Commit Graph

92 Commits (4ca8ce90d18057f872d569d22fc7ddbb66fbfa4b)

Author SHA1 Message Date
Sakala Venkata Krishna Rohit 621fcfad09
Revert "Add seccomp profile to opa" 2023-06-02 07:11:24 +05:30
Diogo Souza 20ee59fb75 adding seccomp to crd-delete job 2023-06-01 20:04:30 -03:00
Diogo Souza ec5e05e8ad adding before hook creation delete policy 2023-05-31 00:06:58 +00:00
Diogo Souza 71e3564ccf changing kube version annotation 2023-05-16 17:24:02 -03:00
Diogo Souza a909b0f9cd adding gatekeeper 3.12.0 to v2.7 2023-04-25 23:54:10 +00:00
vardhaman 1cfe8a9154 added security context values for gatekeeper crd chart
this is needed so that these jobs can be run in the namespace with restricted psa labels applied
2023-02-08 20:12:45 +05:30
vardhaman cd97ee298e added additional permission to cluster role used for gatekeeper jobs
the additional permissions are required for the jobs to add psa related labels to namespace
2023-02-03 20:51:38 +05:30
Mauren Berti f50b5dc1f7
Add new PSP flag + add validation for capabilities.
* Remove previously added capabilities check.
* Add new validation file validate-psp-install.yaml with capabilities and switch check to verify PSPs are installable in the target cluster.
* Remove old PSP flags and replace them with the standardized global.cattle.psp.enabled.
* Add explanation of the changes for Kubernetes v1.25 to app-readme.md.
2023-01-27 19:38:30 -05:00
Mauren Berti 8e0334ecfc
Bump rancher-gatekeeper to version 102.0.0. 2023-01-27 14:25:12 -05:00
Rayan Das 5d1f34e8dd add condition to check for PSP capability in rancher-gatekeeper-crd 2022-12-16 16:33:52 +05:30
vardhaman f5bf73f5e4 rancher gatekeeper updated to 3.10.0 2022-12-07 13:07:58 +05:30
mitulshah-suse 697c23f8c9 add gatekeeper 3.9.0 2022-09-21 10:38:54 +05:30
Arvind Iyengar 7e29577d73
Move most charts to using 101.0.0 and doNotRelease 2022-09-09 14:23:03 -07:00
Sebastiaan van Steenis 9f0d5ca73d
Change gatekeeper crd to rancher mirrored image 2022-07-08 15:21:52 +02:00
Vaishnav Gaikwad 31648c9178 add gatekeeper:3.8.1 2022-06-15 12:00:33 +05:30
Eliyam Levy daa518a32d Add node selectors and tolerations for windows 2022-05-26 11:31:51 -04:00
Steven Crespo c42070f0da Add missing annotations to gatekeeper 2022-05-11 17:56:44 -07:00
Vaishnav Gaikwad 0aea0c07e0 add gatekeeper:3.7.1 2022-04-20 09:43:24 +05:30
Ross Kirkpatrick 6986bdc208 revert rancher-gatekeeper changes 2022-03-24 18:19:56 -04:00
Arvind Iyengar f8327e8e1d
Fix rancher-gatekeeper nodeSelector and tolerations 2022-03-18 13:58:10 -07:00
Luther Monson be5a59aeac add permits-os to all charts that needed it 2022-03-02 17:11:40 -07:00
Arvind Iyengar 69516e7541
Redo Chart.yaml patches 2022-01-06 12:07:46 -08:00
Caleb Bron 74b165ae5e
(dev-v2.6-archive) Merge pull request #1519 from brendarearden/istio-spoof
[2.6.1 Blocker] Add new istio 1.10.4 image for airgap support

(partially cherry picked from commit fa87263e28)
2022-01-06 11:36:45 -08:00
Brenda Rearden 6fab596641
(dev-v2.6-archive) Update istio-installer image, add debug values
(partially cherry picked from commit 0ec6ab4350)
2022-01-06 11:36:45 -08:00
Caleb Bron 4502b967cb
(dev-v2.6-archive) Merge pull request #1494 from rayandas/fix/34897
Fix for OPA Gatekeeper 3.6.0 charts.

(partially cherry picked from commit fbe54522ab)
2022-01-06 11:36:38 -08:00
Nick Gerace e8fe379344
(dev-v2.6-archive) Update Fleet charts to v0.3.7-rc2
(partially cherry picked from commit 0ab0fbf7a7)
2022-01-06 11:36:29 -08:00
Rayan Das 1d2ce1608a
(dev-v2.6-archive) Update gatekeeper to 3.6.0
(partially cherry picked from commit 88ced129db)
2022-01-06 11:36:28 -08:00
Brenda Rearden ba64b29462
(dev-v2.6-archive) Add deprecation migration steps to readme, refactored app-readme
(partially cherry picked from commit b9477145b2)
2022-01-06 11:36:20 -08:00
David Ko 9e93598d14
(dev-v2.6-archive) Update longhorn 1.2.0
Signed-off-by: David Ko <dko@suse.com>

(partially cherry picked from commit 7507442ef7)
2022-01-06 11:36:19 -08:00
Jiaqi Luo 3f73dd78a1
(dev-v2.6-archive) bump rancher-webhook to 0.2.1-rc1
(partially cherry picked from commit cc5908e4cc)
2022-01-06 11:36:17 -08:00
Arvind Iyengar 86af1107cf
(dev-v2.6-archive) Bump package.yaml for new release
(partially cherry picked from commit 0dec447724)
2022-01-06 11:36:16 -08:00
Jake Hyde 2f3b63d2df
(dev-v2.6-archive) Merge pull request #1466 from jakefhyde/update-image-versions-in-rancher-cis-benchmark
Update image versions in rancher cis benchmark

(partially cherry picked from commit fa0a5a726a)
2022-01-06 11:36:15 -08:00
Jake Hyde a83c393737
(dev-v2.6-archive) Update rancher-cis-benchmark to 2.0.1
(partially cherry picked from commit 8a669ab826)
2022-01-06 11:36:14 -08:00
Colleen Murphy e5277446f9
(dev-v2.6-archive) Update aks-operator to 1.0.2-rc1
(partially cherry picked from commit 7e41bdf8b2)
2022-01-06 11:36:13 -08:00
David Ko 13ac30fcbd
(dev-v2.6-archive) Base copy longhorn 1.2
Signed-off-by: David Ko <dko@suse.com>

(partially cherry picked from commit a40c7c3cb4)
2022-01-06 11:36:11 -08:00
Rayan Das 79fabf2f1f
(dev-v2.6-archive) Update gatekeeper to 3.6.0
(partially cherry picked from commit ca17db72f8)
2022-01-06 11:36:11 -08:00
Colleen Murphy 0070a19a81
(dev-v2.6-archive) Fix image registry for gatekeeper
(partially cherry picked from commit 8f3bf8d6fa)
2022-01-06 11:35:34 -08:00
Brenda Rearden dc7b61faaf
(dev-v2.6-archive) Add cluster-tool annotation
Add cluster-tool Monitoring

Add cluster-tool annotation Alerting Drivers

Add cluster-tool annotation CIS Benchmark

Add cluster-tool annotation Istio

Add cluster-tool annotation Logging

Add cluster-tool annotation Longhorn

Add cluster-tool annotation OPA Gatekeeper

(partially cherry picked from commit 05ec4dbb83)
2022-01-06 11:35:28 -08:00
Caleb Bron a1ebafd587
(dev-v2.6-archive) Merge pull request #1232 from cmurphy/gatekeeper-3.4.0
Update gatekeeper to 3.5.1

(partially cherry picked from commit 9b44cc986f)
2022-01-06 11:35:17 -08:00
Caleb Bron efa5ea1d2a
(dev-v2.6-archive) Merge pull request #1357 from cmurphy/externalip-webhook-0.1.7
Add external-ip-webhook package for 1.0.0

(partially cherry picked from commit 1c519b3c52)
2022-01-06 11:35:15 -08:00
Colleen Murphy c3956adc58
(dev-v2.6-archive) Update gatekeeper to 3.5.1
(partially cherry picked from commit 73100b59a9)
2022-01-06 11:35:15 -08:00
Jiaqi Luo 667240cc68
(dev-v2.6-archive) update all charts' version to 100.0.0
(partially cherry picked from commit 09f8f4b5bf)
2022-01-06 11:34:04 -08:00
Arvind Iyengar 775e5e62f2
(dev-v2.6-archive) Remove rcVersions
(partially cherry picked from commit b350bb93e0)
2022-01-06 11:33:34 -08:00
Arvind Iyengar 63af4011e1
(dev-v2.6-archive) Checkout current packages from dev-v2.5-source
```bash
git fetch upstream
git checkout upstream/dev-v2.5-source -- packages; git reset HEAD; git checkout -- packages/README.md
```

(partially cherry picked from commit 551327b14e)
2022-01-06 11:33:32 -08:00
actions decb1db44b
(dev-v2.6-archive) Generated changes
(partially cherry picked from commit 88defdad62)
2022-01-06 11:33:31 -08:00
Jacob Payne fba428baa7
(dev-v2.6-archive) allow tolerations to be passed to fluentbit containers (#673)
(partially cherry picked from commit 91d1dedca1)
2022-01-06 11:33:27 -08:00
Prachi Damle 2d82003905
(dev-v2.6-archive) Use the system_default_registry for security-scan and sonobuoy images
Deleting tgz assets

(partially cherry picked from commit 42f30bfad1)
2022-01-06 11:33:26 -08:00
Steven Crespo b21fe035b5
(dev-v2.6-archive) Update gatekeeper to v3.1.1
(partially cherry picked from commit 5757f8cc15)
2022-01-06 11:33:25 -08:00
Rajashree Mandaogane 0739834448
(dev-v2.6-archive) Merge pull request #630 from mrajashree/quote
Remove quotes around pvc storageClassName

(partially cherry picked from commit ef9d7aeafb)
2022-01-06 11:33:03 -08:00
rajashree b39c8588a4
(dev-v2.6-archive) Removes quotes around pvc storageClassName
The field storageClassName uses "quote" template function. So the quotes around it
lead to errors. This commit removes the quotes

(partially cherry picked from commit 4fbdb77861)
2022-01-06 11:33:03 -08:00