1064 Commits

Author SHA1 Message Date
7d884b2bc8 vault: fix oidc scopes parsing 2026-01-14 02:52:51 -03:00
ca0c618f82 vault: run oidc config with sh 2026-01-14 02:28:38 -03:00
0d9291da7e vault: align oidc roles with keycloak 2026-01-14 02:24:32 -03:00
8567cfbee2 fix: detect vault initialized state correctly 2026-01-14 01:42:28 -03:00
ed7ff3b810 fix: make vault k8s auth script posix 2026-01-14 01:38:27 -03:00
c096b35078 fix: run vault k8s auth config with sh 2026-01-14 01:35:06 -03:00
5d53d900aa feat: start vault consumption for outline and planka 2026-01-14 01:30:41 -03:00
023032fd76 keycloak: fix harbor oidc job 2026-01-14 01:24:18 -03:00
f343f58ced keycloak: bump harbor oidc job 2026-01-14 01:22:30 -03:00
6779e99617 keycloak: ensure harbor oidc scope 2026-01-14 01:21:08 -03:00
ff29339a19 chore: refresh knowledge catalog headers 2026-01-14 01:08:05 -03:00
ac1389b75b feat: add harbor/vault oidc automation 2026-01-14 01:07:47 -03:00
c2aef63e95 monitoring: allow grafana upgrade remediation 2026-01-13 21:18:42 -03:00
4daa5f0e50 monitoring: align victoria-metrics PVC size 2026-01-13 21:15:10 -03:00
b70d9a6328 comms: restart atlasbot after MAS fixes 2026-01-13 21:09:41 -03:00
49c4cdb10c comms: rerun mas local user seed 2026-01-13 21:06:45 -03:00
08a6b7e118 comms: disable synapse oidc with MAS 2026-01-13 21:04:29 -03:00
1bbafbac7c comms: disable synapse password auth with MAS 2026-01-13 21:02:19 -03:00
20f99580ca comms: fix synapse runtime config injection 2026-01-13 20:59:35 -03:00
45f3315f10 comms: restore MAS and OIDC secrets in synapse 2026-01-13 20:55:36 -03:00
e154f47620 comms: fix signing key job permissions 2026-01-13 20:49:11 -03:00
f5f4649614 comms: add debug logging for signing key job 2026-01-13 20:47:54 -03:00
3554c01c1c comms: retry synapse signing key job 2026-01-13 20:45:14 -03:00
27b606d857 comms: seed synapse signing key for helm 2026-01-13 20:42:30 -03:00
9d0ce33e5c harbor: enable keycloak oidc settings 2026-01-13 20:42:26 -03:00
55fa7fc3a7 fix(bstein-dev-home): drop invalid image overrides 2026-01-13 20:27:50 -03:00
7171c1f845 comms: drop legacy synapse configmaps 2026-01-13 20:07:51 -03:00
3e19adad7c comms: bump ensure job names for new images 2026-01-13 20:03:11 -03:00
6f4cc58941 vault: prep helm releases and image pins 2026-01-13 19:29:14 -03:00
3c3a573e3d platform: move postgres to infrastructure 2026-01-13 17:53:04 -03:00
flux-bot
9029d60ef3 chore(bstein-dev-home): automated image update 2026-01-13 15:57:24 +00:00
3defd5bee1 merge main into sso-hardening 2026-01-13 12:56:21 -03:00
1430f34851 gitea: auto-link oidc accounts 2026-01-13 12:47:41 -03:00
20f8d4980c postgres: add flux + vault csi 2026-01-13 12:35:59 -03:00
e576daf98b iac: localize configmap scripts 2026-01-13 12:07:03 -03:00
6fa2203561 iac: externalize ConfigMap scripts 2026-01-13 10:00:19 -03:00
flux-bot
37c0dd809e chore(bstein-dev-home): automated image update 2026-01-13 12:48:56 +00:00
flux-bot
e4edebe22d chore(bstein-dev-home): automated image update 2026-01-13 12:47:56 +00:00
flux-bot
dadabdd213 chore(bstein-dev-home): automated image update 2026-01-13 12:00:52 +00:00
flux-bot
2b7ceb101a chore(bstein-dev-home): automated image update 2026-01-13 11:59:53 +00:00
flux-bot
6cf2ffb712 chore(bstein-dev-home): automated image update 2026-01-13 02:38:08 +00:00
flux-bot
5e8cdb40e6 chore(bstein-dev-home): automated image update 2026-01-13 02:37:08 +00:00
8a22eb1d1c planka: default users to project owners 2026-01-12 23:24:09 -03:00
4826cb24c6 outline: move to local storage 2026-01-12 23:14:17 -03:00
46d15d6216 planka: enable project owners via oidc 2026-01-12 23:14:17 -03:00
flux-bot
9d41ab6dd6 chore(bstein-dev-home): automated image update 2026-01-13 01:58:04 +00:00
flux-bot
407ea84e72 chore(bstein-dev-home): automated image update 2026-01-13 01:57:04 +00:00
aac9e20f9b planka: avoid mounting over assets 2026-01-12 22:47:23 -03:00
f8a95d0e8a planka: fix init permissions 2026-01-12 22:02:07 -03:00
0ceda5c754 services: fix outline pg ssl and planka init 2026-01-12 21:45:00 -03:00