Commit Graph

62 Commits

Author SHA1 Message Date
juselius 414c993fe1 feat: add cpol to sync azure keyvault credentials 2024-11-18 10:33:34 +01:00
Jonas Juselius a8da4c1198 fix: fix otel url typo 2024-11-14 14:37:53 +01:00
Jonas Juselius 58abecc074 fix: phase out jaeger in favor of tempo and otel collecotor 2024-09-27 19:59:22 +02:00
Jonas Juselius 5c95f39c84 Merge branch 'kaih-csi-addons-network-policy' into 'main'
network policy for csi-addons controller

See merge request oceanbox/manifests!1
2024-09-13 15:06:45 +00:00
Jonas Juselius 05295eafe7 feat: use explicit clone annotation to clone rabbitmq and redis secrets 2024-06-19 11:09:53 +02:00
Jonas Juselius fd2d757504 fix: modify the source rabbitmq secret before clone 2024-06-19 10:55:03 +02:00
Jonas Juselius 9b7dc4d51b fix: revert rabbitmq and redis cpol simplifications 2024-06-19 10:23:01 +02:00
juselius a7382d8cdf fix: simplify kyverno rules using operations: 2024-06-18 15:46:12 +02:00
juselius 63dabec1b9 fix: add atlantis namespace to secrets 2024-06-18 15:24:42 +02:00
juselius 5d9930cba2 fix: move redis and rabbitmq secrets to resources 2024-06-18 15:09:44 +02:00
Jonas Juselius bfef95f5ec fix: sync redis and rabbitmq secrets only if they exist 2024-06-13 13:04:43 +02:00
juselius 73a828c8e9 fix: add redis and rabbitmq secrets to labeled vcluster namepspaces 2024-06-12 20:17:13 +02:00
Jonas Juselius a45351700e feat: add appId to rabbitmq client name 2024-06-05 12:54:12 +02:00
juselius c71a991a8d wip: reenable use of deploy env in dapr app-id 2024-06-04 10:08:01 +02:00
hanssenkai 01743a0422 network policy for csi-addons controller 2024-05-30 14:45:59 +02:00
Jonas Juselius 876f7cf55b fix: fix scoping error for redis state store 2024-05-30 10:56:00 +02:00
Jonas Juselius b4499db3ea fix: set dapr scope on state store 2024-05-30 10:15:07 +02:00
juselius 90e2d0a20d feat: add clusterwide cilium egress to ceph cluster 2024-05-15 18:59:48 +02:00
Jonas Juselius 7c18a9bfdb feat: add cronjob to sync asp.net sso keys 2024-04-22 12:40:52 +02:00
juselius 44223c5ed1 fix: fix atlantis prod resource namespaces and application 2024-04-20 18:45:50 +02:00
Jonas Juselius 1b76b76f1f fix: set explicit namespace on resources 2024-04-20 08:14:45 +02:00
Jonas Juselius 74181b06b9 feat: globally allow oidc login via microsoft 2024-04-18 15:49:53 +02:00
juselius 7fc84977b1 fix: add policy to allow external rabbitmq traffic 2024-03-09 20:05:16 +01:00
juselius 0d224acda3 fix: enable dead letter queues or hell will break lose 2024-03-08 19:37:59 +01:00
Jonas Juselius e8de9a6780 fix: add hubble-ui ingress with oauth2-proxy 2024-03-08 08:57:36 +01:00
Jonas Juselius 57fb261a66 fix: allow slurm-restd traffic in atlantis 2024-03-06 13:11:21 +01:00
Jonas Juselius f9886a5f76 fix: allow cerbos external telemetry data 2024-03-05 12:45:31 +01:00
Jonas Juselius 8bf1d7ec3e fix: tune cnp rules for idp 2024-02-21 16:19:17 +01:00
Jonas Juselius e32b572083 fix: add s3.k1 to idp egress 2024-02-21 16:15:14 +01:00
Jonas Juselius 50f40bd434 fix: fix typo 2024-02-21 15:12:18 +01:00
Jonas Juselius 5e8ee4c042 fix: add missing namespace 2024-02-21 15:07:43 +01:00
Jonas Juselius a9de743109 fix: global external access rules for idp 2024-02-21 15:06:55 +01:00
Jonas Juselius 17e5169dcc fix: fix typo 2024-02-21 14:46:42 +01:00
Jonas Juselius 96657463bf fix: allow idp and auth from atlantis ns 2024-02-21 14:45:09 +01:00
Jonas Juselius 017d4f36ba fix: add remote-node to dapr cnp 2024-02-21 14:00:34 +01:00
Jonas Juselius c057ff5f9d fix: remove tacking-id from redis too 2024-02-21 13:10:50 +01:00
Jonas Juselius f3957f4718 fix: fix yaml typo 2024-02-21 13:02:51 +01:00
Jonas Juselius 6cf54bacf5 fix: move yaml under host-manifests, sigh. 2024-02-21 13:00:17 +01:00
Jonas Juselius 4fa4bb4d12 fix: remove argocd tracking ids from clones 2024-02-21 12:59:02 +01:00
juselius 58eb7e0065 fix: add missing dapr tracing component to base resource 2024-02-19 17:39:00 +01:00
juselius bd46a4978e feat: allow namespace internal traffic from clusterwide policy 2024-02-19 16:07:23 +01:00
juselius f2db2db473 feat: add a bunch of network policies from Kai 2024-02-19 15:34:15 +01:00
juselius 839a96dc39 fix: configure network policies outside kyverno if possible (and stuff) 2024-02-19 15:33:31 +01:00
juselius b53088ca4e fix: tweaks to avoid kyverno update conficts 2024-02-19 15:27:43 +01:00
juselius 5793244141 fix: misc attempts at fixing UR loops in kyverno 2024-02-18 21:09:09 +01:00
juselius 2fc6aba9ca fix: remove deprecated audit action 2024-02-15 19:26:58 +01:00
Jonas Juselius a164f74fbd fix: split secret sync policies to separeate files. autoconfigure rabbitmq connString 2024-02-15 16:05:18 +01:00
Jonas Juselius b0e876d675 wip: fixing rabbitmq bindings (kuk) 2024-02-14 18:24:14 +01:00
Jonas Juselius 360038a869 fix: fix yaml typos 2024-02-14 10:51:55 +01:00
Jonas Juselius 0cd690804b debug: component auth 2024-02-14 10:17:00 +01:00