openstack-helm-infra/zuul.d/project.yaml
okozachenko 3bcb347a5b Realize libvirt SSL
Motivation: libvirt 127.0.0.1 listen is terrible for live migration.
To resolve that, we can use 0.0.0.0 but it is not secure so tried
to realize SSL.
Once create secrets for cacert, client&server cert and keys then it will
 mounted on libvirt daemonset.
It means all instances use the same key and cert. This is not ideal
 but can be considered as the first stage.

Change-Id: Ic3407e484039afaf98495e0f6028254c4c2a0a78
2020-09-25 16:36:42 +03:00

80 lines
3.2 KiB
YAML

---
# Copyright 2018 SUSE LINUX GmbH.
#
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
- project:
templates:
- publish-openstack-docs-pti
check:
jobs:
- openstack-helm-lint
- openstack-helm-infra-bandit
- openstack-helm-infra-aio-logging
- openstack-helm-infra-aio-monitoring
- openstack-helm-infra-openstack-support
- openstack-helm-infra-openstack-support-ssl
# NOTE(srwilkers): Disabling this job until issues with the kubeadm-aio
# based deployments are addressed
# - openstack-helm-infra-kubernetes-keystone-auth:
# voting: false
# some testing performed here to check for any break of host/label
# override functionality
- openstack-helm-infra-airship-divingbell:
voting: false
- openstack-helm-infra-metacontroller
# NOTE(gagehugo): Disabling this job until it's fixed
# - openstack-helm-infra-aio-podsecuritypolicy:
# voting: false
gate:
jobs:
- openstack-helm-lint
- openstack-helm-infra-aio-logging
- openstack-helm-infra-aio-monitoring
- openstack-helm-infra-openstack-support
- openstack-helm-infra-openstack-support-ssl
post:
jobs:
- publish-openstack-helm-charts
# NOTE(srwilkers): Disabling all periodic and experimental jobs until
# issues with the kubeadm-aio based deployments are addressed
periodic:
jobs:
- openstack-helm-infra-validate-minikube-aio
# - openstack-helm-infra-tenant-ceph
# - openstack-helm-infra-five-ubuntu
# - openstack-helm-infra-armada-deploy
# - openstack-helm-infra-armada-update-uuid
# - openstack-helm-infra-armada-update-passwords
experimental:
jobs:
# NOTE(srwilkers): Disable fedora experimental jobs until issues resolved
# - openstack-helm-infra-five-fedora
# NOTE(srwilkers): Disable centos experimental jobs until issues resolved
# - openstack-helm-infra-five-centos
# - openstack-helm-infra-five-ubuntu
- openstack-helm-infra-elastic-beats
# - openstack-helm-infra-tenant-ceph
# - openstack-helm-infra-armada-deploy
# - openstack-helm-infra-armada-update-uuid
# - openstack-helm-infra-armada-update-passwords
- openstack-helm-infra-federated-monitoring
- openstack-helm-infra-kafka
- openstack-helm-infra-local-storage
- openstack-helm-infra-aio-network-policy
- openstack-helm-infra-apparmor
- openstack-helm-infra-aio-logging-apparmor
- openstack-helm-infra-openstack-support-apparmor
- openstack-helm-infra-metacontroller
...