|
|
dd0b4e28e7
|
vault: inject comms and grafana secrets
|
2026-01-14 22:29:27 -03:00 |
|
|
|
49d4d13a64
|
health: fix wger env template newlines
|
2026-01-14 22:23:48 -03:00 |
|
|
|
790e41300f
|
health: avoid surge rollout for wger
|
2026-01-14 22:16:36 -03:00 |
|
|
|
a99f680711
|
health: load wger secrets without shell expansion
|
2026-01-14 22:11:55 -03:00 |
|
|
|
bc3bfb9348
|
harbor: fix vault env templates
|
2026-01-14 22:07:51 -03:00 |
|
|
|
79d4cac000
|
health: escape wger env vars and fix nginx temp paths
|
2026-01-14 22:03:40 -03:00 |
|
|
|
efbfca1677
|
harbor: preserve required volume mounts
|
2026-01-14 21:29:40 -03:00 |
|
|
|
665612b781
|
vault: keep copy loop from clobbering args
|
2026-01-14 21:24:16 -03:00 |
|
|
|
f484083653
|
harbor: fix vault secretKey file path
|
2026-01-14 21:17:05 -03:00 |
|
|
|
6c91e0313f
|
harbor: mount vault entrypoint script
|
2026-01-14 21:02:50 -03:00 |
|
|
|
a2646d92f0
|
harbor: move secrets to vault sidecars
|
2026-01-14 20:46:46 -03:00 |
|
|
|
d716edb6ef
|
jenkins: load vault env via env
|
2026-01-14 17:57:10 -03:00 |
|
|
|
dbfc541ccb
|
jenkins: escape vault env values
|
2026-01-14 17:53:09 -03:00 |
|
|
|
fb05c442f5
|
longhorn: read oauth2-proxy secrets from vault
|
2026-01-14 17:48:12 -03:00 |
|
|
|
4f99000aab
|
vault: inject remaining services with wrappers
|
2026-01-14 17:29:09 -03:00 |
|
|
|
df7369f8d3
|
vault: inject monitoring exporter and health jobs
|
2026-01-14 14:49:41 -03:00 |
|
|
|
fa389be9b8
|
vault: bump job names for injector
|
2026-01-14 14:33:57 -03:00 |
|
|
|
223ff4936f
|
vault: prepopulate injector for jobs
|
2026-01-14 14:29:29 -03:00 |
|
|
|
c6914b4488
|
comms: add vault-secrets emptyDir for mas
|
2026-01-14 14:24:55 -03:00 |
|
|
|
be9d4bf32e
|
comms: shorten vault inject file names
|
2026-01-14 14:21:58 -03:00 |
|
|
|
f11fb2e2e1
|
vault: move comms and mailu workloads to injector
|
2026-01-14 14:17:26 -03:00 |
|
|
|
f126dc5412
|
keycloak: schedule on arm64 workers
|
2026-01-14 13:49:37 -03:00 |
|
|
|
558c1a0b32
|
gitea: tolerate oidc init failures
|
2026-01-14 13:46:34 -03:00 |
|
|
|
6d46ca1e3b
|
gitea: trim vault secret newlines
|
2026-01-14 13:43:56 -03:00 |
|
|
|
65d87f0b2e
|
keycloak: bump job names
|
2026-01-14 13:42:08 -03:00 |
|
|
|
4279db1619
|
vault: stabilize injector templates and add health apps
|
2026-01-14 13:40:29 -03:00 |
|
|
|
1c3cb83b0a
|
keycloak: switch jobs to vault injector
|
2026-01-14 13:20:57 -03:00 |
|
|
|
50b446aec3
|
nextcloud: fix vault template keys
|
2026-01-14 13:00:21 -03:00 |
|
|
|
3c5032f12f
|
gitea: run vault init first
|
2026-01-14 12:44:49 -03:00 |
|
|
|
0928c62d91
|
bstein-dev-home: bump onboarding job
|
2026-01-14 12:34:02 -03:00 |
|
|
|
9c99e68ad8
|
vault: move core apps to injector
|
2026-01-14 12:28:10 -03:00 |
|
|
|
c9483b2d80
|
vault: sync harbor pulls
|
2026-01-14 10:07:31 -03:00 |
|
|
|
e897858d97
|
monitoring: move grafana smtp to vault
|
2026-01-14 06:41:34 -03:00 |
|
|
|
c24c7284e5
|
vault: add remaining secret syncs
|
2026-01-14 06:16:42 -03:00 |
|
|
|
c0bab2d528
|
jobs: bump names after vault tweaks
|
2026-01-14 05:47:21 -03:00 |
|
|
|
ab51d54101
|
jobs: drop apk in kubectl image
|
2026-01-14 05:41:01 -03:00 |
|
|
|
8b01bed322
|
comms: restore livekit token env
|
2026-01-14 05:35:51 -03:00 |
|
|
|
a4ecb0f2aa
|
jobs: bump names for immutability
|
2026-01-14 05:32:07 -03:00 |
|
|
|
48b81d0b22
|
mailu: bump sync job name
|
2026-01-14 05:11:27 -03:00 |
|
|
|
bdc32b7a36
|
vault(consumption): sync secrets via CSI
|
2026-01-14 05:07:23 -03:00 |
|
|
|
58a9eb8a35
|
vault: send oidc role payload as json
|
2026-01-14 03:45:03 -03:00 |
|
|
|
13583a9a87
|
fix(gitea): inline vault secrets
|
2026-01-14 03:11:53 -03:00 |
|
|
|
306ed18c80
|
fix: resolve gitea mounts and bump portal job
|
2026-01-14 03:00:10 -03:00 |
|
|
|
3bcf04f754
|
vault: write bound_claims as file
|
2026-01-14 02:56:29 -03:00 |
|
|
|
3c65695dfc
|
vault: wire more services to CSI
|
2026-01-14 02:54:59 -03:00 |
|
|
|
7d884b2bc8
|
vault: fix oidc scopes parsing
|
2026-01-14 02:52:51 -03:00 |
|
|
|
ca0c618f82
|
vault: run oidc config with sh
|
2026-01-14 02:28:38 -03:00 |
|
|
|
0d9291da7e
|
vault: align oidc roles with keycloak
|
2026-01-14 02:24:32 -03:00 |
|
|
|
8567cfbee2
|
fix: detect vault initialized state correctly
|
2026-01-14 01:42:28 -03:00 |
|
|
|
ed7ff3b810
|
fix: make vault k8s auth script posix
|
2026-01-14 01:38:27 -03:00 |
|