Commit Graph

1275 Commits

Author SHA1 Message Date
Axel Lender
c656786bc0 feat(mariadb): Add template support for existing secrets
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-12-03 21:18:21 +01:00
Axel Lender
3890df064e fix(gotmpl): Refactor from external to existing secrets
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-11-27 14:03:07 +01:00
Axel Lender
3f2cf149e7 feat(openproject): Template external secrets
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-11-13 11:15:16 +01:00
Axel Lender
c98aa3a0cd fix(intercom-service): Correct key for external secret mapping
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-11-13 11:15:16 +01:00
Axel Lender
e687444765 feat(migrations): Add documentation about the changes regarding oD keycloak-bootstrap
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-11-13 11:15:16 +01:00
Axel Lender
b92e776585 feat(keycloak-bootstrap): Adapt to oD-keycloak-bootstrap changes
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-11-13 11:15:16 +01:00
Axel Lender
bb67fd9641 fix(lint): Satisfy linter
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:44:49 +02:00
Axel Lender
c6a0caeac5 feat(nubus): Template external secrets for keycloak-bootstrap
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:44:49 +02:00
Axel Lender
369242181f feat(nubus): Templating for external secrets to supersede extraSecrets
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:44:49 +02:00
Axel Lender
1fb1c9892b fix(helmfile): Remove testing values from external secrets
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:44:48 +02:00
Axel Lender
7367d16287 feat(notes): Add templating for Notes in oD
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:44:48 +02:00
Axel Lender
602f3b659d feat(openxchange): Templating external secrets for Dovecot and Postfix also SMTP credentials
Co-Author: Thomas Kaltenbrunner <tom@kaltenbrunner.it>
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:44:48 +02:00
Axel Lender
66a5a8a484 fix(helmfile): Streamline naming in externalSecrets
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:43:00 +02:00
Axel Lender
1fd7cd7d34 feat(nubus): Add templating support for Nubus
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:43:00 +02:00
Axel Lender
cac1e9850d fix(gotmpl): Structure of the externalSecrets dictionary
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:43:00 +02:00
Axel Lender
03bb231e44 fix(helmfile): Unify database credentials
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:43:00 +02:00
Axel Lender
0187c2571a feat(documentation): Fix, reorder docs regarding external secrets
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:43:00 +02:00
Axel Lender
70bc05055e feat(helm): Update upstream version
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:43:00 +02:00
Axel Lender
ed0096a919 feat(helm): Template support for XWiki external secrets
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:43:00 +02:00
Axel Lender
3c0487dc58 feat(helmfile): Add support for external secrets in XWiki
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:43:00 +02:00
Axel Lender
76229cf35d feat(helmfile): Add external secrets template support for OpenProject bootstrap
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:42:59 +02:00
Axel Lender
9a17064eb7 feat(helmfile): Add external secrets template support for Nextcloud
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:42:59 +02:00
Axel Lender
6a3c73a09d feat(helmfile): Add templating support for Cassandra external secrets
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:42:59 +02:00
Axel Lender
42773e62eb feat(helmfile): Add templating support for collabora external secrets
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:42:59 +02:00
Axel Lender
7352e48221 feat(helmfile): Add template support for external secrets for opendesk-services
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:42:59 +02:00
Axel Lender
38c5ca436b feat(helmfile): Add external secrets support for Redis
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:42:59 +02:00
Axel Lender
311c05c420 feat(docs): Add initial documentation for external secrets
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:42:59 +02:00
Axel Lender
2c13b9672e feat(helmfile): Add external secrets support for minio
Signed-off-by: Axel Lender <lender@b1-systems.de>
2025-10-10 12:42:59 +02:00
Thomas Kaltenbrunner
ff3b221870 fix(open-xchange): Don't enable sasl auth when no relay host is set 2025-10-08 13:37:44 +00:00
Thomas Kaltenbrunner
c4279d11bb fix(notes): Fix python path for self signed certs 2025-10-03 23:03:08 +02:00
Thorsten Roßner
98283aeef7 docs(requirements.md): Explicitly state that local-path-provisioner does not support sticky bit 2025-10-01 11:27:48 +02:00
Thorsten Roßner
26da7e3667 fix(gitlab): Add issue templates 2025-10-01 11:12:43 +02:00
Thorsten Roßner
8593d5f2bd fix(ox-connector): Use FQDN for internal service URLs 2025-10-01 08:53:30 +02:00
Thorsten Roßner
4fd991b110 docs(misc): [bmi/opendesk/documentation/handbooks#1] Fixes broken external links 2025-09-30 09:30:24 +02:00
Thorsten Roßner
e0128e6ccf fix(collabora): Update from 25.04.4.3.1 to 25.04.5.3.1 2025-09-26 09:46:08 +02:00
Thorsten Roßner
1da66c502c chore(publiccode.yml): Bump to 1.8.0 2025-09-25 17:32:37 +02:00
Thorsten Roßner
e1b202bae2 chore(release): 1.8.0 [skip ci]
# [1.8.0](https://gitlab.opencode.de/bmi/opendesk/deployment/opendesk/compare/v1.7.1...v1.8.0) (2025-09-25)

### Bug Fixes

* **clamav:** [bmi/opendesk/deployment/opendesk[#234](https://gitlab.opencode.de/bmi/opendesk/deployment/opendesk/issues/234)] Update Helm chart to support conditional proxy credentials ([dee7525](dee7525649))
* **element:** Let Synapse create room `v12` by default; review `migrations.md` for details ([af9d4cd](af9d4cda6c))
* **helmfile:** Add more detailed descriptions on `functional.authentication.realmSettings` and provide two `accessCodeLifespan*` options ([0314a70](0314a7076a))
* **helmfile:** Do not set portal "Support" link by default ([776fe92](776fe92ae1))
* **intercom-service:** Update from v2.19.0 to v2.19.5 ([3305dfa](3305dfa5fb))
* **jitsi:** [bmi/opendesk/deployment/opendesk[#228](https://gitlab.opencode.de/bmi/opendesk/deployment/opendesk/issues/228)] Turn off Gravatar option, by default this still keeps the input field in the Jitsi UI, but does not longer issue requests to gravatar.com; check `migrations.md` in case the option should be enabled ([083fa98](083fa9842d))
* **nextcloud:** App "Spreed" and core app "Comments" not enabled by default; review `migrations.md` for potential upgrade steps ([31d35b2](31d35b25c6))
* **nextcloud:** Update from 31.0.6 to 31.0.7 including the latest app versions ([f848b9a](f848b9a0f4))
* **open-xchange:** Add client onboarding for mail ([d8fc3e0](d8fc3e04f5))
* **open-xchange:** Set guest mode to inherit theming and set theme for notification mail button ([f2ce251](f2ce25193a))
* **open-xchange:** Switch off Element integration when `apps.element.enabled: [secure]` ([7a2dbc5](7a2dbc5f8c))
* **open-xchange:** Update Dovecot charts with improved auth cache defaults ([836d8a4](836d8a494d))
* **opendesk-certificates:** [bmi/opendesk/deployment/opendesk[#236](https://gitlab.opencode.de/bmi/opendesk/deployment/opendesk/issues/236)] Update Helm chart to add `commonName` to certificate ([2e708a7](2e708a75b6))
* **openproject:** [bmi/opendesk/deployment/opendesk[#228](https://gitlab.opencode.de/bmi/opendesk/deployment/opendesk/issues/228)] Turn off Gravatar option by default; check `migrations.md` in case the option should be enabled ([628e914](628e91435c))
* **ox-connector:** Update from v0.27.7 to v0.27.9 ([ba77f2b](ba77f2b11c))
* **postfix:** Relax TLS settings to `TLSv1.2`/`medium` for broader SMTP relay compatibility ([31cbd9a](31cbd9af1a))
* **xwiki:** Update image to set new default for user self-registration; review migrations.md for required actions on existing deployments ([c75abaf](c75abaf1e6))

### Features

* **collabora:** Support for macro execution controlled by `functional.weboffice.macros.enabled` (default: `[secure]`) ([38f2bdd](38f2bdd2b9))
* **cryptpad:** Update from 2024.6.1 to 2025.6.0 ([23dfe0a](23dfe0aaa6))
* **element:** Update Element-Web from 1.11.89 or 1.12.0 and Synapse from 1.129.0 to 1.137.0 ([f895bcc](f895bcc2b8))
* **element:** Update NeoBoard widget to v2.3.1, NeoChoice widget to v1.6.0, NeoDateFix widget to v1.7.2 and NeoDateFix bot to 2.8.5 ([b377a5e](b377a5e0e2))
* **jitsi:** Upgrade from stable-9955 to stable-10431 ([e138610](e138610d29))
* **nextcloud:** Expose `forbiddenChars` in `functional.yaml.gotmpl`; review `migrations.md` for required upgrade steps ([5a2c1fc](5a2c1fcf98))
* **notes:** Update from 3.2.1 to 3.4.0 ([c636650](c63665040c))
* **nubus:** Update from 1.12.0 to 1.13.1 ([35424b8](35424b88d6))
* **nubus:** Update from v1.13.1 to v1.14.0 using OIDC instead of SAML for portal SSO; review `migrations.md` for required upgrade steps ([d3b1f57](d3b1f575cc))
* **open-xchange:** Add options to `functional.groupware`; review `migrations.md` for details on new defaults/required upgrade steps ([8a7cc3b](8a7cc3b8c7))
* **open-xchange:** Enable mail categories ([4da1c5d](4da1c5d9e3))
* **open-xchange:** Update from 8.39 to 8.40 ([c70a0bd](c70a0bdc4c))
* **open-xchange:** Update from 8.40 to 8.41 ([c50b817](c50b817795))
* **openproject:** Update OpenProject from 16.2.1 to 16.3.2 ([f77f329](f77f3291ca))
* **openproject:** Update OpenProject from 16.3.2 to 16.4.1 ([f5483d1](f5483d1a3b))
* **xwiki:** Update from 16.10.5 to 17.4.4 and configure openDesk's Collabora for `.odt`, `.rtf` and `.docx` export of wiki pages ([813e92c](813e92c1b0))
v1.8.0
2025-09-25 14:41:02 +00:00
Thorsten Roßner
cf2725c76c chore(helmfile): Raising memory limits due to OOMKill during testautomation 2025-09-25 14:25:41 +02:00
Thorsten Roßner
0c603941aa docs(migrations.md): Add missing yaml annotations on code blocks 2025-09-25 13:03:19 +02:00
Thorsten Roßner
0736c92987 ci(user-import): Bump to newer image that will add more user accounts when CREATE_DEFAULT_ACCOUNTS is enabled 2025-09-25 12:26:18 +02:00
Thorsten Roßner
083fa9842d fix(jitsi): [bmi/opendesk/deployment/opendesk#228] Turn off Gravatar option, by default this still keeps the input field in the Jitsi UI, but does not longer issue requests to gravatar.com; check migrations.md in case the option should be enabled 2025-09-25 11:55:09 +02:00
Oliver Günther
628e91435c fix(openproject): [bmi/opendesk/deployment/opendesk#228] Turn off Gravatar option by default; check migrations.md in case the option should be enabled 2025-09-25 11:52:25 +02:00
Thorsten Roßner
af9d4cda6c fix(element): Let Synapse create room v12 by default; review migrations.md for details 2025-09-24 18:21:09 +02:00
Thorsten Roßner
f895bcc2b8 feat(element): Update Element-Web from 1.11.89 or 1.12.0 and Synapse from 1.129.0 to 1.137.0 2025-09-24 18:21:05 +02:00
MTRNord
b377a5e0e2 feat(element): Update NeoBoard widget to v2.3.1, NeoChoice widget to v1.6.0, NeoDateFix widget to v1.7.2 and NeoDateFix bot to 2.8.5 2025-09-24 17:56:39 +02:00
Thorsten Roßner
31d35b25c6 fix(nextcloud): App "Spreed" and core app "Comments" not enabled by default; review migrations.md for potential upgrade steps 2025-09-24 17:49:52 +02:00
Thorsten Roßner
c75abaf1e6 fix(xwiki): Update image to set new default for user self-registration; review migrations.md for required actions on existing deployments 2025-09-24 16:47:18 +02:00
Thorsten Roßner
836d8a494d fix(open-xchange): Update Dovecot charts with improved auth cache defaults 2025-09-24 14:14:17 +02:00
Thorsten Roßner
31cbd9af1a fix(postfix): Relax TLS settings to TLSv1.2/medium for broader SMTP relay compatibility 2025-09-24 14:14:17 +02:00
Thorsten Roßner
776fe92ae1 fix(helmfile): Do not set portal "Support" link by default 2025-09-24 14:14:17 +02:00