Commit graph

42703 commits

Author SHA1 Message Date
Kevin Fenzi
4ab30bdc37 backup: also add nbde role to backup server
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2025-03-25 11:33:11 -07:00
Kevin Fenzi
f54142e770 backup: add serial console config here
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2025-03-25 11:29:59 -07:00
Jakub Kadlcik
a6b86224fb copr: rename STG pulp domain 2025-03-25 15:01:07 +01:00
Jakub Kadlcik
5f7d5bda78 copr-fe-dev: fix pulp content URL 2025-03-25 14:22:35 +01:00
Jakub Kadlcik
22b6e9e2fe copr-be: use production pulp instance but stg domain 2025-03-25 14:09:11 +01:00
Jakub Kadlcik
9cfa240dd8 logdetective01, logdetective02: add sgallagh and mmassari as admins 2025-03-25 13:30:21 +01:00
d20ff483b9 forgejo: try max_repo_limit
Signed-off-by: Ryan Lerch <rlerch@redhat.com>
2025-03-25 20:14:25 +10:00
Michal Konecny
daeaceaae5 [poddlers] Enable the FAS group sync on production
Till now the automatic group sync was only working on staging. This
should enable it on production as well.
2025-03-25 09:47:46 +00:00
Jakub Kadlcik
0fac971004 copr-be: start using Pulp certs also for STG
We still need to fix the base_url
2025-03-25 10:42:27 +01:00
Jakub Kadlcik
661ddacb55 copr-be: install pulp certificates also on STG 2025-03-25 10:17:23 +01:00
Kevin Fenzi
a4985b880b proxies / riscv-kojipkgs: try and get it to use the right template
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2025-03-24 16:44:12 -07:00
Kevin Fenzi
3c4d4250c0 proxies / riscv-kojipkgs: also need to set proxyurl
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2025-03-24 16:34:02 -07:00
Kevin Fenzi
81ca9bd8a1 proxies: add a riscv-kojipkgs virthost/proxy
We are actually just pointing these to the hub for now, but we have them
seperated in case we want to make a seperate kojipkgs for this.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2025-03-24 16:23:11 -07:00
Josef Skladanka
1219776da7 Add lbrabec as appowner to FQA apps 2025-03-24 22:30:11 +01:00
James Antill
7f429f3d13 Clean nftables var. for specific staging groups.
Signed-off-by: James Antill <james@and.org>
2025-03-24 16:18:48 -04:00
James Antill
3d695e58b3 Turn on nftables for all of staging.
Signed-off-by: James Antill <james@and.org>
2025-03-24 15:13:35 -04:00
Josef Skladanka
a8672eac88 Testdays - add kparal to appowners 2025-03-24 20:03:50 +01:00
Timothée Ravier
c4710ce336 roles/bodhi2/new-updates-sync: No sync for PPC64LE Atomic Desktops
See: https://fedoraproject.org/wiki/Changes/AtomicDesktopsNoPpc64le
2025-03-24 16:18:17 +00:00
Jeremy Cline
7a64016377
fedora-image-uploader: Enable GCP image uploads in production
Configure uploading images to Google Cloud.

Signed-off-by: Jeremy Cline <jeremycline@linux.microsoft.com>
2025-03-24 11:23:14 -04:00
Greg Sutcliffe
a982fa3f44 resultsdb-ci-listener: Return to using correct git repo for app source 2025-03-24 11:16:03 +00:00
Kevin Fenzi
c2e61b09ab robosignatory: add f42 cosmic-atomic to signing
We added this atomic desktop, we need to sign it now. :)

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2025-03-23 08:51:51 -07:00
David Kirwan
809c90e5da
IPA: add user zabbix to fedora-nss-ignore.conf
Signed-off-by: David Kirwan <davidkirwanirl@gmail.com>
2025-03-21 16:25:30 +00:00
Greg Sutcliffe
3f91cfe8cb resultsdb: Bump MPM Worker config to avoid healthcheck crashes 2025-03-21 16:01:30 +00:00
Jakub Kadlcik
4a8fca23ef logdetective: create /etc/profile.d/models.sh if it doesn't exist 2025-03-21 13:33:44 +01:00
Kevin Fenzi
58bbbca299 ipa: make sure a bunch of calls do not log sensitive data
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2025-03-20 14:48:12 -07:00
Kevin Fenzi
1251149241 ansible-server: fix requirements to list collections under collections
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2025-03-20 14:00:57 -07:00
Jeremy Cline
5dabb7c3b5 fedora-image-uploader: Fix Google Cloud credential path
I used the wrong name for the file being mounted in the volume. This
will fix the image uploader boot-looping in staging.

Signed-off-by: Jeremy Cline <jeremycline@linux.microsoft.com>
2025-03-20 17:02:34 +00:00
Jakub Kadlcik
b42bdf2ec4 logdetective: use models directory on our secondary drive 2025-03-20 17:49:20 +01:00
Jakub Kadlcik
072a814252 logdetective: add TODO for podman data 2025-03-20 17:46:40 +01:00
Jakub Kadlcik
6b74655f3a logdetective: we use cuda-12.8 now 2025-03-20 17:44:24 +01:00
Jakub Kadlcik
3d58de5bcb logdetective: specify protocol 2025-03-20 17:25:44 +01:00
Jakub Kadlcik
e921a46626 logdetective: revert back to firewalld 2025-03-20 17:21:56 +01:00
Jakub Kadlcik
3ed2d8e61a logdetective: firewalld isn't installed, use iptables directly 2025-03-20 16:57:18 +01:00
Jakub Kadlcik
26496b9ae0 logdetective: allow 8080 from the outside 2025-03-20 16:43:15 +01:00
Lenka Segura
729e827795 poddlers: scale pod for cleaning-packager-groups to zero
Signed-off-by: Lenka Segura <lsegura@redhat.com>
2025-03-20 16:20:59 +01:00
Lenka Segura
347fda288f poddlers: add cleaning-packager-groups
Signed-off-by: Lenka Segura <lsegura@redhat.com>
2025-03-20 12:29:27 +01:00
Kevin Fenzi
cf2032cac9 bodhi-backend / updates-sync: fix missing ,s
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2025-03-19 21:34:55 -07:00
Jakub Kadlcik
fde534382c logdetective: the value needs to be in quotes 2025-03-20 01:04:19 +01:00
Jakub Kadlcik
346d95c034 logdetective: the drop-in for storage doesn't work 2025-03-20 01:03:34 +01:00
Jakub Kadlcik
c6f268440e logdetective: podman cache on a secondary drive 2025-03-20 00:24:20 +01:00
Jakub Kadlcik
895ee22f34 logdetective: configure podman to use iptables 2025-03-20 00:24:12 +01:00
Jakub Kadlcik
a9494929ef logdetective01: drop birthday 2025-03-19 22:47:55 +01:00
Kevin Fenzi
a04451450d batcave / ansible-server: specifcy any local ansible collections
We want to specify the exact collections we install and the version so
that we know whats installed and what version it is.
Ideally we would install all the collections via rpms.
When thats not possible, we should install them via ansible
so they are tracked and known, and we can update them as needed.

Any other collections locally installed that I couldn't find a caller
for have been removed. We can easily add them here if there's more we
want to install.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2025-03-19 14:45:01 -07:00
Jakub Kadlcik
65cc13ca28 logdetective01: set birthday 2025-03-19 22:38:07 +01:00
a02fffedb3 Update roles/ansible-server/files/requirements.yml - added community.zabbix 3.0.0
Added community.zabbix version 3.0.0
Fixes Zabbix breaking releng compose playbooks.
2025-03-19 21:26:43 +00:00
Samyak Jain
b4e6f57a4a playbooks/groups/secondary.yml: Install isomd5sum package on secondary servers
Added `isomd5sum` to the list of installed packages in `playbooks/groups/secondary.yml`
to support checksum verification tests on `secondary01.fedoraproject.org`.

This ensures that `isomd5sum` is available for testing workflows, particularly for
QA tasks related to Fedora media checksums.

Signed-off-by: Samyak Jain <samyak.jn11@gmail.com>
2025-03-19 21:19:58 +00:00
Kevin Fenzi
5bfa8f4802 cloud-image-uploader: this role assumes /files/ in the path already
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2025-03-19 14:19:21 -07:00
c906396525 websites: redirect kde to the edition page 2025-03-19 21:14:27 +00:00
Jeremy Cline
3c6ab8afd8 fedora-image-uploader: add Google Compute Engine support for staging
This enables support for uploading images to Google Cloud in staging.

Signed-off-by: Jeremy Cline <jeremycline@linux.microsoft.com>
2025-03-19 21:10:14 +00:00
75fdb66594 Update playbooks/include/proxies-redirects.yml - Updated join.fp.o redirect 2025-03-19 20:58:02 +00:00