From e3c3742c6a71ee79f2f6ad48090ec7c21f1a751b Mon Sep 17 00:00:00 2001 From: mikhail-klimko Date: Sun, 1 Dec 2024 18:26:22 +0300 Subject: [PATCH] onprem: 2.5.7 (#11) --- codefresh/.ci/runtime-images.sh | 15 ++++++++ codefresh/Chart.lock | 68 ++++++++++++++++----------------- codefresh/Chart.yaml | 23 +++-------- codefresh/README.md | 19 +++++---- codefresh/values.yaml | 49 ++++++++++++++++++++---- 5 files changed, 106 insertions(+), 68 deletions(-) create mode 100755 codefresh/.ci/runtime-images.sh diff --git a/codefresh/.ci/runtime-images.sh b/codefresh/.ci/runtime-images.sh new file mode 100755 index 000000000..01115f656 --- /dev/null +++ b/codefresh/.ci/runtime-images.sh @@ -0,0 +1,15 @@ +#!/bin/bash +set -eux +MYDIR=$(dirname $0) +REPO_ROOT="${MYDIR}/../.." + +echo $REPO_ROOT + +echo "Update value with system/root runtime images" +docker run \ + -v "$REPO_ROOT:/codefresh" \ + -v $HOME/.cfconfig:/.cfconfig \ + -u $(id -u) \ + --rm \ + quay.io/codefresh/codefresh-shell:0.0.20 \ + /bin/bash /codefresh/scripts/update_re_images.sh diff --git a/codefresh/Chart.lock b/codefresh/Chart.lock index eb8df71a8..c23679412 100644 --- a/codefresh/Chart.lock +++ b/codefresh/Chart.lock @@ -40,120 +40,120 @@ dependencies: version: 4.11.2 - name: cluster-providers repository: oci://quay.io/codefresh/charts - version: 1.17.8 + version: 1.17.10 - name: kube-integration repository: oci://quay.io/codefresh/charts - version: 1.31.9 + version: 1.31.11 - name: charts-manager repository: oci://quay.io/codefresh/charts version: 1.18.2 - name: cfsign repository: oci://quay.io/codefresh/charts - version: 1.8.4 + version: 1.8.5 - name: tasker-kubernetes repository: oci://quay.io/codefresh/charts - version: 1.26.10 + version: 1.26.13 - name: context-manager repository: oci://quay.io/codefresh/charts version: 2.30.2 - name: pipeline-manager repository: oci://quay.io/codefresh/charts - version: 3.135.9 + version: 3.135.10 - name: gitops-dashboard-manager repository: oci://quay.io/codefresh/charts - version: 1.14.15 + version: 1.14.16 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfapi repository: oci://quay.io/codefresh/charts - version: 21.260.40 + version: 21.260.41 - name: cfui repository: oci://quay.io/codefresh/charts version: 14.95.78 - name: k8s-monitor repository: oci://quay.io/codefresh/charts - version: 4.11.8 + version: 4.11.10 - name: runtime-environment-manager repository: oci://quay.io/codefresh/charts version: 3.36.4 - name: cf-broadcaster repository: oci://quay.io/codefresh/charts - version: 1.12.16 + version: 1.12.17 - name: helm-repo-manager repository: oci://quay.io/codefresh/charts version: 0.16.1 - name: hermes repository: oci://quay.io/codefresh/charts - version: 0.21.10 + version: 0.21.14 - name: nomios repository: oci://quay.io/codefresh/charts - version: 0.11.7 + version: 0.11.8 - name: cronus repository: oci://quay.io/codefresh/charts - version: 0.8.7 + version: 0.8.8 - name: cf-platform-analytics repository: oci://quay.io/codefresh/charts - version: 0.49.66 + version: 0.49.72 - name: cf-platform-analytics repository: oci://quay.io/codefresh/charts - version: 0.49.66 + version: 0.49.72 - name: argo-platform repository: oci://quay.io/codefresh/charts - version: 1.3037.0-onprem-fb06d0a + version: 1.3038.0-onprem-eb2dd14 - name: argo-hub-platform repository: oci://quay.io/codefresh/charts version: 0.1.16 - name: cf-oidc-provider repository: oci://quay.io/codefresh/charts version: 0.0.15 -digest: sha256:1d70af531b08b8a225aeb1bcd099a6699b2a6c343f9c70f023384e1d2a69463c -generated: "2024-10-22T10:56:07.99008+03:00" +digest: sha256:4b761f88e2c4314cc474148cc0f545e78cd73f064e154b95a7fb1c6d118e47f2 +generated: "2024-12-01T13:47:00.682066+03:00" diff --git a/codefresh/Chart.yaml b/codefresh/Chart.yaml index f245d8e70..2ed217447 100644 --- a/codefresh/Chart.yaml +++ b/codefresh/Chart.yaml @@ -1,7 +1,7 @@ apiVersion: v2 description: Helm Chart for Codefresh On-Prem name: codefresh -version: 2.5.6 +version: 2.5.7 keywords: - codefresh home: https://codefresh.io/ @@ -15,24 +15,11 @@ appVersion: 2.5.0 annotations: # artifacthub.io/prerelease: "true" artifacthub.io/alternativeName: "codefresh-onprem" - # artifacthub.io/containsSecurityUpdates: "true" + artifacthub.io/containsSecurityUpdates: "true" # supported kinds are added, changed, deprecated, removed, fixed and security. artifacthub.io/changes: | - - kind: fixed - description: "permissions in cf-api for OpenShift" - links: - - name: JIRA Issue - url: https://codefresh-io.atlassian.net/browse/CR-25662 - - kind: fixed - description: "pipeline-manager memory leak" - links: - - name: JIRA Issue - url: https://codefresh-io.atlassian.net/browse/CR-25053 - - kind: fixed - description: "Secret template when postgres password contains special characters" - links: - - name: JIRA Issue - url: https://codefresh-io.atlassian.net/browse/CR-25131 + - kind: security + description: "Misc security updates" dependencies: - name: cf-common repository: oci://quay.io/codefresh/charts @@ -250,7 +237,7 @@ dependencies: repository: oci://quay.io/codefresh/charts condition: argo-platform.enabled - name: argo-platform - version: "1.3037.0-onprem-fb06d0a" + version: "1.3038.0-onprem-eb2dd14" repository: oci://quay.io/codefresh/charts condition: argo-platform.enabled - name: argo-hub-platform diff --git a/codefresh/README.md b/codefresh/README.md index 99d1cffeb..ca8ede322 100644 --- a/codefresh/README.md +++ b/codefresh/README.md @@ -1,6 +1,6 @@ ## Codefresh On-Premises -![Version: 2.5.6](https://img.shields.io/badge/Version-2.5.6-informational?style=flat-square) ![AppVersion: 2.5.0](https://img.shields.io/badge/AppVersion-2.5.0-informational?style=flat-square) +![Version: 2.5.7](https://img.shields.io/badge/Version-2.5.7-informational?style=flat-square) ![AppVersion: 2.5.0](https://img.shields.io/badge/AppVersion-2.5.0-informational?style=flat-square) Helm chart for deploying [Codefresh On-Premises](https://codefresh.io/docs/docs/getting-started/intro-to-codefresh/) to Kubernetes. @@ -1999,7 +1999,8 @@ kubectl -n $NAMESPACE delete secret codefresh-certs-server | argo-platform.api-graphql.env | object | See below | Env vars | | argo-platform.api-graphql.hpa | object | `{"enabled":false}` | HPA | | argo-platform.api-graphql.hpa.enabled | bool | `false` | Enable autoscaler | -| argo-platform.api-graphql.image | object | `{"registry":"us-docker.pkg.dev/codefresh-enterprise/gcr.io","repository":"codefresh-io/argo-platform-api-graphql"}` | Image | +| argo-platform.api-graphql.image | object | `{"digest":"","registry":"us-docker.pkg.dev/codefresh-enterprise/gcr.io","repository":"codefresh-io/argo-platform-api-graphql"}` | Image | +| argo-platform.api-graphql.image.digest | string | `""` | Digest | | argo-platform.api-graphql.image.registry | string | `"us-docker.pkg.dev/codefresh-enterprise/gcr.io"` | Registry | | argo-platform.api-graphql.image.repository | string | `"codefresh-io/argo-platform-api-graphql"` | Repository | | argo-platform.api-graphql.kind | string | `"Deployment"` | Controller kind. Currently, only `Deployment` is supported | @@ -2026,11 +2027,12 @@ kubectl -n $NAMESPACE delete secret codefresh-certs-server | cf-platform-analytics-etlstarter.redis.enabled | bool | `false` | Disable redis subchart | | cf-platform-analytics-etlstarter.system-etl-postgres | object | `{"container":{"env":{"BLUE_GREEN_ENABLED":true}},"controller":{"cronjob":{"ttlSecondsAfterFinished":300}},"enabled":true}` | Only postgres ETL should be running in onprem | | cf-platform-analytics-platform | object | See below | platform-analytics | -| cfapi | object | `{"affinity":{},"container":{"env":{"AUDIT_AUTO_CREATE_DB":true,"DEFAULT_SYSTEM_TYPE":"PROJECT_ONE","GITHUB_API_PATH_PREFIX":"/api/v3","LOGGER_LEVEL":"debug","OIDC_PROVIDER_PORT":"{{ .Values.global.oidcProviderPort }}","OIDC_PROVIDER_PROTOCOL":"{{ .Values.global.oidcProviderProtocol }}","OIDC_PROVIDER_TOKEN_ENDPOINT":"{{ .Values.global.oidcProviderTokenEndpoint }}","OIDC_PROVIDER_URI":"{{ .Values.global.oidcProviderService }}","ON_PREMISE":true,"RUNTIME_MONGO_DB":"codefresh","RUNTIME_REDIS_DB":0},"image":{"registry":"us-docker.pkg.dev/codefresh-enterprise/gcr.io","repository":"codefresh/cf-api"}},"controller":{"replicas":2},"enabled":true,"hpa":{"enabled":false,"maxReplicas":10,"minReplicas":2,"targetCPUUtilizationPercentage":70},"nodeSelector":{},"pdb":{"enabled":false,"minAvailable":"50%"},"podSecurityContext":{},"resources":{"limits":{},"requests":{"cpu":"200m","memory":"256Mi"}},"secrets":{"secret":{"enabled":true,"stringData":{"OIDC_PROVIDER_CLIENT_ID":"{{ .Values.global.oidcProviderClientId }}","OIDC_PROVIDER_CLIENT_SECRET":"{{ .Values.global.oidcProviderClientSecret }}"},"type":"Opaque"}},"tolerations":[]}` | cf-api | +| cfapi | object | `{"affinity":{},"container":{"env":{"AUDIT_AUTO_CREATE_DB":true,"DEFAULT_SYSTEM_TYPE":"PROJECT_ONE","GITHUB_API_PATH_PREFIX":"/api/v3","LOGGER_LEVEL":"debug","OIDC_PROVIDER_PORT":"{{ .Values.global.oidcProviderPort }}","OIDC_PROVIDER_PROTOCOL":"{{ .Values.global.oidcProviderProtocol }}","OIDC_PROVIDER_TOKEN_ENDPOINT":"{{ .Values.global.oidcProviderTokenEndpoint }}","OIDC_PROVIDER_URI":"{{ .Values.global.oidcProviderService }}","ON_PREMISE":true,"RUNTIME_MONGO_DB":"codefresh","RUNTIME_REDIS_DB":0},"image":{"digest":"","registry":"us-docker.pkg.dev/codefresh-enterprise/gcr.io","repository":"codefresh/cf-api"}},"controller":{"replicas":2},"enabled":true,"hpa":{"enabled":false,"maxReplicas":10,"minReplicas":2,"targetCPUUtilizationPercentage":70},"nodeSelector":{},"pdb":{"enabled":false,"minAvailable":"50%"},"podSecurityContext":{},"resources":{"limits":{},"requests":{"cpu":"200m","memory":"256Mi"}},"secrets":{"secret":{"enabled":true,"stringData":{"OIDC_PROVIDER_CLIENT_ID":"{{ .Values.global.oidcProviderClientId }}","OIDC_PROVIDER_CLIENT_SECRET":"{{ .Values.global.oidcProviderClientSecret }}"},"type":"Opaque"}},"tolerations":[]}` | cf-api | | cfapi-internal.<<.affinity | object | `{}` | | -| cfapi-internal.<<.container | object | `{"env":{"AUDIT_AUTO_CREATE_DB":true,"DEFAULT_SYSTEM_TYPE":"PROJECT_ONE","GITHUB_API_PATH_PREFIX":"/api/v3","LOGGER_LEVEL":"debug","OIDC_PROVIDER_PORT":"{{ .Values.global.oidcProviderPort }}","OIDC_PROVIDER_PROTOCOL":"{{ .Values.global.oidcProviderProtocol }}","OIDC_PROVIDER_TOKEN_ENDPOINT":"{{ .Values.global.oidcProviderTokenEndpoint }}","OIDC_PROVIDER_URI":"{{ .Values.global.oidcProviderService }}","ON_PREMISE":true,"RUNTIME_MONGO_DB":"codefresh","RUNTIME_REDIS_DB":0},"image":{"registry":"us-docker.pkg.dev/codefresh-enterprise/gcr.io","repository":"codefresh/cf-api"}}` | Container configuration | +| cfapi-internal.<<.container | object | `{"env":{"AUDIT_AUTO_CREATE_DB":true,"DEFAULT_SYSTEM_TYPE":"PROJECT_ONE","GITHUB_API_PATH_PREFIX":"/api/v3","LOGGER_LEVEL":"debug","OIDC_PROVIDER_PORT":"{{ .Values.global.oidcProviderPort }}","OIDC_PROVIDER_PROTOCOL":"{{ .Values.global.oidcProviderProtocol }}","OIDC_PROVIDER_TOKEN_ENDPOINT":"{{ .Values.global.oidcProviderTokenEndpoint }}","OIDC_PROVIDER_URI":"{{ .Values.global.oidcProviderService }}","ON_PREMISE":true,"RUNTIME_MONGO_DB":"codefresh","RUNTIME_REDIS_DB":0},"image":{"digest":"","registry":"us-docker.pkg.dev/codefresh-enterprise/gcr.io","repository":"codefresh/cf-api"}}` | Container configuration | | cfapi-internal.<<.container.env | object | See below | Env vars | -| cfapi-internal.<<.container.image | object | `{"registry":"us-docker.pkg.dev/codefresh-enterprise/gcr.io","repository":"codefresh/cf-api"}` | Image | +| cfapi-internal.<<.container.image | object | `{"digest":"","registry":"us-docker.pkg.dev/codefresh-enterprise/gcr.io","repository":"codefresh/cf-api"}` | Image | +| cfapi-internal.<<.container.image.digest | string | `""` | Digest | | cfapi-internal.<<.container.image.registry | string | `"us-docker.pkg.dev/codefresh-enterprise/gcr.io"` | Registry prefix | | cfapi-internal.<<.container.image.repository | string | `"codefresh/cf-api"` | Repository | | cfapi-internal.<<.controller | object | `{"replicas":2}` | Controller configuration | @@ -2053,9 +2055,10 @@ kubectl -n $NAMESPACE delete secret codefresh-certs-server | cfapi-internal.<<.secrets.secret.type | string | `"Opaque"` | | | cfapi-internal.<<.tolerations | list | `[]` | | | cfapi-internal.enabled | bool | `false` | | -| cfapi.container | object | `{"env":{"AUDIT_AUTO_CREATE_DB":true,"DEFAULT_SYSTEM_TYPE":"PROJECT_ONE","GITHUB_API_PATH_PREFIX":"/api/v3","LOGGER_LEVEL":"debug","OIDC_PROVIDER_PORT":"{{ .Values.global.oidcProviderPort }}","OIDC_PROVIDER_PROTOCOL":"{{ .Values.global.oidcProviderProtocol }}","OIDC_PROVIDER_TOKEN_ENDPOINT":"{{ .Values.global.oidcProviderTokenEndpoint }}","OIDC_PROVIDER_URI":"{{ .Values.global.oidcProviderService }}","ON_PREMISE":true,"RUNTIME_MONGO_DB":"codefresh","RUNTIME_REDIS_DB":0},"image":{"registry":"us-docker.pkg.dev/codefresh-enterprise/gcr.io","repository":"codefresh/cf-api"}}` | Container configuration | +| cfapi.container | object | `{"env":{"AUDIT_AUTO_CREATE_DB":true,"DEFAULT_SYSTEM_TYPE":"PROJECT_ONE","GITHUB_API_PATH_PREFIX":"/api/v3","LOGGER_LEVEL":"debug","OIDC_PROVIDER_PORT":"{{ .Values.global.oidcProviderPort }}","OIDC_PROVIDER_PROTOCOL":"{{ .Values.global.oidcProviderProtocol }}","OIDC_PROVIDER_TOKEN_ENDPOINT":"{{ .Values.global.oidcProviderTokenEndpoint }}","OIDC_PROVIDER_URI":"{{ .Values.global.oidcProviderService }}","ON_PREMISE":true,"RUNTIME_MONGO_DB":"codefresh","RUNTIME_REDIS_DB":0},"image":{"digest":"","registry":"us-docker.pkg.dev/codefresh-enterprise/gcr.io","repository":"codefresh/cf-api"}}` | Container configuration | | cfapi.container.env | object | See below | Env vars | -| cfapi.container.image | object | `{"registry":"us-docker.pkg.dev/codefresh-enterprise/gcr.io","repository":"codefresh/cf-api"}` | Image | +| cfapi.container.image | object | `{"digest":"","registry":"us-docker.pkg.dev/codefresh-enterprise/gcr.io","repository":"codefresh/cf-api"}` | Image | +| cfapi.container.image.digest | string | `""` | Digest | | cfapi.container.image.registry | string | `"us-docker.pkg.dev/codefresh-enterprise/gcr.io"` | Registry prefix | | cfapi.container.image.repository | string | `"codefresh/cf-api"` | Repository | | cfapi.controller | object | `{"replicas":2}` | Controller configuration | @@ -2213,5 +2216,5 @@ kubectl -n $NAMESPACE delete secret codefresh-certs-server | seed.postgresSeedJob.postgresPasswordSecretKeyRef | optional | `{}` | Password for "postgres" admin user from existing secret | | seed.postgresSeedJob.postgresUser | optional | `""` | "postgres" admin user in plain text (required ONLY for seed job!) Must be a privileged user allowed to create databases and grant roles. If omitted, username and password from `.Values.global.postgresUser/postgresPassword` will be used. | | seed.postgresSeedJob.postgresUserSecretKeyRef | optional | `{}` | "postgres" admin user from exising secret | -| tasker-kubernetes | object | `{"affinity":{},"container":{"image":{"registry":"us-docker.pkg.dev/codefresh-enterprise/gcr.io","repository":"codefresh/tasker-kubernetes"}},"enabled":true,"hpa":{"enabled":false},"nodeSelector":{},"pdb":{"enabled":false},"podSecurityContext":{},"resources":{"limits":{},"requests":{"cpu":"100m","memory":"128Mi"}},"tolerations":[]}` | tasker-kubernetes | +| tasker-kubernetes | object | `{"affinity":{},"container":{"image":{"digest":"","registry":"us-docker.pkg.dev/codefresh-enterprise/gcr.io","repository":"codefresh/tasker-kubernetes"}},"enabled":true,"hpa":{"enabled":false},"nodeSelector":{},"pdb":{"enabled":false},"podSecurityContext":{},"resources":{"limits":{},"requests":{"cpu":"100m","memory":"128Mi"}},"tolerations":[]}` | tasker-kubernetes | | webTLS | object | `{"cert":"","enabled":false,"key":"","secretName":"star.codefresh.io"}` | DEPRECATED - Use `.Values.ingress.tls` instead TLS secret for Ingress | diff --git a/codefresh/values.yaml b/codefresh/values.yaml index c6a93c0ea..727fa62cc 100644 --- a/codefresh/values.yaml +++ b/codefresh/values.yaml @@ -14,7 +14,7 @@ gencerts: image: registry: quay.io repository: codefresh/kubectl - tag: 1.31.1 + tag: 1.31.2 rbac: enabled: true ttlSecondsAfterFinished: 300 @@ -455,15 +455,15 @@ postgresqlCleanJob: # @default -- See below runtimeImages: COMPOSE_IMAGE: quay.io/codefresh/compose:v2.28.1-1.5.0 - CONTAINER_LOGGER_IMAGE: quay.io/codefresh/cf-container-logger:1.11.6 - DIND_IMAGE: quay.io/codefresh/dind:26.1.4-1.28.7 - DOCKER_BUILDER_IMAGE: quay.io/codefresh/cf-docker-builder:1.3.13 - DOCKER_PULLER_IMAGE: quay.io/codefresh/cf-docker-puller:8.0.17 + CONTAINER_LOGGER_IMAGE: quay.io/codefresh/cf-container-logger:1.11.7 + DIND_IMAGE: quay.io/codefresh/dind:26.1.4-1.28.8 + DOCKER_BUILDER_IMAGE: quay.io/codefresh/cf-docker-builder:1.3.16 + DOCKER_PULLER_IMAGE: quay.io/codefresh/cf-docker-puller:8.0.18 DOCKER_PUSHER_IMAGE: quay.io/codefresh/cf-docker-pusher:6.0.16 - DOCKER_TAG_PUSHER_IMAGE: quay.io/codefresh/cf-docker-tag-pusher:1.3.14 - ENGINE_IMAGE: quay.io/codefresh/engine:1.174.12 + DOCKER_TAG_PUSHER_IMAGE: quay.io/codefresh/cf-docker-tag-pusher:1.3.15 + ENGINE_IMAGE: quay.io/codefresh/engine:1.174.19 FS_OPS_IMAGE: quay.io/codefresh/fs-ops:1.2.7 - GIT_CLONE_IMAGE: quay.io/codefresh/cf-git-cloner:10.1.28 + GIT_CLONE_IMAGE: quay.io/codefresh/cf-git-cloner:10.2.0 KUBE_DEPLOY: quay.io/codefresh/cf-deploy-kubernetes:16.2.6 PIPELINE_DEBUGGER_IMAGE: quay.io/codefresh/cf-debugger:1.3.6 TEMPLATE_ENGINE: quay.io/codefresh/pikolo:0.14.1 @@ -490,6 +490,8 @@ cfapi: &cf-api registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io # -- Repository repository: codefresh/cf-api + # -- Digest + digest: "" # -- Env vars # @default -- See below env: @@ -648,6 +650,7 @@ cf-broadcaster: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/cf-broadcaster + digest: "" env: RUNTIME_MONGO_DB: codefresh REDIS_DB: 0 @@ -695,6 +698,7 @@ cf-platform-analytics-etlstarter: container: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io + digest: "" env: ENV: production DATASET_ID: etl @@ -713,6 +717,7 @@ cf-platform-analytics-platform: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/cf-platform-analytics + digest: "" redis: enabled: true nameOverride: redis-platform-analytics @@ -742,6 +747,7 @@ cfsign: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/cf-tls-sign + digest: "" # Explicit default volume mounts overrides due to legacy `cf-` prefix (backward compatibility) volumeMounts: cf-ca: @@ -783,6 +789,7 @@ cfui: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/cf-ui + digest: "" env: ON_PREMISE: true resources: @@ -807,6 +814,7 @@ charts-manager: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/charts-manager + digest: "" resources: requests: cpu: 100m @@ -829,6 +837,7 @@ cluster-providers: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/cluster-providers + digest: "" resources: requests: cpu: 100m @@ -862,6 +871,7 @@ context-manager: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/context-manager + digest: "" resources: requests: cpu: 100m @@ -884,6 +894,7 @@ cronus: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/cronus + digest: "" affinity: {} nodeSelector: {} podSecurityContext: {} @@ -897,6 +908,7 @@ gitops-dashboard-manager: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/gitops-dashboard-manager + digest: "" resources: requests: cpu: 100m @@ -919,6 +931,7 @@ helm-repo-manager: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/helm-repo-manager + digest: "" chartmuseum: publicHelmRepo: true ingress: @@ -949,6 +962,7 @@ hermes: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/hermes + digest: "" redis: # Deprecation of a separate redis for hermes (CR-705) enabled: false @@ -995,6 +1009,7 @@ k8s-monitor: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/cf-k8s-monitor + digest: "" resources: requests: cpu: 100m @@ -1017,6 +1032,7 @@ kube-integration: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/kube-integration + digest: "" resources: requests: cpu: 100m @@ -1072,6 +1088,7 @@ nomios: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/nomios + digest: "" ingress: main: enabled: false @@ -1230,6 +1247,7 @@ pipeline-manager: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/pipeline-manager + digest: "" resources: requests: cpu: 100m @@ -1252,6 +1270,7 @@ runtime-environment-manager: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/runtime-environment-manager + digest: "" env: ON_PREMISE: true resources: @@ -1275,6 +1294,7 @@ tasker-kubernetes: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/tasker-kubernetes + digest: "" resources: requests: cpu: 100m @@ -1299,6 +1319,7 @@ argo-hub-platform: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh-io/argo-hub-platform + digest: "" imagePullSecrets: - '{{ .Release.Name }}-registry' resources: @@ -1363,6 +1384,8 @@ argo-platform: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io # -- Repository repository: codefresh-io/argo-platform-api-graphql + # -- Digest + digest: "" # -- Env vars # @default -- See below env: @@ -1426,6 +1449,7 @@ argo-platform: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh-io/argo-platform-abac + digest: "" env: MONGODB_PROTOCOL: *mongodb-protocol MONGODB_OPTIONS: *mongodb-options @@ -1462,6 +1486,7 @@ argo-platform: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh-io/argo-platform-analytics-reporter + digest: "" env: ENABLED_DATABASE_TYPES: POSTGRES MONGODB_PROTOCOL: *mongodb-protocol @@ -1511,6 +1536,7 @@ argo-platform: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh-io/argo-platform-api-events + digest: "" env: RABBITMQ_PROTOCOL: *rabbitmq-protocol RABBITMQ_URLS: $(RABBITMQ_PROTOCOL)://$(RABBITMQ_USER):$(RABBITMQ_PASSWORD)@$(RABBITMQ_HOST) @@ -1549,6 +1575,7 @@ argo-platform: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh-io/argo-platform-audit + digest: "" env: MONGODB_PROTOCOL: *mongodb-protocol MONGODB_OPTIONS: *mongodb-options @@ -1592,6 +1619,7 @@ argo-platform: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh-io/argo-platform-cron-executor + digest: "" env: MONGODB_PROTOCOL: *mongodb-protocol MONGODB_OPTIONS: *mongodb-options @@ -1635,6 +1663,7 @@ argo-platform: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh-io/argo-platform-event-handler + digest: "" env: MONGODB_PROTOCOL: *mongodb-protocol MONGODB_OPTIONS: *mongodb-options @@ -1688,6 +1717,7 @@ argo-platform: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh-io/argo-platform-ui + digest: "" resources: requests: cpu: 100m @@ -1709,6 +1739,7 @@ argo-platform: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh-io/argo-platform-broadcaster + digest: "" env: MONGODB_PROTOCOL: *mongodb-protocol MONGODB_OPTIONS: *mongodb-options @@ -1750,6 +1781,7 @@ argo-platform: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh-io/argo-platform-promotion-orchestrator + digest: "" env: MONGODB_PROTOCOL: *mongodb-protocol MONGODB_OPTIONS: *mongodb-options @@ -1794,6 +1826,7 @@ cf-oidc-provider: image: registry: us-docker.pkg.dev/codefresh-enterprise/gcr.io repository: codefresh/cf-oidc-provider + digest: "" env: NODE_ENV: production CF_PLATFORM_API_BASE_URL: '{{ printf "https://%s/api" .Values.global.appUrl }}'