aboutsummaryrefslogtreecommitdiffstats
path: root/kubernetes (follow)
Commit message (Collapse)AuthorAgeLines
...
* Add CORS config for ThalliumGravatar Joe Banks2024-08-19-0/+7
|
* Add signing key for thalliumGravatar Chris Lovering2024-08-19-0/+0
|
* Reflect pydis.wtf cert into mergeGravatar Joe Banks2024-08-18-4/+4
|
* Thallium Backend to merch-apiGravatar Joe Banks2024-08-18-26/+26
|
* Add manifests for thalliumGravatar Chris Lovering2024-08-18-0/+79
|
* Switch to LE prod for owlcorp.ukGravatar Joe Banks2024-08-18-1/+1
|
* Add owlcorp.uk TLS certificateGravatar Joe Banks2024-08-18-0/+18
|
* Reformat scripts with latest ruff rulesGravatar Chris Lovering2024-08-12-2/+2
|
* Update modmail secretsGravatar Chris Lovering2024-08-02-0/+0
|
* Update modmail secretsGravatar Chris Lovering2024-08-02-0/+0
|
* Ensure int64 values are stored as stringsGravatar Chris Lovering2024-08-02-0/+0
|
* Update Modmail secretsGravatar Chris Lovering2024-08-02-0/+0
|
* Configure Loki to retain logs for 30 days maximumGravatar Joe Banks2024-07-31-0/+2
|
* Only deploy DNS on main if DNS path is updatedGravatar Chris Lovering2024-07-30-8/+40
|
* Also reflect ghcr pull secret to modmail namespaceGravatar Chris Lovering2024-07-26-0/+0
|
* Move ghcr-pull-secret to use reflection, rather than duplicating the secretGravatar Chris Lovering2024-07-26-0/+0
|
* Add LDAP secrets to King ArthurGravatar Joe Banks2024-07-26-0/+0
|
* Mount IPA CA to King ArthurGravatar Joe Banks2024-07-26-18/+23
|
* Reflect IPA CA to bots namespaceGravatar Joe Banks2024-07-26-2/+2
|
* Mount new config for LDAP to Grafana and add IPA CA certGravatar Joe Banks2024-07-26-2/+14
|
* Add LDAP bind user password for GrafanaGravatar Joe Banks2024-07-26-0/+0
|
* Add new Grafana LDAP config and ldap.toml configGravatar Joe Banks2024-07-26-0/+65
|
* Move IPA CA to be a cluster-wide configmap (with Reflector)Gravatar Joe Banks2024-07-26-34/+39
|
* Add new modmail secretsGravatar Chris Lovering2024-07-26-0/+0
|
* Redirect requests to root to account config pageGravatar Joe Banks2024-07-25-13/+17
|
* chore(deps): update registry.k8s.io/kube-state-metrics/kube-state-metrics ↵Gravatar renovate[bot]2024-07-24-1/+1
| | | | | | | | | docker tag to v2.13.0 (#412) | datasource | package | from | to | | ---------- | ----------------------------------------------------- | ------- | ------- | | docker | registry.k8s.io/kube-state-metrics/kube-state-metrics | v2.12.0 | v2.13.0 | Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
* Remove ghost blogGravatar Chris Lovering2024-07-22-99/+0
|
* chore(deps): update ghost docker tag to v5.88Gravatar renovate[bot]2024-07-22-1/+1
| | | | | | | datasource | package | from | to | | ---------- | ------- | ---- | ---- | | docker | ghost | 5.87 | 5.88 |
* Add a trust store to Keycloak for the IPA generated CAGravatar Joe Banks2024-07-21-1/+44
| | | | | | | This allows us to authenticate requests to LDAP with LDAPS and ensure a) authenticity and b) security of the transmission. Signed-off-by: Joe Banks <[email protected]>
* chore(deps): update quay.io/keycloak/keycloak docker tag to v25.0.2Gravatar renovate[bot]2024-07-18-1/+1
| | | | | | | datasource | package | from | to | | ---------- | ------------------------- | ------ | ------ | | docker | quay.io/keycloak/keycloak | 25.0.1 | 25.0.2 |
* Update node_exporter daemonset to 1.27+ featuresetGravatar Joe Banks2024-07-18-3/+3
|
* chore(deps): update quay.io/prometheus/node-exporter docker tag to v1.8.2Gravatar renovate[bot]2024-07-18-1/+1
| | | | | | | datasource | package | from | to | | ---------- | -------------------------------- | ------ | ------ | | docker | quay.io/prometheus/node-exporter | v1.2.0 | v1.8.2 |
* chore(deps): update ghost docker tag to v5.87Gravatar renovate[bot]2024-07-18-1/+1
| | | | | | | datasource | package | from | to | | ---------- | ------- | ---- | ---- | | docker | ghost | 5.78 | 5.87 |
* Add certbot post deploy hook to reload nginxGravatar Chris Lovering2024-07-16-1/+2
|
* Document current redis database usageGravatar Chris Lovering2024-07-16-0/+7
|
* Add redis url secret to forms-backendGravatar Chris Lovering2024-07-16-0/+0
|
* Add Admins to Grafana authorized Team IDsGravatar Joe Banks2024-07-14-1/+1
|
* Bump mogno mem requests and limitGravatar Chris Lovering2024-07-10-2/+2
|
* Add sumer code jam announcement channel idGravatar Chris Lovering2024-07-05-0/+1
|
* Add YouTube API key to king-arthurGravatar Chris Lovering2024-07-05-0/+3
| | | | This also documents secrets that were already present in the file.
* Update Sir Robin to CJ11 (#399)Gravatar Boris Muratov2024-07-03-1/+1
|
* Move noqa definition required in latest ruff versionGravatar Chris Lovering2024-07-01-2/+2
|
* Allow new kube-state-metrics image to watch ingressesGravatar Joe Banks2024-07-01-0/+1
|
* Move away from vendored kube-state-metricsGravatar Joe Banks2024-07-01-1/+1
|
* Add issuer for Vault certificates in tooling namespaceGravatar Joe Banks2024-06-27-0/+5
| | | | | We will use this to deploy internal TLS certificates from a self-signed CA that allows for TLS traffic within the cluster.
* Add deployment of KeycloakGravatar Joe Banks2024-06-27-0/+122
|
* Scale AM back to 3 replicasGravatar Chris Lovering2024-06-24-1/+1
|
* Add ff-bot deploymentGravatar Joe Banks2024-06-16-0/+82
|
* Add Kubernetes volume alertsGravatar Joe Banks2024-06-16-0/+11
| | | | | | | | | | | It seems that Linode has added storage reporting info to the CSI driver allowing us to pick up on the storage use of persistent volume claims within the cluster. This creates and deploys an alert that will report if any volume has under 10% of space left. I have excluded Prometheus as our TSDB retention settings mean that it will always stay just below it's volume size by design.
* Update Loki config with new compactor preferences for retention modesGravatar Joe Banks2024-06-13-1/+6
| | | | | | | | | * `retention_enabled`: enable retention mode within the compactor * `delete_request_store`: store deletion requests within the s3 cluster that is also used to house log chunks * `delete_request_cancel_period`: do not exercise log deletion instructions until at least one hour has passed to prevent accidental deletion