b582
|
feat: add policy to sync atlantis devel secrets
|
2024-10-04 12:48:40 +02:00 |
|
Jonas Juselius
|
58abecc074
|
fix: phase out jaeger in favor of tempo and otel collecotor
|
2024-09-27 19:59:22 +02:00 |
|
Jonas Juselius
|
5c95f39c84
|
Merge branch 'kaih-csi-addons-network-policy' into 'main'
network policy for csi-addons controller
See merge request oceanbox/manifests!1
|
2024-09-13 15:06:45 +00:00 |
|
Jonas Juselius
|
05295eafe7
|
feat: use explicit clone annotation to clone rabbitmq and redis secrets
|
2024-06-19 11:09:53 +02:00 |
|
Jonas Juselius
|
fd2d757504
|
fix: modify the source rabbitmq secret before clone
|
2024-06-19 10:55:03 +02:00 |
|
Jonas Juselius
|
9b7dc4d51b
|
fix: revert rabbitmq and redis cpol simplifications
|
2024-06-19 10:23:01 +02:00 |
|
juselius
|
a7382d8cdf
|
fix: simplify kyverno rules using operations:
|
2024-06-18 15:46:12 +02:00 |
|
juselius
|
63dabec1b9
|
fix: add atlantis namespace to secrets
|
2024-06-18 15:24:42 +02:00 |
|
juselius
|
5d9930cba2
|
fix: move redis and rabbitmq secrets to resources
|
2024-06-18 15:09:44 +02:00 |
|
Jonas Juselius
|
bfef95f5ec
|
fix: sync redis and rabbitmq secrets only if they exist
|
2024-06-13 13:04:43 +02:00 |
|
juselius
|
73a828c8e9
|
fix: add redis and rabbitmq secrets to labeled vcluster namepspaces
|
2024-06-12 20:17:13 +02:00 |
|
Jonas Juselius
|
a45351700e
|
feat: add appId to rabbitmq client name
|
2024-06-05 12:54:12 +02:00 |
|
juselius
|
c71a991a8d
|
wip: reenable use of deploy env in dapr app-id
|
2024-06-04 10:08:01 +02:00 |
|
hanssenkai
|
01743a0422
|
network policy for csi-addons controller
|
2024-05-30 14:45:59 +02:00 |
|
Jonas Juselius
|
876f7cf55b
|
fix: fix scoping error for redis state store
|
2024-05-30 10:56:00 +02:00 |
|
Jonas Juselius
|
b4499db3ea
|
fix: set dapr scope on state store
|
2024-05-30 10:15:07 +02:00 |
|
juselius
|
90e2d0a20d
|
feat: add clusterwide cilium egress to ceph cluster
|
2024-05-15 18:59:48 +02:00 |
|
Jonas Juselius
|
7c18a9bfdb
|
feat: add cronjob to sync asp.net sso keys
|
2024-04-22 12:40:52 +02:00 |
|
juselius
|
44223c5ed1
|
fix: fix atlantis prod resource namespaces and application
|
2024-04-20 18:45:50 +02:00 |
|
Jonas Juselius
|
1b76b76f1f
|
fix: set explicit namespace on resources
|
2024-04-20 08:14:45 +02:00 |
|
Jonas Juselius
|
74181b06b9
|
feat: globally allow oidc login via microsoft
|
2024-04-18 15:49:53 +02:00 |
|
juselius
|
7fc84977b1
|
fix: add policy to allow external rabbitmq traffic
|
2024-03-09 20:05:16 +01:00 |
|
juselius
|
0d224acda3
|
fix: enable dead letter queues or hell will break lose
|
2024-03-08 19:37:59 +01:00 |
|
Jonas Juselius
|
e8de9a6780
|
fix: add hubble-ui ingress with oauth2-proxy
|
2024-03-08 08:57:36 +01:00 |
|
Jonas Juselius
|
57fb261a66
|
fix: allow slurm-restd traffic in atlantis
|
2024-03-06 13:11:21 +01:00 |
|
Jonas Juselius
|
f9886a5f76
|
fix: allow cerbos external telemetry data
|
2024-03-05 12:45:31 +01:00 |
|
Jonas Juselius
|
8bf1d7ec3e
|
fix: tune cnp rules for idp
|
2024-02-21 16:19:17 +01:00 |
|
Jonas Juselius
|
e32b572083
|
fix: add s3.k1 to idp egress
|
2024-02-21 16:15:14 +01:00 |
|
Jonas Juselius
|
50f40bd434
|
fix: fix typo
|
2024-02-21 15:12:18 +01:00 |
|
Jonas Juselius
|
5e8ee4c042
|
fix: add missing namespace
|
2024-02-21 15:07:43 +01:00 |
|
Jonas Juselius
|
a9de743109
|
fix: global external access rules for idp
|
2024-02-21 15:06:55 +01:00 |
|
Jonas Juselius
|
17e5169dcc
|
fix: fix typo
|
2024-02-21 14:46:42 +01:00 |
|
Jonas Juselius
|
96657463bf
|
fix: allow idp and auth from atlantis ns
|
2024-02-21 14:45:09 +01:00 |
|
Jonas Juselius
|
017d4f36ba
|
fix: add remote-node to dapr cnp
|
2024-02-21 14:00:34 +01:00 |
|
Jonas Juselius
|
c057ff5f9d
|
fix: remove tacking-id from redis too
|
2024-02-21 13:10:50 +01:00 |
|
Jonas Juselius
|
f3957f4718
|
fix: fix yaml typo
|
2024-02-21 13:02:51 +01:00 |
|
Jonas Juselius
|
6cf54bacf5
|
fix: move yaml under host-manifests, sigh.
|
2024-02-21 13:00:17 +01:00 |
|
Jonas Juselius
|
4fa4bb4d12
|
fix: remove argocd tracking ids from clones
|
2024-02-21 12:59:02 +01:00 |
|
juselius
|
58eb7e0065
|
fix: add missing dapr tracing component to base resource
|
2024-02-19 17:39:00 +01:00 |
|
juselius
|
bd46a4978e
|
feat: allow namespace internal traffic from clusterwide policy
|
2024-02-19 16:07:23 +01:00 |
|
juselius
|
f2db2db473
|
feat: add a bunch of network policies from Kai
|
2024-02-19 15:34:15 +01:00 |
|
juselius
|
839a96dc39
|
fix: configure network policies outside kyverno if possible (and stuff)
|
2024-02-19 15:33:31 +01:00 |
|
juselius
|
b53088ca4e
|
fix: tweaks to avoid kyverno update conficts
|
2024-02-19 15:27:43 +01:00 |
|
juselius
|
5793244141
|
fix: misc attempts at fixing UR loops in kyverno
|
2024-02-18 21:09:09 +01:00 |
|
juselius
|
2fc6aba9ca
|
fix: remove deprecated audit action
|
2024-02-15 19:26:58 +01:00 |
|
Jonas Juselius
|
a164f74fbd
|
fix: split secret sync policies to separeate files. autoconfigure rabbitmq connString
|
2024-02-15 16:05:18 +01:00 |
|