Commit graph

28308 commits

Author SHA1 Message Date
Kevin Fenzi
400a37df3a certgetter: use python3 for ansible.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:11 +02:00
Kevin Fenzi
e13e8cef12 pagure / stunnel: set number of open files higher for pagure stunnel.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:11 +02:00
Kevin Fenzi
b1aa859cbb pagure / stg: fix cert path
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:11 +02:00
Kevin Fenzi
55f447a465 pagure / staging: set letsencrypt proxy to allow for getting cert.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Jonathan Lebon
42335b7370 rabbitmq: add coreos queue
This is needed for CoreOS-specific messages. See
https://pagure.io/fedora-infrastructure/issue/8227.

Reviewed-by: Aurelien Bompard <abompard@redhat.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
294348566d pagure / stg: get a cert for stg.pagure.io too.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
92c3e16b55 pagure: Fix stunnel config so it validates for ssl by using the intermediate cert with a bundle.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Miroslav Suchý
990f66391b copr: enable swap as partition on AWS 2020-04-24 21:34:10 +02:00
Chenxiong Qi
60d5bacd4f mts: workaround to trigger os automatically to create a new pod
Signed-off-by: Chenxiong Qi <cqi@redhat.com>
2020-04-24 21:34:10 +02:00
Chenxiong Qi
c87f75402e mts: add example rule to rule file
Signed-off-by: Chenxiong Qi <cqi@redhat.com>
2020-04-24 21:34:10 +02:00
Chenxiong Qi
dd14d05de6 mts: fix mts-rules.yml download url
Signed-off-by: Chenxiong Qi <cqi@redhat.com>
2020-04-24 21:34:10 +02:00
Miroslav Suchý
e94715317a add f31 to retrace 2020-04-24 21:34:10 +02:00
Chenxiong Qi
e3619522aa mts: add os_masters to hosts in order to run playbook on prod
Signed-off-by: Chenxiong Qi <cqi@redhat.com>
2020-04-24 21:34:10 +02:00
Chenxiong Qi
62cd4d7c36 mts: add app_version to client_properties
Signed-off-by: Chenxiong Qi <cqi@redhat.com>
2020-04-24 21:34:10 +02:00
Chenxiong Qi
66392498dc mts: run actually on stg to check messages sent from mts
Signed-off-by: Chenxiong Qi <cqi@redhat.com>
2020-04-24 21:34:10 +02:00
Chenxiong Qi
f5e1beaf33 mts: dry_run on stg
Signed-off-by: Chenxiong Qi <cqi@redhat.com>
2020-04-24 21:34:10 +02:00
Chenxiong Qi
08ee75499b mts: also bind to zmq.topic for MBS
Signed-off-by: Chenxiong Qi <cqi@redhat.com>
2020-04-24 21:34:10 +02:00
Chenxiong Qi
2ee277f6c2 mts: enable dry_run in prod
Signed-off-by: Chenxiong Qi <cqi@redhat.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
421f758968 openshift / prod: finished updating, new shiny node certs and all.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
6c806d3bad openshift / prod: fix name of logging volume.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
af49942b12 oci-registry: use python3
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
3c8c62288c ftbfs: update to point to f31 and f31 tracking bug
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
ddc090d1d7 oci-candidate-registry01.stg: move to f30
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
9f27c267d9 compose-x86: update to reflect reality
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
aa2442a0b0 tang: Upgraded to f30
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
60316d1df9 openshift: oreg_auth_credentials_replace is always true now.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Rick Elrod
e0fab09b47 base: collapse second uuid getter
Signed-off-by: Rick Elrod <relrod@redhat.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
1f1fda4b3e certgetter: upgraded to f30
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Rick Elrod
618752a6d6 base: debug
Signed-off-by: Rick Elrod <relrod@redhat.com>
2020-04-24 21:34:10 +02:00
Rick Elrod
3440a4ace6 base: try not using dot accessor notation here?
Signed-off-by: Rick Elrod <relrod@redhat.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
cd22554d83 krb5: fix typo
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Adam Williamson
f9fc5f21eb relvalconsumer: create directory for config file to go in
Signed-off-by: Adam Williamson <awilliam@redhat.com>
2020-04-24 21:34:10 +02:00
Adam Williamson
bf2b50d32c relvalconsumer: add template file I forgot in previous commit
Signed-off-by: Adam Williamson <awilliam@redhat.com>
2020-04-24 21:34:10 +02:00
Adam Williamson
10eb5d20f2 relvalconsumer: handle reporting image size bugs to Bugzilla
This relies on changes in relvalconsumer itself and relval.

Signed-off-by: Adam Williamson <awilliam@redhat.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
a518f49c7b base: rework the conditional for nmcli controlled ifcfg files to be more readable.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
81fb4582e7 ansible: change when conditions to use == instead of is when checking strings.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
e4222545c1 basessh: Did ansible variable handling change on us?
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
b3197a473f basessh: can drop this section now too.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
1502d91813 openshift: Update to latest openshift ansible and containers.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Kevin Fenzi
a562b8a3f8 ansible_distribution_version: address FIXME's/review tweaks.
download: mod_limitipconn isn't used anyone, dropped the entire line.
transient_cloud: just dropped the dnf part and use 'package' entirely.
sshd_config: UsePrivilegeSeparation isn't used in Fedora at all.
koji_hub: no fedora or rhel8 hubs yet, so just 7 is fine for now.
openvpn: changes look ok
packages3: Should get cverna to review, packages is using fedora now.
varnish: no rhel8 varnish servers yet.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-04-24 21:34:10 +02:00
Karsten Hopp
c9ed62ac32 update ansible_distribution_major_version conditionals
Signed-off-by: Karsten Hopp <karsten@redhat.com>
2020-04-24 21:34:10 +02:00
Stephen Smoogen
d982c06fde [grobisplitter] upgrade to latest splitter 2020-04-24 21:34:10 +02:00
Mikolaj Izdebski
da1144aa65 rabbit/queue: Fix default value for message_ttl 2020-04-24 21:34:10 +02:00
Mikolaj Izdebski
22dfe009c8 Revert "Fixing the type error"
This reverts commit f44bfd2ac307334500c5c4c5a704c28c2eb74143.
2020-04-24 21:34:10 +02:00
Mohan Boddu
a1ecbc722d Fixing the type error
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2020-04-24 21:34:10 +02:00
Mikolaj Izdebski
460d433fb1 Koschei: disable watcher watchdog 2020-04-24 21:34:10 +02:00
Mikolaj Izdebski
0ca7e83687 Koschei: deploy watcher service 2020-04-24 21:34:10 +02:00
Mikolaj Izdebski
6b37dbef66 Koschei: fedora-messaging consumer configuration 2020-04-24 21:34:10 +02:00
Mikolaj Izdebski
3a979c44e6 Koschei: don't specify routing keys for fedora-messaging 2020-04-24 21:34:10 +02:00
Jakub Kadlcik
a1755eb2f0 copr: add a playbook to prepare builder in AWS
The `builderpb_nova_aws.yml` playbook doesn't spin up a new instance yet.
We currently have a one testing instance in AWS so the playbook
always provisions that particular instance.
2020-04-24 21:34:10 +02:00