WIP: A new version of gitlab (13.10.0) is available
current diff:
--- current-deployment.yaml
+++ future-deployment.yaml
@@ -7,7 +7,7 @@
namespace: gitlab
labels:
app: gitaly
- chart: gitaly-4.9.4
+ chart: gitaly-4.10.0
release: gitlab-test
heritage: Helm
@@ -28,7 +28,7 @@
namespace: gitlab
labels:
app: gitlab-shell
- chart: gitlab-shell-4.9.4
+ chart: gitlab-shell-4.10.0
release: gitlab-test
heritage: Helm
@@ -47,7 +47,7 @@
namespace: gitlab
labels:
app: praefect
- chart: praefect-4.9.4
+ chart: praefect-4.10.0
release: gitlab-test
heritage: Helm
@@ -66,7 +66,7 @@
namespace: gitlab
labels:
app: sidekiq
- chart: sidekiq-4.9.4
+ chart: sidekiq-4.10.0
release: gitlab-test
heritage: Helm
@@ -86,11 +86,12 @@
namespace: gitlab
labels:
app: webservice
- chart: webservice-4.9.4
+ chart: webservice-4.10.0
release: gitlab-test
heritage: Helm
gitlab.com/webservice-name: default
+
spec:
maxUnavailable: 1
selector:
@@ -130,8 +131,8 @@
heritage: Helm
component: "controller"
helm.sh/chart: nginx-ingress-3.11.1
- app.kubernetes.io/name: nginx-ingress
- app.kubernetes.io/instance: gitlab-test
+ app: nginx-ingress
+ release: gitlab-test
app.kubernetes.io/version: "0.41.2"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/component: controller
@@ -139,9 +140,9 @@
spec:
selector:
matchLabels:
- app.kubernetes.io/name: nginx-ingress
- app.kubernetes.io/instance: gitlab-test
- app.kubernetes.io/component: controller
+ app: nginx-ingress
+ release: gitlab-test
+ component: "controller"
minAvailable: 1
---
# Source: gitlab/charts/registry/templates/pdb.yaml
@@ -214,8 +215,8 @@
heritage: Helm
component: "controller"
helm.sh/chart: nginx-ingress-3.11.1
- app.kubernetes.io/name: nginx-ingress
- app.kubernetes.io/instance: gitlab-test
+ app: nginx-ingress
+ release: gitlab-test
app.kubernetes.io/version: "0.41.2"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/component: controller
@@ -232,8 +233,8 @@
heritage: Helm
component: "controller"
helm.sh/chart: nginx-ingress-3.11.1
- app.kubernetes.io/name: nginx-ingress
- app.kubernetes.io/instance: gitlab-test
+ app: nginx-ingress
+ release: gitlab-test
app.kubernetes.io/version: "0.41.2"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/component: default-backend
@@ -325,7 +326,7 @@
namespace: gitlab
labels:
app: gitaly
- chart: gitaly-4.9.4
+ chart: gitaly-4.10.0
release: gitlab-test
heritage: Helm
@@ -403,7 +404,7 @@
namespace: gitlab
labels:
app: gitlab-exporter
- chart: gitlab-exporter-4.9.4
+ chart: gitlab-exporter-4.10.0
release: gitlab-test
heritage: Helm
@@ -493,7 +494,7 @@
namespace: gitlab
labels:
app: gitlab-shell
- chart: gitlab-shell-4.9.4
+ chart: gitlab-shell-4.10.0
release: gitlab-test
heritage: Helm
@@ -653,7 +654,7 @@
namespace: gitlab
labels:
app: gitlab-shell
- chart: gitlab-shell-4.9.4
+ chart: gitlab-shell-4.10.0
release: gitlab-test
heritage: Helm
@@ -713,7 +714,7 @@
namespace: gitlab
labels:
app: gitlab-shell
- chart: gitlab-shell-4.9.4
+ chart: gitlab-shell-4.10.0
release: gitlab-test
heritage: Helm
@@ -728,7 +729,7 @@
namespace: gitlab
labels:
app: migrations
- chart: migrations-4.9.4
+ chart: migrations-4.10.0
release: gitlab-test
heritage: Helm
@@ -807,7 +808,7 @@
namespace: gitlab
labels:
app: praefect
- chart: praefect-4.9.4
+ chart: praefect-4.10.0
release: gitlab-test
heritage: Helm
@@ -869,7 +870,7 @@
namespace: gitlab
labels:
app: praefect
- chart: praefect-4.9.4
+ chart: praefect-4.10.0
release: gitlab-test
heritage: Helm
@@ -890,7 +891,7 @@
namespace: gitlab
labels:
app: sidekiq
- chart: sidekiq-4.9.4
+ chart: sidekiq-4.10.0
release: gitlab-test
heritage: Helm
@@ -916,7 +917,7 @@
namespace: gitlab
labels:
app: sidekiq
- chart: sidekiq-4.9.4
+ chart: sidekiq-4.10.0
release: gitlab-test
heritage: Helm
@@ -1111,6 +1112,7 @@
api_url: http://gitlab-test-registry.gitlab.svc:5000
key: /etc/gitlab/registry/gitlab-registry.key
issuer: gitlab-issuer
+
gitlab_ci:
ldap:
enabled: false
@@ -1186,7 +1188,7 @@
namespace: gitlab
labels:
app: task-runner
- chart: task-runner-4.9.4
+ chart: task-runner-4.10.0
release: gitlab-test
heritage: Helm
@@ -1367,6 +1369,7 @@
api_url: http://gitlab-test-registry.gitlab.svc:5000
key: /etc/gitlab/registry/gitlab-registry.key
issuer: gitlab-issuer
+
gitlab_ci:
ldap:
enabled: false
@@ -1446,7 +1449,7 @@
namespace: gitlab
labels:
app: webservice
- chart: webservice-4.9.4
+ chart: webservice-4.10.0
release: gitlab-test
heritage: Helm
@@ -1672,7 +1675,7 @@
port: 8083
sidekiq_exporter:
shutdown:
- blackout_seconds: 10
+ blackout_seconds: <%= ENV["SHUTDOWN_BLACKOUT_SECONDS"] %>
rack_attack:
git_basic_auth:
## Registry Integration
@@ -1682,6 +1685,7 @@
api_url: http://gitlab-test-registry.gitlab.svc:5000
key: /etc/gitlab/registry/gitlab-registry.key
issuer: omnibus-gitlab-issuer
+
smartcard:
enabled: false
ca_file: '/etc/gitlab/rails-secrets/smartcard-ca.crt'
@@ -1713,7 +1717,7 @@
namespace: gitlab
labels:
app: webservice
- chart: webservice-4.9.4
+ chart: webservice-4.10.0
release: gitlab-test
heritage: Helm
data:
@@ -2054,8 +2058,8 @@
heritage: Helm
component: "controller"
helm.sh/chart: nginx-ingress-3.11.1
- app.kubernetes.io/name: nginx-ingress
- app.kubernetes.io/instance: gitlab-test
+ app: nginx-ingress
+ release: gitlab-test
app.kubernetes.io/version: "0.41.2"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/component: controller
@@ -2074,8 +2078,8 @@
heritage: Helm
component: "controller"
helm.sh/chart: nginx-ingress-3.11.1
- app.kubernetes.io/name: nginx-ingress
- app.kubernetes.io/instance: gitlab-test
+ app: nginx-ingress
+ release: gitlab-test
app.kubernetes.io/version: "0.41.2"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/component: controller
@@ -2467,6 +2471,16 @@
if [ -f /config/profiling-key.json ]; then
cp /config/profiling-key.json /registry/profiling-key.json
fi
+ # Insert Database password, if enabled
+ if [ -f /config/database_password ] ; then
+ sed -i -e 's@DB_PASSWORD_FILE@'"$(cat /config/database_password)"'@' /registry/config.yml
+ fi
+ # Copy the database TLS connection files to the expected location and set permissions
+ if [ -d /config/ssl ]; then
+ cp -r /config/ssl/ /registry/ssl
+ chmod 700 /registry/ssl
+ chmod 600 /registry/ssl/*.pem
+ fi
config.yml: |
version: 0.1
log:
@@ -2525,6 +2539,8 @@
enabled: true
redirect:
disable: true
+
+ migration:
---
# Source: gitlab/templates/chart-info.yaml
apiVersion: v1
@@ -2534,12 +2550,12 @@
namespace: gitlab
labels:
app: gitlab
- chart: gitlab-4.9.4
+ chart: gitlab-4.10.0
release: gitlab-test
heritage: Helm
data:
- gitlabVersion: "13.9.4"
- gitlabChartVersion: "4.9.4"
+ gitlabVersion: "13.10.0"
+ gitlabChartVersion: "4.10.0"
---
# Source: gitlab/templates/initdb-configmap.yaml
apiVersion: v1
@@ -2549,7 +2565,7 @@
namespace: gitlab
labels:
app: gitlab
- chart: gitlab-4.9.4
+ chart: gitlab-4.10.0
release: gitlab-test
heritage: Helm
data:
@@ -10631,8 +10647,8 @@
heritage: Helm
component: "controller"
helm.sh/chart: nginx-ingress-3.11.1
- app.kubernetes.io/name: nginx-ingress
- app.kubernetes.io/instance: gitlab-test
+ app: nginx-ingress
+ release: gitlab-test
app.kubernetes.io/version: "0.41.2"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/component: controller
@@ -10750,8 +10766,8 @@
heritage: Helm
component: "controller"
helm.sh/chart: nginx-ingress-3.11.1
- app.kubernetes.io/name: nginx-ingress
- app.kubernetes.io/instance: gitlab-test
+ app: nginx-ingress
+ release: gitlab-test
app.kubernetes.io/version: "0.41.2"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/component: controller
@@ -10795,7 +10811,7 @@
namespace: gitlab
labels:
app: gitaly
- chart: gitaly-4.9.4
+ chart: gitaly-4.10.0
release: gitlab-test
heritage: Helm
@@ -10829,7 +10845,7 @@
namespace: gitlab
labels:
app: gitlab-exporter
- chart: gitlab-exporter-4.9.4
+ chart: gitlab-exporter-4.10.0
release: gitlab-test
heritage: Helm
@@ -10855,7 +10871,7 @@
namespace: gitlab
labels:
app: gitlab-shell
- chart: gitlab-shell-4.9.4
+ chart: gitlab-shell-4.10.0
release: gitlab-test
heritage: Helm
@@ -10881,7 +10897,7 @@
namespace: gitlab
labels:
app: praefect
- chart: praefect-4.9.4
+ chart: praefect-4.10.0
release: gitlab-test
heritage: Helm
@@ -10916,12 +10932,13 @@
namespace: gitlab
labels:
app: webservice
- chart: webservice-4.9.4
+ chart: webservice-4.10.0
release: gitlab-test
heritage: Helm
gitlab.com/webservice-name: default
+
annotations:
spec:
@@ -10982,8 +10999,8 @@
heritage: Helm
component: "controller"
helm.sh/chart: nginx-ingress-3.11.1
- app.kubernetes.io/name: nginx-ingress
- app.kubernetes.io/instance: gitlab-test
+ app: nginx-ingress
+ release: gitlab-test
app.kubernetes.io/version: "0.41.2"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/component: controller
@@ -10996,8 +11013,8 @@
targetPort: metrics
selector:
app: nginx-ingress
- component: "controller"
release: gitlab-test
+ component: "controller"
---
# Source: gitlab/charts/nginx-ingress/templates/controller-service.yaml
apiVersion: v1
@@ -11011,8 +11028,8 @@
heritage: Helm
component: "controller"
helm.sh/chart: nginx-ingress-3.11.1
- app.kubernetes.io/name: nginx-ingress
- app.kubernetes.io/instance: gitlab-test
+ app: nginx-ingress
+ release: gitlab-test
app.kubernetes.io/version: "0.41.2"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/component: controller
@@ -11035,8 +11052,8 @@
targetPort: gitlab-shell
selector:
app: nginx-ingress
- component: "controller"
release: gitlab-test
+ component: "controller"
---
# Source: gitlab/charts/nginx-ingress/templates/default-backend-service.yaml
apiVersion: v1
@@ -11049,8 +11066,8 @@
heritage: Helm
component: "default-backend"
helm.sh/chart: nginx-ingress-3.11.1
- app.kubernetes.io/name: nginx-ingress
- app.kubernetes.io/instance: gitlab-test
+ app: nginx-ingress
+ release: gitlab-test
app.kubernetes.io/version: "0.41.2"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/component: default-backend
@@ -11064,8 +11081,8 @@
targetPort: http
selector:
app: nginx-ingress
- component: "default-backend"
release: gitlab-test
+ component: "default-backend"
---
# Source: gitlab/charts/postgresql/templates/metrics-svc.yaml
apiVersion: v1
@@ -11446,7 +11463,7 @@
namespace: gitlab
labels:
app: gitlab-exporter
- chart: gitlab-exporter-4.9.4
+ chart: gitlab-exporter-4.10.0
release: gitlab-test
heritage: Helm
@@ -11464,13 +11481,13 @@
app: gitlab-exporter
release: gitlab-test
app: gitlab-exporter
- chart: gitlab-exporter-4.9.4
+ chart: gitlab-exporter-4.10.0
release: gitlab-test
heritage: Helm
annotations:
- checksum/config: a699bc799560ecbbbdb9b09a54473f1a23945818a024b89040e2cab19f7537ca
+ checksum/config: 597e2527b7c8143fbd53f31cce38eb573460f57ca917fc13b4d657d7d9eaed61
gitlab.com/prometheus_path: /metrics
gitlab.com/prometheus_port: "9168"
gitlab.com/prometheus_scrape: "true"
@@ -11633,7 +11650,7 @@
namespace: gitlab
labels:
app: gitlab-shell
- chart: gitlab-shell-4.9.4
+ chart: gitlab-shell-4.10.0
release: gitlab-test
heritage: Helm
@@ -11648,14 +11665,14 @@
metadata:
labels:
app: gitlab-shell
- chart: gitlab-shell-4.9.4
+ chart: gitlab-shell-4.10.0
release: gitlab-test
heritage: Helm
annotations:
- checksum/config: ed6de58feb5e45c994d86626c8e65cf49609e7850846e88d4c93d55176107efb
- checksum/config-sshd: 8ae488596bc05ce52eb4b06f2659ef1680f8137477d6d85212e11bcff72f7099
+ checksum/config: 870db3fed8b1dbcba6dc11234c7f07dee1c84db809121a2bc7ea7d1cb71864da
+ checksum/config-sshd: 0e05f921b9d90e1faa8a4466af35c6c62616fd6077082ce1dc49abedb8ff8dff
cluster-autoscaler.kubernetes.io/safe-to-evict: "true"
spec:
initContainers:
@@ -11794,7 +11811,7 @@
namespace: gitlab
labels:
app: sidekiq
- chart: sidekiq-4.9.4
+ chart: sidekiq-4.10.0
release: gitlab-test
heritage: Helm
@@ -11811,18 +11828,16 @@
metadata:
labels:
app: sidekiq
+ chart: sidekiq-4.10.0
release: gitlab-test
- queue-pod-name: native-chart
- app: sidekiq
- chart: sidekiq-4.9.4
- release: gitlab-test
heritage: Helm
+ queue-pod-name: native-chart
annotations:
- checksum/configmap: 35a15bce25e37caf62f5c4bb5b14f42575f4f2b1b1656bd7858732daf542375d
+ checksum/configmap: 669f60a7a4bb7cad785f441853d2e8dd5505ec746e9751e2f4d31ded6a61597d
cluster-autoscaler.kubernetes.io/safe-to-evict: "true"
- checksum/configmap-pod: d27dc117c2db7907144f4b141678ebc85cb31ff17f1831f246224b993e914a45
+ checksum/configmap-pod: 23610151242ec3b10add1b806d70d438af3055860876e858add783419cf41ee2
co.elastic.logs/json.add_error_key: "true"
co.elastic.logs/json.keys_under_root: "false"
gitlab.com/prometheus_port: "3807"
@@ -11881,7 +11896,7 @@
requests:
cpu: 50m
- name: dependencies
- image: "registry.gitlab.com/gitlab-org/build/cng/gitlab-sidekiq-ce:v13.9.4"
+ image: "registry.gitlab.com/gitlab-org/build/cng/gitlab-sidekiq-ce:v13.10.0"
args:
- /scripts/wait-for-deps
@@ -11918,7 +11933,7 @@
containers:
- name: sidekiq
- image: "registry.gitlab.com/gitlab-org/build/cng/gitlab-sidekiq-ce:v13.9.4"
+ image: "registry.gitlab.com/gitlab-org/build/cng/gitlab-sidekiq-ce:v13.10.0"
env:
- name: prometheus_multiproc_dir
@@ -12062,6 +12077,7 @@
- key: registry-auth.key
path: registry/gitlab-registry.key
+
- secret:
name: "gitlab-test-gitlab-pages-secret"
items:
@@ -12104,7 +12120,7 @@
namespace: gitlab
labels:
app: task-runner
- chart: task-runner-4.9.4
+ chart: task-runner-4.10.0
release: gitlab-test
heritage: Helm
@@ -12123,13 +12139,13 @@
metadata:
labels:
app: task-runner
- chart: task-runner-4.9.4
+ chart: task-runner-4.10.0
release: gitlab-test
heritage: Helm
annotations:
- checksum/config: 4aa3db9e7273ced2bc45a54ca5adef8e1f205da01938ea347a4c7b21ed3e87e5
+ checksum/config: f7cfb65ad9033d306d4b0a3fb6127cf990168b7d7a427d32e5c7a0a97de98b34
cluster-autoscaler.kubernetes.io/safe-to-evict: "true"
spec:
securityContext:
@@ -12188,7 +12204,7 @@
- /bin/bash
- -c
- sh /var/opt/gitlab/templates/configure-gsutil && while sleep 3600; do :; done
- image: "registry.gitlab.com/gitlab-org/build/cng/gitlab-task-runner-ce:v13.9.4"
+ image: "registry.gitlab.com/gitlab-org/build/cng/gitlab-task-runner-ce:v13.10.0"
env:
- name: ARTIFACTS_BUCKET_NAME
@@ -12297,6 +12313,7 @@
items:
- key: registry-auth.key
path: registry/gitlab-registry.key
+
- secret:
name: gitlab-test-freedesktop-backup-gcs-key
items:
@@ -12350,11 +12367,12 @@
namespace: gitlab
labels:
app: webservice
- chart: webservice-4.9.4
+ chart: webservice-4.10.0
release: gitlab-test
heritage: Helm
gitlab.com/webservice-name: default
+
annotations:
spec:
@@ -12369,16 +12387,16 @@
metadata:
labels:
app: webservice
+ chart: webservice-4.10.0
release: gitlab-test
- app: webservice
- chart: webservice-4.9.4
- release: gitlab-test
heritage: Helm
-
gitlab.com/webservice-name: default
+
+
+
annotations:
- checksum/config: f92b14e49c53114a2b63c759843b29eab2c32c6ca301767afe2d10f011e46843
+ checksum/config: 80bc776a35d8c65b80c7ba82f5cbc83fc25f52ef3410cda29c8ff124b8beafd0
cluster-autoscaler.kubernetes.io/safe-to-evict: "true"
co.elastic.logs/json.add_error_key: "true"
co.elastic.logs/json.keys_under_root: "false"
@@ -12389,6 +12407,7 @@
prometheus.io/port: "8080"
prometheus.io/scrape: "true"
spec:
+
securityContext:
runAsUser: 1000
fsGroup: 1000
@@ -12450,7 +12469,7 @@
requests:
cpu: 50m
- name: dependencies
- image: registry.gitlab.com/gitlab-org/build/cng/gitlab-webservice-ce:v13.9.4
+ image: registry.gitlab.com/gitlab-org/build/cng/gitlab-webservice-ce:v13.10.0
args:
- /scripts/wait-for-deps
@@ -12483,7 +12502,7 @@
containers:
- name: webservice
- image: registry.gitlab.com/gitlab-org/build/cng/gitlab-webservice-ce:v13.9.4
+ image: registry.gitlab.com/gitlab-org/build/cng/gitlab-webservice-ce:v13.10.0
ports:
- containerPort: 8080
@@ -12517,6 +12536,8 @@
value: "1024"
- name: DISABLE_PUMA_WORKER_KILLER
value: "false"
+ - name: SHUTDOWN_BLACKOUT_SECONDS
+ value: "10"
- name: GITLAB_TRACING_URL
value: ""
@@ -12577,7 +12598,7 @@
cpu: 300m
memory: 2.5G
- name: gitlab-workhorse
- image: "registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ce:v13.9.4"
+ image: "registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ce:v13.10.0"
ports:
- containerPort: 8181
@@ -12769,6 +12790,7 @@
component: app
annotations:
spec:
+
securityContext:
runAsUser: 1000
fsGroup: 1000
@@ -12842,8 +12864,8 @@
heritage: Helm
component: "controller"
helm.sh/chart: nginx-ingress-3.11.1
- app.kubernetes.io/name: nginx-ingress
- app.kubernetes.io/instance: gitlab-test
+ app: nginx-ingress
+ release: gitlab-test
app.kubernetes.io/version: "0.41.2"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/component: controller
@@ -12854,8 +12876,8 @@
selector:
matchLabels:
app: nginx-ingress
- component: "controller"
release: gitlab-test
+ component: "controller"
replicas: 2
revisionHistoryLimit: 10
minReadySeconds: 0
@@ -12865,8 +12887,8 @@
co.elastic.logs/module: "nginx"
labels:
app: nginx-ingress
- component: "controller"
release: gitlab-test
+ component: "controller"
spec:
dnsPolicy: ClusterFirst
containers:
@@ -12944,8 +12966,7 @@
requests:
cpu: 100m
memory: 100Mi
- nodeSelector:
- kubernetes.io/os: linux
+
serviceAccountName: gitlab-test-nginx-ingress
terminationGracePeriodSeconds: 300
---
@@ -12960,8 +12981,8 @@
heritage: Helm
component: "default-backend"
helm.sh/chart: nginx-ingress-3.11.1
- app.kubernetes.io/name: nginx-ingress
- app.kubernetes.io/instance: gitlab-test
+ app: nginx-ingress
+ release: gitlab-test
app.kubernetes.io/version: "0.41.2"
app.kubernetes.io/managed-by: Helm
app.kubernetes.io/component: default-backend
@@ -12972,16 +12993,16 @@
selector:
matchLabels:
app: nginx-ingress
- component: "default-backend"
release: gitlab-test
+ component: "default-backend"
replicas: 1
revisionHistoryLimit: 10
template:
metadata:
labels:
app: nginx-ingress
- component: "default-backend"
release: gitlab-test
+ component: "default-backend"
spec:
containers:
- name: nginx-ingress-default-backend
@@ -13023,6 +13044,7 @@
requests:
cpu: 5m
memory: 5Mi
+
serviceAccountName: gitlab-test-nginx-ingress-backend
terminationGracePeriodSeconds: 60
---
@@ -13150,9 +13172,10 @@
annotations:
- checksum/configmap: 6431837f258b75089566b197b4aba630c2a5a3974754c590ac6788f80ace317b
+ checksum/configmap: b3aff360646f870814d9c3105465befeaab3b3d13922452ae1949f8079cb3380
cluster-autoscaler.kubernetes.io/safe-to-evict: "true"
spec:
+
securityContext:
runAsUser: 1000
fsGroup: 1000
@@ -13194,7 +13217,7 @@
cpu: 50m
containers:
- name: registry
- image: "registry.gitlab.com/gitlab-org/build/cng/gitlab-container-registry:v3.0.0-gitlab"
+ image: "registry.gitlab.com/gitlab-org/build/cng/gitlab-container-registry:v3.2.1-gitlab"
imagePullPolicy: "IfNotPresent"
volumeMounts:
- name: registry-server-config
@@ -13263,7 +13286,7 @@
namespace: gitlab
labels:
app: gitlab-shell
- chart: gitlab-shell-4.9.4
+ chart: gitlab-shell-4.10.0
release: gitlab-test
heritage: Helm
@@ -13288,7 +13311,7 @@
namespace: gitlab
labels:
app: sidekiq
- chart: sidekiq-4.9.4
+ chart: sidekiq-4.10.0
release: gitlab-test
heritage: Helm
@@ -13313,11 +13336,12 @@
namespace: gitlab
labels:
app: webservice
- chart: webservice-4.9.4
+ chart: webservice-4.10.0
release: gitlab-test
heritage: Helm
gitlab.com/webservice-name: default
+
spec:
scaleTargetRef:
apiVersion: apps/v1
@@ -13364,7 +13388,7 @@
namespace: gitlab
labels:
app: gitaly
- chart: gitaly-4.9.4
+ chart: gitaly-4.10.0
release: gitlab-test
heritage: Helm
@@ -13388,13 +13412,13 @@
labels:
storage: default
app: gitaly
- chart: gitaly-4.9.4
+ chart: gitaly-4.10.0
release: gitlab-test
heritage: Helm
annotations:
- checksum/config: 9c5f98979e34082204c1b0db6f426bc8f82ac7834cae3d68b7aea47b1818ec22
+ checksum/config: 75a44c2a03067f6841b974d12c1e50209f4e3ae2563956a5b6f83ed158747f71
co.elastic.logs/json.add_error_key: "true"
co.elastic.logs/json.keys_under_root: "false"
spec:
@@ -13450,7 +13474,7 @@
containers:
- name: gitaly
- image: "registry.gitlab.com/gitlab-org/build/cng/gitaly:v13.9.4"
+ image: "registry.gitlab.com/gitlab-org/build/cng/gitaly:v13.10.0"
ports:
- containerPort: 8075
@@ -13524,6 +13548,7 @@
- name: etc-ssl-certs
emptyDir:
medium: "Memory"
+
volumeClaimTemplates:
@@ -13551,7 +13576,7 @@
namespace: gitlab
labels:
app: praefect
- chart: praefect-4.9.4
+ chart: praefect-4.10.0
release: gitlab-test
heritage: Helm
@@ -13567,13 +13592,13 @@
metadata:
labels:
app: praefect
- chart: praefect-4.9.4
+ chart: praefect-4.10.0
release: gitlab-test
heritage: Helm
annotations:
- checksum/config: e805f468b352a325ede1090e175309691ab8e25a4c70dae282ea519a75e9d524
+ checksum/config: 329d04c57852cfa3855b012ec38d5fb9b9f07f6d5dee66c4e744ed6a670776da
spec:
affinity:
podAntiAffinity:
@@ -13585,6 +13610,7 @@
matchLabels:
app: praefect
release: gitlab-test
+
initContainers:
@@ -13623,7 +13649,7 @@
containers:
- name: praefect
- image: "registry.gitlab.com/gitlab-org/build/cng/gitaly:v13.9.4"
+ image: "registry.gitlab.com/gitlab-org/build/cng/gitaly:v13.10.0"
ports:
- containerPort: 8075
@@ -14033,6 +14059,7 @@
app: certmanager-issuer
release: gitlab-test
spec:
+
securityContext:
runAsUser: 65534
fsGroup: 65534
@@ -14062,7 +14089,7 @@
namespace: gitlab
labels:
app: migrations
- chart: migrations-4.9.4
+ chart: migrations-4.10.0
release: gitlab-test
heritage: Helm
@@ -14073,7 +14100,7 @@
metadata:
labels:
app: migrations
- chart: migrations-4.9.4
+ chart: migrations-4.10.0
release: gitlab-test
heritage: Helm
@@ -14122,7 +14149,7 @@
containers:
- name: migrations
- image: "registry.gitlab.com/gitlab-org/build/cng/gitlab-task-runner-ce:v13.9.4"
+ image: "registry.gitlab.com/gitlab-org/build/cng/gitlab-task-runner-ce:v13.10.0"
args:
- /scripts/wait-for-deps
- /scripts/db-migrate
@@ -14234,6 +14261,7 @@
component: create-buckets
spec:
restartPolicy: OnFailure
+
volumes:
- name: minio-configuration
projected:
@@ -14266,11 +14294,12 @@
namespace: gitlab
labels:
app: webservice
- chart: webservice-4.9.4
+ chart: webservice-4.10.0
release: gitlab-test
heritage: Helm
gitlab.com/webservice-name: default
+
annotations:
kubernetes.io/ingress.class: "nginx"
kubernetes.io/ingress.provider: nginx
@@ -14542,9 +14571,12 @@
# Registry http.secret secret
generate_secret_if_needed "gitlab-test-registry-httpsecret" --from-literal="secret"=$(gen_random 'a-z0-9' 128 | base64 -w 0)
+ # Container Registry notification_secret
+
+
# Praefect DB password
generate_secret_if_needed "gitlab-test-praefect-dbsecret" --from-literal="secret"=$(gen_random 'a-zA-Z0-9', 32)
@@ -14559,7 +14591,7 @@
namespace: gitlab
labels:
app: gitlab
- chart: gitlab-4.9.4
+ chart: gitlab-4.10.0
release: gitlab-test
heritage: Helm
annotations:
@@ -14693,7 +14725,7 @@
apiVersion: v1
kind: Pod
metadata:
- name: gitlab-test-webservice-test-runner-sz456
+ name: gitlab-test-webservice-test-runner-5l0uf
namespace: gitlab
annotations:
"helm.sh/hook": test
@@ -14701,7 +14733,7 @@
spec:
containers:
- name: test-runner
- image: registry.gitlab.com/gitlab-org/build/cng/gitlab-webservice-ce:v13.9.4
+ image: registry.gitlab.com/gitlab-org/build/cng/gitlab-webservice-ce:v13.10.0
command: ['sh', '/tests/test_login']
volumeMounts:
- name: tests
@@ -14726,7 +14758,7 @@
apiVersion: batch/v1
kind: Job
metadata:
- name: gitlab-test-shared-secrets-1-ri6
+ name: gitlab-test-shared-secrets-1-2yv
namespace: gitlab
labels:
app: shared-secrets
@@ -14745,6 +14777,7 @@
annotations:
spec:
+
securityContext:
runAsUser: 65534
fsGroup: 65534
@@ -14779,7 +14812,7 @@
namespace: gitlab
labels:
app: gitlab
- chart: gitlab-4.9.4
+ chart: gitlab-4.10.0
release: gitlab-test
heritage: Helm
annotations:
@@ -14794,6 +14827,7 @@
app: gitlab
release: gitlab-test
spec:
+
securityContext:
runAsUser: 65534
fsGroup: 65534
@@ -14806,9 +14840,9 @@
env:
- name: GITLAB_VERSION
- value: '13.9.4'
+ value: '13.10.0'
- name: CHART_VERSION
- value: '4.9.4'
+ value: '4.10.0'
volumeMounts:
- name: chart-info
mountPath: /chart-info
@@ -15297,7 +15331,7 @@
requests:
memory: "1Gi"
cpu: "1"
- image: gitlab/gitlab-ce:13.9.4-ce.0
+ image: gitlab/gitlab-ce:13.10.0-ce.0
imagePullPolicy: IfNotPresent
command: ["/bin/bash", "-c",
"sed -i \"s/environment ({'GITLAB_ROOT_PASSWORD' => initial_root_password }) if initial_root_password/environment ({'GITLAB_ROOT_PASSWORD' => initial_root_password, 'GITLAB_SHARED_RUNNERS_REGISTRATION_TOKEN' => node['gitlab']['gitlab-rails']['initial_shared_runners_registration_token'] })/g\" /opt/gitlab/embedded/cookbooks/gitlab/recipes/database_migrations.rb && exec /assets/wrapper"]
@@ -16252,8 +16286,8 @@
heritage: Helm
type: Opaque
data:
- accesskey: "TjRCR1dTVHJ0TEtrWFVIWHR0UEU="
- secretkey: "cjBQZjk2bVpyWmVocTRyV2I0bUd3SXN5YkVSd3dVMHhKTEE1M0JBRg=="
+ accesskey: "dXlyb2RMQk9iZ0pBS0g0UHh5WXA="
+ secretkey: "WUlQUVlVd1FGckxjNklzMU1WVkZCYkhBdUh3VlNzZGR0QXJxVHYweA=="
---
# Source: minio/templates/configmap.yaml
apiVersion: v1
@@ -16481,7 +16515,7 @@
app: minio
release: minio-test
annotations:
- checksum/secrets: 05266d6407094e830e9d622996ea424427e771e00d0908fd9bfc757534c1b9ba
+ checksum/secrets: 728d48d0b108976fdeebbb6b26b64345090376c1d7d4bab409317abbd27a3533
checksum/config: 43756797396cd63bc1cd504b723a4833317439960019986f7bcfef5e150689dc
spec:
serviceAccountName: "minio-test"
@@ -16640,8 +16674,8 @@
heritage: Helm
type: Opaque
data:
- accesskey: "QXM3ajZuU0o4RnJPZ25wb2VOaHg="
- secretkey: "RU5HUmh3cFEyeGpnNUxleHFLYzJzSWVselJMYVRGaW9mN1E3WWw3OQ=="
+ accesskey: "U2tKY2Rqa3lQeFVGZzJyOVpPZFM="
+ secretkey: "blA3TmNTR3d1eFlJY2ZRTnpDSTc4aFQ5Z2ZqNVdSQXFheVFJUWpvdg=="
---
# Source: minio/templates/configmap.yaml
apiVersion: v1
@@ -16873,7 +16907,7 @@
app: minio
release: minio-artifacts-test
annotations:
- checksum/secrets: 3e7d9e4829890835d63792101a857a93a4ae76950875191f16fd903afffb340f
+ checksum/secrets: 1c03d92daab1aeecd4209062d25fab291f020d0e51d48929e00a273900683029
checksum/config: 47dd6a9ce3fced1f792866068373d24fd54dfb863bfcbb08c7a8b08fcaa38aaf
spec:
serviceAccountName: "minio-artifacts-test"
@@ -17035,8 +17069,8 @@
heritage: Helm
type: Opaque
data:
- accesskey: "SUh6WTQ2WXNjTGREcHNUZDFlWlA="
- secretkey: "VzRSSTI3cXQ2S0hCSE9MaFNaWDk5UnFOVEVodUdyYmt6cjFYdmV6Nw=="
+ accesskey: "aFFnbGtpT1pKTFpOSnM3T1htUkI="
+ secretkey: "ZE82SUNCdjFmM2lSTmtBbnE5SlJSNGllUWg1bktQd2s5bHZZT1JJdw=="
---
# Source: minio/templates/configmap.yaml
# Source: minio/templates/configmap.yaml
@@ -17267,7 +17301,7 @@
app: minio
release: minio-registry-test
annotations:
- checksum/secrets: 96679d687defa8d79f9ec06e9ccb9dd2edd5e8169f5f68233e269c55c49be087
+ checksum/secrets: 6e9bfffa241c1bac83b323fe2c9b793a742cc0208832f1c69d66760fdf2533ad
checksum/config: acf8f8e79af3d7cbbf171c79cc7237904e34cede6a940e210256be1cfb3b5555
spec:
serviceAccountName: "minio-registry-test"