Commit Graph

33932 Commits

Author SHA1 Message Date
Nils Philippsen
c994c4e5cd Create badges, badges_stg groups
This is to have unified IPA client configuration for badges hosts.

Signed-off-by: Nils Philippsen <nils@redhat.com>
2021-02-01 22:23:41 +00:00
Nils Philippsen
54b72eba2c Remove obsolete Ansible group var files
- buildaarch74, buildarm, buildarm_stg
- copr_front, copr_front_dev, copr_front_stg
- dhcp
- faf_stg
- fas, fas_stg
- fedocal, fedocal_stg
- lockbox
- mirrorlist2, mirrorlist2_stg
- nuancier, nuancier_stg
- postgresql_server
- resultsdb_iad_prod

Signed-off-by: Nils Philippsen <nils@redhat.com>
2021-02-01 22:23:41 +00:00
Nils Philippsen
d6cdeb7aea Consistency: releng_stg -> releng_compose_stg
Signed-off-by: Nils Philippsen <nils@redhat.com>
2021-02-01 22:23:41 +00:00
Nils Philippsen
ba3ed42158 koji_stg: Remove obsolete sudo special case
User `mizdebsk` is a member of group `sysadmin-main` now.

Signed-off-by: Nils Philippsen <nils@redhat.com>
2021-02-01 22:23:41 +00:00
Nils Philippsen
773e025939 bastion: Remove access for modularity-wg group
We have `sysadmin-mbs` now which should cover all people needing access.

Signed-off-by: Nils Philippsen <nils@redhat.com>
2021-02-01 22:23:41 +00:00
Mark O'Brien
326728414d update proxy35 hostvars 2021-02-01 22:07:12 +00:00
Stephen Smoogen
2ed114aafd add new duke ip address to the download groups 2021-02-01 14:07:13 -05:00
Jakub Kadlcik
c7bcb48be7 copr: make sure that swap is available for our builders 2021-02-01 16:46:39 +00:00
Pierre-Yves Chibon
a6ce5fa016 fedocal: enable header_scheme
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2021-02-01 17:27:27 +01:00
František Zatloukal
f5e11a6e62 oraculum: Drop annotations, not needed 2021-02-01 13:29:48 +01:00
František Zatloukal
f8e741cba8 oraculum: Try to disable cookies on the api 2021-02-01 12:55:49 +01:00
František Zatloukal
3bc8bef91d oraculum: Try to workaround some wird caching on the route 2021-02-01 12:46:05 +01:00
Rick Elrod
bc42ad76a3 fedora-web: point staging subdomain sites to a new staging branch
Signed-off-by: Rick Elrod <relrod@redhat.com>
2021-01-29 15:08:26 -06:00
Brendan Reilly
86b4680c28 Add handlers for restarting mbs poller and workers 2021-01-29 14:26:22 -05:00
Brendan Reilly
ad3cefb8a7 Add mbs_frontend boolean 2021-01-29 12:58:56 -05:00
Adam Saleh
8c97edf8f5 Another typo in dashboard definition for fedora_coreos 2021-01-29 17:49:47 +01:00
Adam Saleh
87f38db633 Another typo in dashboard definition for fedora_coreos 2021-01-29 17:46:05 +01:00
Adam Saleh
30b5e3a747 Another ~tTypo in dashboard definition for fedora_coreos 2021-01-29 17:41:39 +01:00
Adam Saleh
cf132e3a38 Typo in dashboard definition for fedora_coreos 2021-01-29 17:32:12 +01:00
František Zatloukal
ea675e0754 oraculum: Prepare playbooks for production deployment 2021-01-29 17:17:33 +01:00
Adam Saleh
2066bb5792 Typo in datasource definition for dashboard 2021-01-29 17:08:47 +01:00
Adam Saleh
71b6d299f4 Typo in the notifier file for dashboards 2021-01-29 17:03:22 +01:00
Adam Saleh
17ac196a29 Adding the forgotten notifier to dashboards. 2021-01-29 16:47:04 +01:00
Adam Saleh
e7e23666d0 Bump to version to trigger dashboar deployment. 2021-01-29 15:55:59 +01:00
Adam Saleh
c190356b0a Adding fedora_coreos_updates dashboard and the promscale datasource. 2021-01-29 15:45:57 +01:00
Pierre-Yves Chibon
fcf49bbc73 fedoca: define the OIDC_OPENID_REALM
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2021-01-29 14:25:08 +01:00
Pierre-Yves Chibon
68a5ab292f fedocal: specify the scopes when querying oidc
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2021-01-29 14:16:48 +01:00
Pierre-Yves Chibon
cfafe0b3cd fedocal: secret have a secretName
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2021-01-29 14:09:50 +01:00
Pierre-Yves Chibon
fecd7e4b86 fedocal: secrets are not configMap
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2021-01-29 14:07:58 +01:00
Pierre-Yves Chibon
c4da6515f9 fedocal: mount the fedora-messaging cert in the pod
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2021-01-29 14:06:26 +01:00
Pierre-Yves Chibon
d4998f2e25 fedoca: fix the configurations for the new url and secret location
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2021-01-29 14:03:03 +01:00
Pierre-Yves Chibon
065a4a60a9 fedocal: Mount the secrets when deploying
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2021-01-29 14:02:34 +01:00
Kevin Fenzi
dbd763816b rabbitmq cluster / osci queues: adjust so playbook doesn't fail on trying to change queues
The osci queue's have changed since this playbook last completed.
The ttl changed and the routing keys have changed.
The ansible rabbitmq module can't change these things on already created
queues because the api doesn't allow it. This makes this playbook fail
with:

"RabbitMQ RESTAPI doesn't support attribute changes for existing
queues"

So, for now, set the ttl to what it already is, and don't change the
routing keys at all. Hopefully this will get it to complete and osci can
manage at least routing keys themseleves wherever they do that.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2021-01-28 13:50:56 -08:00
Brendan Reilly
24e86b78ec Copy SSL certs for MBS RabbitMQ 2021-01-28 16:13:02 -05:00
Kevin Fenzi
acde59f6a3 bodhi / backend / pungi config: add glx-utils to multilib whitelist
See https://pagure.io/pungi-fedora/issue/849

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2021-01-28 12:42:23 -08:00
Brendan Reilly
2ce9d8e8d3 MBS uses SSL auth for celery 2021-01-28 14:16:24 -05:00
Brendan Reilly
8ed43bb25e Fix MBS frontend configuration 2021-01-28 12:05:50 -05:00
Brian Stinson
c497b17e19 Add a centos-koji user in rabbitmq that corresponds to the certs
generated for us

Note: this is indeed a different user from the one listed before it.
koji-centos is used for mbbox.

Relates to: https://pagure.io/fedora-infrastructure/issue/9603
2021-01-28 09:17:53 -06:00
Brendan Reilly
5a18bd3833 Only apply changes to stage 2021-01-27 12:36:04 -05:00
Brendan Reilly
a00708b19b Updated playbooks for MBS v3 deployment 2021-01-27 12:36:04 -05:00
František Zatloukal
9f7beb2d5a oraculum: Final fixup for flower 2021-01-27 16:16:51 +01:00
František Zatloukal
116879e870 oraculum: Try to remove trailing / from flower cmd 2021-01-27 15:32:42 +01:00
František Zatloukal
54404a1255 oraculum: Try to pass celery_app object to flower 2021-01-27 15:20:09 +01:00
Adam Saleh
71125c01c4 Added asaleh to fedocal appowners 2021-01-27 15:12:27 +01:00
František Zatloukal
6e485c2faf oraculum: add url-prefix back to flower 2021-01-27 15:02:26 +01:00
František Zatloukal
d4112fc373 oraculum: Drop --url_prefix for flower 2021-01-27 14:58:49 +01:00
František Zatloukal
18717e1a0d oraculum: Try haproxy rewrite for flower 2021-01-27 14:41:01 +01:00
František Zatloukal
d92e0eaf58 oraculum: Try url prefix for flower 2021-01-27 14:28:39 +01:00
František Zatloukal
8bdbf004d8 oraculum: I am an idiot 2021-01-27 14:20:44 +01:00
František Zatloukal
3d912d85f0 oraculum: One more fixup for flower 2021-01-27 14:18:02 +01:00