30 Commits

Author SHA1 Message Date
jenkins
04a80c1168 recovery(metis): seed per-node vault password slots 2026-04-24 17:24:37 -03:00
3ccc2a1100 quality: standardize suite checks and add SonarQube stack 2026-04-19 14:18:58 -03:00
091e743d0e maintenance(soteria): add protected UI, OIDC bootstrap, and backup health panel wiring 2026-04-12 15:07:53 -03:00
e84399d0b1 maintenance: source metis SSH keys from Vault 2026-04-05 10:25:29 -03:00
fdc80b9c0f sso: route metis through dedicated oauth2 proxy 2026-03-31 17:32:19 -03:00
bc59270202 chore: organize one-off jobs 2026-01-28 01:48:32 -03:00
05cdf75dc6 finance: add actual budget and firefly 2026-01-16 23:52:56 -03:00
30588fd739 vault: fix data-prepper pipeline and portal admin secret job 2026-01-15 03:42:57 -03:00
4f99000aab vault: inject remaining services with wrappers 2026-01-14 17:29:09 -03:00
4279db1619 vault: stabilize injector templates and add health apps 2026-01-14 13:40:29 -03:00
1c3cb83b0a keycloak: switch jobs to vault injector 2026-01-14 13:20:57 -03:00
c9483b2d80 vault: sync harbor pulls 2026-01-14 10:07:31 -03:00
3c65695dfc vault: wire more services to CSI 2026-01-14 02:54:59 -03:00
0d9291da7e vault: align oidc roles with keycloak 2026-01-14 02:24:32 -03:00
6779e99617 keycloak: ensure harbor oidc scope 2026-01-14 01:21:08 -03:00
ac1389b75b feat: add harbor/vault oidc automation 2026-01-14 01:07:47 -03:00
e576daf98b iac: localize configmap scripts 2026-01-13 12:07:03 -03:00
abc6e45d17 logging: add opensearch dashboards ui 2026-01-09 08:54:07 -03:00
4ffa39c5a4 comms: ensure core secrets and synapse oidc 2026-01-08 03:53:49 -03:00
4f2eb38514 comms: ensure MAS secrets via keycloak admin job 2026-01-08 02:09:23 -03:00
1e2564ba7f test(portal): sync e2e client secret 2026-01-04 03:35:26 -03:00
6ec27c75b0 tests: add Keycloak email probe 2026-01-04 00:53:13 -03:00
2e8035975e keycloak: add token exchange E2E smoke test 2026-01-03 15:58:44 -03:00
3d37050968 keycloak: enable fine-grained token exchange authz 2026-01-03 15:43:07 -03:00
0265770d98 keycloak: allow token exchange to portal 2026-01-03 14:48:28 -03:00
4e65b90e7f keycloak: add portal e2e client 2026-01-03 14:35:23 -03:00
8ff1f6ba3f keycloak: set bstein mailu_email 2026-01-03 06:15:16 -03:00
6589f8f8e8 sso: codify openldap bootstrap and keycloak federation 2026-01-02 13:18:32 -03:00
3228bd292d keycloak: enable reset password 2026-01-02 03:39:08 -03:00
7e46ffc075 keycloak: add raw manifests backed by shared postgres 2025-12-02 17:58:19 -03:00