Kevin Fenzi
e30dd9a3fe
fedora repo files: Perhaps we need == here instead of is
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-02 00:07:42 +00:00
Kevin Fenzi
8bcd40c086
fedora repo files: If we are setting FedoraBranched to False when not enabled instead of undefining it, we need to test true or false instead of existance.
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-02 00:05:22 +00:00
Kevin Fenzi
217b872f56
proxy-redirects: cgit redirects for src.fp.o
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 22:51:36 +00:00
Kevin Fenzi
80f5658820
base: Fix syntax on dnf command, it should just be the name in this case
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 22:40:28 +00:00
Mohan Boddu
c9dcffc09b
Autosigning setup for coreos-pool tag
...
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2019-05-01 18:21:59 +00:00
Mohan Boddu
6c4c5b5362
koji hub policy changes for coreos-pool and coreos-release tags
...
https://pagure.io/releng/issue/8294
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2019-05-01 18:21:59 +00:00
Kevin Fenzi
965e85a69a
autosign02: Remove autosign02, it's not needed anymore now that 01 is back.
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 17:21:09 +00:00
Kevin Fenzi
5f98bf1e03
robosignatory: Add f31-python tag to be signed.
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 17:19:00 +00:00
Jakub Kadlčík
96de11a1bf
Create manual playbooks for upgrading Copr instances
...
There is a problem with our current playbooks, that they can be
executed automatically without us knowing about it. That is an issue
particularly during release process because we can prepare new
packages into infra-tags repo or bodhi and a nightly reprovision
can upgrade to them outside of an outage window or any of us being
prepared for it.
Therefore `groups/copr-*.yml` playbooks *should not* upgrade any
packages, but only ensure, that those packages are installed. For
upgrade, there should be separate `manual/copr/copr-*-upgrade.yml`
playbooks. Because they are located under `manual` directory, it
is secured, that they can't be run automatically.
2019-05-01 18:39:27 +02:00
Patrick Uiterwijk
8fb5f0aca9
Add apache/headers tag
...
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-05-01 17:33:03 +02:00
Patrick Uiterwijk
08873ba49c
Hide Apache version in Server header
...
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-05-01 17:28:30 +02:00
Patrick Uiterwijk
a17edfe0d3
Make port389.o redirect to https
...
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-05-01 17:28:30 +02:00
Kevin Fenzi
339a2c36dc
Release variables: Adjust for f30 release.
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-05-01 15:26:26 +00:00
Kevin Fenzi
7c89405d04
dns: Actually drop the limit on the group we defined in the last commit.
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-30 20:40:43 +00:00
Kevin Fenzi
f29428cfa6
dns: add 2 rh nameservers that make a lot of legit queries against our dns.
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-30 20:36:00 +00:00
Kevin Fenzi
266164af71
releases.json: update fedora 30 to active and no retirement
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-30 12:11:32 +00:00
Kevin Fenzi
1f9f5dc564
proxies: add in prerelease to final redirect
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-30 12:11:03 +00:00
Patrick Uiterwijk
764f6cb55c
tasks->tags
...
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-04-29 18:00:54 +02:00
Patrick Uiterwijk
279c055966
Add askbeta redirects to proxies
...
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-04-29 17:56:33 +02:00
Pierre-Yves Chibon
dc0ef80d46
elections: Adjust the APPLICATION_ROOT in stg vs prod
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 15:27:02 +02:00
Patrick Uiterwijk
ca0629a73d
Tell elections its https
...
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2019-04-29 14:15:03 +02:00
Martin Kutlak
4d1bcd1802
Deploy f-messaging certs for faf
...
Signed-off-by: Martin Kutlak <mkutlak@redhat.com>
2019-04-29 13:50:52 +02:00
Pierre-Yves Chibon
f02f70029e
elections: use the same url to connect to the DB in alembic as in the application's configuration file
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:36:35 +02:00
Pierre-Yves Chibon
e76e1a88eb
elections: Rework again the secret.yml again
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:30:51 +02:00
Pierre-Yves Chibon
2dab570f7d
elections: rework the indentation of secret.yml
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:22:19 +02:00
Pierre-Yves Chibon
7b6a86c1dd
elections: add missing closing parenthesis
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:19:19 +02:00
Pierre-Yves Chibon
cf6c2f3b40
elections: load the secret.yml object...
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 13:17:15 +02:00
Pierre-Yves Chibon
a7f2a6b08d
elections: another trailing : that was messing up the file
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:47:38 +02:00
Pierre-Yves Chibon
833274e56d
elections: remove trailing : that was messing the file
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:46:22 +02:00
Pierre-Yves Chibon
86a3572311
elections: rename the volume to see if that changes something
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:29:46 +02:00
Pierre-Yves Chibon
33a2a12afb
elections: indentation fix
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:27:14 +02:00
Pierre-Yves Chibon
ded44bdb34
elections: mount the secret volume and point elections to it
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:24:19 +02:00
Pierre-Yves Chibon
2b16867d92
elections: fix the path to the alembic revisions
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:15:54 +02:00
Pierre-Yves Chibon
d71529606b
elections: use upstream's alembic upgrade script
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 12:02:34 +02:00
Pierre-Yves Chibon
c5cde07727
elections: the path to the fedora-messaging config is specified by an environment variable in the container
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:58:25 +02:00
Pierre-Yves Chibon
48ac98d72d
elections: Mount the fedora-messaging volumes and config files
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:40:11 +02:00
Pierre-Yves Chibon
91cd0ffc24
elections: Add a configuration file for fedora-messaging
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:27:58 +02:00
Pierre-Yves Chibon
299fad9362
elections: add a secret containing the client_secrets for flask-oidc
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:27:38 +02:00
Pierre-Yves Chibon
30e5b8ba0e
elections: point to id.stg in staging
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:26:12 +02:00
Pierre-Yves Chibon
36d0ed7725
elections: Install the fedora-messaging files
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:25:53 +02:00
Pierre-Yves Chibon
6c8749cf59
distgit/pagure: Fix the amqp_url for fedora-messaging on pagure
...
The cert is now for rabbitmq.stg.fedoraproject.org and not:
rabbitmq01.stg.phx2.fedoraproject.org so having the wrong url in the config
leads to a CertificateError leading to pagure failing to send notifications
on fedora-messaging.
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-29 11:14:38 +02:00
Mohan Boddu
d66de7a089
F30 is now current release and enable automated bodhi pushes
...
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2019-04-27 19:54:07 +00:00
Mohan Boddu
c491708adb
Disable branched compose and enable F30 Cloud and Container composes
...
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2019-04-27 19:38:48 +00:00
Kevin Fenzi
e96da8e528
cloud-noc01: fix typo in last commit, missing , instead of ]
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-27 18:49:05 +00:00
Kevin Fenzi
cbe0963aa9
cloud-noc01: adjust firewall rules: allow communishift network, open port 124 for ntp
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-27 18:47:27 +00:00
Kevin Fenzi
85adc106ff
cloud-noc01: fix typo: s/upd/udp/
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-27 18:27:41 +00:00
Kevin Fenzi
e081c43c74
cloud-noc01: setup dhcp for communishift storage nodes.
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-27 18:24:25 +00:00
Pierre-Yves Chibon
4cbd103c18
Enable running alembic upgrade on create
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-26 10:31:12 +02:00
Pierre-Yves Chibon
3ca380a617
Install python2-koji on simple-koji-ci
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2019-04-26 10:31:12 +02:00
Kevin Fenzi
8024637dcd
buildvmhost: add 2 thunderx2 aarch64 boxes for builder
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2019-04-25 22:43:57 +00:00