34 Commits

Author SHA1 Message Date
3b7c7da9df vault: probes use http VAULT_ADDR for http listener 2025-12-20 00:09:44 -03:00
b0b8f5c093 vault: keep probes HTTPS, drop ingress backend tweaks 2025-12-20 00:03:11 -03:00
acbdc76a31 vault: run http inside cluster (tls terminated at ingress) 2025-12-19 23:54:28 -03:00
6d8c47183f vault: backend over https with serversTransport 2025-12-19 23:52:19 -03:00
c04c72023f vault: remove serversTransport, speak http to service 2025-12-19 23:51:32 -03:00
2b827de291 vault: drop unused redirect middleware 2025-12-19 23:50:44 -03:00
c393d8775d vault: add traefik redirect middleware 2025-12-19 23:49:34 -03:00
e7fdc23164 vault: let traefik speak http to service 2025-12-19 23:48:40 -03:00
c39d9000e4 vault: correct serversTransport reference 2025-12-19 23:16:20 -03:00
f79ccf54db vault: traefik serversTransport must include namespace 2025-12-19 21:08:10 -03:00
ada2fadafa vault: pin to worker arm64 nodes 2025-12-19 21:02:49 -03:00
89bd03679c vault: fix traefik serversTransport name 2025-12-19 20:58:29 -03:00
5da0e57aa2 vault: fix manifest and disable mlock 2025-12-19 20:32:10 -03:00
f6b5edd590 vault: drop helm, add raw statefulset 2025-12-19 19:30:09 -03:00
78a542b81a standardize cert issuers to letsencrypt 2025-12-12 15:18:40 -03:00
efd258fc71 vault: drop traefik basicauth 2025-12-11 17:09:05 -03:00
3852ebc0f1 zot,vault: remove oauth2-proxy sso 2025-12-11 17:04:19 -03:00
88db462f8f longhorn/vault: gate via oauth2-proxy 2025-12-07 19:44:02 -03:00
e44def25f8 auth: remove error middleware to allow redirect 2025-12-07 13:19:45 -03:00
088fed6720 auth: forward-auth via external auth host (svc traffic flaky) 2025-12-07 13:03:29 -03:00
84aa870cda auth: use internal oauth2-proxy svc for forward-auth 2025-12-07 11:25:29 -03:00
876ec19543 auth: add 401 redirect middleware to oauth2-proxy 2025-12-07 11:14:25 -03:00
ec1d33f1ca auth: point forward-auth to external auth host 2025-12-07 11:09:09 -03:00
571bf759a2 auth: add namespace-local forward-auth middlewares 2025-12-07 10:25:44 -03:00
7525289a0c auth: wire oauth2-proxy and enable grafana oidc 2025-12-07 02:01:21 -03:00
7107558e41 restore external longhorn-ui 2025-09-05 02:12:45 -05:00
0268cc1377 added vault auth 2025-08-21 08:02:43 -05:00
9070c2653f added vault auth 2025-08-21 07:41:55 -05:00
24542a6092 need certs 2025-08-19 22:15:57 -05:00
d3751ad150 added cred req for vault 2025-08-19 21:01:54 -05:00
4b372126dd added vault 2025-08-19 09:12:35 -05:00
7d6fb8dc26 added helm sources 2025-08-19 08:45:29 -05:00
7f10d31b0a added vault 2025-08-19 03:16:28 -05:00
016cbab0f9 added vault 2025-08-19 01:06:45 -05:00