Commit graph

26546 commits

Author SHA1 Message Date
Patrick Uiterwijk
3904614002 Import initial OpenShift Ipsilon bits
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-05-03 20:00:53 +02:00
Patrick Uiterwijk
cb8b0c935d Restrict Proxy server-status to localhost for now
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-05-03 20:00:53 +02:00
Kevin Fenzi
8138db0d4d openshift: bodhi-web: remove downgrade, as the base image hasn't yet updated to the broken version.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-03 17:42:08 +00:00
Kevin Fenzi
736ab6eebb openshift: bodhi-web: fix typo in url
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-03 17:14:07 +00:00
Kevin Fenzi
cb624d50fe openshift: bodhi-web: downgrade librepo to non broken version in image builds.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-03 17:01:40 +00:00
Mohan Boddu
2f714ba9dc Setting f30 primary arches
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2019-05-03 13:45:45 +00:00
Kevin Fenzi
de7ddae30e buildvmhost-aarch64: up nrpe max tasks.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-02 22:46:22 +00:00
Kevin Fenzi
c71a31b220 taiga: retire old taiga cloud instances, everything should be using teams.fedoraproject.org now.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-02 22:03:09 +00:00
Kevin Fenzi
e3f561c9b3 simple-koji-ci: add chrony role
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-02 19:33:03 +00:00
Mohan Boddu
34c9f35f2a Fix the key in tag2distrepo for coreos-pool
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2019-05-02 18:42:41 +00:00
Mohan Boddu
8be7195449 tag2distrepo: Regen coreos-pool repos
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2019-05-02 17:59:34 +00:00
Kevin Fenzi
e30dd9a3fe fedora repo files: Perhaps we need == here instead of is
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-02 00:07:42 +00:00
Kevin Fenzi
8bcd40c086 fedora repo files: If we are setting FedoraBranched to False when not enabled instead of undefining it, we need to test true or false instead of existance.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-02 00:05:22 +00:00
Kevin Fenzi
217b872f56 proxy-redirects: cgit redirects for src.fp.o
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 22:51:36 +00:00
Kevin Fenzi
80f5658820 base: Fix syntax on dnf command, it should just be the name in this case
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 22:40:28 +00:00
Mohan Boddu
c9dcffc09b Autosigning setup for coreos-pool tag
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2019-05-01 18:21:59 +00:00
Mohan Boddu
6c4c5b5362 koji hub policy changes for coreos-pool and coreos-release tags
https://pagure.io/releng/issue/8294

Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2019-05-01 18:21:59 +00:00
Kevin Fenzi
965e85a69a autosign02: Remove autosign02, it's not needed anymore now that 01 is back.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 17:21:09 +00:00
Kevin Fenzi
5f98bf1e03 robosignatory: Add f31-python tag to be signed.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 17:19:00 +00:00
Jakub Kadlčík
96de11a1bf Create manual playbooks for upgrading Copr instances
There is a problem with our current playbooks, that they can be
executed automatically without us knowing about it. That is an issue
particularly during release process because we can prepare new
packages into infra-tags repo or bodhi and a nightly reprovision
can upgrade to them outside of an outage window or any of us being
prepared for it.

Therefore `groups/copr-*.yml` playbooks *should not* upgrade any
packages, but only ensure, that those packages are installed. For
upgrade, there should be separate `manual/copr/copr-*-upgrade.yml`
playbooks. Because they are located under `manual` directory, it
is secured, that they can't be run automatically.
2019-05-01 18:39:27 +02:00
Patrick Uiterwijk
8fb5f0aca9 Add apache/headers tag
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-05-01 17:33:03 +02:00
Patrick Uiterwijk
08873ba49c Hide Apache version in Server header
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-05-01 17:28:30 +02:00
Patrick Uiterwijk
a17edfe0d3 Make port389.o redirect to https
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-05-01 17:28:30 +02:00
Kevin Fenzi
339a2c36dc Release variables: Adjust for f30 release.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 15:26:26 +00:00
Kevin Fenzi
7c89405d04 dns: Actually drop the limit on the group we defined in the last commit.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-30 20:40:43 +00:00
Kevin Fenzi
f29428cfa6 dns: add 2 rh nameservers that make a lot of legit queries against our dns.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-30 20:36:00 +00:00
Kevin Fenzi
266164af71 releases.json: update fedora 30 to active and no retirement
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-30 12:11:32 +00:00
Kevin Fenzi
1f9f5dc564 proxies: add in prerelease to final redirect
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-30 12:11:03 +00:00
Patrick Uiterwijk
764f6cb55c tasks->tags
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-04-29 18:00:54 +02:00
Patrick Uiterwijk
279c055966 Add askbeta redirects to proxies
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-04-29 17:56:33 +02:00
Pierre-Yves Chibon
dc0ef80d46 elections: Adjust the APPLICATION_ROOT in stg vs prod
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 15:27:02 +02:00
Patrick Uiterwijk
ca0629a73d Tell elections its https
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-04-29 14:15:03 +02:00
Martin Kutlak
4d1bcd1802 Deploy f-messaging certs for faf
Signed-off-by: Martin Kutlak <mkutlak@redhat.com>
2019-04-29 13:50:52 +02:00
Pierre-Yves Chibon
f02f70029e elections: use the same url to connect to the DB in alembic as in the application's configuration file
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:36:35 +02:00
Pierre-Yves Chibon
e76e1a88eb elections: Rework again the secret.yml again
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:30:51 +02:00
Pierre-Yves Chibon
2dab570f7d elections: rework the indentation of secret.yml
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:22:19 +02:00
Pierre-Yves Chibon
7b6a86c1dd elections: add missing closing parenthesis
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:19:19 +02:00
Pierre-Yves Chibon
cf6c2f3b40 elections: load the secret.yml object...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:17:15 +02:00
Pierre-Yves Chibon
a7f2a6b08d elections: another trailing : that was messing up the file
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:47:38 +02:00
Pierre-Yves Chibon
833274e56d elections: remove trailing : that was messing the file
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:46:22 +02:00
Pierre-Yves Chibon
86a3572311 elections: rename the volume to see if that changes something
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:29:46 +02:00
Pierre-Yves Chibon
33a2a12afb elections: indentation fix
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:27:14 +02:00
Pierre-Yves Chibon
ded44bdb34 elections: mount the secret volume and point elections to it
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:24:19 +02:00
Pierre-Yves Chibon
2b16867d92 elections: fix the path to the alembic revisions
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:15:54 +02:00
Pierre-Yves Chibon
d71529606b elections: use upstream's alembic upgrade script
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:02:34 +02:00
Pierre-Yves Chibon
c5cde07727 elections: the path to the fedora-messaging config is specified by an environment variable in the container
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:58:25 +02:00
Pierre-Yves Chibon
48ac98d72d elections: Mount the fedora-messaging volumes and config files
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:40:11 +02:00
Pierre-Yves Chibon
91cd0ffc24 elections: Add a configuration file for fedora-messaging
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:27:58 +02:00
Pierre-Yves Chibon
299fad9362 elections: add a secret containing the client_secrets for flask-oidc
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:27:38 +02:00
Pierre-Yves Chibon
30e5b8ba0e elections: point to id.stg in staging
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:26:12 +02:00