Clement Verna
82dd1da173
Add registry_secret_name to osbs-client defaults
...
Signed-off-by: Clement Verna <cverna@tutanota.com >
2018-05-14 19:36:22 +02:00
Clement Verna
4902cb0c07
Make the registry_secret_name optional in osbs.conf template
...
Signed-off-by: Clement Verna <cverna@tutanota.com >
2018-05-14 15:40:30 +02:00
Clement Verna
f57315e0f1
Declare the registry secret name only in the playbook
...
Signed-off-by: Clement Verna <cverna@tutanota.com >
2018-05-14 12:07:28 +02:00
Kevin Fenzi
9c9ee7c534
I guess lets try not using group nrpe..
2018-05-08 00:36:41 +00:00
Kevin Fenzi
d3cfabb9af
ok then, lets try here.
2018-05-08 00:30:06 +00:00
Clement Verna
e57f7888ad
Fix registry related configuration
...
Signed-off-by: Clement Verna <cverna@tutanota.com >
2018-04-18 14:14:45 +02:00
Kevin Fenzi
6783d34e8e
make the osbs.conf readable to nrpe user for monitoring
2018-04-17 17:59:34 +00:00
Clement Verna
480524ffb0
Disable also flatpak_create_oci plugin
...
Signed-off-by: Clement Verna <cverna@tutanota.com >
2018-04-16 09:43:58 +02:00
Patrick Uiterwijk
29a5a192b8
Also disable flatpak, it is broken
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2018-04-15 03:34:53 +02:00
Patrick Uiterwijk
f5c19dc893
Disable module compose resolving in OSBS for now
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2018-04-15 03:00:18 +02:00
Clement Verna
c7489cfc5c
Fix osbs client arrangement and secret names
...
Signed-off-by: Clement Verna <cverna@tutanota.com >
2018-04-13 12:43:33 +02:00
Clement Verna
65d21f48b7
Add the token_file variable to osbs.conf template
...
Signed-off-by: Clement Verna <cverna@tutanota.com >
2018-04-10 09:30:51 +02:00
Clement Verna
84052aaf53
Update osbs-client configuration on builders
...
Signed-off-by: Clement Verna <cverna@tutanota.com >
2018-04-04 19:22:12 +02:00
Clement Verna
982ca6c913
Add x86-64 osbs platform
...
Signed-off-by: Clement Verna <cverna@tutanota.com >
2018-03-21 10:44:39 +01:00
Clement Verna
6f009a72fc
Replace incorrect char in the variable name second try
...
Signed-off-by: Clement Verna <cverna@tutanota.com >
2018-03-21 10:18:55 +01:00
Clement Verna
66ffe1141f
Replace incorrect char in the variable name
...
Signed-off-by: Clement Verna <cverna@tutanota.com >
2018-03-21 10:06:11 +01:00
Clement Verna
0ffc553d9f
Add Orchestrator/Worker config to osbs.conf template
...
Signed-off-by: Clement Verna <cverna@tutanota.com >
2018-03-20 12:18:07 +01:00
Patrick Uiterwijk
7e908361d4
Also set cert secret correct for scratch
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-11-28 00:36:39 +00:00
Patrick Uiterwijk
8a08126441
Add tags to osbs-client role
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-11-28 00:33:30 +00:00
Patrick Uiterwijk
4c463059db
Do not set koji_certs_secret = False. That leads to unstarted builds
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-11-28 00:32:54 +00:00
Patrick Uiterwijk
039b08354a
Yum allowed state=installed. Lets use state=present consistently
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-10-08 22:31:03 +00:00
Adam Miller
16f198fe0e
add namespace and enable orchestrator in osbs-client
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2017-08-10 22:06:27 +00:00
Ralph Bean
0d64f05a4e
Some explanatory notes.
2017-06-20 14:30:05 +00:00
Adam Miller
0a260d3ebc
Revert "override osbs default input.json to ensure secure comms everywhere"
...
This reverts commit 7f809c31fb .
2016-12-16 06:39:35 +00:00
Adam Miller
a6747b056a
Revert "verify_ssl: true for osbs store metadata plugin"
...
This reverts commit dd3b55935f .
This change is going to require a bit more work because the cert in
question is self-signed and auto-generated by the openshift-ansible
cluster bootstrapping since it's only internal to the cluster.
Patrick has an idea for how to handle this going forward, will
follow up later.
2016-12-16 06:37:50 +00:00
Adam Miller
dd3b55935f
verify_ssl: true for osbs store metadata plugin
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-12-16 04:42:11 +00:00
Adam Miller
7f809c31fb
override osbs default input.json to ensure secure comms everywhere
...
This reverts commit ab5bec7b8f .
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-12-15 23:32:25 +00:00
Adam Miller
ab5bec7b8f
Revert "override osbs default input.json to ensure secure comms everywhere"
...
This reverts commit 8a3f9ed982 .
2016-12-15 17:41:25 +00:00
Adam Miller
8cf789a8ba
Revert "set version v2 for tag_and_push osbs plugin override input json"
...
This reverts commit 1e80910934 .
2016-12-15 17:41:14 +00:00
Adam Miller
1e80910934
set version v2 for tag_and_push osbs plugin override input json
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-12-15 14:26:57 +00:00
Adam Miller
8a3f9ed982
override osbs default input.json to ensure secure comms everywhere
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-12-15 14:25:13 +00:00
Adam Miller
db026247dc
Revert "override osbs default input.json to ensure secure comms everywhere"
...
This breaks OSBS, will debug and re-apply later when fixed.
This reverts commit 52d5e432fa .
2016-12-14 23:41:28 +00:00
Adam Miller
52d5e432fa
override osbs default input.json to ensure secure comms everywhere
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-12-14 23:24:41 +00:00
Adam Miller
2cb84008d0
Revert "remove pre_build koji plugin from osbs, we don't use custom repos for osbs"
...
This reverts commit 3baeb5a61d .
2016-12-05 18:39:48 +00:00
Adam Miller
3baeb5a61d
remove pre_build koji plugin from osbs, we don't use custom repos for osbs
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-12-05 18:30:54 +00:00
Adam Miller
f4bd900b40
move osbs site customize conf to correct filename
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-12-03 06:09:41 +00:00
Adam Miller
debd16df22
Clean up OSBS items
...
- Remove osbs-client from koji-hub, no longer needed
- Set site-specific OSBS plugins config
- Remove atomic-reactor.tar.gz hardlinking for docker, no longer
needed
- Update osbs/atomic-reactor buildroot to user RPM version of
atomic-reactor and not source shipped with RPM (fixed issue
so this works now)
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-12-02 23:19:04 +00:00
Adam Miller
7374fd7245
fix osbs krb5 keytab path, add new koji_kerb conf in osbs-client role
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-12-01 16:42:12 +00:00
Adam Miller
1bee593de6
fix osbs-client role templating
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-11-23 21:47:44 +00:00
Adam Miller
090c85d868
set osbs to use krb5 for koji auth instead of ssl certs
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-11-23 21:36:59 +00:00
Adam Miller
4c8624002d
update osbs-client [scratch] config section to set scratch=true
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-10-14 14:39:36 +00:00
Adam Miller
34bb8fda39
add [scratch] section to osbs.conf for new scratch implementation in koji-containerbuild
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-09-20 20:34:46 +00:00
Kevin Fenzi
4f30290081
try and work around the acl module changing permissions
2016-07-20 22:05:14 +00:00
Adam Miller
bf1a02d8d3
move setfacl nrpe on /etc/osbs.conf to osbs-master group playbook and not in osbs-client role
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-07-15 18:51:07 +00:00
Adam Miller
5a954fb5ae
setfacl for osbs config file for npre/nagios monitoring
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-07-14 19:40:25 +00:00
Adam Miller
438d108f5b
fix permissions on osbs.conf
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-07-06 15:26:43 +00:00
Adam Miller
e5fdab6ea1
osbs: actually add koji_certs_secret to osbs-client role defaults
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-03-31 17:01:38 +00:00
Adam Miller
01c573b623
osbs: add openshift koji secret name to osbs.conf
...
Signed-off-by: Adam Miller <admiller@redhat.com >
2016-03-31 16:58:19 +00:00
Adam Miller
51f969af52
fix osbs-client role builder_openshift_url in osbs.conf template
2016-03-02 21:44:12 +00:00
Adam Miller
033f0fe5e9
Set stage/dev OSBS auth to require htpasswd instead of be wide open
2016-03-02 21:00:08 +00:00