Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Move to secure, smaller python images, running as non-root + nginx sidecar #136

Open
wants to merge 30 commits into
base: master
Choose a base branch
from
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
30 commits
Select commit Hold shift + click to select a range
f6072d8
made the necessary changes for Indexd to work with the new slim pytho…
EliseCastle23 Jul 26, 2023
73b9323
running gunicorn with a low priledged user.
EliseCastle23 Jul 26, 2023
fc54ca6
Merge branch 'master' into feat/GPE-979
EliseCastle23 Aug 8, 2023
4ded8da
changing the user to "appuser" instead of "nobody"
EliseCastle23 Aug 9, 2023
aaf2794
cleaning up conf
EliseCastle23 Aug 11, 2023
cfffb60
fixing the virtual environment call
EliseCastle23 Aug 15, 2023
de10727
Making it so the nginx sidecar is always deployed
EliseCastle23 Sep 14, 2023
b820875
Add nginx sidecar for gunicorn to fence
jawadqur Nov 14, 2023
d1be1a7
Add nginx sidecar for gunicorn to fence
jawadqur Nov 14, 2023
2b91116
Add nginx sidecar for gunicorn to fence
jawadqur Nov 14, 2023
bb6544b
bump indexd and fence
jawadqur Nov 14, 2023
5cf550a
Update fence to run nginx as sidecar
jawadqur Nov 20, 2023
b5f5d91
Update fence to run nginx as sidecar
jawadqur Nov 21, 2023
dceb8f0
adding gunicorn changes for audit, metadata, manifestservice, etc.
EliseCastle23 Nov 27, 2023
da0ab38
adding gunicorn changes for peregrine, requestor, wts
Nov 28, 2023
a996869
adding gunicorn changes for peregrine, requestor, wts
Nov 28, 2023
881ef0d
Merge branch 'master' into feat/GPE-979
jawadqur Nov 28, 2023
8dbb793
Fix peregrine wsgi
jawadqur Nov 28, 2023
f05ba28
add ttlSecondsAfterFinished: 100 to some jobs
jawadqur Nov 29, 2023
c8db5e0
set ttlSecondsAfterFinished: 10 for dbcreate jobs
jawadqur Nov 29, 2023
068e0c9
Fix wts-oidc-job ttlSecondsAfterFinished
jawadqur Nov 29, 2023
235b8f3
Add dev-bootstrap script
jawadqur Nov 29, 2023
d5b4329
Merge branch 'master' into feat/GPE-979
EliseCastle23 Jul 9, 2024
a763e7d
updating audit service to enable use of slim image conditionally
EliseCastle23 Jul 10, 2024
40fe2bc
adding changes to alembic command depending on slim image
EliseCastle23 Jul 10, 2024
29bc8e6
Making changes to optionally enable Al2 secure images
EliseCastle23 Jul 11, 2024
3062e2f
fixing syntax errors
EliseCastle23 Jul 12, 2024
cb10012
updating service files and correcting deployment.yaml issues
EliseCastle23 Jul 12, 2024
179f864
correcting 'common' chart version
EliseCastle23 Jul 12, 2024
a050382
updating volume mounts for fence and presigned url
EliseCastle23 Jul 15, 2024
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
38 changes: 19 additions & 19 deletions .secrets.baseline
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@
"files": "^.secrets.baseline$",
"lines": null
},
"generated_at": "2024-07-02T16:36:02Z",
"generated_at": "2024-07-12T19:26:58Z",
"plugins_used": [
{
"name": "AWSKeyDetector"
Expand Down Expand Up @@ -170,7 +170,7 @@
"hashed_secret": "f09dd6e359833a12f48c4c4255d6e87a6e55cfe9",
"is_secret": false,
"is_verified": false,
"line_number": 85,
"line_number": 90,
"type": "Secret Keyword"
}
],
Expand Down Expand Up @@ -254,7 +254,7 @@
"type": "Secret Keyword"
},
{
"hashed_secret": "9d8fada0e01336e865c461bb3549084d206fe6da",
"hashed_secret": "680318f193e2ef208430b002ad07ff98a79ac457",
"is_secret": false,
"is_verified": false,
"line_number": 200,
Expand Down Expand Up @@ -321,7 +321,7 @@
"hashed_secret": "5d07e1b80e448a213b392049888111e1779a52db",
"is_secret": false,
"is_verified": false,
"line_number": 1963,
"line_number": 1992,
"type": "Secret Keyword"
}
],
Expand Down Expand Up @@ -353,7 +353,7 @@
"hashed_secret": "1740c48fa3141d4851b14f97e3bc0f46f7670672",
"is_secret": false,
"is_verified": false,
"line_number": 122,
"line_number": 126,
"type": "Secret Keyword"
}
],
Expand All @@ -362,7 +362,7 @@
"hashed_secret": "9b5925ea817163740dfb287a9894e8ab3aba2c18",
"is_secret": false,
"is_verified": false,
"line_number": 200,
"line_number": 208,
"type": "Secret Keyword"
}
],
Expand Down Expand Up @@ -423,10 +423,10 @@
"type": "Secret Keyword"
},
{
"hashed_secret": "1cc98556e7b1353c7bd08344f9190808b0d3d6d4",
"is_secret": true,
"hashed_secret": "44cb746036385723dde2ac36e53da8932a69bfe2",
"is_secret": false,
"is_verified": false,
"line_number": 108,
"line_number": 112,
"type": "Secret Keyword"
}
],
Expand Down Expand Up @@ -469,21 +469,21 @@
"hashed_secret": "cbdb7939a61698c9c866ea614399ef7eb7770c68",
"is_secret": false,
"is_verified": false,
"line_number": 49,
"line_number": 48,
"type": "Secret Keyword"
},
{
"hashed_secret": "d84ce25b0f9bc2cc263006ae39453efb22cc2900",
"is_secret": false,
"is_verified": false,
"line_number": 74,
"line_number": 73,
"type": "Secret Keyword"
},
{
"hashed_secret": "f09dd6e359833a12f48c4c4255d6e87a6e55cfe9",
"is_secret": false,
"is_verified": false,
"line_number": 93,
"line_number": 96,
"type": "Secret Keyword"
}
],
Expand All @@ -499,14 +499,14 @@
"hashed_secret": "f09dd6e359833a12f48c4c4255d6e87a6e55cfe9",
"is_secret": false,
"is_verified": false,
"line_number": 71,
"line_number": 75,
"type": "Secret Keyword"
},
{
"hashed_secret": "7d4e263f1ae83868444f5327219830493a7d1486",
"hashed_secret": "489e396b7c68f95c6018f7b98ef7b1b94587ef29",
"is_secret": false,
"is_verified": false,
"line_number": 103,
"line_number": 114,
"type": "Secret Keyword"
}
],
Expand Down Expand Up @@ -586,14 +586,14 @@
"hashed_secret": "d84ce25b0f9bc2cc263006ae39453efb22cc2900",
"is_secret": false,
"is_verified": false,
"line_number": 64,
"line_number": 63,
"type": "Secret Keyword"
},
{
"hashed_secret": "f09dd6e359833a12f48c4c4255d6e87a6e55cfe9",
"is_secret": false,
"is_verified": false,
"line_number": 87,
"line_number": 90,
"type": "Secret Keyword"
}
],
Expand Down Expand Up @@ -634,7 +634,7 @@
"hashed_secret": "f09dd6e359833a12f48c4c4255d6e87a6e55cfe9",
"is_secret": false,
"is_verified": false,
"line_number": 79,
"line_number": 83,
"type": "Secret Keyword"
}
],
Expand Down Expand Up @@ -727,7 +727,7 @@
"hashed_secret": "f09dd6e359833a12f48c4c4255d6e87a6e55cfe9",
"is_secret": false,
"is_verified": false,
"line_number": 74,
"line_number": 78,
"type": "Secret Keyword"
}
],
Expand Down
Loading
Loading