Moritz Johner
c8775e8d3c
chore: bump EKS e2e test version ( #2666 )
...
Signed-off-by: Moritz Johner <beller.moritz@googlemail.com>
2023-08-31 07:49:45 +09:00
Moritz Johner
2dcc360941
chore: bump kubernetes support version ( #2659 )
...
Signed-off-by: Moritz Johner <beller.moritz@googlemail.com>
2023-08-29 00:17:10 +02:00
Shuhei Kitagawa
da85f80d97
Support PushSecret metadata ( #2600 )
...
* Support PushSecret metadata
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
* Refactor GCP PushSecret
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
---------
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
2023-08-28 23:50:21 +02:00
eso-service-account-app[bot]
77e57ab17a
update dependencies ( #2657 )
...
Signed-off-by: External Secrets Operator <ExternalSecretsOperator@users.noreply.github.com>
Co-authored-by: External Secrets Operator <ExternalSecretsOperator@users.noreply.github.com>
2023-08-28 13:30:11 +02:00
Shuhei Kitagawa
005fb4d123
Report not ready when no namespace matches ( #2582 )
...
* Report not ready when no namespace matches
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
* Fix flaky a test
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
* Simplify ClusterExternalSecret status
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
---------
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
2023-08-28 12:03:57 +02:00
Moritz Johner
97df83b518
chore: bump dependencies ( #2654 )
...
Signed-off-by: Moritz Johner <beller.moritz@googlemail.com>
2023-08-28 11:50:46 +02:00
Alexandre Gaudreault
21928a45b9
fix(externalsecret): infinite reconcile loop with Merge secret ( #2525 )
...
* fix(externalsecret): infinite reconcile loop with Merge secret
Signed-off-by: Alexandre Gaudreault <alexandre.gaudreault@logmein.com>
* code review
Signed-off-by: Alexandre Gaudreault <alexandre.gaudreault@logmein.com>
* lint
Signed-off-by: Alexandre Gaudreault <alexandre.gaudreault@logmein.com>
* add unit tests
Signed-off-by: Alexandre Gaudreault <alexandre.gaudreault@logmein.com>
* lint
Signed-off-by: Alexandre Gaudreault <alexandre.gaudreault@logmein.com>
* Use objectHash instead of value
Signed-off-by: Alexandre Gaudreault <alexandre.gaudreault@logmein.com>
---------
Signed-off-by: Alexandre Gaudreault <alexandre.gaudreault@logmein.com>
2023-08-28 11:46:38 +02:00
Andrea Stacchiotti
b50415edf0
Introduce RetrySettings support for Hashicorp Vault ( #2528 )
...
* Ensure use of BuildKit in the Docker builds
The builds rely on `TARGETOS` and `TARGETARCH` being set, which is
automatically accomplished by the new builder.
Add the explicit envvar selector in the Makefile, until most users
update to docker 23+.
Signed-off-by: Andrea Stacchiotti <andreastacchiotti@gmail.com>
* Update docker build command in developer guide
Signed-off-by: Andrea Stacchiotti <andreastacchiotti@gmail.com>
* Introduce RetrySettings support for Hashicorp Vault
Leave default retries to 0 (not the default of the vault sdk of 2),
as this was decided in abec2a64cc
.
Signed-off-by: Andrea Stacchiotti <andreastacchiotti@gmail.com>
---------
Signed-off-by: Andrea Stacchiotti <andreastacchiotti@gmail.com>
2023-08-28 11:45:27 +02:00
Shuhei Kitagawa
d5271d0dab
Delete old ClusterExternalSecrets when name changed ( #2601 )
...
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
2023-08-25 20:44:01 +02:00
Shuhei Kitagawa
6afdba88c9
Remove metrics when a resource has been deleted ( #2576 )
...
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
2023-08-24 21:57:34 +02:00
Shuhei Kitagawa
3164df0c08
Stop ignoring ExternalSecret reconciliation error ( #2583 )
...
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
2023-08-24 20:51:16 +02:00
Alexander Schaber
0896105349
docs: add AWS IAM policy for usage with PushSecret ( #2653 )
...
Signed-off-by: Alexander Schaber <a.schaber@cuegee.com>
2023-08-24 20:45:06 +02:00
Shuhei Kitagawa
57dece9b7a
Stop using builder.OnlyMetadata for ExternalSecrets ( #2626 )
...
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
2023-08-24 19:28:29 +02:00
Shuhei Kitagawa
ba1caed791
Fix a ClusterExternalSecret flaky test ( #2641 )
...
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
2023-08-24 19:28:15 +02:00
Joshua-Beha
58c2a88433
Add in s390x build ( #2613 )
...
* release 0.9.3 (#2612 )
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* Add in s390x build
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* Revert "Add in s390x build"
This reverts commit 5b45296c0cf3a89032e5b7bb17949204d4da84e9.
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* Add s390x build to distroless tag
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* handle special case for imported cert secret type (#2629 )
Signed-off-by: shanti.gundumalla@ibm.com <shanti.gundumalla@ibm.com>
Co-authored-by: shanti.gundumalla@ibm.com <shanti.gundumalla@ibm.com>
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* Set builder.OnlyMetadata back for Secrets (#2625 )
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* convert the fetched secret to map to access the properties (#2637 )
Signed-off-by: shanti.gundumalla@ibm.com <shanti.gundumalla@ibm.com>
Co-authored-by: shanti.gundumalla@ibm.com <shanti.gundumalla@ibm.com>
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* updating refreshTime and adding lastTransitionTime in doc FAQ (#2640 )
Signed-off-by: rakuge <101624788+rakrueger@users.noreply.github.com>
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* docs: Fix (#2627 )
remove redundant pipe(`|`)
Signed-off-by: nikkie <takuyafjp+develop@gmail.com>
Co-authored-by: Moritz Johner <moolen@users.noreply.github.com>
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* Update common-k8s-secret-types.md (#2624 )
Add example for templating dockerconfigjson given:
* container registry name
* container registry host (e.g. ghcr.io)
* container registry password
Signed-off-by: Layer8Err <dwight.brenner@gmail.com>
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* chore(deps): bump golang from 1.20.6-alpine to 1.21.0-alpine (#2604 )
Bumps golang from 1.20.6-alpine to 1.21.0-alpine.
---
updated-dependencies:
- dependency-name: golang
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* Using Bitwarden notes for multiline secrets (#2635 )
* Using Bitwarden notes for multiline secrets
Signed-off-by: Laszlo Fogas <laszlo@gimlet.io>
* Update docs/snippets/bitwarden-secret.yaml
Signed-off-by: Moritz Johner <moolen@users.noreply.github.com>
---------
Signed-off-by: Laszlo Fogas <laszlo@gimlet.io>
Signed-off-by: Moritz Johner <moolen@users.noreply.github.com>
Co-authored-by: Moritz Johner <moolen@users.noreply.github.com>
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* fix: template funcs need to be wrapped in raw block (#2642 )
Signed-off-by: Moritz Johner <beller.moritz@googlemail.com>
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* Revert "Add s390x build to distroless tag"
This reverts commit 92996ebb9a1084f02a6eb772ba4a4b2ad1c3ceab.
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* Revert "Merge remote-tracking branch 'upstream/main'"
This reverts commit e9401d72b69b2d2c593548ba1c91bc8128cff64d, reversing
changes made to 92996ebb9a1084f02a6eb772ba4a4b2ad1c3ceab.
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
* Add s390x to distroless tag
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
---------
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
Signed-off-by: Joshua Beha <joshua.beha@ibm.com>
Signed-off-by: shanti.gundumalla@ibm.com <shanti.gundumalla@ibm.com>
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
Signed-off-by: rakuge <101624788+rakrueger@users.noreply.github.com>
Signed-off-by: nikkie <takuyafjp+develop@gmail.com>
Signed-off-by: Layer8Err <dwight.brenner@gmail.com>
Signed-off-by: dependabot[bot] <support@github.com>
Signed-off-by: Laszlo Fogas <laszlo@gimlet.io>
Signed-off-by: Moritz Johner <moolen@users.noreply.github.com>
Signed-off-by: Moritz Johner <beller.moritz@googlemail.com>
Co-authored-by: Gustavo Fernandes de Carvalho <gusfcarvalho@gmail.com>
Co-authored-by: Shanti G <81566195+Shanti-G@users.noreply.github.com>
Co-authored-by: shanti.gundumalla@ibm.com <shanti.gundumalla@ibm.com>
Co-authored-by: Shuhei Kitagawa <shuheiktgw@users.noreply.github.com>
Co-authored-by: rakuge <101624788+rakrueger@users.noreply.github.com>
Co-authored-by: nikkie <takuyafjp+develop@gmail.com>
Co-authored-by: Moritz Johner <moolen@users.noreply.github.com>
Co-authored-by: Layer8Err <dwight.brenner@gmail.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Laszlo Fogas <laszlo@gimlet.io>
2023-08-24 12:26:25 +02:00
Moritz Johner
d1c5595248
chore: bump 0.9.4 ( #2649 )
...
Signed-off-by: Moritz Johner <beller.moritz@googlemail.com>
2023-08-24 11:10:34 +02:00
Gustavo Fernandes de Carvalho
77a70d08fa
fixing label limits ( #2645 )
...
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
2023-08-23 13:16:16 -03:00
Moritz Johner
0334c2801c
fix: template funcs need to be wrapped in raw block ( #2642 )
...
Signed-off-by: Moritz Johner <beller.moritz@googlemail.com>
2023-08-23 11:08:40 +02:00
Laszlo Fogas
95bb5f9345
Using Bitwarden notes for multiline secrets ( #2635 )
...
* Using Bitwarden notes for multiline secrets
Signed-off-by: Laszlo Fogas <laszlo@gimlet.io>
* Update docs/snippets/bitwarden-secret.yaml
Signed-off-by: Moritz Johner <moolen@users.noreply.github.com>
---------
Signed-off-by: Laszlo Fogas <laszlo@gimlet.io>
Signed-off-by: Moritz Johner <moolen@users.noreply.github.com>
Co-authored-by: Moritz Johner <moolen@users.noreply.github.com>
2023-08-23 11:07:22 +02:00
dependabot[bot]
13512b979e
chore(deps): bump golang from 1.20.6-alpine to 1.21.0-alpine ( #2604 )
...
Bumps golang from 1.20.6-alpine to 1.21.0-alpine.
---
updated-dependencies:
- dependency-name: golang
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-23 10:05:36 +02:00
Layer8Err
81c88209cf
Update common-k8s-secret-types.md ( #2624 )
...
Add example for templating dockerconfigjson given:
* container registry name
* container registry host (e.g. ghcr.io)
* container registry password
Signed-off-by: Layer8Err <dwight.brenner@gmail.com>
2023-08-23 10:04:47 +02:00
nikkie
a7d5bb56bf
docs: Fix ( #2627 )
...
remove redundant pipe(`|`)
Signed-off-by: nikkie <takuyafjp+develop@gmail.com>
Co-authored-by: Moritz Johner <moolen@users.noreply.github.com>
2023-08-23 09:45:20 +02:00
rakuge
11ef9667c7
updating refreshTime and adding lastTransitionTime in doc FAQ ( #2640 )
...
Signed-off-by: rakuge <101624788+rakrueger@users.noreply.github.com>
2023-08-23 07:44:20 +09:00
Shanti G
75726582ad
convert the fetched secret to map to access the properties ( #2637 )
...
Signed-off-by: shanti.gundumalla@ibm.com <shanti.gundumalla@ibm.com>
Co-authored-by: shanti.gundumalla@ibm.com <shanti.gundumalla@ibm.com>
2023-08-22 16:19:25 +03:00
Shuhei Kitagawa
851e6ff66c
Set builder.OnlyMetadata back for Secrets ( #2625 )
...
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
2023-08-22 08:05:23 +09:00
Shanti G
bccb12c8ff
handle special case for imported cert secret type ( #2629 )
...
Signed-off-by: shanti.gundumalla@ibm.com <shanti.gundumalla@ibm.com>
Co-authored-by: shanti.gundumalla@ibm.com <shanti.gundumalla@ibm.com>
2023-08-21 11:07:59 +03:00
Gustavo Fernandes de Carvalho
e5fd5a90a9
release 0.9.3 ( #2612 )
...
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
2023-08-15 10:28:54 -03:00
eso-service-account-app[bot]
5ead8ace2e
chore: update dependencies ( #2605 )
...
* update dependencies
Signed-off-by: External Secrets Operator <ExternalSecretsOperator@users.noreply.github.com>
* bumping dependencies
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
---------
Signed-off-by: External Secrets Operator <ExternalSecretsOperator@users.noreply.github.com>
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
Co-authored-by: External Secrets Operator <ExternalSecretsOperator@users.noreply.github.com>
Co-authored-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
2023-08-15 08:19:21 -03:00
Gustavo Fernandes de Carvalho
6319977e63
Fixing when orphaned secret deletion when target.Name is not set ( #2609 )
...
* Fixing when orphaned secret deletion when target.Name is not set
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
* Linting
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
* Fixing e2e tests
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
---------
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
2023-08-15 07:26:00 -03:00
Shuhei Kitagawa
2566798d08
Update the devguide ( #2588 )
...
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
2023-08-15 05:05:37 -03:00
Edvin N
bb68e04407
Fix grafana dashboard $datasource ( #2594 )
...
Signed-off-by: Edvin Norling <edvin.norling@kognic.com>
2023-08-14 21:08:57 -03:00
Gustavo Fernandes de Carvalho
ad111cc180
Fix orphaned secrets logic with CreationPolicy=Merge ( #2587 )
...
* Fix orphaned secrets logic with CreationPolicy=Merge
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
* Fix lint
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
---------
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
2023-08-14 20:44:30 -03:00
Shanti G
45cf966ce2
convert the fetched secret to map to access the properties ( #2603 )
...
Signed-off-by: shanti.gundumalla@ibm.com <shanti.gundumalla@ibm.com>
Co-authored-by: shanti.gundumalla@ibm.com <shanti.gundumalla@ibm.com>
2023-08-14 06:51:48 +03:00
Idan Adar
872ded2290
Revert "convert the fetched secret to map to access the properties ( #2597 )" ( #2602 )
...
This reverts commit 7d91981beb
.
2023-08-14 07:13:21 +09:00
Shanti G
7d91981beb
convert the fetched secret to map to access the properties ( #2597 )
2023-08-13 13:18:57 +02:00
Shuhei Kitagawa
7edb8f6752
Remove paginating namespaces ( #2580 )
...
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
2023-08-08 08:26:46 +09:00
Daniel Campos Olivares
9c9bd73e90
feat: Include remove orphans logic ( #1389 )
...
* feat: Include remove orphans logic
Signed-off-by: Daniel Campos Olivares <dacamposol@gmail.com>
* chore: Introduce deletion based on CR Status
Signed-off-by: Daniel Campos Olivares <dacamposol@gmail.com>
* chore: Simplify exit condition
Signed-off-by: Daniel Campos Olivares <dacamposol@gmail.com>
* fix: Check-diff and Unit Test
Signed-off-by: Daniel Campos Olivares <dacamposol@gmail.com>
* fix: Consume PR comments
Signed-off-by: Daniel Campos Olivares <dacamposol@gmail.com>
* chore: Change test string value for JSON
Signed-off-by: Daniel Campos Olivares <dacamposol@gmail.com>
* fix: New secret requires new name
Signed-off-by: Daniel Campos Olivares <dacamposol@gmail.com>
* bumping docs
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
* Adding unit test instead of e2e test for orphaned secrets compatibility
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
* Improving readability
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
* Using Label approach
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
* fixing lint
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
* bumping docs
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
* Update apis/externalsecrets/v1beta1/externalsecret_types.go
Signed-off-by: Moritz Johner <moolen@users.noreply.github.com>
---------
Signed-off-by: Daniel Campos Olivares <dacamposol@gmail.com>
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
Signed-off-by: Moritz Johner <moolen@users.noreply.github.com>
Co-authored-by: Daniel Campos Olivares <daniel.campos.olivares@sap.com>
Co-authored-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
Co-authored-by: Moritz Johner <moolen@users.noreply.github.com>
2023-08-05 10:02:04 -03:00
Gustavo Fernandes de Carvalho
86d39971b7
Bumping 0.9.2 ( #2574 )
...
Signed-off-by: Gustavo Carvalho <gusfcarvalho@gmail.com>
2023-08-03 13:43:59 -03:00
Moritz Johner
c327ca5685
docs: update release process ( #2570 )
...
Signed-off-by: Moritz Johner <beller.moritz@googlemail.com>
2023-08-03 07:18:58 +00:00
Ian Purton
0321657a69
Integrate Cloak Secrets ( #2108 )
...
* Integrate Cloak Secrets
Signed-off-by: Ian Purton <ian.purton@gmail.com>
* Fix link
Signed-off-by: Ian Purton <36966+ianpurton@users.noreply.github.com>
---------
Signed-off-by: Ian Purton <ian.purton@gmail.com>
Signed-off-by: Ian Purton <36966+ianpurton@users.noreply.github.com>
2023-08-03 08:54:45 +02:00
Moritz Johner
416deb3303
chore: bump dependencies ( #2568 )
...
Signed-off-by: Moritz Johner <beller.moritz@googlemail.com>
2023-08-02 21:42:03 +02:00
Shuhei Kitagawa
12a4470949
Support PushSecret Property for GCP ( #2465 )
...
* Support PushSecret Property for GCP
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
* Take over the ownership if the label does not exist
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
---------
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
2023-08-01 14:38:47 +02:00
Martin Schuessler
f777a85156
added userPass authentication to the hashicorp vault provider ( #2539 )
...
Signed-off-by: Martin Schuessler <1407812+c0ffee@users.noreply.github.com>
Co-authored-by: Moritz Johner <moolen@users.noreply.github.com>
2023-08-01 14:16:19 +02:00
Shuhei Kitagawa
9cef707f10
Disable Git top-level directory owner check ( #2559 )
...
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
2023-07-31 23:05:45 +02:00
Shuhei Kitagawa
ec81db7a1b
Fix flaky ClusterExternalSecret test ( #2558 )
...
Signed-off-by: shuheiktgw <s-kitagawa@mercari.com>
2023-07-31 22:45:47 +02:00
Evan
f44ef56646
IBM Provider: Fix documentation templating errors ( #2564 )
...
* Move examples added in 3ab04767a5
to a snippet so they do not conflict with the mkdocs-macros plugin
Signed-off-by: Evan Bluhm <embluhm@uw.edu>
2023-07-31 22:43:50 +02:00
Thomas Colomb
c8b93b6d51
helm: Add certController readiness port configuration and link prometheus.service.port to args ( #2529 )
...
Signed-off-by: Thomas Colomb <noony@users.noreply.github.com>
2023-07-28 20:47:48 +02:00
Valentin Torikian
7c17023924
Fixed potential linting issue on webhook pdb manifest ( #2551 )
...
Signed-off-by: Valentin Torikian <vtorikian@upgrade.com>
2023-07-26 20:41:58 +02:00
arnouthoebreckx
1e281b92ca
Bug/escape special characters vault ( #2537 )
...
* Change json.Marshal to Encoder to support special characters
Signed-off-by: Arnout Hoebreckx <arnouthoebreckx@gmail.com>
* Add test for special characters
Signed-off-by: Arnout Hoebreckx <arnouthoebreckx@gmail.com>
* Handle error of encoder
Signed-off-by: Arnout Hoebreckx <arnouthoebreckx@gmail.com>
---------
Signed-off-by: Arnout Hoebreckx <arnouthoebreckx@gmail.com>
2023-07-26 17:16:25 +02:00
rmdg88
1ad4a66ab1
Update common-k8s-secret-types.md ( #2541 )
...
corrected kubectl command syntax
Signed-off-by: rmdg88 <66125272+rmdg88@users.noreply.github.com>
2023-07-25 16:10:34 +02:00