Commit graph

26485 commits

Author SHA1 Message Date
Kevin Fenzi
e30dd9a3fe fedora repo files: Perhaps we need == here instead of is
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-02 00:07:42 +00:00
Kevin Fenzi
8bcd40c086 fedora repo files: If we are setting FedoraBranched to False when not enabled instead of undefining it, we need to test true or false instead of existance.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-02 00:05:22 +00:00
Kevin Fenzi
217b872f56 proxy-redirects: cgit redirects for src.fp.o
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 22:51:36 +00:00
Kevin Fenzi
80f5658820 base: Fix syntax on dnf command, it should just be the name in this case
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 22:40:28 +00:00
Mohan Boddu
c9dcffc09b Autosigning setup for coreos-pool tag
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2019-05-01 18:21:59 +00:00
Mohan Boddu
6c4c5b5362 koji hub policy changes for coreos-pool and coreos-release tags
https://pagure.io/releng/issue/8294

Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2019-05-01 18:21:59 +00:00
Kevin Fenzi
965e85a69a autosign02: Remove autosign02, it's not needed anymore now that 01 is back.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 17:21:09 +00:00
Kevin Fenzi
5f98bf1e03 robosignatory: Add f31-python tag to be signed.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 17:19:00 +00:00
Jakub Kadlčík
96de11a1bf Create manual playbooks for upgrading Copr instances
There is a problem with our current playbooks, that they can be
executed automatically without us knowing about it. That is an issue
particularly during release process because we can prepare new
packages into infra-tags repo or bodhi and a nightly reprovision
can upgrade to them outside of an outage window or any of us being
prepared for it.

Therefore `groups/copr-*.yml` playbooks *should not* upgrade any
packages, but only ensure, that those packages are installed. For
upgrade, there should be separate `manual/copr/copr-*-upgrade.yml`
playbooks. Because they are located under `manual` directory, it
is secured, that they can't be run automatically.
2019-05-01 18:39:27 +02:00
Patrick Uiterwijk
8fb5f0aca9 Add apache/headers tag
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-05-01 17:33:03 +02:00
Patrick Uiterwijk
08873ba49c Hide Apache version in Server header
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-05-01 17:28:30 +02:00
Patrick Uiterwijk
a17edfe0d3 Make port389.o redirect to https
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-05-01 17:28:30 +02:00
Kevin Fenzi
339a2c36dc Release variables: Adjust for f30 release.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 15:26:26 +00:00
Kevin Fenzi
7c89405d04 dns: Actually drop the limit on the group we defined in the last commit.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-30 20:40:43 +00:00
Kevin Fenzi
f29428cfa6 dns: add 2 rh nameservers that make a lot of legit queries against our dns.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-30 20:36:00 +00:00
Kevin Fenzi
266164af71 releases.json: update fedora 30 to active and no retirement
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-30 12:11:32 +00:00
Kevin Fenzi
1f9f5dc564 proxies: add in prerelease to final redirect
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-30 12:11:03 +00:00
Patrick Uiterwijk
764f6cb55c tasks->tags
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-04-29 18:00:54 +02:00
Patrick Uiterwijk
279c055966 Add askbeta redirects to proxies
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-04-29 17:56:33 +02:00
Pierre-Yves Chibon
dc0ef80d46 elections: Adjust the APPLICATION_ROOT in stg vs prod
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 15:27:02 +02:00
Patrick Uiterwijk
ca0629a73d Tell elections its https
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-04-29 14:15:03 +02:00
Martin Kutlak
4d1bcd1802 Deploy f-messaging certs for faf
Signed-off-by: Martin Kutlak <mkutlak@redhat.com>
2019-04-29 13:50:52 +02:00
Pierre-Yves Chibon
f02f70029e elections: use the same url to connect to the DB in alembic as in the application's configuration file
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:36:35 +02:00
Pierre-Yves Chibon
e76e1a88eb elections: Rework again the secret.yml again
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:30:51 +02:00
Pierre-Yves Chibon
2dab570f7d elections: rework the indentation of secret.yml
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:22:19 +02:00
Pierre-Yves Chibon
7b6a86c1dd elections: add missing closing parenthesis
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:19:19 +02:00
Pierre-Yves Chibon
cf6c2f3b40 elections: load the secret.yml object...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:17:15 +02:00
Pierre-Yves Chibon
a7f2a6b08d elections: another trailing : that was messing up the file
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:47:38 +02:00
Pierre-Yves Chibon
833274e56d elections: remove trailing : that was messing the file
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:46:22 +02:00
Pierre-Yves Chibon
86a3572311 elections: rename the volume to see if that changes something
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:29:46 +02:00
Pierre-Yves Chibon
33a2a12afb elections: indentation fix
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:27:14 +02:00
Pierre-Yves Chibon
ded44bdb34 elections: mount the secret volume and point elections to it
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:24:19 +02:00
Pierre-Yves Chibon
2b16867d92 elections: fix the path to the alembic revisions
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:15:54 +02:00
Pierre-Yves Chibon
d71529606b elections: use upstream's alembic upgrade script
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:02:34 +02:00
Pierre-Yves Chibon
c5cde07727 elections: the path to the fedora-messaging config is specified by an environment variable in the container
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:58:25 +02:00
Pierre-Yves Chibon
48ac98d72d elections: Mount the fedora-messaging volumes and config files
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:40:11 +02:00
Pierre-Yves Chibon
91cd0ffc24 elections: Add a configuration file for fedora-messaging
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:27:58 +02:00
Pierre-Yves Chibon
299fad9362 elections: add a secret containing the client_secrets for flask-oidc
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:27:38 +02:00
Pierre-Yves Chibon
30e5b8ba0e elections: point to id.stg in staging
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:26:12 +02:00
Pierre-Yves Chibon
36d0ed7725 elections: Install the fedora-messaging files
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:25:53 +02:00
Pierre-Yves Chibon
6c8749cf59 distgit/pagure: Fix the amqp_url for fedora-messaging on pagure
The cert is now for rabbitmq.stg.fedoraproject.org and not:
rabbitmq01.stg.phx2.fedoraproject.org so having the wrong url in the config
leads to a CertificateError leading to pagure failing to send notifications
on fedora-messaging.

Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:14:38 +02:00
Mohan Boddu
d66de7a089 F30 is now current release and enable automated bodhi pushes
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2019-04-27 19:54:07 +00:00
Mohan Boddu
c491708adb Disable branched compose and enable F30 Cloud and Container composes
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2019-04-27 19:38:48 +00:00
Kevin Fenzi
e96da8e528 cloud-noc01: fix typo in last commit, missing , instead of ]
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-27 18:49:05 +00:00
Kevin Fenzi
cbe0963aa9 cloud-noc01: adjust firewall rules: allow communishift network, open port 124 for ntp
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-27 18:47:27 +00:00
Kevin Fenzi
85adc106ff cloud-noc01: fix typo: s/upd/udp/
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-27 18:27:41 +00:00
Kevin Fenzi
e081c43c74 cloud-noc01: setup dhcp for communishift storage nodes.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-27 18:24:25 +00:00
Pierre-Yves Chibon
4cbd103c18 Enable running alembic upgrade on create
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-26 10:31:12 +02:00
Pierre-Yves Chibon
3ca380a617 Install python2-koji on simple-koji-ci
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-26 10:31:12 +02:00
Kevin Fenzi
8024637dcd buildvmhost: add 2 thunderx2 aarch64 boxes for builder
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-25 22:43:57 +00:00