kfox1111
8d9b73496d
Switch the spire tests to always run ( #250 )
...
This patch sets the spire chart tests to always run. This enables
changes in tests to be tested and sets a base for split out charts.
---------
Signed-off-by: Kevin Fox <[email protected] >
2023-05-14 17:39:08 -07:00
Marco Franssen and Faisal Memon
65312f8525
Include dependency values in documentation ( #275 )
...
I have added a flag to the helm-docs script to include the documentation
for dependencies.
This will add more complete documentation to
https://artifacthub.io/packages/helm/spiffe/spire#values so it is easier
for our users to get started and having a complete overview.
---------
Signed-off-by: Marco Franssen <[email protected] >
Co-authored-by: Faisal Memon <[email protected] >
2023-05-12 18:12:23 +00:00
d3da3eed55
External database configuration ( #225 )
...
This patch makes all the database settings configurable.
fixes: https://github.com/spiffe/helm-charts/issues/37
---------
Signed-off-by: Kevin Fox <[email protected] >
Signed-off-by: kfox1111 <[email protected] >
Co-authored-by: Faisal Memon <[email protected] >
Co-authored-by: Marco Franssen <[email protected] >
2023-05-10 14:04:34 +02:00
1f09d7b386
Bump test chart dependencies ( #264 )
...
Bump the Helm charts used in test scenarios to latest available
versions.
---------
Signed-off-by: GitHub <[email protected] >
Signed-off-by: Kevin Fox <[email protected] >
Co-authored-by: marcofranssen <[email protected] >
Co-authored-by: Kevin Fox <[email protected] >
2023-05-08 06:38:29 -07:00
dependabot[bot]
1e09ea54a1
Bump peter-evans/create-pull-request from 5.0.0 to 5.0.1 ( #253 )
...
Bumps
[peter-evans/create-pull-request](https://github.com/peter-evans/create-pull-request )
from 5.0.0 to 5.0.1.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/peter-evans/create-pull-request/releases ">peter-evans/create-pull-request's
releases</a>.</em></p>
<blockquote>
<h2>Create Pull Request v5.0.1</h2>
<h2>What's Changed</h2>
<ul>
<li>fix: truncate body if exceeds max length by <a
href="https://github.com/peter-evans "><code>@peter-evans</code></a> in
<a
href="https://redirect.github.com/peter-evans/create-pull-request/pull/1915 ">peter-evans/create-pull-request#1915</a></li>
<li>12 dependency updates by <a
href="https://github.com/dependabot "><code>@dependabot</code></a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/peter-evans/create-pull-request/compare/v5.0.0...v5.0.1 ">https://github.com/peter-evans/create-pull-request/compare/v5.0.0...v5.0.1 </a></p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/peter-evans/create-pull-request/commit/284f54f989303d2699d373481a0cfa13ad5a6666 "><code>284f54f</code></a>
fix: truncate body if exceeds max length (<a
href="https://redirect.github.com/peter-evans/create-pull-request/issues/1915 ">#1915</a>)</li>
<li><a
href="https://github.com/peter-evans/create-pull-request/commit/9e5b2344021c369f621dcb89ffde8fd910dac08c "><code>9e5b234</code></a>
build(deps-dev): bump eslint from 8.38.0 to 8.39.0 (<a
href="https://redirect.github.com/peter-evans/create-pull-request/issues/1888 ">#1888</a>)</li>
<li><a
href="https://github.com/peter-evans/create-pull-request/commit/2d8e7db84cac6d2c614124f2f4a8582a45f3b6f6 "><code>2d8e7db</code></a>
build(deps-dev): bump <code>@types/node</code> from 18.15.11 to 18.16.0
(<a
href="https://redirect.github.com/peter-evans/create-pull-request/issues/1887 ">#1887</a>)</li>
<li><a
href="https://github.com/peter-evans/create-pull-request/commit/041b6ab1635f4e31e86773ec8a91cf42d1403b67 "><code>041b6ab</code></a>
build(deps-dev): bump prettier from 2.8.7 to 2.8.8 (<a
href="https://redirect.github.com/peter-evans/create-pull-request/issues/1886 ">#1886</a>)</li>
<li><a
href="https://github.com/peter-evans/create-pull-request/commit/31de0fdf3fbb0da088e82df3d7ae33c4112d4ef6 "><code>31de0fd</code></a>
build(deps-dev): bump <code>@types/jest</code> from 29.5.0 to 29.5.1
(<a
href="https://redirect.github.com/peter-evans/create-pull-request/issues/1885 ">#1885</a>)</li>
<li><a
href="https://github.com/peter-evans/create-pull-request/commit/28295f66367f85dd76ea1d27825cb5987f67c861 "><code>28295f6</code></a>
build(deps-dev): bump <code>@typescript-eslint/parser</code> from
5.59.0 to 5.59.1 (<a
href="https://redirect.github.com/peter-evans/create-pull-request/issues/1884 ">#1884</a>)</li>
<li><a
href="https://github.com/peter-evans/create-pull-request/commit/8dcaf3883b89ee69284b5200207140ee0ff16fd4 "><code>8dcaf38</code></a>
build(deps-dev): bump <code>@typescript-eslint/parser</code> from
5.58.0 to 5.59.0 (<a
href="https://redirect.github.com/peter-evans/create-pull-request/issues/1876 ">#1876</a>)</li>
<li><a
href="https://github.com/peter-evans/create-pull-request/commit/2827897dcca3eb94b42cba2228d9abc3ff04185e "><code>2827897</code></a>
docs: add note about push-to-fork with remote repos</li>
<li><a
href="https://github.com/peter-evans/create-pull-request/commit/c4f19d3a23df3f9c18e7893bb435a88a2e045c49 "><code>c4f19d3</code></a>
build(deps-dev): bump eslint-import-resolver-typescript (<a
href="https://redirect.github.com/peter-evans/create-pull-request/issues/1844 ">#1844</a>)</li>
<li><a
href="https://github.com/peter-evans/create-pull-request/commit/46035868a3d3d84411578c2a440de0f822dd7a06 "><code>4603586</code></a>
build(deps-dev): bump eslint from 8.37.0 to 8.38.0 (<a
href="https://redirect.github.com/peter-evans/create-pull-request/issues/1842 ">#1842</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/peter-evans/create-pull-request/compare/v5.0.0...v5.0.1 ">compare
view</a></li>
</ul>
</details>
<br />
[](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores )
Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.
[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)
---
<details>
<summary>Dependabot commands and options</summary>
<br />
You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)
</details>
Signed-off-by: dependabot[bot] <[email protected] >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-03 09:13:42 -07:00
github-actions[bot] and Kevin Fox
6760cd22cd
Bump test chart dependencies ( #252 )
...
Bump the Helm charts used in test scenarios to latest available
versions.
---------
Signed-off-by: GitHub <[email protected] >
Co-authored-by: Kevin Fox <[email protected] >
2023-05-01 09:16:43 -07:00
Marco Franssen
3889d22e34
Fix quotation bug in update-version.sh
...
Signed-off-by: Marco Franssen <[email protected] >
2023-04-26 16:20:07 +02:00
Marco Franssen
6a894e8c38
Move update-versions.sh script
...
Signed-off-by: Marco Franssen <[email protected] >
2023-04-26 16:20:07 +02:00
Marco Franssen
91083a6b4e
Add post-install scripts to all tests to capture failure details in GitHub workflow summary ( #88 )
2023-04-26 07:17:29 -07:00
Marco Franssen
99af475f1c
Resolve shellcheck issues
...
Signed-off-by: Marco Franssen <[email protected] >
2023-04-26 16:04:02 +02:00
Marco Franssen
d0a1e12825
Add workflow with shellcheck
...
Signed-off-by: Marco Franssen <[email protected] >
2023-04-26 12:02:27 +02:00
Marco Franssen
252f1f5a19
Bump cosign to v2.0.2
...
Signed-off-by: Marco Franssen <[email protected] >
2023-04-26 10:20:20 +02:00
dependabot[bot]
247e3e5d31
Bump sigstore/cosign-installer from 3.0.2 to 3.0.3
...
Bumps [sigstore/cosign-installer](https://github.com/sigstore/cosign-installer ) from 3.0.2 to 3.0.3.
- [Release notes](https://github.com/sigstore/cosign-installer/releases )
- [Commits](https://github.com/sigstore/cosign-installer/compare/v3.0.2...v3.0.3 )
---
updated-dependencies:
- dependency-name: sigstore/cosign-installer
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <[email protected] >
2023-04-26 01:03:32 +00:00
kfox1111 and Marco Franssen
17d62f1246
Add an action to find new versions of helm charts ( #184 )
...
Co-authored-by: Marco Franssen <[email protected] >
2023-04-25 10:04:38 +02:00
Marco Franssen
3fc81780d9
Add k8s 1.27 to CI + bump other versions to latest patches ( #219 )
...
- Add k8s 1.27 to test workflow
- Bump other k8s versions to latest patch release
---------
Signed-off-by: Marco Franssen <[email protected] >
2023-04-17 23:28:28 -07:00
dependabot[bot]
6c21f13264
Bump actions/checkout from 3.5.0 to 3.5.2
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 3.5.0 to 3.5.2.
- [Release notes](https://github.com/actions/checkout/releases )
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/checkout/compare/v3.5.0...v3.5.2 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <[email protected] >
2023-04-14 08:42:40 +02:00
dependabot[bot] and Marco Franssen
b73f694a84
Bump sigstore/cosign-installer from 3.0.1 to 3.0.2 ( #204 )
...
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Marco Franssen <[email protected] >
2023-04-12 10:54:31 +02:00
kfox1111 and Marco Franssen
563e1f7920
Add podmonitors ( #165 )
...
Co-authored-by: Marco Franssen <[email protected] >
Signed-off-by: Marco Franssen <[email protected] >
2023-04-04 09:55:35 +02:00
Faisal Memon and Marco Franssen
d5dc706592
Add Kubernetes 1.21 back ( #188 )
...
Co-authored-by: Marco Franssen <[email protected] >
Signed-off-by: Marco Franssen <[email protected] >
2023-04-04 09:25:19 +02:00
kfox1111 and Marco Franssen
daa620bf05
Fix production example test ( #183 )
...
Co-authored-by: Marco Franssen <[email protected] >
Signed-off-by: Marco Franssen <[email protected] >
2023-04-03 19:54:53 +02:00
kfox1111 and Marco Franssen
ec236e9762
Test for configurable images ( #182 )
...
Co-authored-by: Marco Franssen <[email protected] >
Signed-off-by: Marco Franssen <[email protected] >
2023-04-03 19:50:06 +02:00
kfox1111 and Marco Franssen
280315ca68
Fix namespace-override github test summary ( #154 )
...
Co-authored-by: Marco Franssen <[email protected] >
Signed-off-by: Marco Franssen <[email protected] >
2023-04-03 19:37:19 +02:00
Marco Franssen
a7709287bf
Switch busybox image to cgr.dev/chainguard/busybox:latest-glibc ( #175 )
2023-04-03 05:33:30 -07:00
kfox1111 and Marco Franssen
e2ec6ac47d
Add a test to ensure the chart versions match ( #163 )
...
Co-authored-by: Marco Franssen <[email protected] >
2023-03-28 10:21:24 +02:00
dependabot[bot]
f709ed9705
Bump actions/checkout from 3.4.0 to 3.5.0
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 3.4.0 to 3.5.0.
- [Release notes](https://github.com/actions/checkout/releases )
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/checkout/compare/v3.4.0...v3.5.0 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
2023-03-27 09:55:36 +02:00
dependabot[bot]
faef4391a6
Bump helm/chart-testing-action from 2.3.1 to 2.4.0
...
Bumps [helm/chart-testing-action](https://github.com/helm/chart-testing-action ) from 2.3.1 to 2.4.0.
- [Release notes](https://github.com/helm/chart-testing-action/releases )
- [Commits](https://github.com/helm/chart-testing-action/compare/v2.3.1...v2.4.0 )
---
updated-dependencies:
- dependency-name: helm/chart-testing-action
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
2023-03-27 08:53:01 +02:00
kfox1111 and Marco Franssen
b25dc773bc
Test fixing the tests ( #148 )
...
Co-authored-by: Marco Franssen <[email protected] >
2023-03-22 09:49:33 +01:00
kfox1111
d4fd2ced39
Extract the namespace override test out of the old lockdown test. ( #145 )
...
This patch removes the production bits of the old lockdown test
and establishes the namespace override test as its own test.
---------
Signed-off-by: Kevin Fox <[email protected] >
2023-03-21 22:13:26 +01:00
Marco Franssen
4f85802ae0
Update lockdown test to test the production example
...
Signed-off-by: Marco Franssen <[email protected] >
2023-03-21 21:55:20 +01:00
kfox1111
04a1305556
Fork the lockdown test to two tests as it is doing the work of 2 ( #134 )
...
This patch makes a second copy of the existing lockdown test
because it is doing double duty. In follow on patches we will
make each test do one thing only.
Signed-off-by: Kevin Fox <[email protected] >
2023-03-21 10:14:38 -07:00
Marco Franssen
a516caa8a6
Remove k8s 1.21 from test matrix + small syntax error fix ( #133 )
...
- Remove k8s 1.21 from test matrix
- Fix syntax
- Improve readability test step
Officialy according to readme we support last three k8s versions.
Testing last 5 versions should be sufficient.
---------
Signed-off-by: Marco Franssen <[email protected] >
2023-03-17 14:37:31 -07:00
Pete Cable
811a2f6b01
Add option to enable federation on spire-server ( #97 )
2023-03-16 20:36:13 +01:00
Kevin Fox and Marco Franssen
6322a9a138
Fix tests
...
Signed-off-by: Kevin Fox <[email protected] >
Co-authored-by: Marco Franssen <[email protected] >
2023-03-16 18:58:31 +01:00
Kevin Fox and Marco Franssen
cc7121e021
Add ingress support for OIDC discovery provider
...
This patch enables exposing the oidc server out with an ingress
along with tests to ensure it works.
Signed-off-by: Kevin Fox <[email protected] >
Co-authored-by: Marco Franssen <[email protected] >
2023-03-16 10:02:22 +01:00
dependabot[bot]
eaed7c9b60
Bump actions/checkout from 3.3.0 to 3.4.0 ( #129 )
...
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-16 09:36:54 +01:00
kfox1111
80e3b58dcd
Remove dead file from failed rebase. ( #121 )
...
Signed-off-by: Kevin Fox <[email protected] >
2023-03-14 13:23:02 -07:00
kfox1111
03db6bb5fe
Namespace override
...
This patch makes it possible to install the subcharts in different
namespaces as needed.
Signed-off-by: Kevin Fox <[email protected] >
2023-03-13 15:03:16 -07:00
Kevin Fox
09b21acca2
Fix the gate
...
Signed-off-by: Kevin Fox <[email protected] >
2023-03-11 19:21:59 +01:00
kfox1111
b6716aee17
Test that it is possible to lock down security of pods ( #84 )
2023-03-11 12:11:19 +01:00
Kevin Fox
490fe8f543
Enhance the test workflow scripts
...
This makes it so that tests can now:
1. Add additional values files to the test
2. That the post-install.sh script knows if the test passed or failed
for better output
3. That the main test can be skipped in favor of a test provided one
Signed-off-by: Kevin Fox <[email protected] >
2023-03-10 08:46:27 +01:00
Kevin Fox
7d1f8217ce
Fix test.
...
Signed-off-by: Kevin Fox <[email protected] >
2023-03-09 10:09:50 -08:00
Marco Franssen
493ad8fbed
Remove some duplication on chart-testing CI
...
Signed-off-by: Marco Franssen <[email protected] >
2023-03-09 10:09:50 -08:00
Marco Franssen
dfa4e6c784
Ensure CI also runs when test scripts are changed
...
Signed-off-by: Marco Franssen <[email protected] >
2023-03-08 07:21:49 -08:00
kfox1111
d341c5ad58
UpstreamAuthority cert-manager support ( #82 )
2023-03-03 20:48:35 +01:00
Kevin Fox
b7f8c86478
Add extra initContainers, containers, volumes to agent and server
...
With plugin support, agents and servers need more customization.
This patch enables initContainers, extraContainers, extraVolumes
and extraVolumeMounts to be added to those services.
Signed-off-by: Kevin Fox <[email protected] >
2023-03-02 08:02:19 -08:00
Marco Franssen
81ac89a911
Add k8s 1.26.0 (Kind) to the test matrix
...
Signed-off-by: Marco Franssen <[email protected] >
2023-03-02 13:08:37 +01:00
Marco Franssen
c0e5665702
Bump cosign to v2.0.0
...
Cosign v2.0.0 doesn't require the experimental env var anymore
Signed-off-by: Marco Franssen <[email protected] >
2023-03-02 09:15:46 +01:00
dependabot[bot]
d729a4410c
Bump sigstore/cosign-installer from 2.8.1 to 3.0.1
...
Bumps [sigstore/cosign-installer](https://github.com/sigstore/cosign-installer ) from 2.8.1 to 3.0.1.
- [Release notes](https://github.com/sigstore/cosign-installer/releases )
- [Commits](https://github.com/sigstore/cosign-installer/compare/v2.8.1...v3.0.1 )
---
updated-dependencies:
- dependency-name: sigstore/cosign-installer
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <[email protected] >
2023-03-02 01:14:59 +00:00
Marco Franssen
fea2aa59e2
Fix sigstore/cosign-installer usage in release workflow
...
See https://github.com/sigstore/cosign-installer\#usage on proper usage
Resolves #66
Signed-off-by: Marco Franssen <[email protected] >
2023-03-01 13:52:39 +01:00
dependabot[bot]
e754b3a6c8
Bump actions/checkout from 3.2.0 to 3.3.0
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 3.2.0 to 3.3.0.
- [Release notes](https://github.com/actions/checkout/releases )
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/checkout/compare/v3.2.0...v3.3.0 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
2023-02-27 11:32:19 +01:00