Commit graph

3562 commits

Author SHA1 Message Date
406657f6d6
changed back 2023-12-11 14:54:07 +01:00
9726c19367
update db 2023-12-11 14:45:57 +01:00
0b31b8afde
use new setup for loading SSH keys
Ref: SC-1773
2023-12-11 14:45:43 +01:00
cacb97a22c
Allow running of bumptag with out signed commits or tags
By setting ALLOW_UNSIGNED_COMMITS_WITHOUT_TAGS you can bootstrap bumptag
on first startup of new repo
2023-12-04 14:24:34 +01:00
3e302ac36c
updated telegraf url 2023-12-01 14:31:04 +01:00
bd1a0b60dc
New version of tests for eidas. SC-1981. 2023-11-30 09:14:01 +01:00
ecedda68e3
Merge pull request #50 from SUNET/kano-sshproxyjump
PREPARE/ADDHOST: allow the ues of proxyjump with ip address
2023-11-29 12:53:05 +01:00
71e112e009
PREPARE/ADDHOST: allow the ues of proxyjump with ip address
With this patch you can specify a ProxyJump for prepare-iaas-ubuntu,
prepare-iaas-debian and addhost. Example:

./prepare-iaas-debian 89.47.191.7 hj
./addhost -b -n node1.extern.drive.test.sunet.se -p hj -- 89.47.191.7

where hj is a host defined in my .ssh/config suitable for a proxyjump
to the host in question.

This makes it easier to use ip addresses for these scripts which might
be neccessary if dns takes a while to propagate.
2023-11-29 12:10:34 +01:00
9530f35b2a
upgrade prid in production to 2.0.0 2023-11-29 10:10:29 +01:00
0cb5c9b607
update db 2023-11-29 10:09:47 +01:00
70737abf27
removed ssh-keys SC-1961 2023-11-21 15:06:09 +01:00
c92c837a89
Add new tests for QA, SC-1953. 2023-11-21 12:13:19 +01:00
8ef9120a7d
configured ha auto recovery for connectorn 2023-11-21 10:39:07 +01:00
90dd28b0e4
upgrade connector in prod 2023-11-21 10:10:01 +01:00
dc33b5005c
update db 2023-11-21 10:06:33 +01:00
John Van de Meulebrouck Brendgard
8d4ce2d1b7
Make sure that COSMOS_BASE is only readable
by root since it's possible that the directory
can contain files that after applying the
overlay to / only should be read or writable
by root.
2023-11-17 15:03:47 +01:00
John Van de Meulebrouck Brendgard
75e566ab61
Make sure that /root in overlay is owned by root
as well as that /root/.ssh and its content is
only owned and readable by root. This is redundant
if the previous permissions were properly applied
and no other changes have been made by the user
or something else, but is added for good measure
as a layered defense.
2023-11-17 14:58:51 +01:00
John Van de Meulebrouck Brendgard
ca353ed406
Set same permissions for /root/.ssh/authorized_keys
in post-tasks.d/010fix-ssh-perms as is done by
Puppet with sunet::ssh_keys.
2023-11-17 13:50:02 +01:00
Micke Nordin
1bd6524ad3
Merge pull request #48 from SUNET/john-bump-tag-from-nunoc-ops
Merge of improved bump-tag from nunoc-ops
2023-11-16 13:55:49 +01:00
John Van de Meulebrouck Brendgard
21c0cad8a0
Consistently use [[ for if statements. 2023-11-16 12:12:36 +01:00
John Van de Meulebrouck Brendgard
dc1df6671c
Shellcheck needs to have the PAGER quoted
in order to correctly interpret the meaning
according to it's wiki.
2023-11-16 12:11:09 +01:00
John Van de Meulebrouck Brendgard
fd4523308f
Replaced 'egrep' that is now deprecated. 2023-11-16 12:09:02 +01:00
John Van de Meulebrouck Brendgard
cb9e1f8670
Added shellcheck exceptions for misplaced warning. 2023-11-16 12:07:10 +01:00
John Van de Meulebrouck Brendgard
5a47b1a3f7
Readded this_branch=$(git rev-parse --abbrev-ref HEAD)
since it wasn't included in change to check
against the current branch instead of master
2023-11-16 12:04:30 +01:00
John Van de Meulebrouck Brendgard
826b8edf82
Changed from [[ ! -z ... to [[ -n ... 2023-11-16 11:59:33 +01:00
John Van de Meulebrouck Brendgard
53c58b413e
Changed from if [[ ${?} ]] to if cmd 2023-11-16 11:56:49 +01:00
6991c4492a
upgrade prid in test and qa 2023-11-15 15:18:44 +01:00
f88470d83e
update db 2023-11-15 15:18:21 +01:00
John Van de Meulebrouck Brendgard
8a7c85dcf0
Added bump-tag from nunoc-ops that has
multiple improvements and checks for
signed commits, makes sure that important
script are not tampered with and much more.
2023-11-15 14:02:49 +01:00
083d6eda83 bump-tag: Compare against current branch
Mariah pointed out that this was lost in:

6ac9294dea

And should be reinstated
2023-11-15 12:15:46 +01:00
Micke Nordin
8a947ffa28
Merge pull request #46 from SUNET/jocar-bookworm-depends
Bookworm depends
2023-11-14 15:34:44 +01:00
a6a67d355f
Diffable 2023-11-14 15:28:46 +01:00
120c4a5a93
A few more depends for Bookworm 2023-11-14 15:27:45 +01:00
438197b8a0
update db 2023-11-02 12:23:54 +01:00
92d3bf0e50
upgrading docker-ce 2023-11-02 12:23:40 +01:00
72d13ecf04
updated countries 2023-11-01 16:51:38 +01:00
22668b3018
install packages using puppet-sunet class 2023-11-01 12:49:03 +01:00
bde2d74447
update db 2023-11-01 11:52:30 +01:00
2faf879452
upgrading mdqp image 2023-11-01 11:52:26 +01:00
d9a6e32eab
changed local.yaml 2023-11-01 11:17:42 +01:00
32d0a7826a
update db 2023-11-01 11:10:28 +01:00
ab1b9a658a
fixing new publisher in QA
Ref: SC-1384
2023-11-01 11:10:23 +01:00
e2af031bd2
update db 2023-11-01 10:24:24 +01:00
cc19e95960
changed docker storage 2023-11-01 10:24:20 +01:00
ea2fdf2857
update db 2023-11-01 10:14:57 +01:00
98ce9851a7
New MDQ for SC QA
Ref: SC-1384
2023-11-01 10:14:45 +01:00
da7698820c
updated sunetops_ssh_keys 2023-10-30 14:26:14 +01:00
fb6d99b5c9
fixed a mistake 2023-10-30 14:18:54 +01:00
54d642630a
made one of Björn Matsson's key absent 2023-10-30 14:16:38 +01:00
50eb93d9d3
updated sunet_ssh_keys
Ref - SC-1773
2023-10-30 14:16:06 +01:00