Jacques ROUSSEL
175d80db16
♻️ (helmfile) rename helmfile
...
Rename helmfile to helmfile.yaml.gotmpl to be compatible with helmfile
0.162 and 1.1.9
2025-11-20 15:13:55 +01:00
rouja and GitHub
b3980e7bf1
♻️ (ci) add feature app environment
...
Add a special environment to prepare feature app deployment
2025-10-07 09:42:34 +00:00
rouja and GitHub
7813219b86
♻️ (documentation) remove unused environment variables
...
Yesterday during a deployment, we discovered that these variables are
unused:
POSTGRES_DB
POSTGRES_USER
POSTGRES_PASSWORD
2025-08-01 12:42:02 +00:00
Jacques ROUSSEL and Manuel Raynaud
a83902a0d4
🚸 (helm) improve helm chart
...
Our Helm chart wasn't suitable for use with Helm alone because jobs
remained after deployment. We chose to configure ttlSecondsAfterFinished
to clean up jobs after a period of time.
2025-06-16 16:05:48 +02:00
Jacques ROUSSEL and Manuel Raynaud
d1f73f18cd
🔒 ️(front) improve docker image security
...
Cyberwatch reported security issues with the frontend Docker image.
2025-05-22 11:16:57 +02:00
Jacques ROUSSEL and rouja
4178693e63
🐛 (ci) use github action for argocd webhook notification
...
In order to refactor this notification between alls projetcs, we choose
to use a custom github action
2025-03-28 16:42:45 +01:00
Jacques ROUSSEL and Manuel Raynaud
747ca70186
🐛 (ci) fix Tilt resources dependencies
...
The Tilt stack was not starting properly due to dependency issues. We
need to wait for PostgreSQL to be running before starting the migration.
2025-03-24 09:33:15 +01:00
Jacques ROUSSEL and Anthony LC
68bf024005
✨ (helm) add pdbs to deployments
...
In order to avoid a service interruption during a Kubernetes (k8s)
upgrade, we add a Pod Disruption Budget (PDB) to deployments.
2025-02-10 13:05:54 +01:00
Jacques ROUSSEL and Anthony LC
f12c06e975
🔧 (helm) add option to configure deployment annotations
...
We need to be abble to add specific annotations on Deployment in order
to use a reloader when external-secret sync new secrets
2025-01-09 07:20:01 +01:00
Jacques ROUSSEL and Anthony LC
bbb176e153
🐛 (CI) fix ci
...
The backend secret is managed by external-secret now so we should not
keep it in the chart
2025-01-08 11:55:40 +01:00
Jacques ROUSSEL and Anthony LC
02793040fd
🐛 (CI) improve helm release
...
In order to avoid a github release when we build the helm chart, we use
another action
2025-01-06 15:44:16 +01:00
Jacques ROUSSEL and Anthony LC
0773e83149
📝 (self-hosted) add documentation
...
Add a documentation to deploy a self-hosted visio instance in a
standalone way (witout AI features)
2025-01-06 15:44:16 +01:00
Jacques ROUSSEL and Anthony LC
21205b4d19
🐛 (CI) add helm release action
...
In order to avoird code duplication we have to release a helm chart
2025-01-06 15:44:16 +01:00
Jacques ROUSSEL and Anthony LC
60dbf6c11d
💚 (ci) fix jobs after migration
...
The repository migration broke the CI. To fix it, we removed the
dependency on the secrets repository.
2025-01-06 12:17:40 +01:00
Jacques ROUSSEL and Anthony LC
1da5a6a411
🗑️ (ci) clean old deployment and ci
...
We move deployment stuff to a new repository. we don't need this
codeanymore
2024-10-24 09:50:18 +02:00
Jacques ROUSSEL and Anthony LC
3a6bc8c0f7
🔧 (backend) fix configuration to avoid different ssl warning
...
Fix following warning messages :
- You have not set a value for the SECURE_HSTS_SECONDS setting.
- Your SECURE_SSL_REDIRECT setting is not set to True.
2024-10-01 09:27:37 +02:00
Jacques ROUSSEL and Anthony LC
8c9cb43097
🚑 ️(frontend) fixe CVEs in frontend image
...
Use alpine version for production image instead of debian in order to
have less CVEs.
2024-09-30 10:59:52 +02:00
Jacques ROUSSEL and Anthony LC
aeeed8feb5
✨ (ci) add security scan
...
Add a security scan for CVE with trivy
2024-09-30 10:59:52 +02:00
Jacques ROUSSEL and Anthony LC
2775a74bdb
✨ (ci) add helmfile linter and fix issue in argocd sync
...
Add a github job to run helmfile linter on PR
Add argocd annotation to fix job syncing issue
2024-09-24 14:09:26 +02:00
Jacques ROUSSEL and Anthony LC
6b0b052d78
🔒 ️(helm) fix secret sync precedence
...
When new secret is added to backend secret, it's not sync at the
beginning of argocd synchronisation and jobs are blocked. Theses new
annotations fix this issue.
2024-09-20 18:29:10 +02:00
Jacques ROUSSEL and rouja
6a13c5d4e1
🔐 (secret) add spaccoud age key
...
Add spaccoud age key
2024-08-09 13:12:13 +02:00
Jacques ROUSSEL and Anthony LC
aef19cfddd
🔧 (helm) manage htaccess
...
- add htaccess
- fix issue with kind
2024-07-03 09:22:31 +02:00
Jacques ROUSSEL and rouja
9e318f88be
🐛 (CI) improve submodule
...
- remove deplucate declaration
- simplify helmfile
- use symlink
2024-06-11 10:40:39 +02:00
Jacques ROUSSEL and rouja
e4bed84343
🐛 (CI) fix ci issue
...
- fix get secret in ci
2024-06-07 14:05:51 +02:00
Jacques ROUSSEL and rouja
37f02893ed
🐛 (CI) purge secret from repository
...
- Remove *.enc.*
- Adapt helmfile
- Adapt CI
2024-06-07 10:11:19 +02:00
Jacques ROUSSEL and Anthony LC
2b456c231f
💚 (CI) improve changelog ci
...
Disable changelog when the label is not present
2024-05-30 16:57:45 +02:00
Jacques ROUSSEL and Anthony LC
72bb079f10
👷 (helm) preprod configuration
...
This PR adds the preprod configuration
for the helm chart.
2024-05-30 16:57:45 +02:00
Jacques ROUSSEL and rouja
dd33c99532
💚 (CI) add git hook
...
Add git hook to avoid secret leaks
2024-05-24 17:01:25 +02:00
Jacques ROUSSEL and Anthony LC
7c6e48975d
💚 (ci) improve local deployment with tilt
...
Change the way we start django app in order to be abble to use django
admin on local deployment
2024-05-13 11:15:43 +02:00
Jacques ROUSSEL and Anthony LC
0c2d097d8d
💚 (ci) improve secrets for k8s deployment
...
Avoid secrets to be visible from running deployments
2024-05-02 16:06:58 +02:00
Jacques ROUSSEL and Anthony LC
f9bec19c7d
🐛 (ci) improve docker-hub
...
Avoid to notify argocd for nothing
2024-04-29 10:29:56 +02:00