Compare commits
3
Commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
1c9eeccacc | ||
|
|
f3e10c6642 | ||
|
|
86381d7059 |
@@ -34,6 +34,9 @@ jobs:
|
|||||||
# `true` fills in the medewerker OTP step for the public demo (chart value
|
# `true` fills in the medewerker OTP step for the public demo (chart value
|
||||||
# demo.otpAutofill). The fixture secret is committed: demo only.
|
# demo.otpAutofill). The fixture secret is committed: demo only.
|
||||||
OTP_AUTOFILL: ${{ vars.OTP_AUTOFILL }}
|
OTP_AUTOFILL: ${{ vars.OTP_AUTOFILL }}
|
||||||
|
# Tempo for the services' traces, e.g. http://tempo.monitoring.svc:4317 (the
|
||||||
|
# cluster monitoring stack, Infra repo). Empty = the chart default.
|
||||||
|
OTEL_ENDPOINT: ${{ vars.OTEL_ENDPOINT }}
|
||||||
steps:
|
steps:
|
||||||
- uses: https://github.com/actions/checkout@v4
|
- uses: https://github.com/actions/checkout@v4
|
||||||
|
|
||||||
@@ -100,7 +103,7 @@ jobs:
|
|||||||
make k8s-reseed \
|
make k8s-reseed \
|
||||||
TALOS_HOST=${TALOS_HOST:-localhost} \
|
TALOS_HOST=${TALOS_HOST:-localhost} \
|
||||||
K8S_REGISTRY=${TALOS_VM_IP:-192.168.122.173}:30500 \
|
K8S_REGISTRY=${TALOS_VM_IP:-192.168.122.173}:30500 \
|
||||||
K8S_SET="${KEYCLOAK_URL:+--set keycloakUrl=$KEYCLOAK_URL} --set demo.otpAutofill=${OTP_AUTOFILL:-false}"
|
K8S_SET="${KEYCLOAK_URL:+--set keycloakUrl=$KEYCLOAK_URL} --set demo.otpAutofill=${OTP_AUTOFILL:-false}${OTEL_ENDPOINT:+ --set otelEndpoint=$OTEL_ENDPOINT}"
|
||||||
|
|
||||||
# `dev` is a mutable tag and helm sees an unchanged pod template, so the
|
# `dev` is a mutable tag and helm sees an unchanged pod template, so the
|
||||||
# new images only land on a restart (pullPolicy is already Always).
|
# new images only land on a restart (pullPolicy is already Always).
|
||||||
|
|||||||
@@ -30,6 +30,12 @@ host: 192.168.122.100
|
|||||||
# portals' authority (runbook, "Publishing through the labs Caddy").
|
# portals' authority (runbook, "Publishing through the labs Caddy").
|
||||||
keycloakUrl: ""
|
keycloakUrl: ""
|
||||||
|
|
||||||
|
# Where the .NET services send traces (OTLP gRPC). The default is the chart's own
|
||||||
|
# `tempo` workload (off by default, like compose). Point it at a Tempo outside the
|
||||||
|
# release, e.g. the cluster monitoring stack's http://tempo.monitoring.svc:4317 —
|
||||||
|
# with no Tempo at all, every export fails and is counted as a .NET exception.
|
||||||
|
otelEndpoint: http://tempo:4317
|
||||||
|
|
||||||
demo:
|
demo:
|
||||||
# Fill in and submit the medewerker OTP step from the fixture secret, so a public
|
# Fill in and submit the medewerker OTP step from the fixture secret, so a public
|
||||||
# demo shows MFA enforced without an authenticator: makes the big-demo theme
|
# demo shows MFA enforced without an authenticator: makes the big-demo theme
|
||||||
@@ -160,10 +166,11 @@ envGroups:
|
|||||||
NOTIFICATIONS_DISABLED: "false"
|
NOTIFICATIONS_DISABLED: "false"
|
||||||
RUN_SETUP_CONFIG: "true"
|
RUN_SETUP_CONFIG: "true"
|
||||||
|
|
||||||
# Traces for the .NET services. Always set, like compose: the exporter fails
|
# Traces for the .NET services. Always set, like compose. With no Tempo behind
|
||||||
# harmlessly when Tempo is absent (services/*/Program.cs).
|
# `otelEndpoint` the exporter fails quietly but throws on every batch, which
|
||||||
|
# shows up as HttpRequestException/SocketException in dotnet_exceptions_total.
|
||||||
otel:
|
otel:
|
||||||
OTEL_EXPORTER_OTLP_ENDPOINT: http://tempo:4317
|
OTEL_EXPORTER_OTLP_ENDPOINT: '{{ .Values.otelEndpoint }}'
|
||||||
OTEL_EXPORTER_OTLP_PROTOCOL: grpc
|
OTEL_EXPORTER_OTLP_PROTOCOL: grpc
|
||||||
|
|
||||||
# ── Workloads ──────────────────────────────────────────────────────────────────
|
# ── Workloads ──────────────────────────────────────────────────────────────────
|
||||||
|
|||||||
Reference in New Issue
Block a user