Commit Graph

34 Commits

Author SHA1 Message Date
ivan
942bfa5d54 ++ 2026-07-28 16:07:13 +05:00
ivan
a144eb61f2 ++ 2026-07-28 15:58:38 +05:00
ivan
bdd21c097f ++ 2026-07-28 15:24:05 +05:00
ivan
989c8feb04 ++ 2026-07-25 21:21:47 +05:00
ivan
ad0e358c92 ++ 2026-07-25 21:04:15 +05:00
ivan
31580297af ++ 2026-07-25 20:55:58 +05:00
ivan
054d542968 ++ 2026-07-25 20:44:15 +05:00
ivan
1a7b67d506 ++ 2026-07-25 20:20:33 +05:00
ivan
4d7a55fd0b ++ 2026-07-25 20:05:42 +05:00
ivan
c283f9c67b ++ 2026-07-25 19:56:25 +05:00
ivan
27287ca695 ++ 2026-07-24 15:55:10 +05:00
ivan
7b5698e2d9 ++ 2026-07-24 15:28:18 +05:00
ivan
4b722108d1 ++ 2026-07-21 20:36:04 +05:00
ivan
5aef3e8f7a ++ 2026-07-21 14:49:01 +03:00
ivan
aeb3abdb81 ++ 2026-07-21 14:49:01 +03:00
4a493aa6e2 ++ fix sops whole file encryption was leaking secrets 2026-07-21 14:49:01 +03:00
17e4b3ae81 ++ populate real vault admin creds into ugmk secrets 2026-07-20 17:43:03 +03:00
1f50e8533a ++ add ugmk test app kafka postgres rabbitmq vault examples 2026-07-20 17:15:41 +03:00
f1dfb90dba ++ add ugmk namespace database vault secrets 2026-07-20 16:52:16 +03:00
e445c6689b add regcred namespace propagation 2026-07-20 12:03:50 +03:00
198bd24493 change vault deploy flags 2026-07-17 16:42:31 +03:00
3434187302 ++ add existing vault secrets for yc-k8s-test 2026-07-17 09:39:19 +00:00
b8b77536c3 ++ contour: yc-k8s-test env — test bucket+user, db+extensions+user, kafka topic+user, rabbitmq exchange+user; 4 test secrets (k8s static/dynamic, vault static/dynamic); vault-platform inert 2026-07-16 16:35:59 +03:00
ff9fe1ce47 ++ flows-prod yc-kafka-secret: add cert key 1:1 from live (was missing -> without_ignore reconcile would strip live tls cert) 2026-07-16 11:06:45 +03:00
dbfa8aa594 ++ planning ns: projects-backend pg+s3 dynamic secrets, projects_db/planning user, projects-backend-prod bucket 2026-07-16 10:42:28 +03:00
99d82d409f ++ flows-prod kafka secret back to static data (keep coalesce module fix for dynamic-capable path) 2026-07-15 15:29:52 +03:00
ceed71665e ++ fix kafka dynamic secret: resolve depends_on key via coalesce (was try-chain -> empty key ':' -> null map -> empty secret); restore flows-prod dynamic form 2026-07-15 15:24:28 +03:00
fc7dc2b101 ++ fix flows-prod yc-kafka-secret: static data (host/password/username) like sibling kafka secrets 2026-07-14 14:12:14 +03:00
fd462cdb56 ++ fix flows-prod kafka secret shape: map host->hostname(:9091), username, password via credential_keys 2026-07-14 13:28:38 +03:00
bc3490a5e6 ++ fix ci: re-encrypt secrets to restore sops mac (flows-prod kafka secret) 2026-07-14 12:19:10 +03:00
Vladislav Verezhnikov
a09315dba8 + 2026-07-14 13:06:06 +05:00
81f3eabcdd add premises storage s3 bucket + secret 2026-07-10 13:14:46 +03:00
e075bc12ac ++ declarative single-file secrets, drop resource_key, sync kafka with cloud 2026-07-09 09:21:02 +03:00
8d12527af4 ++ adopt prod 2026-07-07 17:10:06 +03:00