Граф коммитов

259 Коммитов

Автор SHA1 Сообщение Дата
Ben Vesel a5b5bf6f30
Merge pull request #1548 from petrkotas/restart-mdm
Restart mdm service when new certificate is downloaded
2022-01-17 16:17:19 -05:00
Ross Bryan 55885d3dec loginctl enable-linger for cloud-user to fix podman issues, see comment in code 2022-01-13 15:36:51 -05:00
bennerv 03122a3188 Update frequency of cronjob and location of pause.pid file 2022-01-12 12:25:46 -05:00
bennerv b0808f1b71 HACK: Add cronjobs to clear out /tmp and fix podman pause pid when failed 2022-01-07 12:33:37 -05:00
Petr Kotas bd0dd4cb36
Restart mdm service on cert change
Forces MDM container to pick up changed certificate.

Signed-off-by: Petr Kotas <pkotas@redhat.com>
2021-12-09 16:19:35 +01:00
Spencer Amann 13fce92640 add cronjob to rp and gateway for mdsd workaround 2021-11-16 15:36:02 -05:00
Naveen Malik 265ef606e1
Merge pull request #1835 from bryanro92/geneva-mdm-mdsd
bump mdm/mdsd to october releases
2021-11-16 10:55:46 -05:00
Roland Kunkel ef412b2619
Disk encryption e2e tests ci cluster creation and tests (#1822)
* ./hack/cluster create & CI cluster now create clusters with server side encryption and encryption at host enabled
* E2E tests for server side encryption and encryption at host
2021-11-16 13:03:36 +00:00
Ross Bryan d98fc1a2ed bump mdm/mdsd to october releases, addresses cve's 2021-11-15 10:21:24 -05:00
Roland Kunkel 13671eb3f5 e2e keyvault tests shared environment 2021-11-02 09:19:25 +00:00
Caden Marchese 70cfca7e20 make generate 2021-10-26 15:32:42 -04:00
Ross Bryan 21f820c25c clamav make generate 2021-10-26 08:52:27 -04:00
Ben Vesel 30c160fcf9
Merge pull request #1744 from 25region/gateway-accel-nw
Enable Gateway Accelerated Network
2021-10-13 15:12:40 -04:00
Amber Brown db8ebd388e
Merge pull request #1467 from nilsanderselde/crypto2
feat: Enable DB to use AEAD_AES_256_CBC_HMAC_SHA_512
2021-10-11 10:58:00 +11:00
Peter Kostyukov 0ee43a7528 Add accelerated network gw 2021-10-08 14:46:14 -05:00
Ben Vesel 45028961dd
Merge pull request #1706 from nilsanderselde/smarter-vmss-cleanup
Smarter VMSS cleanup
2021-10-08 12:44:47 -04:00
bennerv a8da94dcff Update ci vms to rhel8 and go-toolset 2021-10-04 19:38:56 -04:00
Naveen Malik a6d704ad76
Merge pull request #1761 from rolandmkunkel/change-shared-dev-vnet-to-slash-9
change shared dev vnet to /9
2021-10-04 10:19:32 -04:00
Roland Kunkel 92fb92a46b change shared dev vnet to /9 2021-09-23 10:05:16 +02:00
Nils Elde 7e569c675e add vmssCleanupEnabled deploy param 2021-09-17 15:45:53 -04:00
Matt Woodson 89dbfc66c8 updated the Geneva images to Sept 2021 images 2021-09-16 12:30:14 -04:00
Jim Minter 07cd66968d update deployer 2021-09-10 11:26:21 -04:00
bennerv ac708a2e07 Add switzerlandnorth to gateway nonZonal exceptions 2021-09-09 12:12:14 -04:00
bennerv 061bbce40c Add previously created non-zoned resource regions to not deploy zoned rp
resources
2021-09-08 13:54:53 -04:00
bennerv 4605300c48 Update reason why fails in gateway_resources 2021-09-07 23:39:52 -04:00
bennerv ec9c007034 Add southcentralus to rp pickZones exception, not gateway 2021-09-07 12:47:53 -04:00
Mangirdas Judeikis 09c6505a44
add southcentralus 2021-09-07 08:23:49 +01:00
Mangirdas Judeikis ff5e68be62
Merge pull request #1635 from Makdaam/fluentbitimage
Fluentbit service moved to a container
2021-09-06 09:43:14 +03:00
Leszek Jakubowski 1de94d2357 Update pkg/deploy/generator/resources_rp.go
Co-authored-by: Naveen Malik <nmalik@redhat.com>
2021-09-02 17:15:25 +02:00
Leszek Jakubowski 201d89240d Fluentbit service moved to a container 2021-09-02 17:11:34 +02:00
Naveen Malik af79a11339 Remove nonZonalRegions from resources_gateway.go
Was added originally because I didn't know what I was doing I guess.
Looks like it being an array is a problem for base64.  So simply
removing.
2021-09-02 11:04:29 -04:00
Mangirdas Judeikis 743f4b9b14
Revert "Merge pull request #1708 from jewzaam/acrpull-guid"
This reverts commit 558fc5d024, reversing
changes made to 705c23e23c.
2021-09-02 13:04:41 +01:00
Naveen Malik 2428504bbe Handle non-zonal NRP resources by setting empty zones property 2021-09-01 21:08:42 -04:00
Naveen Malik bc55690dc5 Fix (hopefully) uniqueness for gateway AcrPull role assignment 2021-09-01 09:15:48 -04:00
Matt Woodson ac0819d3cd commented out 'az subscription set' in the deploy due to failures and this not being needed 2021-08-24 10:47:26 -04:00
Ross Bryan 10b728c886 add offnode scanning plumbing and cloud aware var/az login
Co-authored-by: Naveen Malik <nmalik@redhat.com>
2021-08-20 15:58:58 -04:00
bennerv d68b04860e Make resources_gateway cloudaware 2021-08-19 10:41:19 -04:00
bennerv 3e36658f98 Add pickZones to frontendIPConfiguration for default changes due to network API bump 2021-08-19 10:41:19 -04:00
Jim Minter 0552a26e30 add missing :445 firewall rule 2021-08-19 10:41:18 -04:00
Jim Minter 18f1d97a4c enable firewall between gateway and RP 2021-08-19 10:36:44 -04:00
Jim Minter 1e8b4135a8 allow cluster route table to be overridden for testing 2021-08-19 10:30:31 -04:00
Jim Minter ed319c139b update rp 2021-08-19 10:30:29 -04:00
Jim Minter 91d6a55e8e add gateway 2021-08-19 10:21:09 -04:00
Jim Minter 72ec4f3ac7 move vnet deployment forward into predeploy phase
When the gateway vnet is predeployed, this means that vnets are all
present to be peered in the RP deploy phase
2021-08-19 10:21:07 -04:00
Jim Minter 29c15c3fd7 use pickZones: seems like defaults have changed in the move from network 2019-07-01 to 2020-08-01 2021-08-19 10:17:47 -04:00
Jim Minter 1f909d4b9b move from network 2019-07-01 to 2020-08-01 2021-08-19 10:17:45 -04:00
Roland Kunkel fbb9bdd9a2 update keyvault api version to 2019-09-01 2021-08-19 14:55:29 +01:00
Naveen Malik dc2061ee62 Bump geneva mdm and mdsd images 2021-08-11 14:00:30 -04:00
Nils Elde df35b8e54a save ocp upgrade streams to storage account 2021-08-09 11:43:02 -04:00
Troy Connor 7522f97e7e
cosmosdb: remove 'extraCosmosDBIPs' parameters to use 'ipRules'
apiversions: changed apiversion to 2021-01-15
2021-08-03 09:42:20 -04:00