Kevin Fenzi
|
82b8bdf191
|
communishift: update some docs.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2020-04-24 21:34:13 +02:00 |
|
Kevin Fenzi
|
57e49b6da8
|
Revert "communishift: adjust for new cert-manager setup."
This reverts commit fd510fbf1642a74f1e951c1657b9dc768b6caf07.
|
2020-04-24 21:34:13 +02:00 |
|
Kevin Fenzi
|
66e45ad988
|
communishift: adjust for new cert-manager setup.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2020-04-24 21:34:12 +02:00 |
|
Stephen Smoogen
|
97cadd4f64
|
Thanks Todd Z. Saving my bacon once again
|
2020-04-24 21:34:12 +02:00 |
|
Stephen Smoogen
|
92b21d3522
|
in order to find out why we cant have nice things we have to log all the things
|
2020-04-24 21:34:11 +02:00 |
|
Kevin Fenzi
|
58f195b511
|
openshift / README: update cert-manager docs.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2020-04-24 21:34:10 +02:00 |
|
Clement Verna
|
5a4f01a2d4
|
OSBS: use the Openshift 3.11 repo in stg
Signed-off-by: Clement Verna <cverna@tutanota.com>
|
2020-04-24 21:34:09 +02:00 |
|
Clement Verna
|
ee0d28b7cf
|
OSBS: update the delete old image cron job
Signed-off-by: Clement Verna <cverna@tutanota.com>
|
2020-04-24 21:34:08 +02:00 |
|
Patrick Uiterwijk
|
21eeb216ed
|
Add cert-manager URL
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-06-30 22:33:28 +02:00 |
|
Patrick Uiterwijk
|
14422d361d
|
Add objects and documentation for certificates in communishift
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-06-30 22:31:42 +02:00 |
|
Patrick Uiterwijk
|
647efabd30
|
Add oidc_cm.yml
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-05-25 02:53:39 +02:00 |
|
Patrick Uiterwijk
|
2d2feeaa5f
|
Add basic machineconfigs for communishift and instructions
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-05-25 02:41:36 +02:00 |
|
Patrick Uiterwijk
|
998b1baf74
|
Due to qa firewalls, use the original IPs
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-05-24 10:19:44 +02:00 |
|
Patrick Uiterwijk
|
104d25852c
|
soooo many files...
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-05-24 00:12:06 +02:00 |
|
Patrick Uiterwijk
|
c8a1baf7a2
|
Do 2fa changes at the correct location
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-05-24 00:10:17 +02:00 |
|
Patrick Uiterwijk
|
d75ad4c1b7
|
Add os-node11 also to routers - it's either bootstrap node or worker
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-05-16 16:46:34 +02:00 |
|
Patrick Uiterwijk
|
1855a459f9
|
Default communishift to tcp mode
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-05-16 14:18:02 +02:00 |
|
Patrick Uiterwijk
|
377d73b75e
|
Simplify os-proxies: all bind everything
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-05-16 12:01:41 +02:00 |
|
Patrick Uiterwijk
|
53b0b1d9ea
|
Use full hostnames
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-05-16 11:55:41 +02:00 |
|
Patrick Uiterwijk
|
2d6ccdbbe3
|
Enable haproxy stats
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-05-16 11:50:52 +02:00 |
|
Patrick Uiterwijk
|
f06aa504b9
|
Enable haproxy checks
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-05-16 11:46:12 +02:00 |
|
Kevin Fenzi
|
a074c43cc9
|
communishift: drop custom 503 in haproxy for now.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2019-05-12 18:47:09 +00:00 |
|
Kevin Fenzi
|
261648a5c4
|
communishift: Setup simple haproxy config and add firewall rules
Note that we don't use the haproxy rule because it's very proxy specific.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2019-05-11 20:13:36 +00:00 |
|
Kevin Fenzi
|
e30dd9a3fe
|
fedora repo files: Perhaps we need == here instead of is
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2019-05-02 00:07:42 +00:00 |
|
Kevin Fenzi
|
8bcd40c086
|
fedora repo files: If we are setting FedoraBranched to False when not enabled instead of undefining it, we need to test true or false instead of existance.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2019-05-02 00:05:22 +00:00 |
|
Patrick Uiterwijk
|
08873ba49c
|
Hide Apache version in Server header
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-05-01 17:28:30 +02:00 |
|
Kevin Fenzi
|
ac8213f97c
|
virthost-aarch64-os: Use libvirt group instead of sysadmin-main for the virt socket on these.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2019-04-15 16:18:09 +00:00 |
|
Patrick Uiterwijk
|
14ea88dd85
|
Add Zanata id.fp.o TLSv1 workaround
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-04-13 21:16:21 +02:00 |
|
Patrick Uiterwijk
|
da6e047cff
|
Make clear that these are Fedora extending headers
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-04-11 18:22:31 +02:00 |
|
Patrick Uiterwijk
|
efa135e397
|
Actually make Proxies more clear in response headers
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
|
2019-04-11 18:17:50 +02:00 |
|
Mikolaj Izdebski
|
b37dd9e050
|
yumrepos: Fix fedora-modular baseurl for branched and rawhide
|
2019-04-11 15:07:48 +02:00 |
|
Kevin Fenzi
|
d9eb6f22ac
|
fedora repos: fix comparisions to handle branched instances.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2019-03-31 18:16:52 +00:00 |
|
Kevin Fenzi
|
6546fb9fa9
|
fedora-secondary yum repos: use |int for numbers and move include for vars before yumrepos
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2019-03-28 17:39:07 +00:00 |
|
Kevin Fenzi
|
4d1afe4075
|
fedora-secondary: try and cast variables to int.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2019-03-28 17:25:19 +00:00 |
|
Kevin Fenzi
|
663f009a60
|
virthost: need to include global vars so cycle variables get set right.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2019-03-28 16:27:57 +00:00 |
|
Kevin Fenzi
|
5877bcbe85
|
fedora-secondary yum repos: handle case of branched fedora like primary arches do.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2019-03-28 16:23:57 +00:00 |
|
Kevin Fenzi
|
7f6b3a59dc
|
power9: add repos file to point to the right place and fix yumrepos to work with power9 hosts.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2019-03-22 04:36:31 +00:00 |
|
Kevin Fenzi
|
7a5573580a
|
rhel8b for aarch64: more repo tweaks
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2019-01-17 21:20:52 +00:00 |
|
Kevin Fenzi
|
af085bf1e4
|
rhel8beta: fix up some repos for aarch64
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
|
2019-01-17 21:05:25 +00:00 |
|
Clement Verna
|
cc14397708
|
OSBS buildroot: in f29 python3-modulemd is python3-libmodulemd
Signed-off-by: Clement Verna <cverna@tutanota.com>
|
2019-01-14 21:51:09 +01:00 |
|
Kevin Fenzi
|
dfd9f8a6cc
|
supress warning messages in prod as well for reg
|
2018-11-30 17:07:53 +00:00 |
|
Mikolaj Izdebski
|
d566722087
|
Install modular repos on Fedora 29+ systems
|
2018-11-20 20:26:33 +00:00 |
|
Rick Elrod
|
1830d5d13e
|
see how badly all of this fails
Signed-off-by: Rick Elrod <relrod@redhat.com>
|
2018-11-19 20:56:25 +00:00 |
|
Kevin Fenzi
|
f07d6b888b
|
And it helps to use the correct variable names.
|
2018-11-09 22:12:32 +00:00 |
|
Kevin Fenzi
|
766e8978e7
|
And it needs to see if it's defined.
|
2018-11-09 22:11:10 +00:00 |
|
Kevin Fenzi
|
7f2bc990eb
|
ok, how about order of operations?
|
2018-11-09 22:09:58 +00:00 |
|
Kevin Fenzi
|
d2485facf8
|
try and fix fedora repos with release vars so we never have to change it again
|
2018-11-09 22:07:20 +00:00 |
|
Kevin Fenzi
|
d62dd190f1
|
Revert "Disable updates pushing and backups for today since we are going to be doing an outage"
This reverts commit 25a26248ab .
|
2018-11-07 23:45:28 +00:00 |
|
Kevin Fenzi
|
25a26248ab
|
Disable updates pushing and backups for today since we are going to be doing an outage
|
2018-11-07 18:35:50 +00:00 |
|
Kevin Fenzi
|
49a0506283
|
Upgrade staging openshift to 3.11
|
2018-11-02 20:48:54 +00:00 |
|