- deps: Update konflux references
(
215f4bf
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references
(
558c237
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- repack: Use correct entrypoint
(
0b47206
)
- Add pg_repack cronjob
(
4db4faa
)
RHINENG-14451
- Update local postgresql and install pg_repack
(
83a78fa
)
RHINENG-14451
- deps: Update konflux references
(
59b188b
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- Add missing primary keys
(
3cff9c2
)
- Fix docker build warning
(
451da7d
)
WARN: FromAsCasing: 'as' and 'FROM' keywords' casing do not match
- deps: Update konflux references
(
7a51c3d
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- Revert image temporarily until konflux is stable enough
(
78da9a9
)
- Create renovate PRs only weekly
(
58a1cd5
)
- deps: Update grafana/grafana docker tag to v11.3.0
(
37d49b7
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- Use replicase instead of minReplicas
(
fdaec3c
)
minReplicas is deprecated https://redhatinsights.github.io/clowder/clowder/dev/api_reference.html\#k8s-api-github-com-redhatinsights-clowder-apis-cloud-redhat-com-v1alpha1-deployment
- deps: Update konflux references
(
daff837
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references to e2e7aab
(
164512c
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- Add new mandatory RPM signature scan task to tekton
(
f5bd92e
)
- deps: Update konflux references
(
743415a
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references to fedcfe0
(
156ba2a
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references
(
bd2b1ab
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references
(
04f79b9
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references to 185d52f
(
4833f48
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references
(
a21fc2a
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references to b105a3b
(
e45b401
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references to 60ed62a
(
861ceb8
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references to ac89883
(
9b97e40
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references to v0.3
(
5407459
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references to 504e29e
(
58af054
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references
(
2abebdd
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references to 67f0290
(
e6dc826
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- Only build tagged commits
(
a81f513
)
- deps: Update konflux references
(
6cf0c62
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update grafana/grafana docker tag to v11
(
6c666a8
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references to 674e70f
(
019b3d9
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references to 2d6e09f
(
392d103
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references
(
78431a6
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references to 7a92ef9
(
63cc482
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- deps: Update konflux references to 37b9187
(
3ebb67d
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- Update python-semantic-release and create patch tag for more keywords
(
e53d7b6
)
going to enable Konflux image build only for tags
-
Automerge PRs updating konflux references (
2f3f88d
) -
Red Hat Konflux update vuln4shift-backend (
6b30490
) -
deps: Update konflux references to e107cfd (
d1a3904
)
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
- clowder: Consume container image from Konflux
(
c666146
)
- vmsync: Handle empty time returned from VMaaS
(
8ec6ba1
)
- Fix resources env vars
(
6764733
)
RHINENG-12322
- Update to ubi9
(
6b0998d
)
RHINENG-12544
- deps: Increment minor Go version
(
c033f22
)
- gorm: Select fields with QueryFields
(
da71518
)
https://gorm.io/docs/advanced_query.html\#smart_select
RHINENG-11447
- github-actions: Docker-compose no longer supported
(
21072d3
)
- db: Store registry_repository_version with index for searching
(
21f8b99
)
RHINENG-11447
- gorm: Force gorm to select specific fields
(
c619a4e
)
https://gorm.io/docs/advanced_query.html\#smart_select
RHINENG-11447
- expsync: Possible SQL injection
(
52cad1e
)
RHINENG-2580
- Add sha-extractor as a dependency
(
c8fdfb6
)
CCXDEV-12809
-
digestwriter: Unable to rely on order due to asynchronicity (
de1471d
) -
manager: Fix the expected images count query (
cbe826a
)
- manager: Base image count on correct distinct of columns
(
3227143
)
- Increase memory limit for pyxis gatherer
(
5f1cb8d
)
RHINENG-10112
- manager: Registry filtering
(
eaeab77
)
filter for registry added to exposed_images pages - "registry" all registry options returned in meta section - "image_registries_all"
RHINENG-8259
- manager: Should be a column reference
(
a8de3af
)
- manager: Use version column + support sorting and filtering
(
f7bca47
)
RHINENG-8259
- pyxis: Store the displayed version separately, this will make filtering and sorting a lot
easier
(
1280bc8
)
RHINENG-8259
- Missing flag in local conf
(
c2dc49c
)
- Apply the numeric collation to repository/image names
(
2cddcbc
)
RHINENG-9711
- Add indexes to improve perf when selecting from CVE and image side
(
5455869
)
- manager: Count different aliases of an image
(
4fb30a8
)
we show all because we don't know what is running on the cluster
- manager: Count only clusters returned from amsclient
(
3ce03a2
)
- manager: Fix and simplify cve images query
(
e604aa5
)
- manager: Unique values of cluster images
(
76b0d15
)
- /cves/[id]/exposed_images: Fix query
(
64d7566
)
- deps: Update github.com/jackc/pgx/v5
(
6350f4b
)
RHINENG-8821
- digestwriter: Bump minimal assumed version, 0.10 doesn't seem to work anymore
(
b34cd43
)
- Update dependencies
(
51f91f5
)
- Add /cves/[id]/exposed_images endpoint
(
586bb66
)
RHINENG-8255
- manager: Add /clusters/[id]/exposed_images endpoint
(
c8e40c6
)
RHINENG-8288
- Add tags to repository_image table
(
13cd3fb
)
RHINENG-8572
- Add images_exposed to /cves
(
14b59b1
)
RHINENG-8254
- Use multiple kafka brokers
(
bacbad0
)
RHINENG-3749
- database: Sorting of cve names
(
f77c286
)
RHINENG-3350
- digestwriter: Accept multiple account number types including empty strings
(
84734fc
)
- Remove AMS API page size limit
(
8a450fa
)
like here - RedHatInsights/insights-results-smart-proxy#1101
- feat: ccx-sha-extractor decompression for messages
Co-authored-by: Jakub Drobena [email protected]
- Don't fetch Workload JSONB to optimize memory consumption
(
123ce24
)
VULN4OS-236
- Update linters
(
7052bb8
)
- digestwriter: Accept different account number types
(
e5ae135
)
- digestwriter: Build cve cluster cache based on select from table
(
8093cf1
)
VULN4OS-223
- Use older semantic-release ver
(
604931f
)
-
Bump golangci-lint version to v1.53.3 (
a65d24b
) -
Change method to post, get doesn't work anymore (
e628bad
) -
Upgrade packages to fix CVE-2022-46908, CVE-2021-31239, (
43ac909
) -
base: Use RFC3339Nano timestamp in payload tracker messages (
881d76f
)
- Fix issues from linter
(
2c1f33f
)
- digestwriter: Pass pt message by value
(
85406bb
)
-
base: Turn on sarama success return values (
a82743e
) -
digestwriter: Send all payload messages in goroutine (
1ea978a
)
-
base: Add producer log message (
35d99e4
) -
dbadmin: Remove cve removing functionality (
737b979
) -
digestwriter: Set payload tracker timeout to 5s (
8591287
)
- digestwriter: Add Payload Tracker metrics
(
71b0f58
)
- Add more Kafka tests
(
151e0cf
)
- digestwriter: Add Payload Tracker feature flag
(
053bfb6
)
- Change apiPath to ocp-vulnerability
(
a152278
)
- manager: Fix references to columns in removed subquery
(
f382277
)
VULN4OS-202
-
Add cve update permissions for exploit gatherer (
ab5bd8e
) -
Add exploits gatherer db pwd for ephemeral (
f606f68
) -
Add Payload Tracker cloud config (
89fbfc9
) -
Add table permissions for exploit gatherer (
03fd112
) -
Deploy amsclient as empty string in ephemeral (
d28c50a
) -
dbadmin: Handle force migration version if database is dirty (
b923818
)
-
base: Add Kafka producer (
cdc203c
) -
base: Add Payload Tracker event (
18b4cc5
) -
digestwriter: Add Payload Tracker kafka producer (
4f039e3
)
-
base: Add Kafka producer tests (
6eaa683
) -
base: Add Payload Tracker test (
98105b7
) -
digestwriter: Add Payload Tracker producer test (
a0f0db6
)
- expsync: Add missing clowdapp env vars
(
5efc954
)
- manager: Start returning cluster-cve cached counts
(
0d3fcf7
)
VULN4OS-195
- tests: Init caches on unit test db
(
92a6803
)
- Log to cloudwatch (+minor refactor)
(
cd71d29
)
VULN4OS-189
- Ubi8 now contains golang 1.18
(
718073d
)
- pyxis: Validate cves from pyxis
(
a6023c3
)
VULN4OS-187
- manager: Add exposed clusters count endpoint
(
387729a
)
- dbadmin: Remove invalid cve
(
5844eea
)
VULN4OS-187
- digestwriter: Force cache regeneration
(
1fb389c
)
VULN4OS-186
- manager: Disable exposed images on /clusers/id/cves
(
64291ca
)
VULN4OS-197
- manager: Disable exposed images on /cves endpoint
(
8e7e3e2
)
VULN4OS-196
-
expsync: Add exploit sync job (
cdc5202
) -
manager: Add exploits field to cluster cves (
c9200d2
) -
manager: Add exploits field to cve details endpoint (
c4eb52b
) -
manager: Add exploits field to cve endpoint (
2aee3f9
)
-
base: Add custom header option to API client (
a4ee703
) -
base: Move GetMetricsPusher to common (
1289135
) -
base: Reuse basic DB config set up (
17e2866
)
-
Add script for debugging cluster reports in prod (
d1d5dc7
) -
Fix index of the sha (
b383831
) -
manager: Start using identity package (
c52c04c
)
VULN4OS-175
- digestwriter: Add cve-cluster cache calculation
(
495bb12
)
VULN4OS-186
- pyxis: Allow to overwrite httpClient
(
643978a
)
-
base: Add API tests (
b6127b8
) -
base: Add more utils tests (
899f5a1
) -
manager: Add more manager unit tests (
3b9b0b8
) -
pyxis: Add more pyxis unit tests (
47a7128
) -
pyxis: Add Pyxis tests (
9ac4a9a
) -
vmsync: Add more unit tests (
c246754
)
- pyxis: Improve repo images check
(
f073940
)
- pyxis: Correct registerMissingCves metric incrementation
(
35fe26d
)
- manager: Move ClusterInfo type to base
(
338e75e
)
-
manager: Add AMS client tests (
bc2c069
) -
manager: Add AMS tests to controllers (
86ada16
) -
manager: Add clusters controllers tests (
fe45457
) -
manager: Add cve controllers tests (
e3f5e36
)
- manager: Filter *_all lists for a single CVE scope
(
a9f13e2
)
VULN4OS-153
- Log cluster uuid, instead of id when no digests are found
(
ad2d218
)
- manager: Populate *_all lists locally from DB when AMS is not available
(
ae597b0
)
- digestwriter: Unlink images from cluster
(
6baa5e3
)
VULN4OS-168
- Fix sha_generator to insert image arch
(
9981682
)
- pyxis: Use both pyxis_id and reg/repo key for sync
(
3157364
)
VULN4OS-147
- manager: Set max header size to 65535 bytes
(
4fa6393
)
VULN4OS-161
- vmsync: Add vmsync tests
(
006e972
)
- vmsync: Prune CVEs during sync
(
79bb0e0
)
- vmsync: Add pruneCves test
(
9b3bfb5
)
- pyxis: Skip image CVE sync (debug purposes)
(
b999034
)
- pyxis: Referencing attributes of apiImage will use only the last value in the loop, reference
local variables instead
(
7b7bc7e
)
- Check more image digests
(
8dbb70f
)
- manager: Do not encode undefined value
(
e7489f4
)
- digestwriter: Store cluster workload JSON
(
73560ee
)
- pyxis: Use repository map with reg,repo key
(
2f2c268
)
VULN4OS-147
- manager: Support status, version and provider filters in exposed clusters API
(
f978366
)
VULN4OS-150
- Drop account_number
(
64b1608
)
VULN4OS-105
- digestwriter: Drop usage of account number
(
cccae2f
)
VULN4OS-105
- manager: Sort versions by number
(
b6cb581
)
VULN4OS-145
- kafka: Create TLS context despite empty cacert
(
a55bd38
)
VULN4OS-143
- database: Sorting of cluster versions
(
885e5c4
)
- Add ams secret for ephemeral
(
ad73cb2
)
VULN4OS-137
- manager: Report query should use parsedValues
(
77ff00a
)
- manager: Return meta lists in predictable order
(
feb0cdc
)
- manager: Support comma-separated values in status filter
(
e2025cc
)
- pyxis: Use docker_image_digest if manifest_list_digest is empty
(
4666f1d
)
-
digest-writer: Match images with given arch (
1db8d19
) -
pyxis: Store manifest_list_digest instead (
dc0ae6b
)
-
database: Add arch for image and remove digest unique constaint -> manifest list digest will be used (
db4442d
) -
pyxis: Store image archs (
a87d462
) -
pyxis: Support forcing the sync (
1b10000
)
- digest-writer: Fix test data
(
d0377bb
)
- manager: Add sorting by cve severity for clusters
(
9c2c241
)
VULN4OS-119
- manager: Add provider cluster filter
(
ac01502
)
VULN4OS-119
- manager: Add version filter for clusters
(
0c4f39b
)
VULN4OS-119
- manager: Add cluster status filter
(
6b05b4b
)
VULN4OS-119
- pyxis: Dont init array with empty values
(
f129939
)
VULN4OS-136
- manager: Add report query for returning all records
(
4611008
)
VULN4OS-115
- manager: Cluster severity filter should be OR
(
9292213
)
- digest-writer: Collect digests from containers
(
536ebfc
)
-
manager: Fetch metrics from AMS (adding metrics attribute doesnt't work) (
96e90a3
) -
manager: Use provider+region str in list of all displayed providers (
df18c7a
)
- pyxis: Return unique image cves despite errata from pyxis
(
2ac645a
)
VULN4OS-114
- manager: Revert this join, should be LEFT to display clusters without CVEs
(
f8928c0
)
- manager: Make sure UUIDs from AMS API are valid
(
e8d6089
)
- digest-writer: Missing cluster columns
(
7712b02
)
-
database: Add missing columns to the cluster table and grant manager to update the table (
a61ef5c
) -
manager: Sync cluster details to db to allow sorting in DB (
68fff0d
)
- manager: Add unique sets of statuses, versions and providers
(
c2eaded
)
VULN4OS-119
- manager: Add csv support for pageable endpoints
(
35c8526
)
VULN4OS-100
- manager: Search clusters by display_name in AMS
(
eedd8c4
)
- manager: Duplicate clusters when more than 1 image is affected by CVE
(
c89b05f
)
- manager: Add AMS API client interface
(
7d47ca4
)
VULN4OS-67
- manager: Ams integration in cluster detail
(
81f96ac
)
VULN4OS-67
- manager: Ams integration in cluster list
(
9f86338
)
VULN4OS-67
- manager: Ams integration in CVE exposed clusters
(
d3bbd88
)
VULN4OS-67
- manager: Ams integration in CVE list
(
74becfb
)
VULN4OS-67
- manager-ams-api: Prepare env variables
(
79a7591
)
- Make sure CVEs are ordered while inserting/deleting
(
13991c0
)
VULN4OS-46
VULN4OS-94
- deploy: Add resources to the cleaner job
(
44f4b4d
)
VULN4OS-94
- manager: Fix sorting for cvss2/3_score
(
8e91686
)
VULN4OS-86
- manager: Add sort for display_name
(
fcd5c3e
)
VULN4OS-103
- Deploy cleaner
(
02528f3
)
VULN4OS-94
- Local deploy cleaner
(
a6c031d
)
VULN4OS-94
- semantic-release: Check commit messages
(
e931c46
)
second line
- semantic-release: Pass version from latest tag to manager
(
37e0e88
)
- Add cluster cleaner
(
99c6bf2
)
VULN4OS-94
- manager: Comma is allowed search character in fulltext search
(
f8dbd46
)
VULN4OS-99
- Add testing data
(
04744e0
)
VULN4OS-22
- Enable semantic release
(
140988c
)