jenkins
|
9e659b790b
|
recovery(post-outage): restore jellyfin and maintenance sync
|
2026-05-05 06:31:09 -03:00 |
|
jenkins
|
6c4a7dea29
|
recovery(metis): use atlas kv node secrets
|
2026-04-24 17:29:58 -03:00 |
|
jenkins
|
04a80c1168
|
recovery(metis): seed per-node vault password slots
|
2026-04-24 17:24:37 -03:00 |
|
|
|
7883593166
|
ci(jenkins): inject sonarqube token from vault
|
2026-04-21 19:43:08 -03:00 |
|
|
|
5bf01bb8e6
|
vault(auth): allow maintenance soteria oidc secret path
|
2026-04-12 17:23:41 -03:00 |
|
|
|
deb52c424b
|
maintenance/vault: move Metis runtime secrets to Vault
|
2026-04-05 11:31:05 -03:00 |
|
|
|
0828f0cf9e
|
maintenance: inject metis SSH keys directly from Vault
|
2026-04-05 10:31:20 -03:00 |
|
|
|
e84399d0b1
|
maintenance: source metis SSH keys from Vault
|
2026-04-05 10:25:29 -03:00 |
|
|
|
5ae6c5d4fb
|
maintenance: remoteize metis build and flash
|
2026-03-31 20:42:35 -03:00 |
|
|
|
fdc80b9c0f
|
sso: route metis through dedicated oauth2 proxy
|
2026-03-31 17:32:19 -03:00 |
|
|
|
00c0375790
|
comms: add synapse admin ensure job
|
2026-01-27 04:48:44 -03:00 |
|
|
|
6062e266aa
|
vault: allow ariadne to use vault-admin role
|
2026-01-26 22:26:13 -03:00 |
|
|
|
096bb329e6
|
jenkins: sync harbor pull secret from vault
|
2026-01-22 04:45:24 -03:00 |
|
|
|
ee4af80e15
|
jenkins: use shared harbor creds when present
|
2026-01-22 03:15:38 -03:00 |
|
|
|
0ab34c0af5
|
ariadne: split portal and ariadne db secrets
|
2026-01-21 03:39:17 -03:00 |
|
|
|
0680926dae
|
vault: allow ariadne to read needed secrets
|
2026-01-21 03:21:01 -03:00 |
|
|
|
587a0af1d7
|
maintenance: wire ariadne db and dashboards
|
2026-01-20 23:03:39 -03:00 |
|
|
|
a6b317097e
|
fix: allow maintenance vault sync role
|
2026-01-19 19:07:00 -03:00 |
|
|
|
f3620aa2a4
|
chore: centralize harbor pull credentials
|
2026-01-19 19:02:14 -03:00 |
|
|
|
11a06e7683
|
feat: add Ariadne service and glue scheduling
|
2026-01-19 16:58:02 -03:00 |
|
|
|
47fdd97120
|
vault: allow vaultwarden mailu secret
|
2026-01-19 02:23:16 -03:00 |
|
|
|
e4a06c4ffb
|
portal: use mailu smtp secret
|
2026-01-19 00:56:07 -03:00 |
|
|
|
cb5d38e979
|
vault: allow portal to read postmark relay
|
2026-01-18 01:17:52 -03:00 |
|
|
|
e0cc02d480
|
vault: make retry helper resilient
|
2026-01-17 03:09:33 -03:00 |
|
|
|
dfcf9bcc58
|
vault: retry vault cli operations
|
2026-01-17 03:00:25 -03:00 |
|
|
|
8f5efd3df9
|
vault: retry status checks in config jobs
|
2026-01-17 02:49:25 -03:00 |
|
|
|
15021dd2dc
|
finance: seed vault secrets
|
2026-01-17 00:54:49 -03:00 |
|
|
|
05cdf75dc6
|
finance: add actual budget and firefly
|
2026-01-16 23:52:56 -03:00 |
|
|
|
5ba9501db9
|
longhorn: use harbor mirrors and vault pull secret
|
2026-01-16 17:31:29 -03:00 |
|
|
|
90a25ac73e
|
platform: add cert-manager and align postgres vault path
|
2026-01-16 11:14:48 -03:00 |
|
|
|
a603b88eea
|
vault/keycloak: restore kv access and wger sync rbac
|
2026-01-16 03:46:07 -03:00 |
|
|
|
b308ee8d55
|
vault: allow admin kv browse
|
2026-01-16 03:20:32 -03:00 |
|
|
|
05b0242e26
|
vault: allow UI mount listing for admins
|
2026-01-16 02:06:31 -03:00 |
|
|
|
d4f110534f
|
vault: allow admin policy to update shared secrets
|
2026-01-15 04:17:14 -03:00 |
|
|
|
ebca451243
|
vault: allow sso role to read portal admin secret
|
2026-01-15 03:46:58 -03:00 |
|
|
|
a4d20efe7d
|
vault: allow oidc tuning
|
2026-01-15 02:16:55 -03:00 |
|
|
|
2b934d4263
|
vault: use static token reviewer
|
2026-01-15 02:14:08 -03:00 |
|
|
|
53c4faf2f7
|
vault: add admin role for config jobs
|
2026-01-15 02:06:28 -03:00 |
|
|
|
1eab80648d
|
vault: finalize sidecar migration
|
2026-01-15 01:52:24 -03:00 |
|
|
|
d957e7e7f7
|
vault: read oidc config from vault
|
2026-01-14 23:20:04 -03:00 |
|
|
|
fb05c442f5
|
longhorn: read oauth2-proxy secrets from vault
|
2026-01-14 17:48:12 -03:00 |
|
|
|
4f99000aab
|
vault: inject remaining services with wrappers
|
2026-01-14 17:29:09 -03:00 |
|
|
|
4279db1619
|
vault: stabilize injector templates and add health apps
|
2026-01-14 13:40:29 -03:00 |
|
|
|
c9483b2d80
|
vault: sync harbor pulls
|
2026-01-14 10:07:31 -03:00 |
|
|
|
e897858d97
|
monitoring: move grafana smtp to vault
|
2026-01-14 06:41:34 -03:00 |
|
|
|
c24c7284e5
|
vault: add remaining secret syncs
|
2026-01-14 06:16:42 -03:00 |
|
|
|
bdc32b7a36
|
vault(consumption): sync secrets via CSI
|
2026-01-14 05:07:23 -03:00 |
|
|
|
3c65695dfc
|
vault: wire more services to CSI
|
2026-01-14 02:54:59 -03:00 |
|
|
|
8567cfbee2
|
fix: detect vault initialized state correctly
|
2026-01-14 01:42:28 -03:00 |
|
|
|
ed7ff3b810
|
fix: make vault k8s auth script posix
|
2026-01-14 01:38:27 -03:00 |
|