1750 Commits

Author SHA1 Message Date
Rahul Khiyani
d8ca55c685 Logs format standardization for LMA component
Added file name, line number and function name to logging message format
for troubleshooting purpose
    - This change is related to Grafana's session-db-sync job

Change-Id: Iaadbedfda0fd9cd7fe4b5c09fc05cb6181c400d1
2019-05-06 21:13:27 +00:00
Steve Wilkerson
031ee3e6af Elasticsearch: Heap configuration and ingest node updates
This updates the Elasticsearch chart to allow for setting the
heap size per node type instead of for all nodes equally. This
also adds the required environment variable to configure whether
a node is an ingest node. This is set to false, as suggested for
elasticsearch versions <= 6.x

This also removes the ES_PLUGINS_INSTALL environment variable as
it is not used for anything in the current charts

Change-Id: I9096774db46dcbcd48b8a5448f0510984bf4108f
2019-05-06 14:55:45 -05:00
Zuul
9771b16e87 Merge "Define test specific timeouts for Armada LMA components" 2019-05-03 15:07:43 +00:00
Zuul
6a43cc527c Merge "Make network policy template a little more generic" 2019-05-02 18:37:33 +00:00
Zuul
309bc587d5 Merge "Add restore postgresql script to the configmap-bin" 2019-05-01 17:38:37 +00:00
Zuul
66f4b08b15 Merge "Add Create database if not exist to postgres restore" 2019-05-01 17:32:34 +00:00
Hemachandra Reddy
d052381b4e Make network policy template a little more generic
The changes made will take care of

1. block/allow all ingress
2. block/allow all egress
3. define spec->policyType based on policy type
   and/or ingress/egress rules present in values.yaml
4. supports more labels to spec->podSeclector
5. copy the rules as is defined under ingress/egress.

Change-Id: Id437ee4de8d964b48540638ab8dff3199c3cb5ff
2019-04-30 19:27:45 +00:00
Krishna Venkata
b8ac702c07 Revert "Fix: update merge to mergeOverwrite"
Reverting this commit to fix Multiple OSD issue.
Ceph deployment is failing when we specifying multiple osds.
Rendered file for ceph-osd charts have duplicate osd information.

Reverts this PS: https://review.opendev.org/#/c/644604/

This reverts commit 0b8784f26d4ff9d7054a30d8024cae24db93ed0d.

Change-Id: Ida018955eb558c9f890cc9e6aefba6689c992a73
2019-04-30 13:03:19 +00:00
Ralf Haferkamp
64df756b72 Add overrides for openSUSE Leap15 images
Provide overrides for openSUSE images where those are available.
Currently for the ingress chart these are only the neutron images.

Change-Id: I37b220592f39c266e7812371ea8e5500fb393a9f
2019-04-30 11:57:23 +02:00
Jagan Kavva
34d691c9b1 Add docker-default (enforce) AppArmor profile to openvswitch
Change-Id: I7b091f668d9293d7eafd9c1b54c4eab715bbd93c
2019-04-29 09:24:41 -05:00
Koffi Nogbe
b1a4059ce7 Add restore postgresql script to the configmap-bin
* Adding file restore_postgresql.sh to the configmap-bin

Change-Id: I57cfa8f0b22be49be43bcdb93b8ac363a8ae6472
Signed-off-by: Koffi Nogbe <kn4078@att.com>
2019-04-26 11:18:11 -04:00
RAHUL KHIYANI
a881f3def4 ceph-osd: Fix security context
This PS fixes the use of the security context macros for the
ceph-osd chart

Change-Id: I75cb057d08831fb39e9846fbab53e3ee6e113ada
2019-04-25 22:39:35 +00:00
diwakarthyagaraj
0ed4f0de5e Add Docker default AppArmor profile to Fluentbit and Elasticsearch
Change-Id: I21efbf8d434f6245eef04308973af4e7ec0b2380
Co-authored-by: ld366r@att.com
2019-04-25 13:55:52 -05:00
Zuul
6d0a9c21b0 Merge "Fix Ceph deployment in apparmor job" 2019-04-25 15:35:10 +00:00
Zuul
212d9f96a7 Merge "Ceph-provisioners: Fix security context" 2019-04-25 15:35:08 +00:00
Zuul
1cf2d7380f Merge "Elasticsearch: Fix security context" 2019-04-25 15:35:06 +00:00
Zuul
56bfb4a02d Merge "Update airship-divingbell check job" 2019-04-25 02:54:14 +00:00
Zuul
e1fa86947e Merge "Ingress: Add pod/container security context" 2019-04-24 18:00:05 +00:00
Zuul
18386af32f Merge "Update image links for Ceph." 2019-04-24 17:36:43 +00:00
Zuul
53235b6440 Merge "Rabbitmq: Fix security context" 2019-04-24 16:43:07 +00:00
Meg Heisler
a600471cb0 Define test specific timeouts for Armada LMA components
This adds test specific timeout to all LMA components in
Armada. This also removes test enabled true because
Armada enables tests by default

Change-Id: I893342b36ba27cbe7d3ce8767f73795e84a11732
2019-04-24 11:07:18 -05:00
Dmitrii Kabanov
b7c07a595c Update image links for Ceph.
Updated the links according to the decision here [1].
The convention for images is <imagename>:<tagging>
where <tagging> takes the format <version>-<distro>.

[1]: http://eavesdrop.openstack.org/irclogs/%23openstack-helm/%23openstack-helm.2019-03-07.log.html#t2019-03-07T17:50:58

Change-Id: I84f8ce731e428f8ef035c008ff615e712c78a1f4
2019-04-24 14:53:42 +00:00
Zuul
53e1278bab Merge "Fix prometheus metrics gathering in postrun job" 2019-04-24 14:26:09 +00:00
Rahul Khiyani
7f20bcd938 Rabbitmq: Fix security context
This PS fixes the use of the security context macros for the
rabbitmq chart

Change-Id: I91499757bd7af95132d0aee33a16d642e26439bb
2019-04-24 13:51:42 +00:00
RAHUL KHIYANI
b1900bbfc2 Ceph-provisioners: Fix security context
This PS fixes the use of the security context macros for the
ceph-provisioners chart

Change-Id: Iddeb643139f2e7798282e67e319f38d3a22cd10d
2019-04-24 04:57:23 +00:00
RAHUL KHIYANI
a5e8953bd4 ceph-mon: Fix security context
This PS fixes the use of the security context macros for the
ceph-mon chart.

Change-Id: Ibde448481c44f2753ddfe57e590ea7d05671793a
2019-04-23 23:18:21 -05:00
RAHUL KHIYANI
5be16a66d7 Elasticsearch: Fix security context
This PS fixes the use of the security context macros for the
elasticsearch chart.

Change-Id: I85a37aa4dec88222107323f17d10e5ff29f41648
2019-04-23 23:04:18 -05:00
RAHUL KHIYANI
befb8b65e8 Ingress: Add pod/container security context
This PS fixes the use of the security context macros for the
ingress chart.

Change-Id: I28171d529a27c3f203b02c031a6cf289fcc5f3e6
2019-04-24 03:12:16 +00:00
Meg Heisler
010faee9d5 Add wait.resource for LMA services to armada manifest
This adds the wait.resource.type to each LMA service in
the armada manifest

Change-Id: I86adbb1a5325ce2beef8506a406865e8db53876b
2019-04-24 00:39:05 +00:00
Zuul
0d009ce0ff Merge "Fluent-logging: Fix security context" 2019-04-23 23:12:18 +00:00
Zuul
ff7049f170 Merge "Memcached: Fix security context" 2019-04-23 21:15:25 +00:00
Steve Wilkerson
880f32f059 Fix Ceph deployment in apparmor job
This fixes the ceph deployment in the apparmor job as the previous
overrides weren't entirely correct.  This also reorders the
deployment steps in the apparmor job to enforce the sequential
naming scheme used

Change-Id: I161bae649d4ff67307abeadc12b3c7d321af31c7
2019-04-23 10:25:54 -05:00
Steve Wilkerson
2c11798c65 Update airship-divingbell check job
This updates the airship-divingbell repository defined in the
single node check job to use the correct repository namespace.

This also updates the divingbell check job to use the standard
osh-infra-gate-runner playbook as well as the minikube based
kubernetes deployment

Change-Id: Iff53279b3e09058deb323d092955cbf87230b5e5
2019-04-23 10:09:27 -05:00
RAHUL KHIYANI
e3bd69c084 Fluent-logging: Fix security context
This PS fixes the use of the security context macros for the
fluent-logging chart.

Change-Id: I2cd12015732bddb642136ba14f88ed2c248d519d
2019-04-23 14:40:14 +00:00
Zuul
84c12d57e7 Merge "prometheus: Fix security context" 2019-04-23 14:35:47 +00:00
Zuul
f29fd53acb Merge "prometheus-alertmanager: Fix security context" 2019-04-23 14:35:45 +00:00
Zuul
0c1a144c1b Merge "prometheus-kube-state-metrics: Fix security context" 2019-04-23 14:35:44 +00:00
Zuul
a9af19a7da Merge "prometheus-node-exporter: Fix security context" 2019-04-23 14:35:43 +00:00
RAHUL KHIYANI
2cc0317fc3 Memcached: Fix security context
This PS adds the missing allowPrivilegeEscalation flag in container
securityContext

Change-Id: Ie10951bd43de563fec09795feedc0050dcd4ebbe
2019-04-23 13:29:44 +00:00
Zuul
d7830c55c6 Merge "Nagios: Fix security context" 2019-04-23 13:05:28 +00:00
RAHUL KHIYANI
cd99469454 Kibana: Fix security context
This PS fixes the use of the security context macros for the
Kibana chart.

Change-Id: Iaad821ac3df7e42eb52ba2f274fe47e4847d30af
2019-04-23 04:32:41 +00:00
RAHUL KHIYANI
e1c9a35230 Grafana: Add security context to chart and read-only-fs
This PS adds the security context macros to the grafana chart,
and moves the default to read-only-rootfs for all containers

Change-Id: Ie79e3bfc6af07b16cd53eddae17eceac3d9f8613
2019-04-23 03:22:21 +00:00
Zuul
c5eee25fbd Merge "prometheus-openstack-exporter: Fix security context" 2019-04-23 02:12:58 +00:00
Zuul
a0360d07ea Merge "Mariadb: Display error if user is not create" 2019-04-23 02:02:14 +00:00
RAHUL KHIYANI
916bdabee7 prometheus: Fix security context
This PS fixes the use of the security context macros for the
prometheus chart.

Change-Id: I0abb309132a9954a140cbf76463724c5e2c7c5f3
2019-04-23 00:00:36 +00:00
RAHUL KHIYANI
95bb125207 prometheus-alertmanager: Fix security context
This PS fixes the pod application name and also adds security context
to initcontainer

Change-Id: Ia7cd5057247b0a07f88406259d41601659688f1a
2019-04-22 15:59:36 -05:00
RAHUL KHIYANI
2cdcaa84b5 prometheus-openstack-exporter: Fix security context
This PS fixes the use of the security context macros for the
openstack-exporter chart.

Change-Id: I91e9f6810442477c167a07e2d8ffa4f01beb66d3
2019-04-22 18:35:32 +00:00
Zuul
5aa3d47398 Merge "ceph-rgw: Add pod/container security context" 2019-04-22 18:19:53 +00:00
Gupta, Sangeet (sg774j)
003f765e91 Mariadb: Display error if user is not create
This PS updates the create-mysql-user.sh to display the error
if the exporter user was not created successfully.

Change-Id: I03505b5fb569cda199c2803086b77206b810ea3f
2019-04-22 18:07:28 +00:00
Zuul
2f747ad6ba Merge "Libvirt: Fix security context" 2019-04-22 16:17:39 +00:00