#9303 Configure new wildcart cert for *.app.os.fp.o to get have routes to monitoring/log-aggregation
Closed: Duplicate 3 years ago by pingou. Opened 3 years ago by asaleh.

Describe what you would like us to do:


Routes like
https://kibana.app.os.fedoraproject.org/
https://prometheus-k8s-openshift-monitoring.app.os.stg.fedoraproject.org/graph

are no longer available, due to the wildcard certificate being expired. Previous consensus was, that we don't actually want wild-car cert on *.app.os.fp.o, because the applications hosted there have their own domains with properly configured certs anyway.

I would like us to reconsider, as many of the utility applications like kibana, prometheus or potentially others probably don't warrant having their own dedicated domains, but are still very useful to have them on the internet without i.e. needing to port-forward to a specific pod.

Currently this is blocking a POC dashboard to graph failures and performance of monitor-gating with grafana.

When do you need this to be done by? (2020/09/25)


By the end of month? We are not entirely blocked for development of the POC, and we have access to a centos openshift project where we can prototype as well, but by the end of the quarter, I would like to have something to share with the rest of CPE and potentially rest of fedora comunity.


Metadata Update from @pingou:
- Issue close_status updated to: Fixed
- Issue status updated to: Closed (was: Open)

3 years ago

Metadata Update from @pingou:
- Issue close_status updated to: Duplicate (was: Fixed)

3 years ago

Ah, I remembered we already closed/wont-fix the other one, :-)

Login to comment on this ticket.

Metadata