mirror of
https://gitlab.opencode.de/bmi/opendesk/deployment/opendesk.git
synced 2025-12-06 07:21:36 +01:00
## [0.5.58](https://gitlab.opencode.de/bmi/opendesk/deployment/sovereign-workplace/compare/v0.5.57...v0.5.58) (2023-12-01) ### Bug Fixes * **cryptpad:** Add websocket annotation ([c41643e](c41643ee3e)) * **openproject:** Add seederJob intent ([05cc82d](05cc82d7c5)) * **openproject:** Bump to 2.6.2 ([c8bc8b3](c8bc8b3172)) * **services:** Add NetworkPolicy section to docs/security.md ([24812b6](24812b667c)) * **services:** Add Otterize based security settings ([bec9a2d](bec9a2d46b)) * **univention-management-stack:** Add Otterize annotations for jobs ([2628a0e](2628a0e13e))
66 KiB
66 KiB
0.5.58 (2023-12-01)
Bug Fixes
- cryptpad: Add websocket annotation (c41643e)
- openproject: Add seederJob intent (05cc82d)
- openproject: Bump to 2.6.2 (c8bc8b3)
- services: Add NetworkPolicy section to docs/security.md (24812b6)
- services: Add Otterize based security settings (bec9a2d)
- univention-management-stack: Add Otterize annotations for jobs (2628a0e)
0.5.57 (2023-12-01)
Bug Fixes
- helmfile: Using correct private registry for postfix helm-chart (d367739)
0.5.56 (2023-11-30)
Bug Fixes
- element: Raise treshold for login rate limit to avoid too early barrier hitting normal users (466e741)
0.5.55 (2023-11-30)
Bug Fixes
- cryptpad: Update Helm chart to enable readiness and liveness probes (6d3e484)
0.5.54 (2023-11-29)
Bug Fixes
- helmfile: Add and document security context for components (519db51)
0.5.53 (2023-11-29)
Bug Fixes
- univention-managemen-stack: Integrate Attribute to Group Mapper into the containerized stack (7bbab22)
- univention-management-stack: Add Announcements icon into "umc-gateway" (7a9ecf7)
- univention-management-stack: Add Announcements module into "umc-server" (4c52a5a)
- univention-management-stack: Add branding related configuration to stack-gateway (a5f263c)
- univention-management-stack: Apply styling (b3d45c4)
- univention-management-stack: Configure openDesk branding in frontend chart (cbe8fb2)
- univention-management-stack: Document database of UMS Notifications API (3cf348c)
- univention-management-stack: Move static settings from gotmpl into yaml for umc-gateway (b3ac0ae)
- univention-management-stack: Quote all composed strings (1c35ca6)
- univention-management-stack: Remove frontend-custom (8b6a4b2)
- univention-management-stack: Set SMTP host for self-service notifications (0c7a77c)
- univention-management-stack: UMC uses external memcached (211bee9)
- univention-management-stack: Update ums-dependencies (e0c6c14)
- univention-management-stack: Update ums-dependencies (c246edd)
- univention-management-stack: Update ums-dependencies (86b4818)
- univention-management-stack: Use "stack-gateway" in all deployments (c19bca2)
0.5.52 (2023-11-28)
Bug Fixes
- ci: Open automatic MRs for new branches (735fec3)
0.5.51 (2023-11-28)
Bug Fixes
- nextcloud: Bump chart to fix central navigation (cac6abe)
- openproject: Update container and prepare for OIDC based user admin role setting (6dc92df)
0.5.50 (2023-11-27)
Bug Fixes
- ci: Add metadata for renovate processing (36aa3ed)
0.5.49 (2023-11-27)
Bug Fixes
- nextcloud: Bump image to incorporate fix for https://github.com/nextcloud/security-advisories/security/advisories/GHSA-f962-hw26-g267 (efbd814)
0.5.48 (2023-11-24)
Bug Fixes
- services: Update resource requests and remove cpu limits (f86a74b)
0.5.47 (2023-11-24)
Bug Fixes
- helmfile: Rename absolute paths on OpenCoDE to new 'opendesk' base group name (7ac2e0f)
- xwiki: Enable the sync of user profile picture from LDAP (6aa3d38)
0.5.46 (2023-11-23)
Bug Fixes
- element: Fix quotes in element chart (a447c13)
0.5.45 (2023-11-22)
Bug Fixes
- open-xchange: Add security context (db48140)
0.5.44 (2023-11-21)
Bug Fixes
- ci: Remove default BASE_DOMAIN in .gitlab-ci.yml (7ae65a3)
0.5.43 (2023-11-20)
Bug Fixes
- univention-management-stack: Update optional UMS preview state (061e588)
0.5.42 (2023-11-20)
Bug Fixes
- nextcloud: Add exporter and serviceMonitor (feed270)
- nextcloud: Bump openDesk bootstrap to 3.2.3 to support serverinfo token (ea14f95)
0.5.41 (2023-11-16)
Bug Fixes
- helmfile: Split README into docs (cd0e94f)
0.5.40 (2023-11-14)
Bug Fixes
- open-xchange: Bump Dovecot and fix out-of-office replys (55f6ba2)
0.5.39 (2023-11-14)
Bug Fixes
- univention-management-stack: Update optional UMS preview state (e231e57)
0.5.38 (2023-11-13)
Bug Fixes
- collabora: Update image to 23.05.5.4.1 (c460467)
0.5.37 (2023-11-12)
Bug Fixes
- openproject: Add bootstrapping of Nextcloud filestore (1971dfb)
0.5.36 (2023-11-10)
Bug Fixes
- element: Update Element and Widgets (97034a5)
0.5.35 (2023-11-10)
Bug Fixes
- helmfile: Eliminate some yamllint errors (1d03a6e)
- helmfile: Move ldap host variable into helpers (08811de)
- helmfile: Update charts to use proper quoting (69ea840)
- services: Add minio as service and consume by OpenProject (baa5827)
0.5.34 (2023-11-09)
Bug Fixes
- openproject: Bump helmchart and properly template OP's initdb image (0d8e92f)
0.5.33 (2023-11-09)
Bug Fixes
- cryptpad: Update security context (89ae1d9)
0.5.32 (2023-11-09)
Bug Fixes
- collabora: Resource definitions (65ce9a1)
0.5.31 (2023-11-08)
Bug Fixes
- univention-management-stack: Update optional UMS preview state (d0a0799)
0.5.30 (2023-11-06)
Bug Fixes
- collabora: Init monitoring in defaults and in collabora (for prometheus-monitor, -rules and grafana dashboard) (0ad0434)
- helmfile: Add monitoring.yaml for optional monitoring (385d81b)
0.5.29 (2023-11-06)
Bug Fixes
- xwiki: Update XWiki Helm configuration to enable LDAP and OIDC user synchronization (7c56c72)
0.5.28 (2023-11-06)
Bug Fixes
- open-xchange: Add Document- and ImageConverter, improve LDAP address book filters (899a8c5)
0.5.27 (2023-11-04)
Bug Fixes
- docs: Re-include release artefacts (4359b21)
0.5.26 (2023-11-02)
Bug Fixes
- element: Enables user directory search for all users (8fafd90)
0.5.25 (2023-11-01)
Bug Fixes
- cryptpad: Add CryptPad to support editing of diagrams.net files from within Nextcloud (ab6014f)
0.5.24 (2023-11-01)
Bug Fixes
- collabora: Update image to 23.05.5.3.1 (38336d0)
0.5.23 (2023-11-01)
Bug Fixes
- element: Update Element Web to latest release (b47de62)
0.5.22 (2023-10-31)
Bug Fixes
- openproject: Nextcloud integration within K8s instances (d249d0e)
0.5.21 (2023-10-30)
Bug Fixes
- helmfile: Deinstall components if disabled (7feaadf)
- helmfile: Put enviroments in first document inside of a yaml (034e98c)
0.5.20 (2023-10-30)
Bug Fixes
- helmfile: Remove old XWiki image, set explicit timeout for OP deployment, bump Jitsi Helm chart to enable chat for stand-alone Jitsi (5d01f8c)
0.5.19 (2023-10-30)
Bug Fixes
- element: Update Element Web and Nordeck Widgets to latest releases (2313f75)
0.5.18 (2023-10-28)
Bug Fixes
- xwiki: Switch to Alpine/Jetty slim image (b399869)
0.5.17 (2023-10-28)
Bug Fixes
- nextcloud: Update swp_integration app and prepare CryptPad integration (a046dea)
0.5.16 (2023-10-26)
Bug Fixes
- openproject: Slim container with upgraded helm-chart (535823e)
0.5.15 (2023-10-25)
Bug Fixes
- helmfile: Add XWiki Jetty and UniventionKeycloak to image.yaml for Compliance checks. They are not yet part of standard deployment. (8e376bb)
0.5.14 (2023-10-20)
Bug Fixes
- element: Support for openDesk top bar with central navigation (e609b75)
0.5.13 (2023-10-20)
Bug Fixes
- element: Configure rights and roles (59d58e3)
0.5.12 (2023-10-19)
Bug Fixes
- element: Add an application service for the intercom-service (1a4eced)
- element: Add the Matrix NeoBoard Widget deployment (5afd233)
- element: Add the Matrix NeoChoice Widget deployment (7756d35)
- element: Add the Matrix NeoDateFix Bot deployment (785989e)
- element: Add the Matrix NeoDateFix Widget deployment (27b6796)
- element: Add the Matrix User Verification Service deployment (30405d1)
- element: Upgrade Element to v1.11.46 (82a037e)
- element: Upgrade the opendesk-element charts to 2.3.0 (fd9e04d)
- element: Upgrade the opendesk-matrix-widgets charts to 2.3.0 (cbe5141)
- element: Use a separate image configuration for the bootstrap tasks (7f7c364)
- intercom-service: Allow access from the non-istio domain and reference to the correct synapse hostname (16f2ac4)
- intercom-service: Fix the nordeck configuration (06dcdd7)
- jitsi: Use template for the cluster networking domain (0898d96)
- keycloak: Use the correct backchannel logout configuration for element (86657b1)
- open-xchange: Enable Element calendar integration (f564efd)
0.5.11 (2023-10-11)
Bug Fixes
0.5.10 (2023-10-11)
Bug Fixes
- intercom-service: Update intercom-service chart to v2.0.0 (c3129f1)
0.5.9 (2023-10-10)
Bug Fixes
- element: Enable the guest module in Synapse (da1bf35)
0.5.8 (2023-10-10)
Bug Fixes
- helmfile: Add default port for SMTP in environment (74f9ec2)
0.5.7 (2023-10-09)
Bug Fixes
- openproject: Mail sender address (711d29e)
0.5.6 (2023-10-09)
Bug Fixes
- helmfile: Use signed bitnami charts from openDesk Mirror Builds (70744d0)
- services: Bump redis chart to 18.1.2 (d4c751d)
0.5.5 (2023-10-09)
Bug Fixes
- openproject: Switch image to fix central navigation; set email sender address (e42feb4)
0.5.4 (2023-10-02)
Bug Fixes
- helmfile: Add third environment (test) (7dbcbfe)
0.5.3 (2023-09-28)
Bug Fixes
- open-xchange: Rollback MariaDB version to fix OX Guard initialization (e33acd3)
0.5.2 (2023-09-28)
Bug Fixes
- ci: Add Gitlab-CI sledgehammer deployment removal (6fd655a)
0.5.1 (2023-09-28)
Bug Fixes
- docs: Add 'Helm Chart Trust Chain' section (b6b4972)
- docs: Highlight that Helmfile >= 0.157.0 is required (d86f516)
- element: Use OCI registry and verify chart signatures (a41b9a6)
- helmfile: Add cleanup flag for job resources (0f01b94)
- helmfile: Create directory for gpg pubkeys (4c5731e)
- intercom-service: Use OCI registry and verify chart signatures (74b3d41)
- jitsi: Verify chart signatures (1dd6582)
- keycloak-bootstrap: Use OCI registry and verify chart signatures (ca5d5f8)
- keycloak: Use OCI registry and verify chart signatures (095059c)
- nextcloud: Use OCI registry and verify chart signatures (41dfdc0)
- open-xchange: Use OCI registry and verify chart signatures (2d5d370)
- open-xchange: Use renamed istio gateway (65d2642)
- openproject: Use OCI registry and verify chart signatures (5343840)
- services: Add wildcard certifcate request support (15ad8ca)
- services: Bump opendesk-certificates to 2.1.0 (4372f06)
- services: Only create istio gateway with webmail domain (6a39011)
- services: Use OCI registry for all services and add gpg verify mechanism (892920b)
- univention-corporate-container: Use OCI registry and verify chart signatures (424317e)
0.5.0 (2023-09-27)
Bug Fixes
- element: Move the static configuration into the values.yaml (f22619b)
- element: Specify resources for the guest module init container (275798c)
Features
- element: Activate the guest module (5ad25ac)
0.4.9 (2023-09-27)
Bug Fixes
- nextcloud: Bump Helm chart to add app "groupfolders" (62b767e)
0.4.8 (2023-09-26)
Bug Fixes
- openproject: Digest rollback (9acce08)
0.4.7 (2023-09-26)
Bug Fixes
0.4.6 (2023-09-26)
Bug Fixes
- openproject: Use renamed registry open_desk (a37faf3)
0.4.5 (2023-09-26)
Bug Fixes
- helmfile: Streamline timeouts (2703615)
0.4.4 (2023-09-25)
Bug Fixes
- open-xchange: Updates for mail templates and mail export (ae3d0da)
0.4.3 (2023-09-25)
Bug Fixes
- nextcloud: Update image to 27.1.1 (ce7e5f6)
0.4.2 (2023-09-21)
Bug Fixes
- nextcloud: Add Nextcloud app for OpenProject integration; Bump Collabora Image (f46c8a9)
0.4.1 (2023-09-19)
Bug Fixes
- univention-management-stack: Remove doublette triple dashes in helmfile.yaml (41b9afb)
0.4.0 (2023-09-18)
Features
- ci: Optionally trigger E2E tests of the SouvAP Dev team (a99c088)
0.3.2 (2023-09-14)
Bug Fixes
- helmfile: Fix linter issues (1514678)
- univention-management-stack: Add "commonLabels" into helmfile (16c08f8)
- univention-management-stack: Add Helm charts (a74d662)
- univention-management-stack: Add switch "univentionManagementStack.enabled" (471a2fa)
- univention-management-stack: Adjust Ingress configuration for portal-server (13bcd78)
- univention-management-stack: Adjust Ingress configuration for umc (320da3b)
- univention-management-stack: Adjust Ingress configuration of notifications-api (5e1a7b1)
- univention-management-stack: Adjust ingress configuration of the portal-frontend (c54bab1)
- univention-management-stack: Adjust Ingress configuration of udm-rest-api (c61b1b8)
- univention-management-stack: Adjust Ingress conifguration of store-dav (96097e4)
- univention-management-stack: Configure cookie banner data (12c931f)
- univention-management-stack: Define resource requests and limits (2f8a298)
- univention-management-stack: Disable istio for the stack (4835a2b)
- univention-management-stack: Prepare persistence configuration (7ab1cb5)
- univention-management-stack: Process bases before releases (ec3f1d9)
- univention-management-stack: Set externalDomainName for bootstrapping the stack (0ba71f2)
- univention-management-stack: Split templated from static values (09079a1)
- univention-management-stack: Split values into templated and static (d3c4390)
- univention-management-stack: Update portal-listener to leverage dependency waiting (c840608)
- univention-management-stack: Use global secrets to fill initialPasswordAdministrator (a4bab40)
- univention-management-stack: Use global secrets to populate ldap related secrets (9409ad8)
- univention-management-stack: Use global secrets to set store-dav related passwords (90019e3)
- univention-management-stack: Use ldap base DN "dc=swp-ldap,dc=internal" (77e362f)
- univention-management-stack: Use postgresql service for notifications-api (fe0e0cd)
- univention-management-stack: Use the prefix "ums-" for all releases (edb25bd)
- univention-management-stack: Use the value "global.imagePullPolicy" (15db5dc)
0.3.1 (2023-09-14)
Bug Fixes
- collabora: Update Ingress annotations and set securityContext (b5583ca)
- element: Improve default container security settings (882f1fb)
- element: Update opendesk element version to 2.0.1 (d725b93)
- helmfile: Remove default SMTP credentials and create docs for SMTP/TURN (e120f5f)
- helmfile: Update images and use a tag and digest together (c7fc187)
- services: Explicitly set securityContexts (a799db0)
- services: Update Postfix to 2.0.2 fixing security gaining (e1070ee)
0.3.0 (2023-09-12)
Features
- ci: Selective tests (d2e7ac9)
0.2.10 (2023-09-06)
Bug Fixes
- helmfile: Add imagePullPolicy default env variable (f988644)
- helmfile: Update images and add jitsi, keycloak to security section in docs (0eceb85)
- jitsi: Update chart to 1.4.2 with improved security and fixed change on each deployment (1349181)
- jitsi: Update jitsi to 1.5.1 and fix prosody image (ed7e5e4)
- keycloak: Improve default security settings (3b90533)
- nextcloud: Fix yamllint disable comment (4380e78)
- services: Disable https redirect in istio to fix cert-manager issues (1ef4a86)
- services: Fix capabilities of postifix (a6fa846)
- services: Fix OCI registry address of postgresql, mariadb (be82243)
0.2.10 (2023-09-06)
Bug Fixes
- helmfile: Add imagePullPolicy default env variable (f988644)
- helmfile: Update images and add jitsi, keycloak to security section in docs (0eceb85)
- jitsi: Update chart to 1.4.2 with improved security and fixed change on each deployment (1349181)
- keycloak: Improve default security settings (3b90533)
- nextcloud: Fix yamllint disable comment (4380e78)
- services: Disable https redirect in istio to fix cert-manager issues (1ef4a86)
- services: Fix capabilities of postifix (a6fa846)
- services: Fix OCI registry address of postgresql, mariadb (be82243)
0.2.9 (2023-09-05)
Bug Fixes
- collabora: Add websocket support for NGINX Inc. Ingress (6e5ef63)
- docs: Add security part in README (ff462ab)
- docs: Update scaling docs (63a1e25)
- helmfile: Reduce icap resources in default enviroment (c5ab1b8)
- helmfile: Update clamav and nextcloud images in default environment (4f2a8ae)
- nextcloud: Add support for up to 4G large upload for Ingress NGINX and NGINX Inc. Ingress (6e68f7f)
- nextcloud: Rename sovereign-workplace-nextcloud-bootstrap to opendesk-nextcloud-bootstrap and use OCI (cef11ac)
- nextcloud: Use clamav-icap when clamavDistributed is activated (41d40c9)
- services: Enable security context and use default increased security settings (9a6d240)
- services: Fix image registry templates for postfix (6321ff5)
- services: Replace image digest by tag (f758293)
- services: Set readOnlyRootFilesystem to true on master (5fbf86b)
- services: Update clamav to 4.0.0, redis to 18.0.0, postgresql to 2.0.2, mariadb to 2.0.2 and use OCI registries (9d78664)
0.2.8 (2023-08-31)
Bug Fixes
- open-xchange: Update images and Helm chart (39565c7)
0.2.7 (2023-08-30)
Bug Fixes
- jitsi: Update Jitsi Helm chart to set the user's display name as default (387bd87)
0.2.6 (2023-08-30)
Bug Fixes
- ci: Change path of asset_generator (6ab4fa0)
- ci: Include deployment environments (0f59736)
- ci: Release artefacts (2a61b5f)
0.2.6 (2023-08-30)
Bug Fixes
- ci: Change path of asset_generator (6ab4fa0)
- ci: Include deployment environments (0f59736)
- ci: Release artefacts (2a61b5f)
0.2.6 (2023-08-30)
Bug Fixes
0.2.5 (2023-08-30)
Bug Fixes
- xwiki: Theming and language of central navigation (3d4d45f)
0.2.4 (2023-08-29)
Bug Fixes
- element: Apply the global theme to Element (7f7eae8)
0.2.3 (2023-08-29)
Bug Fixes
- ci: Add central branding information (a14c42f)
0.2.2 (2023-08-16)
Bug Fixes
- jitsi: Allow configuration of LoadBalancer status field for patchJVB job (7491582)
- open-xchange: Explicitly disable core-ui-middleware ingress (06dc7a1)
0.2.1 (2023-08-16)
Bug Fixes
- keycloak: Increase proxy-buffer-size for ingress-nginx (d8adcc4)
0.2.0 (2023-08-15)
Bug Fixes
- helmfile: Replace bitnami repositories with OCI (4c21fd2)
Features
- helmfile: Implement private image/chart registry variables (5788323)
0.1.2 (2023-08-15)
Bug Fixes
- jitsi: Update support for NodePort setups with different ingress/egress ips (de25789)
0.1.1 (2023-08-14)
Bug Fixes
- open-xchange: Bump dovecot and sovereign-workplace-open-xchange-bootstrap to 1.3.0 with image digest support (53796da)
- open-xchange: Bump sovereign-workplace-open-xchange-bootstrap to 1.3.1 (390f2de)
0.1.0 (2023-08-14)
Bug Fixes
- docs: Typo (ee684a7)
Features
- element: Add element component (5f0ca92)
0.0.6 (2023-08-14)
Bug Fixes
- open-xchange: Functional mailboxes auth settings update in AppSuite and Dovecot (53948ea)
0.0.5 (2023-08-11)
Bug Fixes
- keycloak: Improve digest image pinning (b8a8932)
0.0.4 (2023-08-11)
Bug Fixes
- jitsi: Fix identifiers in resources (3a0b246)
0.0.3 (2023-08-10)
Bug Fixes
- keycloak: Keycloak extensions sha256 image pinning, includes fix for failing keycloak extension handler on unavailable SMTP relay. (27ce715)
0.0.2 (2023-08-10)
Bug Fixes
- services: Remove fqdn from dovecot in postfix (2033c76)
0.0.1 (2023-08-10)
Bug Fixes
- ci: Add 'qa' cluster (43e94f8)
- ci: Deploy provisioning in separate/later stage (ef1cb75)
- collabora: Bump to 23.05.2.2.1 and add capabilites to non containerd k8s clusters (2652b26)
- collabora: Image version bump from 23.05.1.2.1 to 23.05.1.2.2 (3bf7dae)
- collabora: Remove MKNOD capabilities (2f18734)
- docs: Cleanup and enhance README.md and CONTRIBUTING.md (cc5f88c)
- helmfile: Allow selection of environments when installing from root helmfile (8ce01df)
- helmfile: Comment out Open-Xchange Appsuite 8 Deployment until is publicly available (cb65baa)
- jitsi: Fix wrong parameter for jitsiPatchJVB tag (fb3fca2)
- nextcloud: Add Istio domain on integration for read/write contacts with Open-Xchange (b235685)
- provisioning: OX-Connector inits contexts and accessprofiles first, profile pictures are now provisioned (94552a3)
- provisioning: Update OX-Connector image (3cc7ba9)
- services: Bump postgresql chart to 2.0.0 (e609bf3)
- services: Specify dovecot with fqdn (59d64de)
- services: Update mariadb Chart to 2.0.0 (f39811c)
- univention-corporate-server: Update image to improve pod restarting behaviour (57dea1e)
- xwiki: Remove init job as XWiki now does the required bootstrapping internally; Restartability works now as expected (8425c10)
- xwiki: Use external-registry for image download (841bfb6)
Features
- ci: Add release-automation and linting (82bf038)
- ci: Support for MASTER_PASSWORD to be set on Gitlab Settings > CI/CD > Variables (e7d68ea)
- ci: Triggered tests (23fc3c4)
- docs: Update various chapters and structure (42232db)
- helmfile: Add capabilities for a RWO deployment (d5190cd)
- helmfile: Remove environment specific values to use cluster defaults (4fb86b5)
- helmfile: Remove environments and replace with generic one (ef7d75f)
- nextcloud: Rename to sovereign-workplace-nextcloud-bootstrap and bump to 2.2.0 (84de627)
- open-xchange: Add service type for dovecot (c9a763f)
- open-xchange: OX AppSuite 8 within SWP is now publicly available (6dc470f)
- services: Add clamav-simple deployment (505f25c)
- sovereign-workplace: Initial commit (533c504)