1883 Commits

Author SHA1 Message Date
release[bot]
4b2038cc0b attestation: hardcode measurements for v2.5.3 v2.5.3 2023-02-22 11:39:52 +00:00
release[bot]
fe799ee166 deps: update version to v2.5.3 2023-02-22 10:38:09 +00:00
3u13r
6ee9272bfe iam: assign uami role to base resource group (#1247)
* iam: assign uami role to base resource group

* fixup: also change app registration
2023-02-22 11:01:47 +01:00
Otto Bittner
9838fd7508 ci: ignore GHSA-r2h5-3hgw-8j34 in grype (#1248)
Co-authored-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2023-02-22 11:01:22 +01:00
3u13r
f66da13863 helm: retry on connection refused (#1245)
* bootstrapper: directly return kubewaiter error

* helm: retry on connection refused
2023-02-22 10:59:49 +01:00
Moritz Sanft
9a7bdb9cf1 cli: add missing gcp values to config (#1149)
* improve iam value output

* remove duplicate prints
2023-02-22 10:59:21 +01:00
Moritz Sanft
baf03bde8a cli: fix iam rollback (#1148)
* AB#2897 rename DestroyCluster

* #AB2897 error if terraform dir exists

* AB#2897 reword DestroyResources
2023-02-22 10:58:57 +01:00
Moritz Sanft
f550b8aeb0 cli: refactor iam create command (#1034)
* AB#2788 refactor iam create

* AB#2788 go mod tidy

* AB#2788 encode b64 at runtime

* AB#2788 rename receiver
2023-02-22 10:58:28 +01:00
Otto Bittner
dd768e09f4 bootstrapper: retry helm chart installation (#1151)
Motivation for this change are intermittent
timeout errors while installing cert-manager.

Co-authored-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2023-02-22 10:51:03 +01:00
3u13r
6d373dc1ac terraform: make control-planes stateful on gcp (#1087)
* terraform: make control-planes stateful on gcp

* terraform: lock google-beta provider
2023-02-22 10:50:31 +01:00
release[bot]
517e606747 attestation: hardcode measurements for v2.5.2 v2.5.2 2023-02-16 17:11:36 +00:00
release[bot]
9ff7be70e2 deps: update version to v2.5.2 2023-02-16 16:10:11 +00:00
Fabian Kammel
203b9fab3b Minimal GitHub Action token permissions. (#1104)
Signed-off-by: Fabian Kammel <fk@edgeless.systems>
2023-02-16 17:02:14 +01:00
Thomas Tendyck
d630fb409e attestation: remove VerifyUserData 2023-02-16 16:45:46 +01:00
Thomas Tendyck
dfae30c9fa attestation: bind user data to PCR state 2023-02-16 16:45:39 +01:00
release[bot]
5632aee5be attestation: hardcode measurements for v2.5.1 v2.5.1 2023-01-27 17:51:27 +00:00
release[bot]
6f5f4b5ac4 deps: update version to v2.5.1 2023-01-27 16:40:17 +00:00
3u13r
1e0f423789
azure: add new idkeydigest (#1095)
(cherry picked from commit e174146e0c9340c6943e6051bf2d97fde77dfa17)
2023-01-27 15:14:34 +01:00
release[bot]
47773c888d deps: update version to v2.5.1 2023-01-25 19:07:10 +00:00
Leonard Cohnen
0f016997f4 fix operator versioning 2023-01-25 19:18:37 +01:00
Malte Poll
a8f5bd1880 cli: set placeholder uid for QEMU / MiniConstellation (#1069) 2023-01-25 19:18:37 +01:00
release[bot]
e115590a96 attestation: hardcode measurements for v2.5.1 2023-01-25 10:41:34 +00:00
release[bot]
ff373bc8c6 deps: update version to v2.5.1 2023-01-25 09:39:35 +00:00
3u13r
a40c1cd4b1
config: fix digest naming (#1068)
* config: fix digest naming (#1064)

* fix operator versioning
2023-01-25 10:29:26 +01:00
release[bot]
0c412cd1c7 attestation: hardcode measurements for v2.5.0 v2.5.0 2023-01-23 13:42:37 +00:00
release[bot]
c6f8be0286 deps: update version to v2.5.0 2023-01-23 12:42:02 +00:00
Moritz Eckert
aa1b2f8d30
docs: add missing asterisk reference (#970) 2023-01-23 13:19:51 +01:00
Paul Meyer
94c0184e4d ci: add workflow for proto code generation check
Signed-off-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2023-01-23 12:20:37 +01:00
Otto Bittner
3b59ebfd53
config: detailed validation errors for k8s version (#1018)
These extended error messages help users in understanding
what is wrong with the current configuration and how to
remediate the issue.
2023-01-23 11:21:06 +01:00
3u13r
03154c6e64
docs: document terraform support (#1037) 2023-01-23 10:37:28 +01:00
Moritz Sanft
2f2e793810
AB#2834 add go package doc to iamid (#1054) 2023-01-23 08:53:25 +01:00
renovate[bot]
9f05631afd
deps: update Constellation containers (#1052)
Co-authored-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2023-01-21 20:17:07 +01:00
Paul Meyer
c4d68d1c28 versions: update key-service name
Signed-off-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2023-01-21 19:55:14 +01:00
Moritz Sanft
b8648261e3
cli: fix Terraform resource group dependencies (#1048) 2023-01-20 18:59:59 +01:00
renovate[bot]
6708aff984
deps: update dependency kubernetes/kubernetes to v1.24.10 (#1043)
Co-authored-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2023-01-20 18:54:10 +01:00
Paul Meyer
a8cbfd848f
keyservice: use dash in container name (#1016)
Co-authored-by: Otto Bittner <cobittner@posteo.net>
2023-01-20 18:51:06 +01:00
3u13r
effe797d81
operator: cleanup resources between tests (#1049) 2023-01-20 16:58:13 +01:00
leongross
bb6f35fbf4
docs: update security issue warning to use Github warning banner (#1050) 2023-01-20 16:17:39 +01:00
Fabian Kammel
8482d26eef
deps: update cloud provider gcp image for k8s v1.26 (#1051)
Signed-off-by: Fabian Kammel <fk@edgeless.systems>
2023-01-20 15:54:24 +01:00
renovate[bot]
7b012e72b9
deps: update Azure SDK (#1004)
* deps: update Azure SDK
* deps: tidy all modules

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-01-20 15:42:06 +01:00
Malte Poll
ac3b2f417f
debugd: adapt README to set global image field in config (#992) 2023-01-20 15:41:33 +01:00
Fabian Kammel
582412d275
Fix GCP CCM build, add v26, and exclude old broken versions until fixed. (#1038)
Signed-off-by: Fabian Kammel <fk@edgeless.systems>
2023-01-20 15:17:00 +01:00
Paul Meyer
a31d79e9cb ci: curl flags
Signed-off-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2023-01-20 14:23:32 +01:00
Paul Meyer
a6d35c6fd1 ci: move apko building into separate script
Signed-off-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2023-01-20 09:52:17 +01:00
renovate[bot]
9b4dc9b478
Update Constellation containers to v2.5.0-pre.0.20230119145750-690b50b29de5 (#1039)
Co-authored-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2023-01-20 09:51:29 +01:00
Paul Meyer
b5340280f0 ci: update renovate pr title
Signed-off-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2023-01-19 18:47:49 +01:00
Malte Poll
58cc67c736
image: upgrade azure kernel to 6.1.7 (#1027) 2023-01-19 18:03:56 +01:00
renovate[bot]
99496c3c33
Update Kubernetes versions (#1019)
Co-authored-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2023-01-19 17:16:00 +01:00
renovate[bot]
d4722b434e
Update Terraform aws to v4.50.0 (#1015)
Co-authored-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2023-01-19 17:09:01 +01:00
Paul Meyer
71708a967c ci: run tests on workflow file change
Signed-off-by: Paul Meyer <49727155+katexochen@users.noreply.github.com>
2023-01-19 16:47:47 +01:00