1651 Commits

Author SHA1 Message Date
Nils Hanke
bb7e8c078b Fix version & vermagic, autofs4 in kernel, else back to module 2022-12-30 13:27:16 +01:00
Nils Hanke
5e996f9f73 Something is broken with modules in dracut :/ 2022-12-30 13:27:16 +01:00
Nils Hanke
f1b77afed5 Include autofs & dm-crypt / dm-verity in kernel directly 2022-12-30 13:27:16 +01:00
Nils Hanke
aa3e728f13 fixup! fixup! Use fedpkg custom Azure Ubuntu 5.4 kernel with Wireguard 2022-12-30 13:27:16 +01:00
Nils Hanke
89eeb26788 fixup! Use fedpkg custom Azure Ubuntu 5.4 kernel with Wireguard 2022-12-30 13:27:16 +01:00
Nils Hanke
b63f333bfb Use fedpkg custom Azure Ubuntu 5.4 kernel with Wireguard 2022-12-30 13:27:16 +01:00
Nils Hanke
993b4c781d Test patched Kernel 6.1 2022-12-30 13:27:16 +01:00
Nils Hanke
e66113e583 Use upstream v6.0.0 kernel with random Microsoft patches 2022-12-30 13:27:16 +01:00
Nils Hanke
b2e8d71d20 Use custom Azure 5.4 CVM kernel with Wireguard patched in 2022-12-30 13:27:16 +01:00
Nils Hanke
cdd1729172 Downsize partitions for hopefully faster pipeline 2022-12-30 13:27:16 +01:00
Nils Hanke
9c8ebf64d3 Revert "Cilium: Enable wireguard-go fallback & mount TUN device from host"
This reverts commit 08baebbe627c0b63ab4d62baf540ad4563562001.
2022-12-30 13:27:16 +01:00
Nils Hanke
e99058e3e0 Revert "Disable encryption"
This reverts commit 9bfdce096c27ca11b7db2a7224e1eabfcbdf84cc.
2022-12-30 13:27:16 +01:00
Nils Hanke
29047e315f Disable encryption 2022-12-30 13:27:16 +01:00
Nils Hanke
9fac0c5007 Cilium: Enable wireguard-go fallback & mount TUN device from host
(Required for Kernel 5.4, since Wireguard is only available in-kernel
since v5.6)
2022-12-30 13:27:16 +01:00
Nils Hanke
d8d1e3d733 Go to Ubuntu-azure-cvm-5.4.0-1080.83+cvm1 2022-12-30 13:27:16 +01:00
Nils Hanke
f63c495396 Disable AppArmor 2022-12-30 13:27:16 +01:00
Nils Hanke
7b1fe6e7fd Useless commit to bump git hash to avoid image collisions 2022-12-30 13:27:16 +01:00
Nils Hanke
7b26224e4e Increase storage because we're lazy 2022-12-30 13:27:16 +01:00
Nils Hanke
96faef4906 Bump 2022-12-30 13:27:16 +01:00
Nils Hanke
e50592b394 Test: Use custom built kernel from Azure Ubuntu 2022-12-30 13:27:16 +01:00
3u13r
473e16feb2
image: add upgrade-agent (#827) 2022-12-29 17:50:11 +01:00
3u13r
0297aed1ea
join: deprecate components migration fallback (#833) 2022-12-29 14:51:26 +01:00
Paul Meyer
16b002ec1d deps: update sonobuoy to v0.56.14
Signed-off-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2022-12-29 13:11:04 +01:00
Fabian Kammel
1caa40147a
fix e2e lb test on aws: call hostname instead of ip (#838)
Signed-off-by: Fabian Kammel <fk@edgeless.systems>
2022-12-29 12:09:40 +01:00
renovate[bot]
3daa0af9d3
Update module github.com/docker/docker to v20.10.22+incompatible (#834)
Co-authored-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2022-12-28 18:41:37 +01:00
renovate[bot]
dc5f9bf9ae
Update module cloud.google.com/go/compute/metadata to v0.2.3 (#832)
Co-authored-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2022-12-28 18:10:38 +01:00
renovate[bot]
d7f43bbca8
Update golang:1.19.4 Docker digest to 766625f (#829)
Co-authored-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2022-12-28 15:01:37 +01:00
renovate[bot]
b6383a36d0
Update gcr.io/distroless/static:nonroot Docker digest to 9ec950c (#828)
Co-authored-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2022-12-28 15:00:32 +01:00
renovate[bot]
1595f83ac6
Update AWS SDK (#789)
Co-authored-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2022-12-28 14:55:08 +01:00
renovate[bot]
67459128c8
Update gcr.io/distroless/static Docker digest to 5b2fa76 (#824)
Co-authored-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2022-12-28 14:54:05 +01:00
3u13r
47fb9f7cc8
gcp: unofficial support for internal LBs (#826) 2022-12-28 13:30:39 +01:00
Moritz Sanft
9859b30c4d
AB#2544 add upgrade agent for automatic version updates (#745) 2022-12-25 18:49:45 +01:00
Nils Hanke
cff735b0ee Delete existing UDS file if exists 2022-12-24 12:43:25 +01:00
Nils Hanke
c4c1bd6bc5 Move Konnectivity socket to non-persistent /run 2022-12-24 12:43:25 +01:00
3u13r
d1195d1d5f
join: make Azure instance names k8s compliant (#807)
join: make Azure instance names k8s compliant
2022-12-23 18:59:15 +01:00
Leonard Cohnen
edd51cb137 gitignore: add image/prebuilt/* 2022-12-23 17:32:53 +01:00
renovate[bot]
030d2e9bb2
Update module google.golang.org/api to v0.105.0 (#756)
Co-authored-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2022-12-23 13:46:04 +01:00
Paul Meyer
c7ecf13e7f ci: fix workflows with tokens running on forks
Signed-off-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2022-12-23 11:39:09 +01:00
Paul Meyer
8b39d3d368 versionsapi: fix cache invalidation
Signed-off-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2022-12-23 10:15:42 +01:00
Paul Meyer
b9a1a9ae5e
image: set runtime-endpoint in crictl config (#821)
Signed-off-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2022-12-22 12:34:28 +01:00
Daniel Weiße
942d11a4c8
Only upgrade helm releases if versions changed (#818)
Signed-off-by: Daniel Weiße <dw@edgeless.systems>
2022-12-22 12:30:04 +01:00
Fabian Kammel
6323bd774d
fix linter issues (#820)
Signed-off-by: Fabian Kammel <fk@edgeless.systems>

Signed-off-by: Fabian Kammel <fk@edgeless.systems>
2022-12-22 09:35:10 +01:00
Paul Meyer
caed4ff287 ci: print image in find-image action
Signed-off-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2022-12-21 18:39:03 +01:00
Paul Meyer
582615dfb3 ci: enable manual e2e runs on any git ref
Signed-off-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2022-12-21 18:39:03 +01:00
Fabian Kammel
83f09e1058
implement e2e test lb (#815)
* implement e2e test lb
* add lb e2e test to weekly schedule
Signed-off-by: Fabian Kammel <fk@edgeless.systems>
2022-12-21 10:49:21 +01:00
Fabian Kammel
f1bee6dab8
Azure disclaimer (#805)
* make flxflx code owner of docs

Signed-off-by: Fabian Kammel <fk@edgeless.systems>

* add azure disclaimer

Signed-off-by: Fabian Kammel <fk@edgeless.systems>

Signed-off-by: Fabian Kammel <fk@edgeless.systems>
2022-12-20 17:07:56 +01:00
Paul Meyer
43123e36f9 deps: disable semantic commit message for renovate
Signed-off-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2022-12-19 17:00:53 +01:00
github-actions[bot]
edabdb025e
CLI reference was updated by edgelesssys/constellation@efcd0337 (#814)
Co-authored-by: derpsteb <derpsteb@users.noreply.github.com>
2022-12-19 16:59:16 +01:00
Otto Bittner
efcd0337b4
Microservice upgrades (#729)
Run with: constellation upgrade execute --helm.
This will only upgrade the helm charts. No config is needed.

Upgrades are implemented via helm's upgrade action, i.e. they
automatically roll back if something goes wrong. Releases could 
still be managed via helm, even after an upgrade with constellation
has been done.

Currently not user facing as CRD/CR backups are still in progress.
These backups should be automatically created and saved to the 
user's disk as updates may delete CRs. This happens implicitly 
through CRD upgrades, which are part of microservice upgrades.
2022-12-19 16:52:15 +01:00
Thomas Tendyck
990cae58a5 ci: don't checkout head ref for PRs from forks 2022-12-19 16:09:40 +01:00