diff --git a/.github/bin/check-bundle-version.sh b/.github/bin/check-bundle-version.sh index 84ff99cfd..b70d553ad 100755 --- a/.github/bin/check-bundle-version.sh +++ b/.github/bin/check-bundle-version.sh @@ -19,9 +19,6 @@ if [ -z "${ROOT_PROJECT_DIR}" ]; then ROOT_PROJECT_DIR=$(dirname "$(dirname "${BASE_DIR}")") fi -CSV_KUBERNETES_NEXT_NEW="bundle/next/eclipse-che-preview-kubernetes/manifests/che-operator.clusterserviceversion.yaml" -CSV_KUBERNETES_NEXT_CURRENT=https://raw.githubusercontent.com/eclipse-che/che-operator/main/bundle/next/eclipse-che-preview-kubernetes/manifests/che-operator.clusterserviceversion.yaml - CSV_OPENSHIFT_NEXT_NEW="bundle/next/eclipse-che-preview-openshift/manifests/che-operator.clusterserviceversion.yaml" CSV_OPENSHIFT_NEXT_CURRENT=https://raw.githubusercontent.com/eclipse-che/che-operator/main/bundle/next/eclipse-che-preview-openshift/manifests/che-operator.clusterserviceversion.yaml @@ -42,9 +39,7 @@ compareBundleVersions() { do echo "[INFO] Changed file: $file" - if [[ "${file}" == "${CSV_KUBERNETES_NEXT_NEW}" ]]; then - compareVersions ${ROOT_PROJECT_DIR}/$CSV_KUBERNETES_NEXT_NEW $CSV_KUBERNETES_NEXT_CURRENT - elif [[ "${file}" == "${CSV_OPENSHIFT_NEXT_NEW}" ]]; then + if [[ "${file}" == "${CSV_OPENSHIFT_NEXT_NEW}" ]]; then compareVersions ${ROOT_PROJECT_DIR}/$CSV_OPENSHIFT_NEXT_NEW $CSV_OPENSHIFT_NEXT_CURRENT elif [[ "${file}" == "${CSV_OPENSHIFT_NEXT_ALL_NAMESPACES_NEW}" ]]; then compareVersions ${ROOT_PROJECT_DIR}/$CSV_OPENSHIFT_NEXT_ALL_NAMESPACES_NEW $CSV_OPENSHIFT_NEXT_ALL_NAMESPACES_CURRENT @@ -71,8 +66,6 @@ compareVersions() { checkBundleVersions() { versionWithoutNext="$${nextVersion%.next*}" - CSV_KUBERNETES_NEXT_NEW_VERSION=$(yq -r ".spec.version" ${CSV_KUBERNETES_NEXT_NEW}) - CSV_KUBERNETES_NEXT_NEW_VERSION=${CSV_KUBERNETES_NEXT_NEW_VERSION%.next*} CSV_OPENSHIFT_NEXT_NEW_VERSION=$(yq -r ".spec.version" ${CSV_OPENSHIFT_NEXT_NEW}) CSV_OPENSHIFT_NEXT_NEW_VERSION=${CSV_OPENSHIFT_NEXT_NEW_VERSION%.next*} @@ -80,18 +73,14 @@ checkBundleVersions() { CSV_OPENSHIFT_NEXT_ALL_NAMESPACES_NEW_VERSION=$(yq -r ".spec.version" ${CSV_OPENSHIFT_NEXT_ALL_NAMESPACES_NEW}) CSV_OPENSHIFT_NEXT_ALL_NAMESPACES_NEW_VERSION=${CSV_OPENSHIFT_NEXT_ALL_NAMESPACES_NEW_VERSION%.next*} - if [[ ${CSV_KUBERNETES_NEXT_NEW_VERSION} != ${CSV_OPENSHIFT_NEXT_NEW_VERSION} ]] \ - || [[ ${CSV_KUBERNETES_NEXT_NEW_VERSION} != ${CSV_OPENSHIFT_NEXT_ALL_NAMESPACES_NEW_VERSION} ]] \ - || [[ ${CSV_OPENSHIFT_NEXT_NEW_VERSION} != ${CSV_OPENSHIFT_NEXT_ALL_NAMESPACES_NEW_VERSION} ]]; then - + if [[ ${CSV_OPENSHIFT_NEXT_NEW_VERSION} != ${CSV_OPENSHIFT_NEXT_ALL_NAMESPACES_NEW_VERSION} ]]; then echo "[ERROR] CSVs have different version" - echo "[ERROR] Kubernetes next channel CSV version: ${CSV_KUBERNETES_NEXT_NEW_VERSION}" echo "[ERROR] OpenShift next channel CSV version: ${CSV_OPENSHIFT_NEXT_NEW_VERSION}" echo "[ERROR] OpenShift next-all-namespaces channel CSV version: ${CSV_OPENSHIFT_NEXT_ALL_NAMESPACES_NEW_VERSION}" exit 1 fi - echo "[INFO] All CSVs have the same version: ${CSV_KUBERNETES_NEXT_NEW_VERSION}" + echo "[INFO] All CSVs have the same version: ${CSV_OPENSHIFT_NEXT_NEW_VERSION}" } convertVersionToNumber() { diff --git a/.github/bin/check-resources.sh b/.github/bin/check-resources.sh index ed505ce1b..f120b5830 100755 --- a/.github/bin/check-resources.sh +++ b/.github/bin/check-resources.sh @@ -79,11 +79,10 @@ checkCRDs() { checkNextOlmBundle() { # files to check - local CSV_KUBERNETES="bundle/next/eclipse-che-preview-kubernetes/manifests" local CSV_OPENSHIFT="bundle/next/eclipse-che-preview-openshift/manifests" changedFiles=($(cd ${ROOT_PROJECT_DIR}; git diff --name-only)) - if [[ " ${changedFiles[*]} " =~ $CSV_KUBERNETES ]] || [[ " ${changedFiles[*]} " =~ $CSV_OPENSHIFT ]]; then + if [[ " ${changedFiles[*]} " =~ $CSV_OPENSHIFT ]]; then echo "[ERROR] Nighlty bundle is not up to date: ${BASH_REMATCH}" echo "[ERROR] Run 'make update-resources -s' to regenerate next bundle files." exit 1 diff --git a/.github/bin/minikube/test-stable-olm-update.sh b/.github/bin/minikube/test-stable-olm-update.sh deleted file mode 100755 index 176461a5d..000000000 --- a/.github/bin/minikube/test-stable-olm-update.sh +++ /dev/null @@ -1,33 +0,0 @@ -#!/bin/bash -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -set -e -set -x - -# Get absolute path for root repo directory from github actions context: https://docs.github.com/en/free-pro-team@latest/actions/reference/context-and-expression-syntax-for-github-actions -export OPERATOR_REPO="${GITHUB_WORKSPACE}" -source "${OPERATOR_REPO}"/.github/bin/common.sh - -# Stop execution on any error -trap "catchFinish" EXIT SIGINT - -runTest() { - "${OPERATOR_REPO}"/olm/testUpdate.sh -p kubernetes -c stable -i quay.io/eclipse/eclipse-che-kubernetes-opm-catalog:test -n ${NAMESPACE} - waitEclipseCheDeployed ${LAST_PACKAGE_VERSION} - startNewWorkspace - waitWorkspaceStart -} - -initDefaults -initStableTemplates "kubernetes" "stable" -runTest diff --git a/.github/bin/minishift/test-stable-operator-update.sh b/.github/bin/minishift/test-stable-operator-update.sh index 01342082d..e97c134a8 100755 --- a/.github/bin/minishift/test-stable-operator-update.sh +++ b/.github/bin/minishift/test-stable-operator-update.sh @@ -21,22 +21,12 @@ source "${OPERATOR_REPO}"/.github/bin/common.sh # Stop execution on any error trap "catchFinish" EXIT SIGINT -preparePatchYaml() { - cat >${OPERATOR_REPO}/tmp/patch.yaml< "$${NEW_CSV}" - # Remove roles for openshift bundle YAML_CONTENT=$$(cat "$${NEW_CSV}") - if [ $${platform} = "openshift" ]; then - clusterPermLength=$$(echo "$${YAML_CONTENT}" | yq -r ".spec.install.spec.clusterPermissions[0].rules | length") - i=0 - while [ "$${i}" -lt "$${clusterPermLength}" ]; do - apiGroupLength=$$(echo "$${YAML_CONTENT}" | yq -r '.spec.install.spec.clusterPermissions[0].rules['$${i}'].apiGroups | length') - if [ "$${apiGroupLength}" -gt 0 ]; then - j=0 - while [ "$${j}" -lt "$${apiGroupLength}" ]; do - apiGroup=$$(echo "$${YAML_CONTENT}" | yq -r '.spec.install.spec.clusterPermissions[0].rules['$${i}'].apiGroups['$${j}']') - case $${apiGroup} in cert-manager.io) - YAML_CONTENT=$$(echo "$${YAML_CONTENT}" | yq -rY 'del(.spec.install.spec.clusterPermissions[0].rules['$${i}'])' ) - j=$$((j-1)) - i=$$((i-1)) - break - ;; - esac; - j=$$((i+1)) - done - fi - i=$$((i+1)) - done - fi + clusterPermLength=$$(echo "$${YAML_CONTENT}" | yq -r ".spec.install.spec.clusterPermissions[0].rules | length") + i=0 + while [ "$${i}" -lt "$${clusterPermLength}" ]; do + apiGroupLength=$$(echo "$${YAML_CONTENT}" | yq -r '.spec.install.spec.clusterPermissions[0].rules['$${i}'].apiGroups | length') + if [ "$${apiGroupLength}" -gt 0 ]; then + j=0 + while [ "$${j}" -lt "$${apiGroupLength}" ]; do + apiGroup=$$(echo "$${YAML_CONTENT}" | yq -r '.spec.install.spec.clusterPermissions[0].rules['$${i}'].apiGroups['$${j}']') + case $${apiGroup} in cert-manager.io) + YAML_CONTENT=$$(echo "$${YAML_CONTENT}" | yq -rY 'del(.spec.install.spec.clusterPermissions[0].rules['$${i}'])' ) + j=$$((j-1)) + i=$$((i-1)) + break + ;; + esac; + j=$$((i+1)) + done + fi + i=$$((i+1)) + done echo "$${YAML_CONTENT}" > "$${NEW_CSV}" - if [ $${platform} = "openshift" ]; then - # Removes che-tls-secret-creator - index=0 - while [ $${index} -le 30 ] - do - if [ $$(cat $${NEW_CSV} | yq -r '.spec.install.spec.deployments[0].spec.template.spec.containers[0].env['$${index}'].name') = "RELATED_IMAGE_che_tls_secrets_creation_job" ]; then - yq -rYSi 'del(.spec.install.spec.deployments[0].spec.template.spec.containers[0].env['$${index}'])' $${NEW_CSV} - break - fi - index=$$((index+1)) - done - fi + # Removes che-tls-secret-creator + index=0 + while [ $${index} -le 30 ] + do + if [ $$(cat $${NEW_CSV} | yq -r '.spec.install.spec.deployments[0].spec.template.spec.containers[0].env['$${index}'].name') = "RELATED_IMAGE_che_tls_secrets_creation_job" ]; then + yq -rYSi 'del(.spec.install.spec.deployments[0].spec.template.spec.containers[0].env['$${index}'])' $${NEW_CSV} + break + fi + index=$$((index+1)) + done # Fix CSV - echo "[INFO] Fix $${platform} CSV" - if [ "$${platform}" = "openshift" ]; then - fixedSample=$$(yq -r ".metadata.annotations[\"alm-examples\"] | \ - fromjson | \ - del( .[] | select(.kind == \"CheCluster\") | .spec.k8s)" $${NEW_CSV} | sed -r 's/"/\\"/g') + echo "[INFO] Fix CSV" + fixedSample=$$(yq -r ".metadata.annotations[\"alm-examples\"] | \ + fromjson | \ + del( .[] | select(.kind == \"CheCluster\") | .spec.k8s)" $${NEW_CSV} | sed -r 's/"/\\"/g') - yq -riY ".metadata.annotations[\"alm-examples\"] = \"$${fixedSample}\"" $${NEW_CSV} - fi - if [ "$${platform}" = "kubernetes" ]; then - fixedSample=$$(yq -r ".metadata.annotations[\"alm-examples\"] | \ - fromjson | \ - del( .[] | select(.kind == \"CheCluster\") | .spec.auth.openShiftoAuth) | \ - ( .[] | select(.kind == \"CheCluster\") | .spec.k8s.ingressDomain) |= \"\" " $${NEW_CSV} | sed -r 's/"/\\"/g') - - yq -riY ".metadata.annotations[\"alm-examples\"] = \"$${fixedSample}\"" $${NEW_CSV} - yq -rYi "del(.metadata.annotations.\"operators.openshift.io/infrastructure-features\")" "$${NEW_CSV}" - fi + yq -riY ".metadata.annotations[\"alm-examples\"] = \"$${fixedSample}\"" $${NEW_CSV} # set `app.kubernetes.io/managed-by` label yq -riSY '(.spec.install.spec.deployments[0].spec.template.metadata.labels."app.kubernetes.io/managed-by") = "olm"' "$${NEW_CSV}" @@ -655,10 +581,8 @@ bundle: generate manifests kustomize ## Generate bundle manifests and metadata, yq -riSY '(.spec.install.spec.deployments[0].spec.template.spec."hostIPC") = false' "$${NEW_CSV}" yq -riSY '(.spec.install.spec.deployments[0].spec.template.spec."hostNetwork") = false' "$${NEW_CSV}" yq -riSY '(.spec.install.spec.deployments[0].spec.template.spec."hostPID") = false' "$${NEW_CSV}" - if [ "$${platform}" = "openshift" ]; then - yq -riSY '(.spec.install.spec.deployments[0].spec.template.spec.containers[0].securityContext."allowPrivilegeEscalation") = false' "$${NEW_CSV}" - yq -riSY '(.spec.install.spec.deployments[0].spec.template.spec.containers[0].securityContext."runAsNonRoot") = true' "$${NEW_CSV}" - fi + yq -riSY '(.spec.install.spec.deployments[0].spec.template.spec.containers[0].securityContext."allowPrivilegeEscalation") = false' "$${NEW_CSV}" + yq -riSY '(.spec.install.spec.deployments[0].spec.template.spec.containers[0].securityContext."runAsNonRoot") = true' "$${NEW_CSV}" # set InstallMode for next-all-namespaces if [ "$${channel}" = "next-all-namespaces" ]; then @@ -695,48 +619,34 @@ bundle: generate manifests kustomize ## Generate bundle manifests and metadata, $(MAKE) add-license $${BASE_CSV} getPackageName: - if [ -z "$(platform)" ]; then - echo "[ERROR] Please specify first argument: 'platform'" - exit 1 - fi - echo "eclipse-che-preview-$(platform)" + echo "eclipse-che-preview-openshift" getBundlePath: - if [ -z "$(platform)" ]; then - echo "[ERROR] Please specify first argument: 'platform'" - exit 1 - fi if [ -z "$(channel)" ]; then - echo "[ERROR] Please specify second argument: 'channel'" + echo "[ERROR] 'channel' is not specified" exit 1 fi - PACKAGE_NAME=$$($(MAKE) getPackageName platform="$(platform)" -s) + PACKAGE_NAME=$$($(MAKE) getPackageName) echo "$(PROJECT_DIR)/bundle/$(channel)/$${PACKAGE_NAME}" increment-next-version: - if [ -z "$(platform)" ]; then - echo "[ERROR] please specify first argument 'platform'" - exit 1 - fi - if [ -z "$(channel)" ]; then - echo "[INFO] You must specify 'channel' macros. For example: `make bundle platform=kubernetes channel=next`" + echo "[ERROR] 'channel' is not specified" exit 1 fi - - BUNDLE_PATH=$$($(MAKE) getBundlePath platform="$(platform)" channel="$(channel)" -s) + BUNDLE_PATH=$$($(MAKE) getBundlePath channel="$(channel)" -s) OPM_BUNDLE_MANIFESTS_DIR="$${BUNDLE_PATH}/manifests" CSV="$${OPM_BUNDLE_MANIFESTS_DIR}/che-operator.clusterserviceversion.yaml" currentNextVersion=$$(yq -r ".spec.version" "$${CSV}") - echo "[INFO] Current next $(platform) version: $${currentNextVersion}" + echo "[INFO] Current next version: $${currentNextVersion}" incrementPart=$$($(MAKE) get-next-version-increment nextVersion="$${currentNextVersion}" -s) - PACKAGE_NAME="eclipse-che-preview-$(platform)" + PACKAGE_NAME=$$($(MAKE) getPackageName) - CLUSTER_SERVICE_VERSION=$$($(MAKE) get-current-stable-version platform="$(platform)" -s) + CLUSTER_SERVICE_VERSION=$$($(MAKE) get-current-stable-version) STABLE_PACKAGE_VERSION=$$(echo "$${CLUSTER_SERVICE_VERSION}" | sed -e "s/$${PACKAGE_NAME}.v//") echo "[INFO] Current stable package version: $${STABLE_PACKAGE_VERSION}" @@ -751,17 +661,12 @@ increment-next-version: incrementPart=$$((incrementPart+1)) newVersion="$${STABLE_MAJOR_VERSION}.$${STABLE_MINOR_VERSION}.0-$${incrementPart}.$(channel)" - echo "[INFO] Set up next $(platform) version: $${newVersion}" - yq -rY "(.spec.version) = \"$${newVersion}\" | (.metadata.name) = \"eclipse-che-preview-$(platform).v$${newVersion}\"" "$${CSV}" > "$${CSV}.old" + echo "[INFO] Set up next version: $${newVersion}" + yq -rY "(.spec.version) = \"$${newVersion}\" | (.metadata.name) = \"$${PACKAGE_NAME}.v$${newVersion}\"" "$${CSV}" > "$${CSV}.old" mv "$${CSV}.old" "$${CSV}" get-current-stable-version: - if [ -z "$(platform)" ]; then - echo "[ERROR] Please specify first argument: 'platform'" - exit 1 - fi - - STABLE_BUNDLE_PATH=$$($(MAKE) getBundlePath platform="$(platform)" channel="stable" -s) + STABLE_BUNDLE_PATH=$$($(MAKE) getBundlePath channel="stable" -s) LAST_STABLE_CSV="$${STABLE_BUNDLE_PATH}/manifests/che-operator.clusterserviceversion.yaml" lastStableVersion=$$(yq -r ".spec.version" "$${LAST_STABLE_CSV}") @@ -780,16 +685,9 @@ get-next-version-increment: update-resources: SHELL := /bin/bash update-resources: check-requirements update-resource-images update-roles update-helmcharts - for platform in 'openshift' 'kubernetes' + for channel in 'next-all-namespaces' 'next' do - for channel in 'next-all-namespaces' 'next' - do - # Skip next-all-namespaces in kubernetes platform, is not supported - if [ $${channel} == "next-all-namespaces" ] && [ $${platform} == "kubernetes" ]; then - continue - fi - $(MAKE) bundle platform=$${platform} channel=$${channel} - done + $(MAKE) bundle channel=$${channel} done update-helmcharts: SHELL := /bin/bash @@ -838,7 +736,7 @@ update-helmcharts: add-license-download check-requirements update-resource-image CRDS=$${CRDS}$${example}$$'\n' done - yq -rYi --arg examples "$${CRDS}" ".annotations.\"artifacthub.io/crdsExamples\" = \$$examples" $${chartYaml} + yq -rYi --arg examples "$${CRDS}" ".annotations.\"artifacthub.io/crdsExamples\" = \$$examples" $${chartYaml} rm -rf $${HELMCHARTS_TEMPLATES}/org.eclipse.che_v1_checluster.yaml else # Set references to values @@ -929,16 +827,12 @@ update-resource-images: .PHONY: bundle-build bundle-build: ## Build the bundle image. - if [ -z "$(platform)" ]; then - echo "[INFO] You must specify 'platform' macros. For example: `make bundle platform=kubernetes`" - exit 1 - fi if [ -z "$(channel)" ]; then - echo "[INFO] You must specify 'channel' macros. For example: `make bundle platform=kubernetes channel=next`" + echo "[ERROR] 'channel' is not specified" exit 1 fi - BUNDLE_PACKAGE="eclipse-che-preview-$(platform)" + BUNDLE_PACKAGE=$$($(MAKE) getPackageName) BUNDLE_DIR="bundle/$(channel)/$${BUNDLE_PACKAGE}" cd $${BUNDLE_DIR} docker build -f bundle.Dockerfile -t $(BUNDLE_IMG) . diff --git a/RELEASE.md b/RELEASE.md index bc98260ce..dda2e8acb 100644 --- a/RELEASE.md +++ b/RELEASE.md @@ -45,31 +45,11 @@ echo http://$(oc get route -n eclipse-che-preview-test | grep ^che | awk -F ' ' Login using HTPassword then allow selected permissions. Validate that the release version is installed and workspace can be created: -## 3. Testing release on minikube - -This part now runs automatically as part of the PR check for release PRs. See `minikube-stable-operator-update.yml` action. -Alternatively, use these manual steps to verify operator update on Minikube. - -Run script to test updates: - -```bash -cd olm -./testUpdate.sh -p kubernetes -c stable -i quay.io/eclipse/eclipse-che-kubernetes-opm-catalog:test -n eclipse-che -``` - -Open Eclipse Che dashboard: - -```bash -xdg-open http://$(kubectl get ingress -n eclipse-che-preview-test | grep ^che | awk -F ' ' '{ print $2 }') -``` - -Validate that the release version is installed and workspace can be created: - -## 4. Merge pull requests +## 3. Merge pull requests Merge pull request into .x and main branches. -## 5. Testing release on minishift (when chectl is released) +## 4. Testing release on minishift (when chectl is released) Login to local minishift cluster: @@ -91,7 +71,7 @@ chectl server:update --platform=minishift --installer=operator xdg-open http://$(kubectl get ingress -n che | grep ^che | awk -F ' ' '{ print $2 }') ``` -## 6. Prepare community operator PR +## 5. Prepare community operator PR See `release-community-operator-PRs.yml` workflow, which will be triggered automatically, once release PRs are merged. Alternatively, it can be run manually: diff --git a/bundle/next-all-namespaces/eclipse-che-preview-openshift/manifests/che-operator.clusterserviceversion.yaml b/bundle/next-all-namespaces/eclipse-che-preview-openshift/manifests/che-operator.clusterserviceversion.yaml index ccc2aeae0..c779a0267 100644 --- a/bundle/next-all-namespaces/eclipse-che-preview-openshift/manifests/che-operator.clusterserviceversion.yaml +++ b/bundle/next-all-namespaces/eclipse-che-preview-openshift/manifests/che-operator.clusterserviceversion.yaml @@ -126,7 +126,7 @@ metadata: operators.operatorframework.io/project_layout: go.kubebuilder.io/v3 repository: https://github.com/eclipse-che/che-operator support: Eclipse Foundation - name: eclipse-che-preview-openshift.v7.40.0-383.next-all-namespaces + name: eclipse-che-preview-openshift.v7.41.0-385.next-all-namespaces namespace: placeholder spec: apiservicedefinitions: {} @@ -1002,6 +1002,14 @@ spec: - create - get - update + - apiGroups: + - metrics.k8s.io + resources: + - pods + verbs: + - get + - list + - watch - apiGroups: - monitoring.coreos.com resources: @@ -1458,4 +1466,4 @@ spec: maturity: stable provider: name: Eclipse Foundation - version: 7.40.0-383.next-all-namespaces + version: 7.41.0-385.next-all-namespaces diff --git a/bundle/next/eclipse-che-preview-kubernetes/bundle.Dockerfile b/bundle/next/eclipse-che-preview-kubernetes/bundle.Dockerfile deleted file mode 100644 index fb772f6e5..000000000 --- a/bundle/next/eclipse-che-preview-kubernetes/bundle.Dockerfile +++ /dev/null @@ -1,21 +0,0 @@ -FROM scratch - -# Core bundle labels. -LABEL operators.operatorframework.io.bundle.mediatype.v1=registry+v1 -LABEL operators.operatorframework.io.bundle.manifests.v1=manifests/ -LABEL operators.operatorframework.io.bundle.metadata.v1=metadata/ -LABEL operators.operatorframework.io.bundle.package.v1=eclipse-che-preview-kubernetes -LABEL operators.operatorframework.io.bundle.channels.v1=next -LABEL operators.operatorframework.io.bundle.channel.default.v1=next -LABEL operators.operatorframework.io.metrics.builder=operator-sdk-v1.7.1+git -LABEL operators.operatorframework.io.metrics.mediatype.v1=metrics+v1 -LABEL operators.operatorframework.io.metrics.project_layout=go.kubebuilder.io/v3 - -# Labels for testing. -LABEL operators.operatorframework.io.test.mediatype.v1=scorecard+v1 -LABEL operators.operatorframework.io.test.config.v1=tests/scorecard/ - -# Copy files to locations specified by labels. -COPY manifests /manifests/ -COPY metadata /metadata/ -COPY tests/scorecard /tests/scorecard/ diff --git a/bundle/next/eclipse-che-preview-kubernetes/manifests/che-operator.clusterserviceversion.yaml b/bundle/next/eclipse-che-preview-kubernetes/manifests/che-operator.clusterserviceversion.yaml deleted file mode 100644 index 6974ea039..000000000 --- a/bundle/next/eclipse-che-preview-kubernetes/manifests/che-operator.clusterserviceversion.yaml +++ /dev/null @@ -1,1428 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -apiVersion: operators.coreos.com/v1alpha1 -kind: ClusterServiceVersion -metadata: - annotations: - alm-examples: |- - [ - { - "apiVersion": "org.eclipse.che/v1", - "kind": "CheBackupServerConfiguration", - "metadata": { - "name": "eclipse-che-backup-server-configuration" - }, - "spec": { - "awss3": { - "awsAccessKeySecretRef": "minio-credentials-secret", - "hostname": "minio.mydomain.net", - "port": 9000, - "protocol": "http", - "repositoryPasswordSecretRef": "secret-name", - "repositoryPath": "che-backups-bucket" - } - } - }, - { - "apiVersion": "org.eclipse.che/v1", - "kind": "CheCluster", - "metadata": { - "name": "eclipse-che" - }, - "spec": { - "auth": { - "externalIdentityProvider": false, - "identityProviderAdminUserName": "", - "identityProviderClientId": "", - "identityProviderPassword": "", - "identityProviderRealm": "", - "identityProviderURL": "", - "initialOpenShiftOAuthUser": true, - "oAuthClientName": "", - "oAuthSecret": "" - }, - "database": { - "chePostgresDb": "", - "chePostgresHostName": "", - "chePostgresPassword": "", - "chePostgresPort": "", - "chePostgresUser": "", - "externalDb": false - }, - "devWorkspace": { - "enable": false - }, - "k8s": { - "ingressClass": "", - "ingressDomain": "", - "ingressStrategy": "", - "securityContextFsGroup": "", - "securityContextRunAsUser": "", - "singleHostExposureType": "", - "tlsSecretName": "che-tls" - }, - "metrics": { - "enable": true - }, - "server": { - "allowUserDefinedWorkspaceNamespaces": false, - "cheClusterRoles": "", - "cheFlavor": "", - "cheWorkspaceClusterRole": "", - "gitSelfSignedCert": false, - "nonProxyHosts": "", - "proxyPassword": "", - "proxyPort": "", - "proxyURL": "", - "proxyUser": "", - "serverExposureStrategy": "", - "serverTrustStoreConfigMapName": "", - "tlsSupport": true, - "workspaceNamespaceDefault": "-che" - }, - "storage": { - "postgresPVCStorageClassName": "", - "preCreateSubPaths": true, - "pvcClaimSize": "10Gi", - "pvcStrategy": "common", - "workspacePVCStorageClassName": "" - } - } - }, - { - "apiVersion": "org.eclipse.che/v1", - "kind": "CheClusterBackup", - "metadata": { - "name": "eclipse-che-backup" - }, - "spec": { - "backupServerConfigRef": "eclipse-che-backup-server-configuration", - "useInternalBackupServer": false - } - }, - { - "apiVersion": "org.eclipse.che/v1", - "kind": "CheClusterRestore", - "metadata": { - "name": "eclipse-che-restore" - }, - "spec": { - "backupServerConfigRef": "eclipse-che-backup-server-configuration" - } - } - ] - capabilities: Seamless Upgrades - categories: Developer Tools - certified: "false" - containerImage: quay.io/eclipse/che-operator:next - createdAt: "2021-05-11T18:38:31Z" - description: A Kube-native development solution that delivers portable and collaborative - developer workspaces. - operatorframework.io/suggested-namespace: eclipse-che - operators.operatorframework.io/builder: operator-sdk-v1.6.1+git - operators.operatorframework.io/project_layout: go.kubebuilder.io/v3 - repository: https://github.com/eclipse-che/che-operator - support: Eclipse Foundation - name: eclipse-che-preview-kubernetes.v7.40.0-383.next - namespace: placeholder -spec: - apiservicedefinitions: {} - customresourcedefinitions: - owned: - - description: The `CheCluster` custom resource allows defining and managing - a Che server installation - displayName: Eclipse Che instance Specification - kind: CheCluster - name: checlusters.org.eclipse.che - resources: - - kind: ClusterRole - name: '' - version: v1 - - kind: ClusterRoleBinding - name: '' - version: v1 - - kind: ConfigMap - name: '' - version: v1 - - kind: Deployment - name: '' - version: apps/v1 - - kind: Ingress - name: '' - version: v1 - - kind: Role - name: '' - version: v1 - - kind: RoleBinding - name: '' - version: v1 - - kind: Route - name: '' - version: v1 - - kind: Secret - name: '' - version: v1 - - kind: Service - name: '' - version: v1 - specDescriptors: - - description: Configuration settings related to the Authentication used - by the Che installation. - displayName: Authentication - path: auth - - description: Deprecated. The value of this flag is ignored. Sidecar functionality - is now implemented in Traefik plugin. - displayName: Gateway Header Rewrite Sidecar Image - path: auth.gatewayHeaderRewriteSidecarImage - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:hidden - - description: Configuration settings related to the database used by the - Che installation. - displayName: Database - path: database - - description: DevWorkspace operator configuration - displayName: Dev Workspace operator - path: devWorkspace - - description: Deploys the DevWorkspace Operator in the cluster. Does nothing - when a matching version of the Operator is already installed. Fails - when a non-matching version of the Operator is already installed. - displayName: Enable DevWorkspace operator (Technology Preview) - path: devWorkspace.enable - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:booleanSwitch - - description: Kubernetes Image Puller configuration - displayName: Kubernetes Image Puller - path: imagePuller - - description: Configuration settings specific to Che installations made - on upstream Kubernetes. - displayName: Kubernetes - path: k8s - - description: Configuration settings related to the metrics collection - used by the Che installation. - displayName: Metrics - path: metrics - - description: General configuration settings related to the Che server, - the plugin and devfile registries - displayName: Che server - path: server - - description: Deprecated. The value of this flag is ignored. Defines that - a user is allowed to specify a Kubernetes namespace, or an OpenShift - project, which differs from the default. It's NOT RECOMMENDED to set - to `true` without OpenShift OAuth configured. The OpenShift infrastructure - also uses this property. - displayName: Allow User Defined Workspace Namespaces - path: server.allowUserDefinedWorkspaceNamespaces - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:hidden - - description: Deprecated in favor of `externalDevfileRegistries` fields. - displayName: Devfile Registry Url - path: server.devfileRegistryUrl - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:hidden - - description: Deprecated. The value of this flag is ignored. The Che Operator - will automatically detect whether the router certificate is self-signed - and propagate it to other components, such as the Che server. - displayName: Self Signed Cert - path: server.selfSignedCert - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:hidden - - description: Deprecated. Instructs the Operator to deploy Che in TLS mode. - This is enabled by default. Disabling TLS sometimes cause malfunction - of some Che components. - displayName: Tls Support - path: server.tlsSupport - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:hidden - - description: Deprecated in favor of `disableInternalClusterSVCNames`. - displayName: Use Internal Cluster SVCNames - path: server.useInternalClusterSVCNames - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:hidden - - description: Configuration settings related to the persistent storage - used by the Che installation. - displayName: Persistent storage - path: storage - statusDescriptors: - - description: Status of a Che installation. Can be `Available`, `Unavailable`, - or `Available, Rolling Update in Progress`. - displayName: Status - path: cheClusterRunning - x-descriptors: - - urn:alm:descriptor:io.kubernetes.phase - - description: Public URL to the Che server. - displayName: Eclipse Che URL - path: cheURL - x-descriptors: - - urn:alm:descriptor:org.w3:link - - description: Current installed Che version. - displayName: 'displayName: Eclipse Che version' - path: cheVersion - x-descriptors: - - urn:alm:descriptor:org.w3:link - - description: Public URL to the devfile registry. - displayName: Devfile registry URL - path: devfileRegistryURL - x-descriptors: - - urn:alm:descriptor:org.w3:link - - description: A URL that points to some URL where to find help related - to the current Operator status. - displayName: Help link - path: helpLink - x-descriptors: - - urn:alm:descriptor:org.w3:link - - description: Public URL to the Identity Provider server, Keycloak or RH-SSO,. - displayName: Keycloak Admin Console URL - path: keycloakURL - x-descriptors: - - urn:alm:descriptor:org.w3:link - - description: A human readable message indicating details about why the - Pod is in this condition. - displayName: Message - path: message - x-descriptors: - - urn:alm:descriptor:text - - description: OpenShift OAuth secret in `openshift-config` namespace that - contains user credentials for HTPasswd identity provider. - displayName: OpenShift OAuth secret in `openshift-config` namespace that - contains user credentials for HTPasswd identity provider. - path: openShiftOAuthUserCredentialsSecret - x-descriptors: - - urn:alm:descriptor:text - - description: Public URL to the plugin registry. - displayName: Plugin registry URL - path: pluginRegistryURL - x-descriptors: - - urn:alm:descriptor:org.w3:link - - description: A brief CamelCase message indicating details about why the - Pod is in this state. - displayName: Reason - path: reason - x-descriptors: - - urn:alm:descriptor:text - version: v1 - - description: The `CheBackupServerConfiguration` custom resource allows defining - and managing Eclipse Che Backup Server Configurations - displayName: Eclipse Che Backup Server - kind: CheBackupServerConfiguration - name: chebackupserverconfigurations.org.eclipse.che - specDescriptors: - - description: Amazon S3 or compatible alternatives. - displayName: AwsS3 server - path: awss3 - - description: Rest backup server configuration. - displayName: Rest server - path: rest - - description: Sftp backup server configuration. - displayName: Sftp server - path: sftp - version: v1 - - description: The `CheClusterBackup` custom resource allows defining and managing - Eclipse Che backup - displayName: Eclipse Che instance Backup Specification - kind: CheClusterBackup - name: checlusterbackups.org.eclipse.che - resources: - - kind: Deployment - name: backup-rest-server-deployment - version: apps/v1 - - kind: Service - name: backup-rest-server-service - version: v1 - specDescriptors: - - description: Name of custom resource with a backup server configuration - to use for this backup. Note, UseInternalBackupServer field can configure - internal backup server automatically. - displayName: Backup server configuration - path: backupServerConfigRef - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:text - - description: Automatically setup pod with REST backup server and use the - server in this configuration. Note, this flag takes precedence and will - overwrite existing backup server configuration. - displayName: Use internal backup server - path: useInternalBackupServer - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:booleanSwitch - statusDescriptors: - - description: Message explaining the state of the backup or an error message - displayName: Message - path: message - - description: Last backup snapshot ID - displayName: Snapshot Id - path: snapshotId - - description: Describes backup progress - displayName: Phase - path: stage - - description: 'Backup progress state: InProgress, Failed, Succeeded' - displayName: State - path: state - version: v1 - - description: The `CheClusterRestore` custom resource allows defining and managing - Eclipse Che restore - displayName: Eclipse Che instance Restore Specification - kind: CheClusterRestore - name: checlusterrestores.org.eclipse.che - specDescriptors: - - description: Name of custom resource with a backup server configuration - to use for this restore. Can be omitted if only one server configuration - object exists within the namespace. - displayName: Backup Server Config Ref - path: backupServerConfigRef - - description: If omitted, latest snapshot will be used. - displayName: Snapshot Id - path: snapshotId - statusDescriptors: - - description: Restore result or error message - displayName: Message - path: message - - description: Describes phase of restore progress - displayName: Phase - path: stage - - description: 'Restore progress state: InProgress, Failed, Succeeded' - displayName: State - path: state - version: v1 - description: | - A collaborative Kubernetes-native development solution that delivers Kubernetes workspaces and in-browser IDE for rapid cloud application development. - This operator installs PostgreSQL, Keycloak, Plugin registry, Devfile registry and the Eclipse Che server, as well as configures all these services. - - ## Prerequisites - - Operator Lifecycle Manager (OLM) greater than or equal to v0.17.0 needs to be installed. - - ## How to Install - Install `Eclipse Che Operator` by following instructions in top right button `Install`. - - A new pod che-operator is created in `my-eclipse-che` namespace - - ``` - $ kubectl get pods --all-namespaces | grep my-eclipse-che - my-eclipse-che che-operator-554c564476-fl98z 1/1 Running 0 13s - ``` - - The operator is now providing new Custom Resources Definitions: `checluster.org.eclipse.che` - - Create a new Eclipse Che instance by creating a new CheCluster resource: - - On the bottom of this page, there is a section `Custom Resource Definitions` with `Eclipse Che Cluster` name. - - Click on `View YAML Example` *Link* and copy the content to a new file named `my-eclipse-che.yaml` - **Important!** Make sure you provide **K8s.ingressDomain** which is a global ingress domain of your k8s cluster, for example, `gcp.my-ide.cloud` - Create the new CheCluster by creating the resource in the `my-eclipse-che` namespace : - ``` - $ kubectl create -f my-eclipse-che.yaml -n my-eclipse-che - ``` - ***important:*** The operator is only tracking resources in its own namespace. If CheCluster is not created in this namespace it's ignored. - The operator will now create pods for Eclipse Che. The deployment status can be tracked by looking at the Operator logs by using the command: - ``` - $ kubectl logs -n my-eclipse-che che-operator-554c564476-fl98z - ``` - ***important:*** pod name is different on each installation - - When all Eclipse Che containers are running, the Eclipse Che URL is printed in the logs. - - Eclipse Che URL can be tracked by searching for available trace: - ``` - $ kubectl logs -f -n my-eclipse-che che-operator-7b6b4bcb9c-m4m2m | grep "Eclipse Che is now available" - time="2019-08-01T13:31:05Z" level=info msg="Eclipse Che is now available at: http://che-my-eclipse-che.gcp.my-ide.cloud" - ``` - When Eclipse Che is ready, the Eclipse Che URL is displayed in CheCluster resource in `status` section - ``` - $ kubectl describe checluster/eclipse-che -n my-eclipse-che - ``` - - ``` - Status: - Che Cluster Running: Available - Che URL: http://che-my-eclipse-che.gcp.my-ide.cloud - Che Version: 7.26.0 - ... - ``` - - By opening this URL in a web browser, Eclipse Che is ready to use. - - ## Defaults - By default, the operator deploys Eclipse Che with: - * Bundled PostgreSQL and Keycloak - * Common PVC strategy - * Auto-generated passwords - * TLS mode (secure ingresses) - * Communicate between components using internal cluster SVC names - - ## Installation Options - Eclipse Che operator installation options include: - * Connection to external database and Keycloak - * Configuration of default passwords and object names - * PVC strategy (once shared PVC for all workspaces, PVC per workspace, or PVC per volume) - * Authentication options - - Use `kubectl edit checluster/eclipse-che -n my-eclipse-che` to update Eclipse Che configuration. - See more configuration options in the [Installation guide](https://www.eclipse.org/che/docs/che-7/installation-guide/configuring-the-che-installation/). - - ### External Database and Keycloak - Follow the guides to configure external [Keycloak](https://www.eclipse.org/che/docs/che-7/administration-guide/configuring-authorization/#configuring-che-to-use-external-keycloak_che) - and [Database](https://www.eclipse.org/che/docs/che-7/administration-guide/external-database-setup/) setup. - - ### Certificates and TLS Secrets - Eclipse Che uses auto-generated self-signed certificates by default and TLS mode is on. - To use a default certificate of a Kubernetes cluster set empty value in `spec.k8s.tlsSecretName` field: - ``` - kubectl patch checluster/eclipse-che --type=json -p '[{"op": "replace", "path": "/spec/k8s/tlsSecretName", "value": ""}]' -n my-eclipse-che - ``` - displayName: Eclipse Che - icon: - - base64data: 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 - mediatype: image/png - install: - spec: - clusterPermissions: - - rules: - - apiGroups: - - "" - resources: - - nodes - verbs: - - get - - apiGroups: - - oauth.openshift.io - resources: - - oauthclients - verbs: - - create - - delete - - deletecollection - - get - - list - - patch - - update - - watch - - apiGroups: - - rbac.authorization.k8s.io - resources: - - clusterrolebindings - - clusterroles - verbs: - - list - - create - - watch - - update - - get - - delete - - apiGroups: - - rbac.authorization.k8s.io - resources: - - roles - - rolebindings - verbs: - - get - - create - - update - - delete - - apiGroups: - - org.eclipse.che - resources: - - checlusters - - checlusters/status - - checlusters/finalizers - - checlusters/status - - checlusterbackups - - checlusterbackups/status - - checlusterbackups/finalizers - - checlusterrestores - - checlusterrestores/status - - backupserverconfigurations - - backupserverconfigurations/status - - chebackupserverconfigurations - verbs: - - '*' - - apiGroups: - - "" - resources: - - namespaces - verbs: - - get - - list - - create - - update - - watch - - apiGroups: - - "" - resources: - - pods/exec - verbs: - - create - - apiGroups: - - apps - resources: - - secrets - verbs: - - list - - apiGroups: - - "" - resources: - - secrets - verbs: - - list - - get - - create - - update - - patch - - delete - - apiGroups: - - "" - resources: - - persistentvolumeclaims - verbs: - - create - - get - - list - - watch - - delete - - apiGroups: - - "" - resources: - - pods - verbs: - - get - - list - - create - - watch - - delete - - apiGroups: - - apps - - extensions - resources: - - deployments - - replicasets - verbs: - - '*' - - apiGroups: - - route.openshift.io - resources: - - routes - verbs: - - '*' - - apiGroups: - - route.openshift.io - resources: - - routes/custom-host - verbs: - - create - - apiGroups: - - "" - resources: - - events - verbs: - - watch - - apiGroups: - - apps - resources: - - replicasets - verbs: - - list - - get - - patch - - delete - - apiGroups: - - extensions - resources: - - ingresses - verbs: - - '*' - - apiGroups: - - networking.k8s.io - resources: - - ingresses - verbs: - - list - - create - - watch - - get - - delete - - apiGroups: - - apiextensions.k8s.io - resources: - - customresourcedefinitions - verbs: - - get - - create - - update - - apiGroups: - - operators.coreos.com - resources: - - subscriptions - verbs: - - get - - apiGroups: - - operators.coreos.com - resources: - - clusterserviceversions - verbs: - - list - - get - - watch - - apiGroups: - - metrics.k8s.io - resources: - - pods - - nodes - verbs: - - get - - list - - watch - - apiGroups: - - cert-manager.io - resources: - - issuers - - certificates - verbs: - - create - - get - - list - - update - - apiGroups: - - "" - resources: - - configmaps - - persistentvolumeclaims - - pods - - secrets - - serviceaccounts - - services - verbs: - - '*' - - apiGroups: - - apps - resourceNames: - - che-operator - resources: - - deployments/finalizers - verbs: - - update - - apiGroups: - - batch - resources: - - jobs - verbs: - - create - - delete - - get - - update - - watch - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings - verbs: - - '*' - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings/finalizers - verbs: - - update - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings/status - verbs: - - get - - patch - - update - - apiGroups: - - monitoring.coreos.com - resources: - - servicemonitors - verbs: - - create - - get - - nonResourceURLs: - - /metrics - verbs: - - get - - apiGroups: - - che.eclipse.org - resources: - - kubernetesimagepullers - verbs: - - '*' - - apiGroups: - - "" - resources: - - pods/log - verbs: - - get - - list - - watch - - apiGroups: - - workspace.devfile.io - resources: - - devworkspaces - - devworkspacetemplates - verbs: - - get - - list - - watch - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings - - components - verbs: - - get - - list - - watch - - apiGroups: - - workspace.devfile.io - resources: - - devworkspaces - - devworkspacetemplates - verbs: - - create - - delete - - deletecollection - - patch - - update - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings - - components - verbs: - - create - - delete - - deletecollection - - patch - - update - - apiGroups: - - "" - resources: - - configmaps - verbs: - - get - - list - - watch - - create - - update - - patch - - delete - - apiGroups: - - "" - resources: - - configmaps/status - verbs: - - get - - update - - patch - - apiGroups: - - "" - resources: - - events - verbs: - - create - - patch - - apiGroups: - - authentication.k8s.io - resources: - - tokenreviews - verbs: - - create - - apiGroups: - - authorization.k8s.io - resources: - - subjectaccessreviews - verbs: - - create - - apiGroups: - - "" - resourceNames: - - workspace-preferences-configmap - resources: - - configmaps - verbs: - - create - - delete - - get - - patch - - apiGroups: - - "" - resources: - - configmaps - - persistentvolumeclaims - - pods - - secrets - - serviceaccounts - verbs: - - '*' - - apiGroups: - - "" - resources: - - events - - namespaces - verbs: - - get - - list - - watch - - apiGroups: - - "" - resources: - - pods/exec - verbs: - - create - - apiGroups: - - "" - resourceNames: - - workspace-credentials-secret - resources: - - secrets - verbs: - - create - - delete - - get - - patch - - apiGroups: - - "" - resources: - - services - verbs: - - '*' - - apiGroups: - - admissionregistration.k8s.io - resources: - - mutatingwebhookconfigurations - - validatingwebhookconfigurations - verbs: - - create - - delete - - get - - list - - patch - - update - - watch - - apiGroups: - - apps - resourceNames: - - devworkspace-controller - resources: - - deployments/finalizers - verbs: - - update - - apiGroups: - - apps - - extensions - resources: - - deployments - verbs: - - get - - list - - watch - - apiGroups: - - apps - - extensions - resources: - - deployments - - replicasets - verbs: - - '*' - - apiGroups: - - apps - - extensions - resources: - - replicasets - verbs: - - get - - list - - watch - - apiGroups: - - authorization.k8s.io - resources: - - localsubjectaccessreviews - - subjectaccessreviews - verbs: - - create - - apiGroups: - - batch - resources: - - jobs - verbs: - - create - - delete - - get - - list - - patch - - update - - watch - - apiGroups: - - controller.devfile.io - resources: - - '*' - verbs: - - '*' - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings - verbs: - - '*' - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings/status - verbs: - - get - - patch - - update - - apiGroups: - - coordination.k8s.io - resources: - - leases - verbs: - - create - - get - - update - - apiGroups: - - monitoring.coreos.com - resources: - - servicemonitors - verbs: - - create - - get - - apiGroups: - - networking.k8s.io - resources: - - ingresses - verbs: - - '*' - - apiGroups: - - oauth.openshift.io - resources: - - oauthclients - verbs: - - create - - delete - - deletecollection - - get - - list - - patch - - update - - watch - - apiGroups: - - rbac.authorization.k8s.io - resources: - - clusterrolebindings - - clusterroles - - rolebindings - - roles - verbs: - - create - - get - - list - - update - - watch - - apiGroups: - - route.openshift.io - resources: - - routes - verbs: - - '*' - - apiGroups: - - route.openshift.io - resources: - - routes/custom-host - verbs: - - create - - apiGroups: - - workspace.devfile.io - resources: - - '*' - verbs: - - '*' - - apiGroups: - - workspace.devfile.io - resources: - - devworkspaces - - devworkspacetemplates - verbs: - - get - - list - - watch - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings - - components - verbs: - - get - - list - - watch - serviceAccountName: che-operator - deployments: - - name: che-operator - spec: - replicas: 1 - selector: - matchLabels: - app: che-operator - strategy: - type: RollingUpdate - template: - metadata: - labels: - app: che-operator - app.kubernetes.io/component: che-operator - app.kubernetes.io/instance: che - app.kubernetes.io/managed-by: olm - app.kubernetes.io/name: che - app.kubernetes.io/part-of: che.eclipse.org - spec: - containers: - - args: - - --leader-elect - command: - - /manager - env: - - name: WATCH_NAMESPACE - valueFrom: - fieldRef: - fieldPath: metadata.annotations['olm.targetNamespaces'] - - name: POD_NAME - valueFrom: - fieldRef: - fieldPath: metadata.name - - name: OPERATOR_NAME - value: che-operator - - name: CHE_VERSION - value: next - - name: RELATED_IMAGE_che_server - value: quay.io/eclipse/che-server:next - - name: RELATED_IMAGE_dashboard - value: quay.io/eclipse/che-dashboard:next - - name: RELATED_IMAGE_plugin_registry - value: quay.io/eclipse/che-plugin-registry:next - - name: RELATED_IMAGE_devfile_registry - value: quay.io/eclipse/che-devfile-registry:next - - name: RELATED_IMAGE_che_tls_secrets_creation_job - value: quay.io/eclipse/che-tls-secret-creator:alpine-01a4c34 - - name: RELATED_IMAGE_pvc_jobs - value: registry.access.redhat.com/ubi8-minimal:8.5-204 - - name: RELATED_IMAGE_postgres - value: quay.io/eclipse/che--centos--postgresql-96-centos7:9.6-b681d78125361519180a6ac05242c296f8906c11eab7e207b5ca9a89b6344392 - - name: RELATED_IMAGE_postgres_13_3 - value: quay.io/eclipse/che--centos--postgresql-13-centos7:1-71b24684d64da46f960682cc4216222a7e4ed8b1a31dd5a865b3e71afdea20d2 - - name: RELATED_IMAGE_keycloak - value: quay.io/eclipse/che-keycloak:next - - name: RELATED_IMAGE_che_workspace_plugin_broker_metadata - value: quay.io/eclipse/che-plugin-metadata-broker:v3.4.0 - - name: RELATED_IMAGE_che_workspace_plugin_broker_artifacts - value: quay.io/eclipse/che-plugin-artifacts-broker:v3.4.0 - - name: RELATED_IMAGE_che_server_secure_exposer_jwt_proxy_image - value: quay.io/eclipse/che-jwtproxy:0.10.0 - - name: RELATED_IMAGE_single_host_gateway - value: quay.io/eclipse/che--traefik:v2.5.0-eb30f9f09a65cee1fab5ef9c64cb4ec91b800dc3fdd738d62a9d4334f0114683 - - name: RELATED_IMAGE_single_host_gateway_config_sidecar - value: quay.io/che-incubator/configbump:0.1.4 - - name: RELATED_IMAGE_devworkspace_controller - value: quay.io/devfile/devworkspace-controller:v0.9.0 - - name: RELATED_IMAGE_internal_rest_backup_server - value: quay.io/eclipse/che-backup-server-rest:b6cc165 - - name: RELATED_IMAGE_gateway_authentication_sidecar - value: quay.io/openshift/origin-oauth-proxy:4.7 - - name: RELATED_IMAGE_gateway_authorization_sidecar - value: quay.io/openshift/origin-kube-rbac-proxy:4.7 - - name: RELATED_IMAGE_gateway_authentication_sidecar_k8s - value: quay.io/oauth2-proxy/oauth2-proxy:v7.2.0 - - name: RELATED_IMAGE_gateway_authorization_sidecar_k8s - value: quay.io/brancz/kube-rbac-proxy:v0.11.0 - - name: RELATED_IMAGE_gateway_header_sidecar - value: quay.io/che-incubator/header-rewrite-proxy:latest - - name: CHE_FLAVOR - value: che - - name: CONSOLE_LINK_NAME - value: che - - name: CONSOLE_LINK_DISPLAY_NAME - value: Eclipse Che - - name: CONSOLE_LINK_SECTION - value: Red Hat Applications - - name: CONSOLE_LINK_IMAGE - value: /dashboard/assets/branding/loader.svg - - name: CHE_IDENTITY_SECRET - value: che-identity-secret - - name: CHE_IDENTITY_POSTGRES_SECRET - value: che-identity-postgres-secret - - name: CHE_POSTGRES_SECRET - value: che-postgres-secret - - name: CHE_SERVER_TRUST_STORE_CONFIGMAP_NAME - value: ca-certs - - name: MAX_CONCURRENT_RECONCILES - value: "1" - - name: ALLOW_DEVWORKSPACE_ENGINE - value: "true" - - name: ADD_COMPONENT_READINESS_INIT_CONTAINERS - value: "false" - image: quay.io/eclipse/che-operator:next - imagePullPolicy: Always - livenessProbe: - failureThreshold: 10 - httpGet: - path: /healthz - port: 6789 - initialDelaySeconds: 15 - periodSeconds: 10 - successThreshold: 1 - timeoutSeconds: 5 - name: che-operator - ports: - - containerPort: 60000 - name: metrics - readinessProbe: - failureThreshold: 10 - httpGet: - path: /readyz - port: 6789 - initialDelaySeconds: 5 - periodSeconds: 10 - successThreshold: 1 - timeoutSeconds: 5 - resources: - limits: - cpu: 500m - memory: 5Gi - requests: - cpu: 100m - memory: 64Mi - securityContext: - capabilities: - drop: - - ALL - privileged: false - readOnlyRootFilesystem: false - hostIPC: false - hostNetwork: false - hostPID: false - restartPolicy: Always - serviceAccountName: che-operator - terminationGracePeriodSeconds: 20 - permissions: - - rules: - - apiGroups: - - extensions - resources: - - ingresses - verbs: - - '*' - - apiGroups: - - networking.k8s.io - resources: - - ingresses - verbs: - - '*' - - apiGroups: - - batch - resources: - - jobs - verbs: - - '*' - - apiGroups: - - rbac.authorization.k8s.io - resources: - - roles - - rolebindings - verbs: - - '*' - - apiGroups: - - rbac.authorization.k8s.io - resources: - - clusterroles - - clusterrolebindings - verbs: - - '*' - - apiGroups: - - "" - resources: - - pods - - services - - serviceaccounts - - endpoints - - persistentvolumeclaims - - events - - configmaps - - secrets - - pods/exec - - pods/log - verbs: - - '*' - - apiGroups: - - "" - resources: - - namespaces - verbs: - - get - - apiGroups: - - apps - - extensions - resources: - - deployments - - replicasets - verbs: - - '*' - - apiGroups: - - monitoring.coreos.com - resources: - - servicemonitors - verbs: - - get - - create - - apiGroups: - - org.eclipse.che - resources: - - checlusters - - checlusters/status - - checlusters/finalizers - - checlusterbackups - - checlusterbackups/status - - checlusterbackups/finalizers - - checlusterrestores - - checlusterrestores/status - - backupserverconfigurations - - backupserverconfigurations/status - - chebackupserverconfigurations - verbs: - - '*' - - apiGroups: - - metrics.k8s.io - resources: - - pods - - nodes - verbs: - - get - - list - - watch - - apiGroups: - - operators.coreos.com - resources: - - subscriptions - - clusterserviceversions - - operatorgroups - verbs: - - '*' - - apiGroups: - - packages.operators.coreos.com - resources: - - packagemanifests - verbs: - - get - - list - - apiGroups: - - "" - resources: - - configmaps/status - verbs: - - get - - update - - patch - - apiGroups: - - "" - resources: - - events - verbs: - - create - - apiGroups: - - apps - resourceNames: - - che-operator - resources: - - deployments/finalizers - verbs: - - update - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings - verbs: - - '*' - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings/finalizers - verbs: - - update - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings/status - verbs: - - get - - patch - - update - - apiGroups: - - "" - resources: - - configmaps - verbs: - - get - - list - - watch - - create - - update - - patch - - delete - - apiGroups: - - coordination.k8s.io - resources: - - leases - verbs: - - get - - list - - watch - - create - - update - - patch - - delete - - apiGroups: - - "" - resources: - - events - verbs: - - create - - patch - serviceAccountName: che-operator - strategy: deployment - installModes: - - supported: true - type: OwnNamespace - - supported: true - type: SingleNamespace - - supported: true - type: MultiNamespace - - supported: false - type: AllNamespaces - keywords: - - eclipse che - - workspaces - - devtools - - developer - - ide - - java - links: - - name: Product Page - url: http://www.eclipse.org/che - - name: Documentation - url: https://www.eclipse.org/che/docs - - name: Operator GitHub Repo - url: https://github.com/eclipse-che/che-operator - maintainers: - - email: dfestal@redhat.com - name: David Festal - maturity: stable - provider: - name: Eclipse Foundation - version: 7.40.0-383.next diff --git a/bundle/next/eclipse-che-preview-kubernetes/manifests/che-operator_v1_serviceaccount.yaml b/bundle/next/eclipse-che-preview-kubernetes/manifests/che-operator_v1_serviceaccount.yaml deleted file mode 100644 index 010a50d51..000000000 --- a/bundle/next/eclipse-che-preview-kubernetes/manifests/che-operator_v1_serviceaccount.yaml +++ /dev/null @@ -1,22 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -apiVersion: v1 -kind: ServiceAccount -metadata: - creationTimestamp: null - labels: - app.kubernetes.io/component: che-operator - app.kubernetes.io/instance: che - app.kubernetes.io/name: che - app.kubernetes.io/part-of: che.eclipse.org - name: che-operator diff --git a/bundle/next/eclipse-che-preview-kubernetes/manifests/manager-config_v1_configmap.yaml b/bundle/next/eclipse-che-preview-kubernetes/manifests/manager-config_v1_configmap.yaml deleted file mode 100644 index 83e8dc5c7..000000000 --- a/bundle/next/eclipse-che-preview-kubernetes/manifests/manager-config_v1_configmap.yaml +++ /dev/null @@ -1,29 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -apiVersion: v1 -data: - controller_manager_config.yaml: | - apiVersion: controller-runtime.sigs.k8s.io/v1alpha1 - kind: ControllerManagerConfig - health: - healthProbeBindAddress: :6789 - metrics: - bindAddress: 127.0.0.1:60000 - webhook: - port: 9443 - leaderElection: - leaderElect: true - resourceName: e79b08a4.org.eclipse.che -kind: ConfigMap -metadata: - name: manager-config diff --git a/bundle/next/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_chebackupserverconfigurations.yaml b/bundle/next/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_chebackupserverconfigurations.yaml deleted file mode 100644 index fa01c35a7..000000000 --- a/bundle/next/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_chebackupserverconfigurations.yaml +++ /dev/null @@ -1,138 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -apiVersion: apiextensions.k8s.io/v1 -kind: CustomResourceDefinition -metadata: - annotations: - controller-gen.kubebuilder.io/version: v0.4.1 - creationTimestamp: null - name: chebackupserverconfigurations.org.eclipse.che -spec: - group: org.eclipse.che - names: - kind: CheBackupServerConfiguration - listKind: CheBackupServerConfigurationList - plural: chebackupserverconfigurations - singular: chebackupserverconfiguration - scope: Namespaced - versions: - - name: v1 - schema: - openAPIV3Schema: - description: The `CheBackupServerConfiguration` custom resource allows defining and managing Eclipse Che Backup Server Configurations - properties: - apiVersion: - description: 'APIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' - type: string - kind: - description: 'Kind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' - type: string - metadata: - type: object - spec: - description: CheBackupServerConfigurationSpec defines the desired state of CheBackupServerConfiguration Only one type of backup server is allowed to be configured per CR. - properties: - awss3: - description: Amazon S3 or compatible alternatives. - properties: - awsAccessKeySecretRef: - description: Reference to secret that contains awsAccessKeyId and awsSecretAccessKey keys. - type: string - hostname: - description: Server hostname, defaults to 's3.amazonaws.com'. Might be customized in case of alternative server. - type: string - port: - description: Backup server port. Usually default value is used. Might be customized in case of alternative server. - type: integer - protocol: - description: Protocol to use when connection to the server. Might be customized in case of alternative server. - type: string - repositoryPasswordSecretRef: - description: Holds reference to a secret with restic repository password under 'repo-password' field to encrypt / decrypt its content. - type: string - repositoryPath: - description: Bucket name and repository, e.g. bucket/repo - type: string - required: - - awsAccessKeySecretRef - - repositoryPasswordSecretRef - - repositoryPath - type: object - rest: - description: Rest backup server configuration. - properties: - credentialsSecretRef: - description: Secret that contains username and password fields to login into restic server. Note, each repository is encrypted with own password. See ResticRepoPasswordSecretRef field. - type: string - hostname: - description: Backup server host - type: string - port: - description: Backup server port - type: integer - protocol: - description: Protocol to use when connection to the server Defaults to https. - type: string - repositoryPasswordSecretRef: - description: Holds reference to a secret with restic repository password under 'repo-password' field to encrypt / decrypt its content. - type: string - repositoryPath: - description: Restic repository path - type: string - required: - - hostname - - repositoryPasswordSecretRef - type: object - sftp: - description: Sftp backup server configuration. - properties: - hostname: - description: Backup server host - type: string - port: - description: Backup server port - type: integer - repositoryPasswordSecretRef: - description: Holds reference to a secret with restic repository password under 'repo-password' field to encrypt / decrypt its content. - type: string - repositoryPath: - description: Restic repository path, relative or absolute, e.g. /srv/repo - type: string - sshKeySecretRef: - description: Private ssh key under 'ssh-privatekey' field for passwordless login - type: string - username: - description: User login on the remote server - type: string - required: - - hostname - - repositoryPasswordSecretRef - - repositoryPath - - sshKeySecretRef - - username - type: object - type: object - status: - description: CheBackupServerConfigurationStatus defines the observed state of CheBackupServerConfiguration - type: object - type: object - served: true - storage: true - subresources: - status: {} -status: - acceptedNames: - kind: "" - plural: "" - conditions: [] - storedVersions: [] diff --git a/bundle/next/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterbackups.yaml b/bundle/next/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterbackups.yaml deleted file mode 100644 index 8f08f6ffd..000000000 --- a/bundle/next/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterbackups.yaml +++ /dev/null @@ -1,81 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -apiVersion: apiextensions.k8s.io/v1 -kind: CustomResourceDefinition -metadata: - annotations: - controller-gen.kubebuilder.io/version: v0.4.1 - creationTimestamp: null - name: checlusterbackups.org.eclipse.che -spec: - group: org.eclipse.che - names: - kind: CheClusterBackup - listKind: CheClusterBackupList - plural: checlusterbackups - singular: checlusterbackup - scope: Namespaced - versions: - - name: v1 - schema: - openAPIV3Schema: - description: The `CheClusterBackup` custom resource allows defining and managing Eclipse Che backup - properties: - apiVersion: - description: 'APIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' - type: string - kind: - description: 'Kind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' - type: string - metadata: - type: object - spec: - description: CheClusterBackupSpec defines the desired state of CheClusterBackup - properties: - backupServerConfigRef: - description: Name of custom resource with a backup server configuration to use for this backup. Note, UseInternalBackupServer field can configure internal backup server automatically. - type: string - useInternalBackupServer: - description: Automatically setup pod with REST backup server and use the server in this configuration. Note, this flag takes precedence and will overwrite existing backup server configuration. - type: boolean - type: object - status: - description: CheClusterBackupStatus defines the observed state of CheClusterBackup - properties: - cheVersion: - description: Version that was backed up - type: string - message: - description: Message explaining the state of the backup or an error message - type: string - snapshotId: - description: Last backup snapshot ID - type: string - stage: - description: Describes backup progress - type: string - state: - description: 'Backup progress state: InProgress, Failed, Succeeded' - type: string - type: object - type: object - served: true - storage: true - subresources: - status: {} -status: - acceptedNames: - kind: "" - plural: "" - conditions: [] - storedVersions: [] diff --git a/bundle/next/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterrestores.yaml b/bundle/next/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterrestores.yaml deleted file mode 100644 index 998db4bce..000000000 --- a/bundle/next/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterrestores.yaml +++ /dev/null @@ -1,75 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -apiVersion: apiextensions.k8s.io/v1 -kind: CustomResourceDefinition -metadata: - annotations: - controller-gen.kubebuilder.io/version: v0.4.1 - creationTimestamp: null - name: checlusterrestores.org.eclipse.che -spec: - group: org.eclipse.che - names: - kind: CheClusterRestore - listKind: CheClusterRestoreList - plural: checlusterrestores - singular: checlusterrestore - scope: Namespaced - versions: - - name: v1 - schema: - openAPIV3Schema: - description: The `CheClusterRestore` custom resource allows defining and managing Eclipse Che restore - properties: - apiVersion: - description: 'APIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' - type: string - kind: - description: 'Kind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' - type: string - metadata: - type: object - spec: - description: CheClusterRestoreSpec defines the desired state of CheClusterRestore - properties: - backupServerConfigRef: - description: Name of custom resource with a backup server configuration to use for this restore. Can be omitted if only one server configuration object exists within the namespace. - type: string - snapshotId: - description: If omitted, latest snapshot will be used. - type: string - type: object - status: - description: CheClusterRestoreStatus defines the observed state of CheClusterRestore - properties: - message: - description: Restore result or error message - type: string - stage: - description: Describes phase of restore progress - type: string - state: - description: 'Restore progress state: InProgress, Failed, Succeeded' - type: string - type: object - type: object - served: true - storage: true - subresources: - status: {} -status: - acceptedNames: - kind: "" - plural: "" - conditions: [] - storedVersions: [] diff --git a/bundle/next/eclipse-che-preview-kubernetes/manifests/org_v1_che_crd.yaml b/bundle/next/eclipse-che-preview-kubernetes/manifests/org_v1_che_crd.yaml deleted file mode 100644 index 70d5f5202..000000000 --- a/bundle/next/eclipse-che-preview-kubernetes/manifests/org_v1_che_crd.yaml +++ /dev/null @@ -1,705 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -apiVersion: apiextensions.k8s.io/v1 -kind: CustomResourceDefinition -metadata: - annotations: - controller-gen.kubebuilder.io/version: v0.4.1 - creationTimestamp: null - name: checlusters.org.eclipse.che -spec: - group: org.eclipse.che - names: - kind: CheCluster - listKind: CheClusterList - plural: checlusters - singular: checluster - scope: Namespaced - versions: - - name: v1 - schema: - openAPIV3Schema: - description: The `CheCluster` custom resource allows defining and managing a Che server installation - properties: - apiVersion: - description: 'APIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' - type: string - kind: - description: 'Kind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' - type: string - metadata: - type: object - spec: - description: Desired configuration of the Che installation. Based on these settings, the Operator automatically creates and maintains several ConfigMaps that will contain the appropriate environment variables the various components of the Che installation. These generated ConfigMaps must NOT be updated manually. - properties: - auth: - description: Configuration settings related to the Authentication used by the Che installation. - properties: - debug: - description: Debug internal identity provider. - type: boolean - externalIdentityProvider: - description: 'Instructs the Operator on whether or not to deploy a dedicated Identity Provider (Keycloak or RH SSO instance). Instructs the Operator on whether to deploy a dedicated Identity Provider (Keycloak or RH-SSO instance). By default, a dedicated Identity Provider server is deployed as part of the Che installation. When `externalIdentityProvider` is `true`, no dedicated identity provider will be deployed by the Operator and you will need to provide details about the external identity provider you are about to use. See also all the other fields starting with: `identityProvider`.' - type: boolean - gatewayAuthenticationSidecarImage: - description: Gateway sidecar responsible for authentication when NativeUserMode is enabled. See link:https://github.com/oauth2-proxy/oauth2-proxy[oauth2-proxy] or link:https://github.com/openshift/oauth-proxy[openshift/oauth-proxy]. - type: string - gatewayAuthorizationSidecarImage: - description: Gateway sidecar responsible for authorization when NativeUserMode is enabled. See link:https://github.com/brancz/kube-rbac-proxy[kube-rbac-proxy] or link:https://github.com/openshift/kube-rbac-proxy[openshift/kube-rbac-proxy] - type: string - gatewayHeaderRewriteSidecarImage: - description: Deprecated. The value of this flag is ignored. Sidecar functionality is now implemented in Traefik plugin. - type: string - identityProviderAdminUserName: - description: Overrides the name of the Identity Provider administrator user. Defaults to `admin`. - type: string - identityProviderClientId: - description: Name of a Identity provider, Keycloak or RH-SSO, `client-id` that is used for Che. Override this when an external Identity Provider is in use. See the `externalIdentityProvider` field. When omitted or left blank, it is set to the value of the `flavour` field suffixed with `-public`. - type: string - identityProviderContainerResources: - description: Identity provider container custom settings. - properties: - limits: - description: Limits describes the maximum amount of compute resources allowed. - properties: - cpu: - description: CPU, in cores. (500m = .5 cores) - type: string - memory: - description: Memory, in bytes. (500Gi = 500GiB = 500 * 1024 * 1024 * 1024) - type: string - type: object - request: - description: Requests describes the minimum amount of compute resources required. - properties: - cpu: - description: CPU, in cores. (500m = .5 cores) - type: string - memory: - description: Memory, in bytes. (500Gi = 500GiB = 500 * 1024 * 1024 * 1024) - type: string - type: object - type: object - identityProviderImage: - description: Overrides the container image used in the Identity Provider, Keycloak or RH-SSO, deployment. This includes the image tag. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - identityProviderImagePullPolicy: - description: Overrides the image pull policy used in the Identity Provider, Keycloak or RH-SSO, deployment. Default value is `Always` for `nightly`, `next` or `latest` images, and `IfNotPresent` in other cases. - type: string - identityProviderIngress: - description: Ingress custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - identityProviderPassword: - description: Overrides the password of Keycloak administrator user. Override this when an external Identity Provider is in use. See the `externalIdentityProvider` field. When omitted or left blank, it is set to an auto-generated password. - type: string - identityProviderPostgresPassword: - description: Password for a Identity Provider, Keycloak or RH-SSO, to connect to the database. Override this when an external Identity Provider is in use. See the `externalIdentityProvider` field. When omitted or left blank, it is set to an auto-generated password. - type: string - identityProviderPostgresSecret: - description: 'The secret that contains `password` for the Identity Provider, Keycloak or RH-SSO, to connect to the database. When the secret is defined, the `identityProviderPostgresPassword` is ignored. When the value is omitted or left blank, the one of following scenarios applies: 1. `identityProviderPostgresPassword` is defined, then it will be used to connect to the database. 2. `identityProviderPostgresPassword` is not defined, then a new secret with the name `che-identity-postgres-secret` will be created with an auto-generated value for `password`. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label.' - type: string - identityProviderRealm: - description: Name of a Identity provider, Keycloak or RH-SSO, realm that is used for Che. Override this when an external Identity Provider is in use. See the `externalIdentityProvider` field. When omitted or left blank, it is set to the value of the `flavour` field. - type: string - identityProviderRoute: - description: Route custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - domain: - description: 'Operator uses the domain to generate a hostname for a route. In a conjunction with labels it creates a route, which is served by a non-default Ingress controller. The generated host name will follow this pattern: `-.`.' - type: string - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - identityProviderSecret: - description: 'The secret that contains `user` and `password` for Identity Provider. When the secret is defined, the `identityProviderAdminUserName` and `identityProviderPassword` are ignored. When the value is omitted or left blank, the one of following scenarios applies: 1. `identityProviderAdminUserName` and `identityProviderPassword` are defined, then they will be used. 2. `identityProviderAdminUserName` or `identityProviderPassword` are not defined, then a new secret with the name `che-identity-secret` will be created with default value `admin` for `user` and with an auto-generated value for `password`. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label.' - type: string - identityProviderURL: - description: Public URL of the Identity Provider server (Keycloak / RH-SSO server). Set this ONLY when a use of an external Identity Provider is needed. See the `externalIdentityProvider` field. By default, this will be automatically calculated and set by the Operator. - type: string - initialOpenShiftOAuthUser: - description: For operating with the OpenShift OAuth authentication, create a new user account since the kubeadmin can not be used. If the value is true, then a new OpenShift OAuth user will be created for the HTPasswd identity provider. If the value is false and the user has already been created, then it will be removed. If value is an empty, then do nothing. The user's credentials are stored in the `openshift-oauth-user-credentials` secret in 'openshift-config' namespace by Operator. Note that this solution is Openshift 4 platform-specific. - type: boolean - nativeUserMode: - description: Enables native user mode. Currently works only on OpenShift and DevWorkspace engine. Native User mode uses OpenShift OAuth directly as identity provider, without Keycloak. - type: boolean - oAuthClientName: - description: Name of the OpenShift `OAuthClient` resource used to setup identity federation on the OpenShift side. Auto-generated when left blank. See also the `OpenShiftoAuth` field. - type: string - oAuthSecret: - description: Name of the secret set in the OpenShift `OAuthClient` resource used to setup identity federation on the OpenShift side. Auto-generated when left blank. See also the `OAuthClientName` field. - type: string - openShiftoAuth: - description: 'Enables the integration of the identity provider (Keycloak / RHSSO) with OpenShift OAuth. Empty value on OpenShift by default. This will allow users to directly login with their OpenShift user through the OpenShift login, and have their workspaces created under personal OpenShift namespaces. WARNING: the `kubeadmin` user is NOT supported, and logging through it will NOT allow accessing the Che Dashboard.' - type: boolean - updateAdminPassword: - description: Forces the default `admin` Che user to update password on first login. Defaults to `false`. - type: boolean - type: object - database: - description: Configuration settings related to the database used by the Che installation. - properties: - chePostgresContainerResources: - description: PostgreSQL container custom settings - properties: - limits: - description: Limits describes the maximum amount of compute resources allowed. - properties: - cpu: - description: CPU, in cores. (500m = .5 cores) - type: string - memory: - description: Memory, in bytes. (500Gi = 500GiB = 500 * 1024 * 1024 * 1024) - type: string - type: object - request: - description: Requests describes the minimum amount of compute resources required. - properties: - cpu: - description: CPU, in cores. (500m = .5 cores) - type: string - memory: - description: Memory, in bytes. (500Gi = 500GiB = 500 * 1024 * 1024 * 1024) - type: string - type: object - type: object - chePostgresDb: - description: PostgreSQL database name that the Che server uses to connect to the DB. Defaults to `dbche`. - type: string - chePostgresHostName: - description: PostgreSQL Database host name that the Che server uses to connect to. Defaults is `postgres`. Override this value ONLY when using an external database. See field `externalDb`. In the default case it will be automatically set by the Operator. - type: string - chePostgresPassword: - description: PostgreSQL password that the Che server uses to connect to the DB. When omitted or left blank, it will be set to an automatically generated value. - type: string - chePostgresPort: - description: PostgreSQL Database port that the Che server uses to connect to. Defaults to 5432. Override this value ONLY when using an external database. See field `externalDb`. In the default case it will be automatically set by the Operator. - type: string - chePostgresSecret: - description: 'The secret that contains PostgreSQL`user` and `password` that the Che server uses to connect to the DB. When the secret is defined, the `chePostgresUser` and `chePostgresPassword` are ignored. When the value is omitted or left blank, the one of following scenarios applies: 1. `chePostgresUser` and `chePostgresPassword` are defined, then they will be used to connect to the DB. 2. `chePostgresUser` or `chePostgresPassword` are not defined, then a new secret with the name `che-postgres-secret` will be created with default value of `pgche` for `user` and with an auto-generated value for `password`. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label.' - type: string - chePostgresUser: - description: PostgreSQL user that the Che server uses to connect to the DB. Defaults to `pgche`. - type: string - externalDb: - description: 'Instructs the Operator on whether to deploy a dedicated database. By default, a dedicated PostgreSQL database is deployed as part of the Che installation. When `externalDb` is `true`, no dedicated database will be deployed by the Operator and you will need to provide connection details to the external DB you are about to use. See also all the fields starting with: `chePostgres`.' - type: boolean - postgresImage: - description: Overrides the container image used in the PostgreSQL database deployment. This includes the image tag. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - postgresImagePullPolicy: - description: Overrides the image pull policy used in the PostgreSQL database deployment. Default value is `Always` for `nightly`, `next` or `latest` images, and `IfNotPresent` in other cases. - type: string - postgresVersion: - description: 'Indicates a PostgreSQL version image to use. Allowed values are: `9.6` and `13.3`. Migrate your PostgreSQL database to switch from one version to another.' - type: string - pvcClaimSize: - description: Size of the persistent volume claim for database. Defaults to `1Gi`. To update pvc storageclass that provisions it must support resize when Eclipse Che has been already deployed. - type: string - type: object - devWorkspace: - description: DevWorkspace operator configuration - properties: - controllerImage: - description: Overrides the container image used in the DevWorkspace controller deployment. This includes the image tag. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - enable: - description: Deploys the DevWorkspace Operator in the cluster. Does nothing when a matching version of the Operator is already installed. Fails when a non-matching version of the Operator is already installed. - type: boolean - required: - - enable - type: object - imagePuller: - description: Kubernetes Image Puller configuration - properties: - enable: - description: Install and configure the Community Supported Kubernetes Image Puller Operator. When set to `true` and no spec is provided, it will create a default KubernetesImagePuller object to be managed by the Operator. When set to `false`, the KubernetesImagePuller object will be deleted, and the Operator will be uninstalled, regardless of whether a spec is provided. If the `spec.images` field is empty, a set of recommended workspace-related images will be automatically detected and pre-pulled after installation. Note that while this Operator and its behavior is community-supported, its payload may be commercially-supported for pulling commercially-supported images. - type: boolean - spec: - description: A KubernetesImagePullerSpec to configure the image puller in the CheCluster - properties: - affinity: - type: string - cachingCPULimit: - type: string - cachingCPURequest: - type: string - cachingIntervalHours: - type: string - cachingMemoryLimit: - type: string - cachingMemoryRequest: - type: string - configMapName: - type: string - daemonsetName: - type: string - deploymentName: - type: string - imagePullSecrets: - type: string - imagePullerImage: - type: string - images: - type: string - nodeSelector: - type: string - type: object - required: - - enable - type: object - k8s: - description: Configuration settings specific to Che installations made on upstream Kubernetes. - properties: - ingressClass: - description: 'Ingress class that will define the which controller will manage ingresses. Defaults to `nginx`. NB: This drives the `kubernetes.io/ingress.class` annotation on Che-related ingresses.' - type: string - ingressDomain: - description: 'Global ingress domain for a Kubernetes cluster. This MUST be explicitly specified: there are no defaults.' - type: string - ingressStrategy: - description: 'Strategy for ingress creation. Options are: `multi-host` (host is explicitly provided in ingress), `single-host` (host is provided, path-based rules) and `default-host` (no host is provided, path-based rules). Defaults to `multi-host` Deprecated in favor of `serverExposureStrategy` in the `server` section, which defines this regardless of the cluster type. When both are defined, the `serverExposureStrategy` option takes precedence.' - type: string - securityContextFsGroup: - description: The FSGroup in which the Che Pod and workspace Pods containers runs in. Default value is `1724`. - type: string - securityContextRunAsUser: - description: ID of the user the Che Pod and workspace Pods containers run as. Default value is `1724`. - type: string - singleHostExposureType: - description: When the serverExposureStrategy is set to `single-host`, the way the server, registries and workspaces are exposed is further configured by this property. The possible values are `native`, which means that the server and workspaces are exposed using ingresses on K8s or `gateway` where the server and workspaces are exposed using a custom gateway based on link:https://doc.traefik.io/traefik/[Traefik]. All the endpoints whether backed by the ingress or gateway `route` always point to the subpaths on the same domain. Defaults to `native`. - type: string - tlsSecretName: - description: Name of a secret that will be used to setup ingress TLS termination when TLS is enabled. When the field is empty string, the default cluster certificate will be used. See also the `tlsSupport` field. - type: string - type: object - metrics: - description: Configuration settings related to the metrics collection used by the Che installation. - properties: - enable: - description: Enables `metrics` the Che server endpoint. Default to `true`. - type: boolean - type: object - server: - description: General configuration settings related to the Che server, the plugin and devfile registries - properties: - airGapContainerRegistryHostname: - description: Optional host name, or URL, to an alternate container registry to pull images from. This value overrides the container registry host name defined in all the default container images involved in a Che deployment. This is particularly useful to install Che in a restricted environment. - type: string - airGapContainerRegistryOrganization: - description: Optional repository name of an alternate container registry to pull images from. This value overrides the container registry organization defined in all the default container images involved in a Che deployment. This is particularly useful to install Eclipse Che in a restricted environment. - type: string - allowUserDefinedWorkspaceNamespaces: - description: Deprecated. The value of this flag is ignored. Defines that a user is allowed to specify a Kubernetes namespace, or an OpenShift project, which differs from the default. It's NOT RECOMMENDED to set to `true` without OpenShift OAuth configured. The OpenShift infrastructure also uses this property. - type: boolean - cheClusterRoles: - description: A comma-separated list of ClusterRoles that will be assigned to Che ServiceAccount. Each role must have `app.kubernetes.io/part-of=che.eclipse.org` label. Be aware that the Che Operator has to already have all permissions in these ClusterRoles to grant them. - type: string - cheDebug: - description: Enables the debug mode for Che server. Defaults to `false`. - type: string - cheFlavor: - description: Specifies a variation of the installation. The options are `che` for upstream Che installations, or `codeready` for link:https://developers.redhat.com/products/codeready-workspaces/overview[CodeReady Workspaces] installation. Override the default value only on necessary occasions. - type: string - cheHost: - description: Public host name of the installed Che server. When value is omitted, the value it will be automatically set by the Operator. See the `cheHostTLSSecret` field. - type: string - cheHostTLSSecret: - description: Name of a secret containing certificates to secure ingress or route for the custom host name of the installed Che server. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label. See the `cheHost` field. - type: string - cheImage: - description: Overrides the container image used in Che deployment. This does NOT include the container image tag. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - cheImagePullPolicy: - description: Overrides the image pull policy used in Che deployment. Default value is `Always` for `nightly`, `next` or `latest` images, and `IfNotPresent` in other cases. - type: string - cheImageTag: - description: Overrides the tag of the container image used in Che deployment. Omit it or leave it empty to use the default image tag provided by the Operator. - type: string - cheLogLevel: - description: 'Log level for the Che server: `INFO` or `DEBUG`. Defaults to `INFO`.' - type: string - cheServerIngress: - description: The Che server ingress custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - cheServerRoute: - description: The Che server route custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - domain: - description: 'Operator uses the domain to generate a hostname for a route. In a conjunction with labels it creates a route, which is served by a non-default Ingress controller. The generated host name will follow this pattern: `-.`.' - type: string - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - cheWorkspaceClusterRole: - description: Custom cluster role bound to the user for the Che workspaces. The role must have `app.kubernetes.io/part-of=che.eclipse.org` label. The default roles are used when omitted or left blank. - type: string - customCheProperties: - additionalProperties: - type: string - description: Map of additional environment variables that will be applied in the generated `che` ConfigMap to be used by the Che server, in addition to the values already generated from other fields of the `CheCluster` custom resource (CR). When `customCheProperties` contains a property that would be normally generated in `che` ConfigMap from other CR fields, the value defined in the `customCheProperties` is used instead. - type: object - dashboardCpuLimit: - description: Overrides the CPU limit used in the dashboard deployment. In cores. (500m = .5 cores). Default to 500m. - type: string - dashboardCpuRequest: - description: Overrides the CPU request used in the dashboard deployment. In cores. (500m = .5 cores). Default to 100m. - type: string - dashboardImage: - description: Overrides the container image used in the dashboard deployment. This includes the image tag. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - dashboardImagePullPolicy: - description: Overrides the image pull policy used in the dashboard deployment. Default value is `Always` for `nightly`, `next` or `latest` images, and `IfNotPresent` in other cases. - type: string - dashboardIngress: - description: Dashboard ingress custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - dashboardMemoryLimit: - description: Overrides the memory limit used in the dashboard deployment. Defaults to 256Mi. - type: string - dashboardMemoryRequest: - description: Overrides the memory request used in the dashboard deployment. Defaults to 16Mi. - type: string - dashboardRoute: - description: Dashboard route custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - domain: - description: 'Operator uses the domain to generate a hostname for a route. In a conjunction with labels it creates a route, which is served by a non-default Ingress controller. The generated host name will follow this pattern: `-.`.' - type: string - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - devfileRegistryCpuLimit: - description: Overrides the CPU limit used in the devfile registry deployment. In cores. (500m = .5 cores). Default to 500m. - type: string - devfileRegistryCpuRequest: - description: Overrides the CPU request used in the devfile registry deployment. In cores. (500m = .5 cores). Default to 100m. - type: string - devfileRegistryImage: - description: Overrides the container image used in the devfile registry deployment. This includes the image tag. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - devfileRegistryIngress: - description: The devfile registry ingress custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - devfileRegistryMemoryLimit: - description: Overrides the memory limit used in the devfile registry deployment. Defaults to 256Mi. - type: string - devfileRegistryMemoryRequest: - description: Overrides the memory request used in the devfile registry deployment. Defaults to 16Mi. - type: string - devfileRegistryPullPolicy: - description: Overrides the image pull policy used in the devfile registry deployment. Default value is `Always` for `nightly`, `next` or `latest` images, and `IfNotPresent` in other cases. - type: string - devfileRegistryRoute: - description: The devfile registry route custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - domain: - description: 'Operator uses the domain to generate a hostname for a route. In a conjunction with labels it creates a route, which is served by a non-default Ingress controller. The generated host name will follow this pattern: `-.`.' - type: string - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - devfileRegistryUrl: - description: Deprecated in favor of `externalDevfileRegistries` fields. - type: string - disableInternalClusterSVCNames: - description: Disable internal cluster SVC names usage to communicate between components to speed up the traffic and avoid proxy issues. - type: boolean - externalDevfileRegistries: - description: External devfile registries, that serves sample, ready-to-use devfiles. Configure this in addition to a dedicated devfile registry (when `externalDevfileRegistry` is `false`) or instead of it (when `externalDevfileRegistry` is `true`) - items: - description: Settings for a configuration of the external devfile registries. - properties: - url: - description: Public URL of the devfile registry. - type: string - type: object - type: array - externalDevfileRegistry: - description: Instructs the Operator on whether to deploy a dedicated devfile registry server. By default, a dedicated devfile registry server is started. When `externalDevfileRegistry` is `true`, no such dedicated server will be started by the Operator and configure at least one devfile registry with `externalDevfileRegistries` field. - type: boolean - externalPluginRegistry: - description: Instructs the Operator on whether to deploy a dedicated plugin registry server. By default, a dedicated plugin registry server is started. When `externalPluginRegistry` is `true`, no such dedicated server will be started by the Operator and you will have to manually set the `pluginRegistryUrl` field. - type: boolean - gitSelfSignedCert: - description: When enabled, the certificate from `che-git-self-signed-cert` ConfigMap will be propagated to the Che components and provide particular configuration for Git. Note, the `che-git-self-signed-cert` ConfigMap must have `app.kubernetes.io/part-of=che.eclipse.org` label. - type: boolean - nonProxyHosts: - description: 'List of hosts that will be reached directly, bypassing the proxy. Specify wild card domain use the following form `.` and `|` as delimiter, for example: `localhost|.my.host.com|123.42.12.32` Only use when configuring a proxy is required. Operator respects OpenShift cluster wide proxy configuration and no additional configuration is required, but defining `nonProxyHosts` in a custom resource leads to merging non proxy hosts lists from the cluster proxy configuration and ones defined in the custom resources. See the doc https://docs.openshift.com/container-platform/4.4/networking/enable-cluster-wide-proxy.html. See also the `proxyURL` fields.' - type: string - pluginRegistryCpuLimit: - description: Overrides the CPU limit used in the plugin registry deployment. In cores. (500m = .5 cores). Default to 500m. - type: string - pluginRegistryCpuRequest: - description: Overrides the CPU request used in the plugin registry deployment. In cores. (500m = .5 cores). Default to 100m. - type: string - pluginRegistryImage: - description: Overrides the container image used in the plugin registry deployment. This includes the image tag. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - pluginRegistryIngress: - description: Plugin registry ingress custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - pluginRegistryMemoryLimit: - description: Overrides the memory limit used in the plugin registry deployment. Defaults to 256Mi. - type: string - pluginRegistryMemoryRequest: - description: Overrides the memory request used in the plugin registry deployment. Defaults to 16Mi. - type: string - pluginRegistryPullPolicy: - description: Overrides the image pull policy used in the plugin registry deployment. Default value is `Always` for `nightly`, `next` or `latest` images, and `IfNotPresent` in other cases. - type: string - pluginRegistryRoute: - description: Plugin registry route custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - domain: - description: 'Operator uses the domain to generate a hostname for a route. In a conjunction with labels it creates a route, which is served by a non-default Ingress controller. The generated host name will follow this pattern: `-.`.' - type: string - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - pluginRegistryUrl: - description: Public URL of the plugin registry that serves sample ready-to-use devfiles. Set this ONLY when a use of an external devfile registry is needed. See the `externalPluginRegistry` field. By default, this will be automatically calculated by the Operator. - type: string - proxyPassword: - description: Password of the proxy server. Only use when proxy configuration is required. See the `proxyURL`, `proxyUser` and `proxySecret` fields. - type: string - proxyPort: - description: Port of the proxy server. Only use when configuring a proxy is required. See also the `proxyURL` and `nonProxyHosts` fields. - type: string - proxySecret: - description: The secret that contains `user` and `password` for a proxy server. When the secret is defined, the `proxyUser` and `proxyPassword` are ignored. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label. - type: string - proxyURL: - description: URL (protocol+host name) of the proxy server. This drives the appropriate changes in the `JAVA_OPTS` and `https(s)_proxy` variables in the Che server and workspaces containers. Only use when configuring a proxy is required. Operator respects OpenShift cluster wide proxy configuration and no additional configuration is required, but defining `proxyUrl` in a custom resource leads to overrides the cluster proxy configuration with fields `proxyUrl`, `proxyPort`, `proxyUser` and `proxyPassword` from the custom resource. See the doc https://docs.openshift.com/container-platform/4.4/networking/enable-cluster-wide-proxy.html. See also the `proxyPort` and `nonProxyHosts` fields. - type: string - proxyUser: - description: User name of the proxy server. Only use when configuring a proxy is required. See also the `proxyURL`, `proxyPassword` and `proxySecret` fields. - type: string - selfSignedCert: - description: Deprecated. The value of this flag is ignored. The Che Operator will automatically detect whether the router certificate is self-signed and propagate it to other components, such as the Che server. - type: boolean - serverCpuLimit: - description: Overrides the CPU limit used in the Che server deployment In cores. (500m = .5 cores). Default to 1. - type: string - serverCpuRequest: - description: Overrides the CPU request used in the Che server deployment In cores. (500m = .5 cores). Default to 100m. - type: string - serverExposureStrategy: - description: Sets the server and workspaces exposure type. Possible values are `multi-host`, `single-host`, `default-host`. Defaults to `multi-host`, which creates a separate ingress, or OpenShift routes, for every required endpoint. `single-host` makes Che exposed on a single host name with workspaces exposed on subpaths. Read the docs to learn about the limitations of this approach. Also consult the `singleHostExposureType` property to further configure how the Operator and the Che server make that happen on Kubernetes. `default-host` exposes the Che server on the host of the cluster. Read the docs to learn about the limitations of this approach. - type: string - serverMemoryLimit: - description: Overrides the memory limit used in the Che server deployment. Defaults to 1Gi. - type: string - serverMemoryRequest: - description: Overrides the memory request used in the Che server deployment. Defaults to 512Mi. - type: string - serverTrustStoreConfigMapName: - description: Name of the ConfigMap with public certificates to add to Java trust store of the Che server. This is often required when adding the OpenShift OAuth provider, which has HTTPS endpoint signed with self-signed cert. The Che server must be aware of its CA cert to be able to request it. This is disabled by default. The Config Map must have `app.kubernetes.io/part-of=che.eclipse.org` label. - type: string - singleHostGatewayConfigMapLabels: - additionalProperties: - type: string - description: The labels that need to be present in the ConfigMaps representing the gateway configuration. - type: object - singleHostGatewayConfigSidecarImage: - description: The image used for the gateway sidecar that provides configuration to the gateway. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - singleHostGatewayImage: - description: The image used for the gateway in the single host mode. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - tlsSupport: - description: Deprecated. Instructs the Operator to deploy Che in TLS mode. This is enabled by default. Disabling TLS sometimes cause malfunction of some Che components. - type: boolean - useInternalClusterSVCNames: - description: Deprecated in favor of `disableInternalClusterSVCNames`. - type: boolean - workspaceNamespaceDefault: - description: Defines Kubernetes default namespace in which user's workspaces are created for a case when a user does not override it. It's possible to use ``, `` and `` placeholders, such as che-workspace-. In that case, a new namespace will be created for each user or workspace. - type: string - type: object - storage: - description: Configuration settings related to the persistent storage used by the Che installation. - properties: - postgresPVCStorageClassName: - description: Storage class for the Persistent Volume Claim dedicated to the PostgreSQL database. When omitted or left blank, a default storage class is used. - type: string - preCreateSubPaths: - description: Instructs the Che server to start a special Pod to pre-create a sub-path in the Persistent Volumes. Defaults to `false`, however it will need to enable it according to the configuration of your Kubernetes cluster. - type: boolean - pvcClaimSize: - description: Size of the persistent volume claim for workspaces. Defaults to `10Gi`. - type: string - pvcJobsImage: - description: Overrides the container image used to create sub-paths in the Persistent Volumes. This includes the image tag. Omit it or leave it empty to use the default container image provided by the Operator. See also the `preCreateSubPaths` field. - type: string - pvcStrategy: - description: Persistent volume claim strategy for the Che server. This Can be:`common` (all workspaces PVCs in one volume), `per-workspace` (one PVC per workspace for all declared volumes) and `unique` (one PVC per declared volume). Defaults to `common`. - type: string - workspacePVCStorageClassName: - description: Storage class for the Persistent Volume Claims dedicated to the Che workspaces. When omitted or left blank, a default storage class is used. - type: string - type: object - type: object - status: - description: CheClusterStatus defines the observed state of Che installation - properties: - cheClusterRunning: - description: Status of a Che installation. Can be `Available`, `Unavailable`, or `Available, Rolling Update in Progress`. - type: string - cheURL: - description: Public URL to the Che server. - type: string - cheVersion: - description: Current installed Che version. - type: string - dbProvisioned: - description: Indicates that a PostgreSQL instance has been correctly provisioned or not. - type: boolean - devfileRegistryURL: - description: Public URL to the devfile registry. - type: string - devworkspaceStatus: - description: The status of the Devworkspace subsystem - properties: - gatewayHost: - description: GatewayHost is the resolved host of the ingress/route. This is equal to the Host in the spec on Kubernetes but contains the actual host name of the route if Host is unspecified on OpenShift. - type: string - gatewayPhase: - description: GatewayPhase specifies the phase in which the gateway deployment currently is. If the gateway is disabled, the phase is "Inactive". - type: string - message: - description: Message contains further human-readable info for why the Che cluster is in the phase it currently is. - type: string - phase: - description: Phase is the phase in which the Che cluster as a whole finds itself in. - type: string - reason: - description: A brief CamelCase message indicating details about why the Che cluster is in this state. - type: string - workspaceBaseDomain: - description: The resolved workspace base domain. This is either the copy of the explicitly defined property of the same name in the spec or, if it is undefined in the spec and we're running on OpenShift, the automatically resolved basedomain for routes. - type: string - type: object - gitHubOAuthProvisioned: - description: Indicates whether an Identity Provider instance, Keycloak or RH-SSO, has been configured to integrate with the GitHub OAuth. - type: boolean - helpLink: - description: A URL that points to some URL where to find help related to the current Operator status. - type: string - keycloakProvisioned: - description: Indicates whether an Identity Provider instance, Keycloak or RH-SSO, has been provisioned with realm, client and user. - type: boolean - keycloakURL: - description: Public URL to the Identity Provider server, Keycloak or RH-SSO,. - type: string - message: - description: A human readable message indicating details about why the Pod is in this condition. - type: string - openShiftOAuthUserCredentialsSecret: - description: OpenShift OAuth secret in `openshift-config` namespace that contains user credentials for HTPasswd identity provider. - type: string - openShiftoAuthProvisioned: - description: Indicates whether an Identity Provider instance, Keycloak or RH-SSO, has been configured to integrate with the OpenShift OAuth. - type: boolean - pluginRegistryURL: - description: Public URL to the plugin registry. - type: string - reason: - description: A brief CamelCase message indicating details about why the Pod is in this state. - type: string - type: object - type: object - served: true - storage: true - subresources: - status: {} -status: - acceptedNames: - kind: "" - plural: "" - conditions: [] - storedVersions: [] diff --git a/bundle/next/eclipse-che-preview-kubernetes/metadata/annotations.yaml b/bundle/next/eclipse-che-preview-kubernetes/metadata/annotations.yaml deleted file mode 100644 index a5b6d5892..000000000 --- a/bundle/next/eclipse-che-preview-kubernetes/metadata/annotations.yaml +++ /dev/null @@ -1,27 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -annotations: - # Core bundle annotations. - operators.operatorframework.io.bundle.mediatype.v1: registry+v1 - operators.operatorframework.io.bundle.manifests.v1: manifests/ - operators.operatorframework.io.bundle.metadata.v1: metadata/ - operators.operatorframework.io.bundle.package.v1: eclipse-che-preview-kubernetes - operators.operatorframework.io.bundle.channels.v1: next - operators.operatorframework.io.bundle.channel.default.v1: next - operators.operatorframework.io.metrics.builder: operator-sdk-v1.6.1+git - operators.operatorframework.io.metrics.mediatype.v1: metrics+v1 - operators.operatorframework.io.metrics.project_layout: go.kubebuilder.io/v3 - - # Annotations for testing. - operators.operatorframework.io.test.mediatype.v1: scorecard+v1 - operators.operatorframework.io.test.config.v1: tests/scorecard/ diff --git a/bundle/next/eclipse-che-preview-kubernetes/tests/scorecard/config.yaml b/bundle/next/eclipse-che-preview-kubernetes/tests/scorecard/config.yaml deleted file mode 100644 index 938d07f28..000000000 --- a/bundle/next/eclipse-che-preview-kubernetes/tests/scorecard/config.yaml +++ /dev/null @@ -1,47 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -apiVersion: scorecard.operatorframework.io/v1alpha3 -kind: Configuration -metadata: - name: config -stages: -- parallel: true - tests: - - entrypoint: - - scorecard-test - - basic-check-spec - image: quay.io/operator-framework/scorecard-test:v1.7.1 - labels: - suite: basic - test: basic-check-spec-test - - entrypoint: - - scorecard-test - - olm-bundle-validation - image: quay.io/operator-framework/scorecard-test:v1.7.1 - labels: - suite: olm - test: olm-bundle-validation-test - - entrypoint: - - scorecard-test - - olm-crds-have-validation - image: quay.io/operator-framework/scorecard-test:v1.7.1 - labels: - suite: olm - test: olm-crds-have-validation-test - - entrypoint: - - scorecard-test - - olm-spec-descriptors - image: quay.io/operator-framework/scorecard-test:v1.7.1 - labels: - suite: olm - test: olm-spec-descriptors-test diff --git a/bundle/next/eclipse-che-preview-openshift/manifests/che-operator.clusterserviceversion.yaml b/bundle/next/eclipse-che-preview-openshift/manifests/che-operator.clusterserviceversion.yaml index 070a954a4..fe1e7b9fb 100644 --- a/bundle/next/eclipse-che-preview-openshift/manifests/che-operator.clusterserviceversion.yaml +++ b/bundle/next/eclipse-che-preview-openshift/manifests/che-operator.clusterserviceversion.yaml @@ -126,7 +126,7 @@ metadata: operators.operatorframework.io/project_layout: go.kubebuilder.io/v3 repository: https://github.com/eclipse-che/che-operator support: Eclipse Foundation - name: eclipse-che-preview-openshift.v7.40.0-383.next + name: eclipse-che-preview-openshift.v7.41.0-385.next namespace: placeholder spec: apiservicedefinitions: {} @@ -1002,6 +1002,14 @@ spec: - create - get - update + - apiGroups: + - metrics.k8s.io + resources: + - pods + verbs: + - get + - list + - watch - apiGroups: - monitoring.coreos.com resources: @@ -1458,4 +1466,4 @@ spec: maturity: stable provider: name: Eclipse Foundation - version: 7.40.0-383.next + version: 7.41.0-385.next diff --git a/bundle/stable/eclipse-che-preview-kubernetes/bundle.Dockerfile b/bundle/stable/eclipse-che-preview-kubernetes/bundle.Dockerfile deleted file mode 100644 index da86419ea..000000000 --- a/bundle/stable/eclipse-che-preview-kubernetes/bundle.Dockerfile +++ /dev/null @@ -1,21 +0,0 @@ -FROM scratch - -# Core bundle labels. -LABEL operators.operatorframework.io.bundle.mediatype.v1=registry+v1 -LABEL operators.operatorframework.io.bundle.manifests.v1=manifests/ -LABEL operators.operatorframework.io.bundle.metadata.v1=metadata/ -LABEL operators.operatorframework.io.bundle.package.v1=eclipse-che-preview-kubernetes -LABEL operators.operatorframework.io.bundle.channels.v1=stable -LABEL operators.operatorframework.io.bundle.channel.default.v1=stable -LABEL operators.operatorframework.io.metrics.builder=operator-sdk-v1.7.1+git -LABEL operators.operatorframework.io.metrics.mediatype.v1=metrics+v1 -LABEL operators.operatorframework.io.metrics.project_layout=go.kubebuilder.io/v3 - -# Labels for testing. -LABEL operators.operatorframework.io.test.mediatype.v1=scorecard+v1 -LABEL operators.operatorframework.io.test.config.v1=tests/scorecard/ - -# Copy files to locations specified by labels. -COPY manifests /manifests/ -COPY metadata /metadata/ -COPY tests/scorecard /tests/scorecard/ diff --git a/bundle/stable/eclipse-che-preview-kubernetes/manifests/che-operator.clusterserviceversion.yaml b/bundle/stable/eclipse-che-preview-kubernetes/manifests/che-operator.clusterserviceversion.yaml deleted file mode 100644 index 106b2e005..000000000 --- a/bundle/stable/eclipse-che-preview-kubernetes/manifests/che-operator.clusterserviceversion.yaml +++ /dev/null @@ -1,1771 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -apiVersion: operators.coreos.com/v1alpha1 -kind: ClusterServiceVersion -metadata: - annotations: - alm-examples: |- - [ - { - "apiVersion": "org.eclipse.che/v1", - "kind": "CheBackupServerConfiguration", - "metadata": { - "name": "eclipse-che-backup-server-configuration" - }, - "spec": { - "awss3": { - "awsAccessKeySecretRef": "minio-credentials-secret", - "hostname": "minio.mydomain.net", - "port": 9000, - "protocol": "http", - "repositoryPasswordSecretRef": "secret-name", - "repositoryPath": "che-backups-bucket" - } - } - }, - { - "apiVersion": "org.eclipse.che/v1", - "kind": "CheCluster", - "metadata": { - "name": "eclipse-che" - }, - "spec": { - "auth": { - "externalIdentityProvider": false, - "identityProviderAdminUserName": "", - "identityProviderClientId": "", - "identityProviderPassword": "", - "identityProviderRealm": "", - "identityProviderURL": "", - "initialOpenShiftOAuthUser": true, - "oAuthClientName": "", - "oAuthSecret": "" - }, - "database": { - "chePostgresDb": "", - "chePostgresHostName": "", - "chePostgresPassword": "", - "chePostgresPort": "", - "chePostgresUser": "", - "externalDb": false - }, - "k8s": { - "ingressClass": "", - "ingressDomain": "", - "ingressStrategy": "", - "securityContextFsGroup": "", - "securityContextRunAsUser": "", - "singleHostExposureType": "", - "tlsSecretName": "che-tls" - }, - "metrics": { - "enable": true - }, - "server": { - "allowUserDefinedWorkspaceNamespaces": false, - "cheClusterRoles": "", - "cheFlavor": "", - "cheWorkspaceClusterRole": "", - "gitSelfSignedCert": false, - "nonProxyHosts": "", - "proxyPassword": "", - "proxyPort": "", - "proxyURL": "", - "proxyUser": "", - "serverExposureStrategy": "", - "serverTrustStoreConfigMapName": "", - "tlsSupport": true, - "workspaceNamespaceDefault": "-che" - }, - "storage": { - "postgresPVCStorageClassName": "", - "preCreateSubPaths": true, - "pvcClaimSize": "10Gi", - "pvcStrategy": "common", - "workspacePVCStorageClassName": "" - } - } - }, - { - "apiVersion": "org.eclipse.che/v1", - "kind": "CheClusterBackup", - "metadata": { - "name": "eclipse-che-backup" - }, - "spec": { - "backupServerConfigRef": "eclipse-che-backup-server-configuration", - "useInternalBackupServer": false - } - }, - { - "apiVersion": "org.eclipse.che/v1", - "kind": "CheClusterRestore", - "metadata": { - "name": "eclipse-che-restore" - }, - "spec": { - "backupServerConfigRef": "eclipse-che-backup-server-configuration" - } - } - ] - capabilities: Seamless Upgrades - categories: Developer Tools - certified: "false" - containerImage: quay.io/eclipse/che-operator@sha256:68fd7b2d651c90c3e101fe836c99135ffe922a3b1927335dcde78de72e349e6d - createdAt: "2021-12-03T13:11:54Z" - description: A Kube-native development solution that delivers portable and collaborative - developer workspaces. - operatorframework.io/suggested-namespace: eclipse-che - operators.operatorframework.io/builder: operator-sdk-v1.6.1+git - operators.operatorframework.io/project_layout: go.kubebuilder.io/v3 - repository: https://github.com/eclipse-che/che-operator - support: Eclipse Foundation - name: eclipse-che-preview-kubernetes.v7.40.0 - namespace: placeholder -spec: - apiservicedefinitions: {} - customresourcedefinitions: - owned: - - description: The `CheCluster` custom resource allows defining and managing - a Che server installation - displayName: Eclipse Che instance Specification - kind: CheCluster - name: checlusters.org.eclipse.che - resources: - - kind: ClusterRole - name: '' - version: v1 - - kind: ClusterRoleBinding - name: '' - version: v1 - - kind: ConfigMap - name: '' - version: v1 - - kind: Deployment - name: '' - version: apps/v1 - - kind: Ingress - name: '' - version: v1 - - kind: Role - name: '' - version: v1 - - kind: RoleBinding - name: '' - version: v1 - - kind: Route - name: '' - version: v1 - - kind: Secret - name: '' - version: v1 - - kind: Service - name: '' - version: v1 - specDescriptors: - - description: Configuration settings related to the Authentication used - by the Che installation. - displayName: Authentication - path: auth - - description: Deprecated. The value of this flag is ignored. Sidecar functionality - is now implemented in Traefik plugin. - displayName: Gateway Header Rewrite Sidecar Image - path: auth.gatewayHeaderRewriteSidecarImage - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:hidden - - description: Configuration settings related to the database used by the - Che installation. - displayName: Database - path: database - - description: DevWorkspace operator configuration - displayName: Dev Workspace operator - path: devWorkspace - - description: Deploys the DevWorkspace Operator in the cluster. Does nothing - when a matching version of the Operator is already installed. Fails - when a non-matching version of the Operator is already installed. - displayName: Enable DevWorkspace operator (Technology Preview) - path: devWorkspace.enable - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:booleanSwitch - - description: Kubernetes Image Puller configuration - displayName: Kubernetes Image Puller - path: imagePuller - - description: Configuration settings specific to Che installations made - on upstream Kubernetes. - displayName: Kubernetes - path: k8s - - description: Configuration settings related to the metrics collection - used by the Che installation. - displayName: Metrics - path: metrics - - description: General configuration settings related to the Che server, - the plugin and devfile registries - displayName: Che server - path: server - - description: Deprecated. The value of this flag is ignored. Defines that - a user is allowed to specify a Kubernetes namespace, or an OpenShift - project, which differs from the default. It's NOT RECOMMENDED to set - to `true` without OpenShift OAuth configured. The OpenShift infrastructure - also uses this property. - displayName: Allow User Defined Workspace Namespaces - path: server.allowUserDefinedWorkspaceNamespaces - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:hidden - - description: Deprecated in favor of `externalDevfileRegistries` fields. - displayName: Devfile Registry Url - path: server.devfileRegistryUrl - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:hidden - - description: Deprecated. The value of this flag is ignored. The Che Operator - will automatically detect whether the router certificate is self-signed - and propagate it to other components, such as the Che server. - displayName: Self Signed Cert - path: server.selfSignedCert - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:hidden - - description: Deprecated. Instructs the Operator to deploy Che in TLS mode. - This is enabled by default. Disabling TLS sometimes cause malfunction - of some Che components. - displayName: Tls Support - path: server.tlsSupport - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:hidden - - description: Deprecated in favor of `disableInternalClusterSVCNames`. - displayName: Use Internal Cluster SVCNames - path: server.useInternalClusterSVCNames - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:hidden - - description: Configuration settings related to the persistent storage - used by the Che installation. - displayName: Persistent storage - path: storage - - path: devWorkspace - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:hidden - statusDescriptors: - - description: Status of a Che installation. Can be `Available`, `Unavailable`, - or `Available, Rolling Update in Progress`. - displayName: Status - path: cheClusterRunning - x-descriptors: - - urn:alm:descriptor:io.kubernetes.phase - - description: Public URL to the Che server. - displayName: Eclipse Che URL - path: cheURL - x-descriptors: - - urn:alm:descriptor:org.w3:link - - description: Current installed Che version. - displayName: 'displayName: Eclipse Che version' - path: cheVersion - x-descriptors: - - urn:alm:descriptor:org.w3:link - - description: Public URL to the devfile registry. - displayName: Devfile registry URL - path: devfileRegistryURL - x-descriptors: - - urn:alm:descriptor:org.w3:link - - description: A URL that points to some URL where to find help related - to the current Operator status. - displayName: Help link - path: helpLink - x-descriptors: - - urn:alm:descriptor:org.w3:link - - description: Public URL to the Identity Provider server, Keycloak or RH-SSO,. - displayName: Keycloak Admin Console URL - path: keycloakURL - x-descriptors: - - urn:alm:descriptor:org.w3:link - - description: A human readable message indicating details about why the - Pod is in this condition. - displayName: Message - path: message - x-descriptors: - - urn:alm:descriptor:text - - description: OpenShift OAuth secret in `openshift-config` namespace that - contains user credentials for HTPasswd identity provider. - displayName: OpenShift OAuth secret in `openshift-config` namespace that - contains user credentials for HTPasswd identity provider. - path: openShiftOAuthUserCredentialsSecret - x-descriptors: - - urn:alm:descriptor:text - - description: Public URL to the plugin registry. - displayName: Plugin registry URL - path: pluginRegistryURL - x-descriptors: - - urn:alm:descriptor:org.w3:link - - description: A brief CamelCase message indicating details about why the - Pod is in this state. - displayName: Reason - path: reason - x-descriptors: - - urn:alm:descriptor:text - version: v1 - - description: The `CheBackupServerConfiguration` custom resource allows defining - and managing Eclipse Che Backup Server Configurations - displayName: Eclipse Che Backup Server - kind: CheBackupServerConfiguration - name: chebackupserverconfigurations.org.eclipse.che - specDescriptors: - - description: Amazon S3 or compatible alternatives. - displayName: AwsS3 server - path: awss3 - - description: Rest backup server configuration. - displayName: Rest server - path: rest - - description: Sftp backup server configuration. - displayName: Sftp server - path: sftp - version: v1 - - description: The `CheClusterBackup` custom resource allows defining and managing - Eclipse Che backup - displayName: Eclipse Che instance Backup Specification - kind: CheClusterBackup - name: checlusterbackups.org.eclipse.che - resources: - - kind: Deployment - name: backup-rest-server-deployment - version: apps/v1 - - kind: Service - name: backup-rest-server-service - version: v1 - specDescriptors: - - description: Name of custom resource with a backup server configuration - to use for this backup. Note, UseInternalBackupServer field can configure - internal backup server automatically. - displayName: Backup server configuration - path: backupServerConfigRef - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:text - - description: Automatically setup pod with REST backup server and use the - server in this configuration. Note, this flag takes precedence and will - overwrite existing backup server configuration. - displayName: Use internal backup server - path: useInternalBackupServer - x-descriptors: - - urn:alm:descriptor:com.tectonic.ui:booleanSwitch - statusDescriptors: - - description: Message explaining the state of the backup or an error message - displayName: Message - path: message - - description: Last backup snapshot ID - displayName: Snapshot Id - path: snapshotId - - description: Describes backup progress - displayName: Phase - path: stage - - description: 'Backup progress state: InProgress, Failed, Succeeded' - displayName: State - path: state - version: v1 - - description: The `CheClusterRestore` custom resource allows defining and managing - Eclipse Che restore - displayName: Eclipse Che instance Restore Specification - kind: CheClusterRestore - name: checlusterrestores.org.eclipse.che - specDescriptors: - - description: Name of custom resource with a backup server configuration - to use for this restore. Can be omitted if only one server configuration - object exists within the namespace. - displayName: Backup Server Config Ref - path: backupServerConfigRef - - description: If omitted, latest snapshot will be used. - displayName: Snapshot Id - path: snapshotId - statusDescriptors: - - description: Restore result or error message - displayName: Message - path: message - - description: Describes phase of restore progress - displayName: Phase - path: stage - - description: 'Restore progress state: InProgress, Failed, Succeeded' - displayName: State - path: state - version: v1 - description: | - A collaborative Kubernetes-native development solution that delivers Kubernetes workspaces and in-browser IDE for rapid cloud application development. - This operator installs PostgreSQL, Keycloak, Plugin registry, Devfile registry and the Eclipse Che server, as well as configures all these services. - - ## Prerequisites - - Operator Lifecycle Manager (OLM) greater than or equal to v0.17.0 needs to be installed. - - ## How to Install - Install `Eclipse Che Operator` by following instructions in top right button `Install`. - - A new pod che-operator is created in `my-eclipse-che` namespace - - ``` - $ kubectl get pods --all-namespaces | grep my-eclipse-che - my-eclipse-che che-operator-554c564476-fl98z 1/1 Running 0 13s - ``` - - The operator is now providing new Custom Resources Definitions: `checluster.org.eclipse.che` - - Create a new Eclipse Che instance by creating a new CheCluster resource: - - On the bottom of this page, there is a section `Custom Resource Definitions` with `Eclipse Che Cluster` name. - - Click on `View YAML Example` *Link* and copy the content to a new file named `my-eclipse-che.yaml` - **Important!** Make sure you provide **K8s.ingressDomain** which is a global ingress domain of your k8s cluster, for example, `gcp.my-ide.cloud` - Create the new CheCluster by creating the resource in the `my-eclipse-che` namespace : - ``` - $ kubectl create -f my-eclipse-che.yaml -n my-eclipse-che - ``` - ***important:*** The operator is only tracking resources in its own namespace. If CheCluster is not created in this namespace it's ignored. - The operator will now create pods for Eclipse Che. The deployment status can be tracked by looking at the Operator logs by using the command: - ``` - $ kubectl logs -n my-eclipse-che che-operator-554c564476-fl98z - ``` - ***important:*** pod name is different on each installation - - When all Eclipse Che containers are running, the Eclipse Che URL is printed in the logs. - - Eclipse Che URL can be tracked by searching for available trace: - ``` - $ kubectl logs -f -n my-eclipse-che che-operator-7b6b4bcb9c-m4m2m | grep "Eclipse Che is now available" - time="2019-08-01T13:31:05Z" level=info msg="Eclipse Che is now available at: http://che-my-eclipse-che.gcp.my-ide.cloud" - ``` - When Eclipse Che is ready, the Eclipse Che URL is displayed in CheCluster resource in `status` section - ``` - $ kubectl describe checluster/eclipse-che -n my-eclipse-che - ``` - - ``` - Status: - Che Cluster Running: Available - Che URL: http://che-my-eclipse-che.gcp.my-ide.cloud - Che Version: 7.26.0 - ... - ``` - - By opening this URL in a web browser, Eclipse Che is ready to use. - - ## Defaults - By default, the operator deploys Eclipse Che with: - * Bundled PostgreSQL and Keycloak - * Common PVC strategy - * Auto-generated passwords - * TLS mode (secure ingresses) - * Communicate between components using internal cluster SVC names - - ## Installation Options - Eclipse Che operator installation options include: - * Connection to external database and Keycloak - * Configuration of default passwords and object names - * PVC strategy (once shared PVC for all workspaces, PVC per workspace, or PVC per volume) - * Authentication options - - Use `kubectl edit checluster/eclipse-che -n my-eclipse-che` to update Eclipse Che configuration. - See more configuration options in the [Installation guide](https://www.eclipse.org/che/docs/che-7/installation-guide/configuring-the-che-installation/). - - ### External Database and Keycloak - Follow the guides to configure external [Keycloak](https://www.eclipse.org/che/docs/che-7/administration-guide/configuring-authorization/#configuring-che-to-use-external-keycloak_che) - and [Database](https://www.eclipse.org/che/docs/che-7/administration-guide/external-database-setup/) setup. - - ### Certificates and TLS Secrets - Eclipse Che uses auto-generated self-signed certificates by default and TLS mode is on. - To use a default certificate of a Kubernetes cluster set empty value in `spec.k8s.tlsSecretName` field: - ``` - kubectl patch checluster/eclipse-che --type=json -p '[{"op": "replace", "path": "/spec/k8s/tlsSecretName", "value": ""}]' -n my-eclipse-che - ``` - displayName: Eclipse Che - icon: - - base64data: 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 - mediatype: image/png - install: - spec: - clusterPermissions: - - rules: - - apiGroups: - - "" - resources: - - nodes - verbs: - - get - - apiGroups: - - oauth.openshift.io - resources: - - oauthclients - verbs: - - create - - delete - - deletecollection - - get - - list - - patch - - update - - watch - - apiGroups: - - rbac.authorization.k8s.io - resources: - - clusterrolebindings - - clusterroles - verbs: - - list - - create - - watch - - update - - get - - delete - - apiGroups: - - rbac.authorization.k8s.io - resources: - - roles - - rolebindings - verbs: - - get - - create - - update - - delete - - apiGroups: - - org.eclipse.che - resources: - - checlusters - - checlusters/status - - checlusters/finalizers - - checlusters/status - - checlusterbackups - - checlusterbackups/status - - checlusterbackups/finalizers - - checlusterrestores - - checlusterrestores/status - - backupserverconfigurations - - backupserverconfigurations/status - - chebackupserverconfigurations - verbs: - - '*' - - apiGroups: - - "" - resources: - - namespaces - verbs: - - get - - list - - create - - update - - watch - - apiGroups: - - "" - resources: - - pods/exec - verbs: - - create - - apiGroups: - - apps - resources: - - secrets - verbs: - - list - - apiGroups: - - "" - resources: - - secrets - verbs: - - list - - get - - create - - update - - patch - - delete - - apiGroups: - - "" - resources: - - persistentvolumeclaims - verbs: - - create - - get - - list - - watch - - delete - - apiGroups: - - "" - resources: - - pods - verbs: - - get - - list - - create - - watch - - delete - - apiGroups: - - apps - - extensions - resources: - - deployments - - replicasets - verbs: - - '*' - - apiGroups: - - route.openshift.io - resources: - - routes - verbs: - - '*' - - apiGroups: - - route.openshift.io - resources: - - routes/custom-host - verbs: - - create - - apiGroups: - - "" - resources: - - events - verbs: - - watch - - apiGroups: - - apps - resources: - - replicasets - verbs: - - list - - get - - patch - - delete - - apiGroups: - - extensions - resources: - - ingresses - verbs: - - '*' - - apiGroups: - - networking.k8s.io - resources: - - ingresses - verbs: - - list - - create - - watch - - get - - delete - - apiGroups: - - apiextensions.k8s.io - resources: - - customresourcedefinitions - verbs: - - get - - create - - update - - apiGroups: - - operators.coreos.com - resources: - - subscriptions - verbs: - - get - - apiGroups: - - operators.coreos.com - resources: - - clusterserviceversions - verbs: - - list - - get - - watch - - apiGroups: - - metrics.k8s.io - resources: - - pods - - nodes - verbs: - - get - - list - - watch - - apiGroups: - - cert-manager.io - resources: - - issuers - - certificates - verbs: - - create - - get - - list - - update - - apiGroups: - - "" - resources: - - configmaps - - persistentvolumeclaims - - pods - - secrets - - serviceaccounts - - services - verbs: - - '*' - - apiGroups: - - apps - resourceNames: - - che-operator - resources: - - deployments/finalizers - verbs: - - update - - apiGroups: - - batch - resources: - - jobs - verbs: - - create - - delete - - get - - update - - watch - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings - verbs: - - '*' - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings/finalizers - verbs: - - update - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings/status - verbs: - - get - - patch - - update - - apiGroups: - - monitoring.coreos.com - resources: - - servicemonitors - verbs: - - create - - get - - nonResourceURLs: - - /metrics - verbs: - - get - - apiGroups: - - che.eclipse.org - resources: - - kubernetesimagepullers - verbs: - - '*' - - apiGroups: - - workspace.devfile.io - resources: - - devworkspaces - - devworkspacetemplates - verbs: - - get - - list - - watch - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings - - components - verbs: - - get - - list - - watch - - apiGroups: - - workspace.devfile.io - resources: - - devworkspaces - - devworkspacetemplates - verbs: - - create - - delete - - deletecollection - - patch - - update - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings - - components - verbs: - - create - - delete - - deletecollection - - patch - - update - - apiGroups: - - "" - resources: - - configmaps - verbs: - - get - - list - - watch - - create - - update - - patch - - delete - - apiGroups: - - "" - resources: - - configmaps/status - verbs: - - get - - update - - patch - - apiGroups: - - "" - resources: - - events - verbs: - - create - - patch - - apiGroups: - - authentication.k8s.io - resources: - - tokenreviews - verbs: - - create - - apiGroups: - - authorization.k8s.io - resources: - - subjectaccessreviews - verbs: - - create - - apiGroups: - - "" - resourceNames: - - workspace-preferences-configmap - resources: - - configmaps - verbs: - - create - - delete - - get - - patch - - apiGroups: - - "" - resources: - - configmaps - - persistentvolumeclaims - - pods - - secrets - - serviceaccounts - verbs: - - '*' - - apiGroups: - - "" - resources: - - events - - namespaces - verbs: - - get - - list - - watch - - apiGroups: - - "" - resources: - - pods/exec - verbs: - - create - - apiGroups: - - "" - resourceNames: - - workspace-credentials-secret - resources: - - secrets - verbs: - - create - - delete - - get - - patch - - apiGroups: - - "" - resources: - - services - verbs: - - '*' - - apiGroups: - - admissionregistration.k8s.io - resources: - - mutatingwebhookconfigurations - - validatingwebhookconfigurations - verbs: - - create - - delete - - get - - list - - patch - - update - - watch - - apiGroups: - - apps - resourceNames: - - devworkspace-controller - resources: - - deployments/finalizers - verbs: - - update - - apiGroups: - - apps - - extensions - resources: - - deployments - verbs: - - get - - list - - watch - - apiGroups: - - apps - - extensions - resources: - - deployments - - replicasets - verbs: - - '*' - - apiGroups: - - apps - - extensions - resources: - - replicasets - verbs: - - get - - list - - watch - - apiGroups: - - batch - resources: - - jobs - verbs: - - create - - delete - - get - - list - - patch - - update - - watch - - apiGroups: - - controller.devfile.io - resources: - - '*' - verbs: - - '*' - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings - verbs: - - '*' - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings/status - verbs: - - get - - patch - - update - - apiGroups: - - coordination.k8s.io - resources: - - leases - verbs: - - create - - get - - update - - apiGroups: - - monitoring.coreos.com - resources: - - servicemonitors - verbs: - - create - - get - - apiGroups: - - networking.k8s.io - resources: - - ingresses - verbs: - - '*' - - apiGroups: - - oauth.openshift.io - resources: - - oauthclients - verbs: - - create - - delete - - deletecollection - - get - - list - - patch - - update - - watch - - apiGroups: - - rbac.authorization.k8s.io - resources: - - clusterrolebindings - - clusterroles - - rolebindings - - roles - verbs: - - create - - get - - list - - update - - watch - - apiGroups: - - route.openshift.io - resources: - - routes - verbs: - - '*' - - apiGroups: - - route.openshift.io - resources: - - routes/custom-host - verbs: - - create - - apiGroups: - - workspace.devfile.io - resources: - - '*' - verbs: - - '*' - - apiGroups: - - workspace.devfile.io - resources: - - devworkspaces - - devworkspacetemplates - verbs: - - get - - list - - watch - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings - - components - verbs: - - get - - list - - watch - serviceAccountName: che-operator - deployments: - - name: che-operator - spec: - replicas: 1 - selector: - matchLabels: - app: che-operator - strategy: - type: RollingUpdate - template: - metadata: - labels: - app: che-operator - app.kubernetes.io/component: che-operator - app.kubernetes.io/instance: che - app.kubernetes.io/managed-by: olm - app.kubernetes.io/name: che - app.kubernetes.io/part-of: che.eclipse.org - spec: - containers: - - args: - - --leader-elect - command: - - /manager - env: - - name: WATCH_NAMESPACE - valueFrom: - fieldRef: - fieldPath: metadata.annotations['olm.targetNamespaces'] - - name: POD_NAME - valueFrom: - fieldRef: - fieldPath: metadata.name - - name: OPERATOR_NAME - value: che-operator - - name: CHE_VERSION - value: 7.40.0 - - name: RELATED_IMAGE_che_server - value: quay.io/eclipse/che-server@sha256:cb199aaf25db067a7ee4362771b0133ce923472fee6e71acfa653f6392679e73 - - name: RELATED_IMAGE_dashboard - value: quay.io/eclipse/che-dashboard@sha256:04fa782a211721aa332116135e108aa928c6cd0b640261546336a297d0eca915 - - name: RELATED_IMAGE_plugin_registry - value: quay.io/eclipse/che-plugin-registry@sha256:ded7b41cbfff13a00bbac2dc93c305e4bef9e457d32a47c1e023d3857311f58d - - name: RELATED_IMAGE_devfile_registry - value: quay.io/eclipse/che-devfile-registry@sha256:92f1aec9db749e752bb1c53f91bc1fca804f0e5b54d4470c4c356410c5bb3c06 - - name: RELATED_IMAGE_che_tls_secrets_creation_job - value: quay.io/eclipse/che-tls-secret-creator@sha256:54df0ccf598d230e278d512c3b44bdf24edb280f71da32643db46e0120bfaee0 - - name: RELATED_IMAGE_pvc_jobs - value: registry.access.redhat.com/ubi8-minimal@sha256:16da4d4c5cb289433305050a06834b7328769f8a5257ad5b4a5006465a0379ff - - name: RELATED_IMAGE_postgres - value: quay.io/eclipse/che--centos--postgresql-96-centos7@sha256:b681d78125361519180a6ac05242c296f8906c11eab7e207b5ca9a89b6344392 - - name: RELATED_IMAGE_postgres_13_3 - value: quay.io/eclipse/che--centos--postgresql-13-centos7@sha256:71b24684d64da46f960682cc4216222a7e4ed8b1a31dd5a865b3e71afdea20d2 - - name: RELATED_IMAGE_keycloak - value: quay.io/eclipse/che-keycloak@sha256:9e2c6e38a2c2baf574f7cc50391c1e63a249d4399be68048b50e013775842f21 - - name: RELATED_IMAGE_che_workspace_plugin_broker_metadata - value: quay.io/eclipse/che-plugin-metadata-broker@sha256:df1ea2eadb28dbc97761adf4ea984af5ca941025a67b39c6abe373816a84bba9 - - name: RELATED_IMAGE_che_workspace_plugin_broker_artifacts - value: quay.io/eclipse/che-plugin-artifacts-broker@sha256:4891a6e19be9eae59372f4b31144653f9bd1284e0301ecfe896a099ca6a12b58 - - name: RELATED_IMAGE_che_server_secure_exposer_jwt_proxy_image - value: quay.io/eclipse/che-jwtproxy@sha256:881d1c91e7f5840314f25104ef5c0acee59ed484a5f9ef39daf3008725ea1033 - - name: RELATED_IMAGE_single_host_gateway - value: quay.io/eclipse/che--traefik@sha256:eb30f9f09a65cee1fab5ef9c64cb4ec91b800dc3fdd738d62a9d4334f0114683 - - name: RELATED_IMAGE_single_host_gateway_config_sidecar - value: quay.io/che-incubator/configbump@sha256:175ff2ba1bd74429de192c0a9facf39da5699c6da9f151bd461b3dc8624dd532 - - name: RELATED_IMAGE_devworkspace_controller - value: quay.io/devfile/devworkspace-controller@sha256:eacb8a72b9171e888ba54be44fa37b95a19165fda97a3fa44695ecdd3b855f56 - - name: RELATED_IMAGE_internal_rest_backup_server - value: quay.io/eclipse/che-backup-server-rest@sha256:023639e023ef5d1370e4381037b6c162733ffa11ef21d902a497034f8e9ab91a - - name: RELATED_IMAGE_gateway_authentication_sidecar - value: quay.io/openshift/origin-oauth-proxy@sha256:4814e2dc961acf570a6318294ae0f253426a3d387c9b128a2522f416d0cf6e2f - - name: RELATED_IMAGE_gateway_authorization_sidecar - value: quay.io/openshift/origin-kube-rbac-proxy@sha256:fcce680899a37d6bdc621a58b6da0587d01cbb49a2d7b713e0d606dffc9f685a - - name: RELATED_IMAGE_gateway_header_sidecar - value: quay.io/che-incubator/header-rewrite-proxy@sha256:bd7873b8feef35f218f54c6251ea224bea2c8bf202a328230019a0ba2941245d - - name: CHE_FLAVOR - value: che - - name: CONSOLE_LINK_NAME - value: che - - name: CONSOLE_LINK_DISPLAY_NAME - value: Eclipse Che - - name: CONSOLE_LINK_SECTION - value: Red Hat Applications - - name: CONSOLE_LINK_IMAGE - value: /dashboard/assets/branding/loader.svg - - name: CHE_IDENTITY_SECRET - value: che-identity-secret - - name: CHE_IDENTITY_POSTGRES_SECRET - value: che-identity-postgres-secret - - name: CHE_POSTGRES_SECRET - value: che-postgres-secret - - name: CHE_SERVER_TRUST_STORE_CONFIGMAP_NAME - value: ca-certs - - name: MAX_CONCURRENT_RECONCILES - value: "1" - - name: ALLOW_DEVWORKSPACE_ENGINE - value: "true" - - name: ADD_COMPONENT_READINESS_INIT_CONTAINERS - value: "false" - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUNDCMNSTEZJTHFTGKZJWMI4WKNDBHBRDIZJYGY4DCMZYGBRWKMRUGYZDMNZUGU4TOYJUHBRDQMLDGEZTCY3CMJTDANJVMRSDKZBQMMZQ____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:4bce2e39fee6b9e4a8b4e8681380ce2462674597a48b81c131cbbf055dd5d0c3 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUN3DMY3GMMBQMQZWMMTEMFTDANBWG42TMMJYMM2DAODFGA4GMMBRHFTDENLCHEYWKYZQHBSDENZZGA4TIZTEMRRDAMLGGU2TSNJQGJRA____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:7cf6f00d3f2daf04675618c408e08f019f25b91ec08d279094fddb01f559502b - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUMTFGJRDGNLGMIZTGYZXHA3TGOBTGY4DIMRXMIYGEMJUME2DMNJZMI3GEMBTGEYTGZBYHA3TINZSMM2DINLBMU3DCNLEHE3TMMLEGM4Q____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:2e2b35fb33c78738368427b0b14a4659b6b03113d887472c445ae615d9761d39 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUYLFGUYTENDFGMYTSODBMM3DSNZXMNQTSNZTMFQWMNBYHA2WCMJUMU4DAMDEGY2DOYZZGZQTEM3EGE2WCMTCGZRGCYTCMU4GMZLGGJQQ____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:ae5124e3198ac6977ca973aaf4885a14e800d647c96a23d15a2b6babbe8fef2a - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUMTFGQ4WMYLGMI4WCYJWGUYTSZTDGYZTAMJZME3TEYJUGUZDMMRSGJRDMOJQGVSWIMBRMRRTIOBUMMZWKOLGGUYTGMLBMUYDAYRVGQ3A____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:2e49fafb9aa6519fc63019a72a4526222b6905ed01dc484c3e9f5131ae00b546 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUMRXGY3TMNLDMYZWKNTGGU2GCZJTMJSDOMBTGI2TCMZSMVTDAYRXHEYDCOJXHE4GCZTDGA4DCYZVMZTDMNZVGA3TMNZZHE2WIZRQMMZQ____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:276765cf3e6f54ae3bd70325132ef0b79019798afc081c5ff6750767995df0c3 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUZBVGY2WEOJYMYYTCMDFMZSTIMRUGZTGKMLGGI2WKZJWGJSDONDEG4YGMNDGHE4TSZJUGY3TSZJYMY3TAOBVMYYTQYRRG4YTCZRXGZSA____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:d565b98f110efe4246fe1f25ee62d74d70f4f999e4679e8f7085f18b1711f76d - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUOBUHFRTKODFHBQTGNZRMEZGEZRZMVSDONRQGBRWEZRYMM4DINRTMJRGMNLGMZRDINBSG5RWEMLGGJRWINDGGNSDGMRXGQ3TMNRQMU3A____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:849c58e8a371a2bf9ed7600cbf8c8463bbf5ffb4427cb1f2cd4f3d32747660e6 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUNJVG4YDGYLFGVTGCZLCMVSGKZJVGZTGIY3FGM4DOOLGMEZDEOBRMNRTENRQGQ4DQZBYME2DQODGMY3TOZLEGNSDIMDGG43TQZDEMY3Q____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:55703ae5faebedee56fdce3879fa2281cc260488d8a488ff77ed3d40f778ddf7 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUZDGMMZTSYLBMQ4TMZRUGU4GGNZZGZSTOMTBGJSDAYRWGI4GMZDGMQ4DCNZWMU2TMOLEGQ4TCYLDGMZTOMBSGI4TSZLEHBSTQYZXGFRQ____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:dfc39aad96f458c796e72a2d0b628fdfd8176e569d491ac33702299ed8e8c71c - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUOJXGRSGIMDBGVQWEN3FGA3TKZBXMQZTINDBMYZGKODFGJQTEZRYGBQTANRZMU4GCNLBGRRTSZTGMMZGCNJXMU2DEMLCGYZGCYJRG5QQ____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:974dd0a5ab7e075d7d344af2e8e2a2f80a069e8a5a4c9ffc2a57e421b62aa17a - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUOBSHE3WMYRRG4ZTEZBYG5SDKNTBGBQWCNDDGY4TCMBVMU3WEY3GGRRDKMBQMU2DAYTCGE3DINBWMQ3DEOBWMMYDOYRYHA2GKYRXGNSA____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:8297fb1732d87d56a0aa4c69105e7bcf4b500e40bb16446d6286c07b884eb73d - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUMBZGVRTENBQGU2TAMZTMUZDCOLEGVQTSZRWMZSTSOBTGVRDOOLDGVSDGNBRGZTDAZDGMJRDEMRYMQZDSNJXGEZWKOBRMQZDOYZWGYYQ____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:095c24055033e219d5a9f6fe9835b79c5d3416f0dfbb228d295713e81d27c661 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUNJWMU3TSNRQHA2TOOBYGZQTANLGMM2DKOLFMQ3GKNZTMEYGCMZYGZTDCNBVMEZDINZUMMZDEODDGJRDOY3DMI4TOYJRMQYTQYRUMRTA____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:56e7960857886a05fc459ed6e73a0a386f145a2474c228c2b7ccb97a1d18b4df - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUZDCHA3GGOJSGQYTQYRZMY2DAYRSGY2TIYRYMZRTINZTGA3TGNJWHFSTAZDDHBQTAMLEG5QWIYZTGFRTSOJSGVSTKNBWHFSDEYRRGE2A____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:db86c92418b9f40b2654b8fc473073569e0dc8a01d7adc31c9925e5469d2b114 - - name: RELATED_IMAGE_mta_vscode_extension_plugin_registry_image_IBZWQYJSGU3DUNRRME4DSNZZG4ZDSOBQGQ2TQOJVGRSDKYLFGVQTKMBQGUZWCYJYMQYDKMDCGA3DKZLGMZTDMY3CMU3TIODEMFRTEYLCGIZGMNBWMJTA____ - value: quay.io/windupeng/mta-vscode-extension@sha256:61a897972980458954d5ae5a50053aa8d050b065efff6cbe748dac2ab22f46bf - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUNJQGJQWEY3GGY2TSOLGMRQWIYLCMVTDEOBZMRRWCZDDGVRTGMTDME3DEMTGMEYDEYRXGNQTOMTCGEYTGY3BGFSTKZJVMIYTOOJTG42Q____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:502abcf6599fdadabef289dcadc5c32ca622fa02b73a72b113ca1e5e5b179375 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUZRTHE4GKM3GMZSDKMRQGBRTKNTCMY2TMYJWMY3WMOLFHBSGENDBMEZWMNRTHFQTMMJSGU4DKMDGGE3DSNBRGQ2TEOBSGYYGIY3FHBQQ____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:f398e3ffd5200c56bf56a6f7f9e8db4aa3f639a6125850f169414528260dce8a - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUZJTG42GKYZTGY3TINBXMFTGKYJZMIYTEZRVME4GMNRWHEYGCNTGHE4TGNJSGY2DAODBGM3TGMLGGUZDEYJVGNSTKZBQMJTGGMRYG5TA____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:e374ec367447afea9b12f5a8f6690a6f993526408a3731f522a53e5d0bfc287f - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUMTDMI2GMNZQMVSGEY3EMFRDGYRSG44WIYLFGUZWENTBG42TGZBWGNTGKZJQGNRGGYLFGNSDEYJTHA2WKMRUMYZDKZJWHE2WGMBTMRTA____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:2cb4f70edbcdab3b279dae53b6a753d63fee03bcae3d2a385e24f25e695c03df - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUNDGMRRDANBQGI3GGYTFMRSGEZTFGUZTCOBUMFTGGZBWMZRTKY3CGYYTGMTBGIZGEZJVHAYTAYRRGNSDGODBGEZDKYLGMQYDQMZSGIYQ____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:4fdb04026cbeddbfe53184afcd6fc5cb6132a22be5810b13d38a125afd083221 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUNBZGFRTMMTBGNQWGNZXGVSDKNBSGZSDOMTBGU4WCYZRHBRGIZBVGBTDKZRVMQ3DCZBQG5TGEZTCGM2GKMDDMQ3WMZLEGNSDIZDBGIYQ____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:491c62a3ac775d5426d72a59ac18bdd50f5f5d61d07fbfb34e0cd7fed3d4da21 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUNJZG5QTGMDDHFRTGZTDG5SGEYTGMI4WKMBYMIYWEYRSGE3TSZBYMVRDANRSMFSDCNBYGQ4DAZTGGMZDIOBZMI2GMMBRMVRTMNZVMY2A____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:597a30c9c3fc7dbbfb9e08b1bb2179d8eb062ad148480ff32489b4f01ec675f4 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUNTEGBRTINBQME3WIYZWGQ4DQMJWMZRWINBYHA2WEOLDMM4DKZRQMVRDAZRTHEYTMNJZMJRDSZTDHBQTSMJSGMYDONLCMVQTONJRGY2Q____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:6d0c440a7dc648816fcd4885b9cc85f0eb0f391659bb9fc8a9123075bea75165 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUMTCME4GMZTGMU3GMMTEGY2GMOBSHA4TMMZWG5QTGNDGMRRDMNJXGY3TEOJYGQ2TIODDG44TANDGHEYDMMJXHBSTQZJQHAZDSNBSG43Q____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:2ba8fffe6f2d64f82896367a34fdb657672984548c7904f906178e8e08294277 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUYTCGQYDIZTGMFQTCMRVGY2WEZLCGEZGENDDMQ4DCNRQMNTGCM3GMYZWKZRTMJSTIMRQGQZTAYJWGU3DEZRRMZSTIOBWGM4WGYTGGFTA____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:bb404ffaa12565beb12b4cd8160cfa3ff3ef3be420430a6562f1fe48639cbf1f - - name: RELATED_IMAGE_che_theia_plugin_registry_image_IBZWQYJSGU3DUNZTGU4DQZRYMQ3GENJQG44DOMRWMU4TAYRUHBSTANTGGEYDKOJUG42TQYZZGM2TGMRTGM4WIYZRMVRTIOBRHEZGKN3GMFQTEZTDG4YQ____ - value: quay.io/eclipse/che-theia@sha256:73588f8d6b5078726e90b48e06f10594758c93532339dc1ec48192e7faa2fc71 - - name: RELATED_IMAGE_che_machine_exec_plugin_registry_image_IBZWQYJSGU3DUMTFGI2DIZDEGVRDGZLEGBRGCZRQGA2TOMDBGIYWCOJQGRRDIMBWGZQTGNLCGE3DCODBGBQTAZTCGBQWCMBSMUZTINLDGRTGCZLFMVRA____ - value: quay.io/eclipse/che-machine-exec@sha256:2e244dd5b3ed0baf00570a21a904b4066a35b1618a0a0fb0aa02e345c4faeeeb - - name: RELATED_IMAGE_che_theia_endpoint_runtime_binary_plugin_registry_image_IBZWQYJSGU3DUZBUGMZDOYRUGBRWEM3BMFSTKZBVHFTDMMJYMMYGMZJVHEYDGNRYGNSWCNDGMU2WCNBRGJTDIZBUGIYWMNZYG5RTON3FMFTDSNBTGE2Q____ - value: quay.io/eclipse/che-theia-endpoint-runtime-binary@sha256:d4327b40cb3aae5d59f618c0fe5903683ea4fe5a412f4d421f787c77eaf94315 - - name: RELATED_IMAGE_che_editor_jupyter_plugin_registry_image_IBZWQYJSGU3DUOBTGQZTSYLFHFSWIY3BMEZWCOJXGUZTMNZUGIZTCNLBG44TCMTGHEZWKNBZHFTDIOJYGQ3WIYJQHE2GGNBYGAYDGMLFMFSTIYTBGQ3Q____ - value: index.docker.io/ksmster/che-editor-jupyter@sha256:83439ae9edcaa3a97536742315a7912f93e499f49847da094c480031eae4ba47 - - name: RELATED_IMAGE_dirigible_openshift_plugin_registry_image_IBZWQYJSGU3DUMZTGY2TMMZVMQYWKMBUGAZTMOJXMRSWCMBWG42GEYTCMRRTONBZMM2GEZJSMRRDEOJYGE4GCOJTMI4GKMLFGUZWGM3DGUYTINBRGEZQ____ - value: index.docker.io/dirigiblelabs/dirigible-openshift@sha256:3365635d1e0403697dea0674bbbdc749c4be2db29818a93b8e1e53c3c5144113 - - name: RELATED_IMAGE_che_idea_plugin_registry_image_IBZWQYJSGU3DUYRQGI3DMM3CGJQWKYJVGIYWEY3CMNQWMZDCMVRTOZLCMEZDOYRWMQ4DANDFGM4DQNLEMM2TIYTCG5SDKYZXG4YWKZBXG5SDIYJZG5TA____ - value: quay.io/che-incubator/che-idea@sha256:b02663b2aea521bcbcafdbec7eba27b6d804e3885dc54bb7d5c771ed77d4a97f - - name: RELATED_IMAGE_che_pycharm_plugin_registry_image_IBZWQYJSGU3DUOJUGI4DGMBUMJQWIZJXGVSTMYRWHEYGENDGGQ4DANLFGE2TONZYMQ2WKZRXMMZGGZLDGMYTSMJQMUZWEZBXGRRTENZTMMYTEYRWGJTA____ - value: quay.io/che-incubator/che-pycharm@sha256:9428304bade75e6b690b4f4805e15778d5ef7c2cec31910e3bd74c273c12b62f - - name: RELATED_IMAGE_eclipse_broadway_plugin_registry_image_IBZWQYJSGU3DUNJXMM4DEY3EHAYDMYJVGZTDMOLBME4DMNRTMY3DQNBQGVSDANZXHBRDMMRYMEZDSYJWGRTGEMJWHA4DCYRRGFRWKOLGGQ4DIZDEME3Q____ - value: index.docker.io/wsskeleton/eclipse-broadway@sha256:57c82cd806a56f69aa8663f68405d0778b628a29a64fb16881b11ce9f484dda7 - - name: RELATED_IMAGE_code_server_plugin_registry_image_IBZWQYJSGU3DUZLGGA3TEOBRGAYDIOJQHFRGEMTDGIZDQNBSGJSGMMTFHE4WCNLCME2WKNBVGBTGGZJXGU2DMYRYMZQTCOBWHA2TEZRSGNRGMNRXGUYQ____ - value: index.docker.io/codercom/code-server@sha256:ef07281004909bb2c228422df2e99a5ba5e450fce7546b8fa186852f23bf6751 - - name: RELATED_IMAGE_universal_developer_image_plugin_registry_image_IBZWQYJSGU3DUNJTMNSWGNJYMRSDCOJQMRSDCZJQGYYTAMBUG44GCZJYG44WIN3DGI4GCYTEHBTGGOBYGNSDKZTEMY2WEZJTMVRDMZJZGQZWMZJVMU3Q____ - value: quay.io/devfile/universal-developer-image@sha256:53cec58dd190dd1e06100478ae879d7c28abd8fc883d5fdf5be3eb6e943fe5e7 - - name: RELATED_IMAGE_che_code_plugin_registry_image_NFXHG2LEMVZHG___ - value: quay.io/che-incubator/che-code@sha256:518dd7a3890cd49910ea56a9a3912946940d274c7fca8a84e479df67b82857f1 - - name: RELATED_IMAGE_che_buildah_base_plugin_registry_image_IBZWQYJSGU3DUNBRG4ZDAM3EHA3DEOLFMRSDSMTGGE4DOYLGMQZWKYTCGNSDQZDDGI4DGMZYMQZTIOBQHFSWENZVMZTGGMTFGA4GCNBQGBTDQZBVGZRA____ - value: quay.io/eclipse/che-buildah-base@sha256:417203d8629edd92f187afd3ebb3d8dc28338d34809eb75ffc2e08a400f8d56b - - name: RELATED_IMAGE_che_sidecar_workspace_data_sync_plugin_registry_image_IBZWQYJSGU3DUOBYMQYDCMRVHAZTOZBVME2TOY3CGI2GEYRTMVSDQMLFGZQTQZRUGEYTSYJVGA2DGYRXHEZDMYTEGJRGIMBRG4YTAOBVGRRTINDGGEYA____ - value: quay.io/eclipse/che-sidecar-workspace-data-sync@sha256:88d0125837d5a57cb24bb3ed81e6a8f4119a5043b7926bd2bd01710854c44f10 - - name: RELATED_IMAGE_che_buildkit_base_plugin_registry_image_IBZWQYJSGU3DUZLGMZQTSODEMQZGGZLEGMYGENJSGBRDENLBMZTGMMLBHA4DAZBRGIYWGZRWMIZWMODBMI2DEYJVGE2DSZLBMRQTINTCME3TSM3DMU4Q____ - value: quay.io/eclipse/che-buildkit-base@sha256:effa98dd2ced30b520b25afff1a880d121cf6b3f8ab42a5149eada46ba793ce9 - - name: RELATED_IMAGE_che__centos__mongodb_36_centos7_devfile_registry_image_NRQXIZLTOQWWCOJRGVSGEN3CMVRWCOBXGE4TQZTDMQ3TQNRQGA4DMOJYHFTGKODBGMZDOYJRME2GMNRVGA4DAMRVMI3DIYLCGI4GMY3DG42DEM3CGI______ - value: quay.io/eclipse/che--centos--mongodb-36-centos7@sha256:a915db7beca87198fcd7860086989fe8a327a1a4f6508025b64ab28fcc7423b2 - - name: RELATED_IMAGE_che__centos__mongodb_36_centos7_devfile_registry_image_NRQXIZLTOQWWMZTEMYZDIMZRMJRGGNTEHFQTSZBSMEYDGZJZGVRGEYTFHBQWIYRUHFQWEOLFMFRTGMBRMYZDMODBGM2TAMZYMM4DIMRYHAZDKOLDGE______ - value: quay.io/eclipse/che--centos--mongodb-36-centos7@sha256:ffdf2431bbc6d9a9d2a03e95bbbe8adb49ab9eac301f268a35038c84288259c1 - - name: RELATED_IMAGE_che__centos__mysql_57_centos7_devfile_registry_image_NRQXIZLTOQWWKMBYMVSTIZBUGNRDOMZVGY3DANZWHA2WENRZMJSGKNRTGM2WKMRXMNTDEMDDGAZDAZRTGQ2WENTDGZRTKOJUGAYDCOBTHA4DENZWGQ______ - value: quay.io/eclipse/che--centos--mysql-57-centos7@sha256:e08ee4d43b7356607685b69bde6335e27cf20c020f345b6c6c59400183882764 - - name: RELATED_IMAGE_che_cpp_rhel7_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-cpp-rhel7@sha256:aaf8cb7ff6d0559867fd14c59ddb87e7e642ab2dcb99807f407e95f2c45e1f84 - - name: RELATED_IMAGE_che_dotnet_2_2_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-dotnet-2.2@sha256:4463170271629f235ddcd53fddfe8ce19ac70d918fd008613b6983b4e5782139 - - name: RELATED_IMAGE_che_dotnet_3_1_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-dotnet-3.1@sha256:58ac9fd8aeff6a1d0ceb8d6b4eb64d439cb55b0a8b42fbbd2ebb8e876cff140c - - name: RELATED_IMAGE_che_golang_1_17_devfile_registry_image_MVRDSNDCHBRQ____ - value: quay.io/eclipse/che-golang-1.17@sha256:f4a25d893351679f800f3d10cf8999a6685c74967d02488f34378fa8cf4811d6 - - name: RELATED_IMAGE_che_java11_gradle_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-java11-gradle@sha256:2a3079baf4556b3a81d54def3d293ecd54109130155b36a968ccdfe0e4ebb4cf - - name: RELATED_IMAGE_che_java11_maven_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-java11-maven@sha256:cc9e3cb0b00357ed118c130ce9f8e8e4724c718f8e2a1bd294f81696116d7b32 - - name: RELATED_IMAGE_che_java8_maven_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-java8-maven@sha256:efff1c6b997cc14099173b3a7e94e700afcde3b246822888955f9e637aefcbdb - - name: RELATED_IMAGE_che_nodejs10_community_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-nodejs10-community@sha256:6ce1df02636cb02b4c07947a99cb75538b7a04a7a578d3941878d46f496c57c4 - - name: RELATED_IMAGE_che_nodejs10_ubi_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-nodejs10-ubi@sha256:87cb1ba4929c367eac010ab2b65ee04a67b0b0ecd0070b204204a7ed27308953 - - name: RELATED_IMAGE_che_nodejs12_community_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-nodejs12-community@sha256:66fd9710610641572b99479cfc13282b60c55a0cbe87042cfc7ea536a3ea4122 - - name: RELATED_IMAGE_che_nodejs8_centos_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-nodejs8-centos@sha256:b796be7ea39f9b7a1a43fad69a6093fe4d30fde0dbc4aa2b5fb4d44e9e0b3cbb - - name: RELATED_IMAGE_che_php_7_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-php-7@sha256:9e75e4202a53defd59a3901a569cfcee7269dbe31a9a6866e8c6d98aaa799b17 - - name: RELATED_IMAGE_che_python_3_8_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-python-3.8@sha256:d6e3bc3336514080d706cc399b479bc278cfdfe2aa8e254df108b194c04980eb - - name: RELATED_IMAGE_che_quarkus_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-quarkus@sha256:5a08ef7ecd394c78b1002be3ece6afb1fd084f28b0d48319443e01e805057928 - - name: RELATED_IMAGE_che_rust_1_39_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-rust-1.39@sha256:4b9f381ca0cb1f6efe1f56572a2698aa4e9b62e7c0f92da9b60bcf0c5e85733d - - name: RELATED_IMAGE_ubi8_minimal_devfile_registry_image_HAXDG___ - value: registry.access.redhat.com/ubi8-minimal@sha256:2f6b88c037c0503da7704bccd3fc73cb76324101af39ad28f16460e7bce98324 - - name: RELATED_IMAGE_ubi_minimal_devfile_registry_image_ - value: registry.access.redhat.com/ubi8/ubi-minimal@sha256:16da4d4c5cb289433305050a06834b7328769f8a5257ad5b4a5006465a0379ff - image: quay.io/eclipse/che-operator@sha256:68fd7b2d651c90c3e101fe836c99135ffe922a3b1927335dcde78de72e349e6d - imagePullPolicy: IfNotPresent - livenessProbe: - failureThreshold: 10 - httpGet: - path: /healthz - port: 6789 - initialDelaySeconds: 15 - periodSeconds: 10 - successThreshold: 1 - timeoutSeconds: 5 - name: che-operator - ports: - - containerPort: 60000 - name: metrics - readinessProbe: - failureThreshold: 10 - httpGet: - path: /readyz - port: 6789 - initialDelaySeconds: 5 - periodSeconds: 10 - successThreshold: 1 - timeoutSeconds: 5 - resources: - limits: - cpu: 500m - memory: 5Gi - requests: - cpu: 100m - memory: 64Mi - securityContext: - capabilities: - drop: - - ALL - privileged: false - readOnlyRootFilesystem: false - hostIPC: false - hostNetwork: false - hostPID: false - restartPolicy: Always - serviceAccountName: che-operator - terminationGracePeriodSeconds: 20 - permissions: - - rules: - - apiGroups: - - extensions - resources: - - ingresses - verbs: - - '*' - - apiGroups: - - networking.k8s.io - resources: - - ingresses - verbs: - - '*' - - apiGroups: - - batch - resources: - - jobs - verbs: - - '*' - - apiGroups: - - rbac.authorization.k8s.io - resources: - - roles - - rolebindings - verbs: - - '*' - - apiGroups: - - rbac.authorization.k8s.io - resources: - - clusterroles - - clusterrolebindings - verbs: - - '*' - - apiGroups: - - "" - resources: - - pods - - services - - serviceaccounts - - endpoints - - persistentvolumeclaims - - events - - configmaps - - secrets - - pods/exec - - pods/log - verbs: - - '*' - - apiGroups: - - "" - resources: - - namespaces - verbs: - - get - - apiGroups: - - apps - - extensions - resources: - - deployments - - replicasets - verbs: - - '*' - - apiGroups: - - monitoring.coreos.com - resources: - - servicemonitors - verbs: - - get - - create - - apiGroups: - - org.eclipse.che - resources: - - checlusters - - checlusters/status - - checlusters/finalizers - - checlusterbackups - - checlusterbackups/status - - checlusterbackups/finalizers - - checlusterrestores - - checlusterrestores/status - - backupserverconfigurations - - backupserverconfigurations/status - - chebackupserverconfigurations - verbs: - - '*' - - apiGroups: - - metrics.k8s.io - resources: - - pods - - nodes - verbs: - - get - - list - - watch - - apiGroups: - - operators.coreos.com - resources: - - subscriptions - - clusterserviceversions - - operatorgroups - verbs: - - '*' - - apiGroups: - - packages.operators.coreos.com - resources: - - packagemanifests - verbs: - - get - - list - - apiGroups: - - "" - resources: - - configmaps/status - verbs: - - get - - update - - patch - - apiGroups: - - "" - resources: - - events - verbs: - - create - - apiGroups: - - apps - resourceNames: - - che-operator - resources: - - deployments/finalizers - verbs: - - update - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings - verbs: - - '*' - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings/finalizers - verbs: - - update - - apiGroups: - - controller.devfile.io - resources: - - devworkspaceroutings/status - verbs: - - get - - patch - - update - - apiGroups: - - "" - resources: - - configmaps - verbs: - - get - - list - - watch - - create - - update - - patch - - delete - - apiGroups: - - coordination.k8s.io - resources: - - leases - verbs: - - get - - list - - watch - - create - - update - - patch - - delete - - apiGroups: - - "" - resources: - - events - verbs: - - create - - patch - serviceAccountName: che-operator - strategy: deployment - installModes: - - supported: true - type: OwnNamespace - - supported: true - type: SingleNamespace - - supported: true - type: MultiNamespace - - supported: false - type: AllNamespaces - keywords: - - eclipse che - - workspaces - - devtools - - developer - - ide - - java - links: - - name: Product Page - url: http://www.eclipse.org/che - - name: Documentation - url: https://www.eclipse.org/che/docs - - name: Operator GitHub Repo - url: https://github.com/eclipse-che/che-operator - maintainers: - - email: dfestal@redhat.com - name: David Festal - maturity: stable - provider: - name: Eclipse Foundation - replaces: eclipse-che-preview-kubernetes.v7.39.2 - version: 7.40.0 - relatedImages: - - name: che-operator-7.40.0 - image: quay.io/eclipse/che-operator@sha256:68fd7b2d651c90c3e101fe836c99135ffe922a3b1927335dcde78de72e349e6d - # tag: quay.io/eclipse/che-operator:7.40.0 - - name: configbump-0.1.4 - image: quay.io/che-incubator/configbump@sha256:175ff2ba1bd74429de192c0a9facf39da5699c6da9f151bd461b3dc8624dd532 - # tag: quay.io/che-incubator/configbump:0.1.4 - - name: header-rewrite-proxy-latest - image: quay.io/che-incubator/header-rewrite-proxy@sha256:bd7873b8feef35f218f54c6251ea224bea2c8bf202a328230019a0ba2941245d - # tag: quay.io/che-incubator/header-rewrite-proxy:latest - - name: devworkspace-controller-v0.9.0 - image: quay.io/devfile/devworkspace-controller@sha256:eacb8a72b9171e888ba54be44fa37b95a19165fda97a3fa44695ecdd3b855f56 - # tag: quay.io/devfile/devworkspace-controller:v0.9.0 - - name: che--centos--postgresql-13-centos7-1-71b24684d64da46f960682cc4216222a7e4ed8b1a31dd5a865b3e71afdea20d2 - image: quay.io/eclipse/che--centos--postgresql-13-centos7@sha256:71b24684d64da46f960682cc4216222a7e4ed8b1a31dd5a865b3e71afdea20d2 - # tag: quay.io/eclipse/che--centos--postgresql-13-centos7:1-71b24684d64da46f960682cc4216222a7e4ed8b1a31dd5a865b3e71afdea20d2 - - name: che--centos--postgresql-96-centos7-9.6-b681d78125361519180a6ac05242c296f8906c11eab7e207b5ca9a89b6344392 - image: quay.io/eclipse/che--centos--postgresql-96-centos7@sha256:b681d78125361519180a6ac05242c296f8906c11eab7e207b5ca9a89b6344392 - # tag: quay.io/eclipse/che--centos--postgresql-96-centos7:9.6-b681d78125361519180a6ac05242c296f8906c11eab7e207b5ca9a89b6344392 - - name: che--traefik-v2.5.0-eb30f9f09a65cee1fab5ef9c64cb4ec91b800dc3fdd738d62a9d4334f0114683 - image: quay.io/eclipse/che--traefik@sha256:eb30f9f09a65cee1fab5ef9c64cb4ec91b800dc3fdd738d62a9d4334f0114683 - # tag: quay.io/eclipse/che--traefik:v2.5.0-eb30f9f09a65cee1fab5ef9c64cb4ec91b800dc3fdd738d62a9d4334f0114683 - - name: che-backup-server-rest-b6cc165 - image: quay.io/eclipse/che-backup-server-rest@sha256:023639e023ef5d1370e4381037b6c162733ffa11ef21d902a497034f8e9ab91a - # tag: quay.io/eclipse/che-backup-server-rest:b6cc165 - - name: che-dashboard-7.40.0 - image: quay.io/eclipse/che-dashboard@sha256:04fa782a211721aa332116135e108aa928c6cd0b640261546336a297d0eca915 - # tag: quay.io/eclipse/che-dashboard:7.40.0 - - name: che-devfile-registry-7.40.0 - image: quay.io/eclipse/che-devfile-registry@sha256:92f1aec9db749e752bb1c53f91bc1fca804f0e5b54d4470c4c356410c5bb3c06 - # tag: quay.io/eclipse/che-devfile-registry:7.40.0 - - name: che-jwtproxy-0.10.0 - image: quay.io/eclipse/che-jwtproxy@sha256:881d1c91e7f5840314f25104ef5c0acee59ed484a5f9ef39daf3008725ea1033 - # tag: quay.io/eclipse/che-jwtproxy:0.10.0 - - name: che-keycloak-7.40.0 - image: quay.io/eclipse/che-keycloak@sha256:9e2c6e38a2c2baf574f7cc50391c1e63a249d4399be68048b50e013775842f21 - # tag: quay.io/eclipse/che-keycloak:7.40.0 - - name: che-plugin-artifacts-broker-v3.4.0 - image: quay.io/eclipse/che-plugin-artifacts-broker@sha256:4891a6e19be9eae59372f4b31144653f9bd1284e0301ecfe896a099ca6a12b58 - # tag: quay.io/eclipse/che-plugin-artifacts-broker:v3.4.0 - - name: che-plugin-metadata-broker-v3.4.0 - image: quay.io/eclipse/che-plugin-metadata-broker@sha256:df1ea2eadb28dbc97761adf4ea984af5ca941025a67b39c6abe373816a84bba9 - # tag: quay.io/eclipse/che-plugin-metadata-broker:v3.4.0 - - name: che-plugin-registry-7.40.0 - image: quay.io/eclipse/che-plugin-registry@sha256:ded7b41cbfff13a00bbac2dc93c305e4bef9e457d32a47c1e023d3857311f58d - # tag: quay.io/eclipse/che-plugin-registry:7.40.0 - - name: che-server-7.40.0 - image: quay.io/eclipse/che-server@sha256:cb199aaf25db067a7ee4362771b0133ce923472fee6e71acfa653f6392679e73 - # tag: quay.io/eclipse/che-server:7.40.0 - - name: che-tls-secret-creator-alpine-01a4c34 - image: quay.io/eclipse/che-tls-secret-creator@sha256:54df0ccf598d230e278d512c3b44bdf24edb280f71da32643db46e0120bfaee0 - # tag: quay.io/eclipse/che-tls-secret-creator:alpine-01a4c34 - - name: origin-kube-rbac-proxy-4.7 - image: quay.io/openshift/origin-kube-rbac-proxy@sha256:fcce680899a37d6bdc621a58b6da0587d01cbb49a2d7b713e0d606dffc9f685a - # tag: quay.io/openshift/origin-kube-rbac-proxy:4.7 - - name: origin-oauth-proxy-4.7 - image: quay.io/openshift/origin-oauth-proxy@sha256:4814e2dc961acf570a6318294ae0f253426a3d387c9b128a2522f416d0cf6e2f - # tag: quay.io/openshift/origin-oauth-proxy:4.7 - - name: ubi8-minimal-8.5-204 - image: registry.access.redhat.com/ubi8-minimal@sha256:16da4d4c5cb289433305050a06834b7328769f8a5257ad5b4a5006465a0379ff - # tag: registry.access.redhat.com/ubi8-minimal:8.5-204 - - name: che-plugin-sidecar-@sha256:4bce2e39fee6b9e4a8b4e8681380ce2462674597a48b81c131cbbf055dd5d0c3 - image: quay.io/eclipse/che-plugin-sidecar@sha256:4bce2e39fee6b9e4a8b4e8681380ce2462674597a48b81c131cbbf055dd5d0c3 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:4bce2e39fee6b9e4a8b4e8681380ce2462674597a48b81c131cbbf055dd5d0c3 - - name: che-plugin-sidecar-@sha256:7cf6f00d3f2daf04675618c408e08f019f25b91ec08d279094fddb01f559502b - image: quay.io/eclipse/che-plugin-sidecar@sha256:7cf6f00d3f2daf04675618c408e08f019f25b91ec08d279094fddb01f559502b - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:7cf6f00d3f2daf04675618c408e08f019f25b91ec08d279094fddb01f559502b - - name: che-plugin-sidecar-@sha256:2e2b35fb33c78738368427b0b14a4659b6b03113d887472c445ae615d9761d39 - image: quay.io/eclipse/che-plugin-sidecar@sha256:2e2b35fb33c78738368427b0b14a4659b6b03113d887472c445ae615d9761d39 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:2e2b35fb33c78738368427b0b14a4659b6b03113d887472c445ae615d9761d39 - - name: che-plugin-sidecar-@sha256:ae5124e3198ac6977ca973aaf4885a14e800d647c96a23d15a2b6babbe8fef2a - image: quay.io/eclipse/che-plugin-sidecar@sha256:ae5124e3198ac6977ca973aaf4885a14e800d647c96a23d15a2b6babbe8fef2a - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:ae5124e3198ac6977ca973aaf4885a14e800d647c96a23d15a2b6babbe8fef2a - - name: che-plugin-sidecar-@sha256:2e49fafb9aa6519fc63019a72a4526222b6905ed01dc484c3e9f5131ae00b546 - image: quay.io/eclipse/che-plugin-sidecar@sha256:2e49fafb9aa6519fc63019a72a4526222b6905ed01dc484c3e9f5131ae00b546 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:2e49fafb9aa6519fc63019a72a4526222b6905ed01dc484c3e9f5131ae00b546 - - name: che-plugin-sidecar-@sha256:276765cf3e6f54ae3bd70325132ef0b79019798afc081c5ff6750767995df0c3 - image: quay.io/eclipse/che-plugin-sidecar@sha256:276765cf3e6f54ae3bd70325132ef0b79019798afc081c5ff6750767995df0c3 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:276765cf3e6f54ae3bd70325132ef0b79019798afc081c5ff6750767995df0c3 - - name: che-plugin-sidecar-@sha256:d565b98f110efe4246fe1f25ee62d74d70f4f999e4679e8f7085f18b1711f76d - image: quay.io/eclipse/che-plugin-sidecar@sha256:d565b98f110efe4246fe1f25ee62d74d70f4f999e4679e8f7085f18b1711f76d - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:d565b98f110efe4246fe1f25ee62d74d70f4f999e4679e8f7085f18b1711f76d - - name: che-plugin-sidecar-@sha256:849c58e8a371a2bf9ed7600cbf8c8463bbf5ffb4427cb1f2cd4f3d32747660e6 - image: quay.io/eclipse/che-plugin-sidecar@sha256:849c58e8a371a2bf9ed7600cbf8c8463bbf5ffb4427cb1f2cd4f3d32747660e6 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:849c58e8a371a2bf9ed7600cbf8c8463bbf5ffb4427cb1f2cd4f3d32747660e6 - - name: che-plugin-sidecar-@sha256:55703ae5faebedee56fdce3879fa2281cc260488d8a488ff77ed3d40f778ddf7 - image: quay.io/eclipse/che-plugin-sidecar@sha256:55703ae5faebedee56fdce3879fa2281cc260488d8a488ff77ed3d40f778ddf7 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:55703ae5faebedee56fdce3879fa2281cc260488d8a488ff77ed3d40f778ddf7 - - name: che-plugin-sidecar-@sha256:dfc39aad96f458c796e72a2d0b628fdfd8176e569d491ac33702299ed8e8c71c - image: quay.io/eclipse/che-plugin-sidecar@sha256:dfc39aad96f458c796e72a2d0b628fdfd8176e569d491ac33702299ed8e8c71c - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:dfc39aad96f458c796e72a2d0b628fdfd8176e569d491ac33702299ed8e8c71c - - name: che-plugin-sidecar-@sha256:974dd0a5ab7e075d7d344af2e8e2a2f80a069e8a5a4c9ffc2a57e421b62aa17a - image: quay.io/eclipse/che-plugin-sidecar@sha256:974dd0a5ab7e075d7d344af2e8e2a2f80a069e8a5a4c9ffc2a57e421b62aa17a - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:974dd0a5ab7e075d7d344af2e8e2a2f80a069e8a5a4c9ffc2a57e421b62aa17a - - name: che-plugin-sidecar-@sha256:8297fb1732d87d56a0aa4c69105e7bcf4b500e40bb16446d6286c07b884eb73d - image: quay.io/eclipse/che-plugin-sidecar@sha256:8297fb1732d87d56a0aa4c69105e7bcf4b500e40bb16446d6286c07b884eb73d - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:8297fb1732d87d56a0aa4c69105e7bcf4b500e40bb16446d6286c07b884eb73d - - name: che-plugin-sidecar-@sha256:095c24055033e219d5a9f6fe9835b79c5d3416f0dfbb228d295713e81d27c661 - image: quay.io/eclipse/che-plugin-sidecar@sha256:095c24055033e219d5a9f6fe9835b79c5d3416f0dfbb228d295713e81d27c661 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:095c24055033e219d5a9f6fe9835b79c5d3416f0dfbb228d295713e81d27c661 - - name: che-plugin-sidecar-@sha256:56e7960857886a05fc459ed6e73a0a386f145a2474c228c2b7ccb97a1d18b4df - image: quay.io/eclipse/che-plugin-sidecar@sha256:56e7960857886a05fc459ed6e73a0a386f145a2474c228c2b7ccb97a1d18b4df - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:56e7960857886a05fc459ed6e73a0a386f145a2474c228c2b7ccb97a1d18b4df - - name: che-plugin-sidecar-@sha256:db86c92418b9f40b2654b8fc473073569e0dc8a01d7adc31c9925e5469d2b114 - image: quay.io/eclipse/che-plugin-sidecar@sha256:db86c92418b9f40b2654b8fc473073569e0dc8a01d7adc31c9925e5469d2b114 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:db86c92418b9f40b2654b8fc473073569e0dc8a01d7adc31c9925e5469d2b114 - - name: mta-vscode-extension-@sha256:61a897972980458954d5ae5a50053aa8d050b065efff6cbe748dac2ab22f46bf - image: quay.io/windupeng/mta-vscode-extension@sha256:61a897972980458954d5ae5a50053aa8d050b065efff6cbe748dac2ab22f46bf - # tag: quay.io/windupeng/mta-vscode-extension@sha256:61a897972980458954d5ae5a50053aa8d050b065efff6cbe748dac2ab22f46bf - - name: che-plugin-sidecar-@sha256:502abcf6599fdadabef289dcadc5c32ca622fa02b73a72b113ca1e5e5b179375 - image: quay.io/eclipse/che-plugin-sidecar@sha256:502abcf6599fdadabef289dcadc5c32ca622fa02b73a72b113ca1e5e5b179375 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:502abcf6599fdadabef289dcadc5c32ca622fa02b73a72b113ca1e5e5b179375 - - name: che-plugin-sidecar-@sha256:f398e3ffd5200c56bf56a6f7f9e8db4aa3f639a6125850f169414528260dce8a - image: quay.io/eclipse/che-plugin-sidecar@sha256:f398e3ffd5200c56bf56a6f7f9e8db4aa3f639a6125850f169414528260dce8a - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:f398e3ffd5200c56bf56a6f7f9e8db4aa3f639a6125850f169414528260dce8a - - name: che-plugin-sidecar-@sha256:e374ec367447afea9b12f5a8f6690a6f993526408a3731f522a53e5d0bfc287f - image: quay.io/eclipse/che-plugin-sidecar@sha256:e374ec367447afea9b12f5a8f6690a6f993526408a3731f522a53e5d0bfc287f - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:e374ec367447afea9b12f5a8f6690a6f993526408a3731f522a53e5d0bfc287f - - name: che-plugin-sidecar-@sha256:2cb4f70edbcdab3b279dae53b6a753d63fee03bcae3d2a385e24f25e695c03df - image: quay.io/eclipse/che-plugin-sidecar@sha256:2cb4f70edbcdab3b279dae53b6a753d63fee03bcae3d2a385e24f25e695c03df - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:2cb4f70edbcdab3b279dae53b6a753d63fee03bcae3d2a385e24f25e695c03df - - name: che-plugin-sidecar-@sha256:4fdb04026cbeddbfe53184afcd6fc5cb6132a22be5810b13d38a125afd083221 - image: quay.io/eclipse/che-plugin-sidecar@sha256:4fdb04026cbeddbfe53184afcd6fc5cb6132a22be5810b13d38a125afd083221 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:4fdb04026cbeddbfe53184afcd6fc5cb6132a22be5810b13d38a125afd083221 - - name: che-plugin-sidecar-@sha256:491c62a3ac775d5426d72a59ac18bdd50f5f5d61d07fbfb34e0cd7fed3d4da21 - image: quay.io/eclipse/che-plugin-sidecar@sha256:491c62a3ac775d5426d72a59ac18bdd50f5f5d61d07fbfb34e0cd7fed3d4da21 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:491c62a3ac775d5426d72a59ac18bdd50f5f5d61d07fbfb34e0cd7fed3d4da21 - - name: che-plugin-sidecar-@sha256:597a30c9c3fc7dbbfb9e08b1bb2179d8eb062ad148480ff32489b4f01ec675f4 - image: quay.io/eclipse/che-plugin-sidecar@sha256:597a30c9c3fc7dbbfb9e08b1bb2179d8eb062ad148480ff32489b4f01ec675f4 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:597a30c9c3fc7dbbfb9e08b1bb2179d8eb062ad148480ff32489b4f01ec675f4 - - name: che-plugin-sidecar-@sha256:6d0c440a7dc648816fcd4885b9cc85f0eb0f391659bb9fc8a9123075bea75165 - image: quay.io/eclipse/che-plugin-sidecar@sha256:6d0c440a7dc648816fcd4885b9cc85f0eb0f391659bb9fc8a9123075bea75165 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:6d0c440a7dc648816fcd4885b9cc85f0eb0f391659bb9fc8a9123075bea75165 - - name: che-plugin-sidecar-@sha256:2ba8fffe6f2d64f82896367a34fdb657672984548c7904f906178e8e08294277 - image: quay.io/eclipse/che-plugin-sidecar@sha256:2ba8fffe6f2d64f82896367a34fdb657672984548c7904f906178e8e08294277 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:2ba8fffe6f2d64f82896367a34fdb657672984548c7904f906178e8e08294277 - - name: che-plugin-sidecar-@sha256:bb404ffaa12565beb12b4cd8160cfa3ff3ef3be420430a6562f1fe48639cbf1f - image: quay.io/eclipse/che-plugin-sidecar@sha256:bb404ffaa12565beb12b4cd8160cfa3ff3ef3be420430a6562f1fe48639cbf1f - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:bb404ffaa12565beb12b4cd8160cfa3ff3ef3be420430a6562f1fe48639cbf1f - - name: che-theia-@sha256:73588f8d6b5078726e90b48e06f10594758c93532339dc1ec48192e7faa2fc71 - image: quay.io/eclipse/che-theia@sha256:73588f8d6b5078726e90b48e06f10594758c93532339dc1ec48192e7faa2fc71 - # tag: quay.io/eclipse/che-theia@sha256:73588f8d6b5078726e90b48e06f10594758c93532339dc1ec48192e7faa2fc71 - - name: che-machine-exec-@sha256:2e244dd5b3ed0baf00570a21a904b4066a35b1618a0a0fb0aa02e345c4faeeeb - image: quay.io/eclipse/che-machine-exec@sha256:2e244dd5b3ed0baf00570a21a904b4066a35b1618a0a0fb0aa02e345c4faeeeb - # tag: quay.io/eclipse/che-machine-exec@sha256:2e244dd5b3ed0baf00570a21a904b4066a35b1618a0a0fb0aa02e345c4faeeeb - - name: che-theia-endpoint-runtime-binary-@sha256:d4327b40cb3aae5d59f618c0fe5903683ea4fe5a412f4d421f787c77eaf94315 - image: quay.io/eclipse/che-theia-endpoint-runtime-binary@sha256:d4327b40cb3aae5d59f618c0fe5903683ea4fe5a412f4d421f787c77eaf94315 - # tag: quay.io/eclipse/che-theia-endpoint-runtime-binary@sha256:d4327b40cb3aae5d59f618c0fe5903683ea4fe5a412f4d421f787c77eaf94315 - - name: che-editor-jupyter-@sha256:83439ae9edcaa3a97536742315a7912f93e499f49847da094c480031eae4ba47 - image: index.docker.io/ksmster/che-editor-jupyter@sha256:83439ae9edcaa3a97536742315a7912f93e499f49847da094c480031eae4ba47 - # tag: index.docker.io/ksmster/che-editor-jupyter@sha256:83439ae9edcaa3a97536742315a7912f93e499f49847da094c480031eae4ba47 - - name: dirigible-openshift-@sha256:3365635d1e0403697dea0674bbbdc749c4be2db29818a93b8e1e53c3c5144113 - image: index.docker.io/dirigiblelabs/dirigible-openshift@sha256:3365635d1e0403697dea0674bbbdc749c4be2db29818a93b8e1e53c3c5144113 - # tag: index.docker.io/dirigiblelabs/dirigible-openshift@sha256:3365635d1e0403697dea0674bbbdc749c4be2db29818a93b8e1e53c3c5144113 - - name: che-idea-@sha256:b02663b2aea521bcbcafdbec7eba27b6d804e3885dc54bb7d5c771ed77d4a97f - image: quay.io/che-incubator/che-idea@sha256:b02663b2aea521bcbcafdbec7eba27b6d804e3885dc54bb7d5c771ed77d4a97f - # tag: quay.io/che-incubator/che-idea@sha256:b02663b2aea521bcbcafdbec7eba27b6d804e3885dc54bb7d5c771ed77d4a97f - - name: che-pycharm-@sha256:9428304bade75e6b690b4f4805e15778d5ef7c2cec31910e3bd74c273c12b62f - image: quay.io/che-incubator/che-pycharm@sha256:9428304bade75e6b690b4f4805e15778d5ef7c2cec31910e3bd74c273c12b62f - # tag: quay.io/che-incubator/che-pycharm@sha256:9428304bade75e6b690b4f4805e15778d5ef7c2cec31910e3bd74c273c12b62f - - name: eclipse-broadway-@sha256:57c82cd806a56f69aa8663f68405d0778b628a29a64fb16881b11ce9f484dda7 - image: index.docker.io/wsskeleton/eclipse-broadway@sha256:57c82cd806a56f69aa8663f68405d0778b628a29a64fb16881b11ce9f484dda7 - # tag: index.docker.io/wsskeleton/eclipse-broadway@sha256:57c82cd806a56f69aa8663f68405d0778b628a29a64fb16881b11ce9f484dda7 - - name: code-server-@sha256:ef07281004909bb2c228422df2e99a5ba5e450fce7546b8fa186852f23bf6751 - image: index.docker.io/codercom/code-server@sha256:ef07281004909bb2c228422df2e99a5ba5e450fce7546b8fa186852f23bf6751 - # tag: index.docker.io/codercom/code-server@sha256:ef07281004909bb2c228422df2e99a5ba5e450fce7546b8fa186852f23bf6751 - - name: universal-developer-image-@sha256:53cec58dd190dd1e06100478ae879d7c28abd8fc883d5fdf5be3eb6e943fe5e7 - image: quay.io/devfile/universal-developer-image@sha256:53cec58dd190dd1e06100478ae879d7c28abd8fc883d5fdf5be3eb6e943fe5e7 - # tag: quay.io/devfile/universal-developer-image@sha256:53cec58dd190dd1e06100478ae879d7c28abd8fc883d5fdf5be3eb6e943fe5e7 - - name: che-code-insiders - image: quay.io/che-incubator/che-code@sha256:518dd7a3890cd49910ea56a9a3912946940d274c7fca8a84e479df67b82857f1 - # tag: quay.io/che-incubator/che-code:insiders - - name: che-buildah-base-@sha256:417203d8629edd92f187afd3ebb3d8dc28338d34809eb75ffc2e08a400f8d56b - image: quay.io/eclipse/che-buildah-base@sha256:417203d8629edd92f187afd3ebb3d8dc28338d34809eb75ffc2e08a400f8d56b - # tag: quay.io/eclipse/che-buildah-base@sha256:417203d8629edd92f187afd3ebb3d8dc28338d34809eb75ffc2e08a400f8d56b - - name: che-sidecar-workspace-data-sync-@sha256:88d0125837d5a57cb24bb3ed81e6a8f4119a5043b7926bd2bd01710854c44f10 - image: quay.io/eclipse/che-sidecar-workspace-data-sync@sha256:88d0125837d5a57cb24bb3ed81e6a8f4119a5043b7926bd2bd01710854c44f10 - # tag: quay.io/eclipse/che-sidecar-workspace-data-sync@sha256:88d0125837d5a57cb24bb3ed81e6a8f4119a5043b7926bd2bd01710854c44f10 - - name: che-buildkit-base-@sha256:effa98dd2ced30b520b25afff1a880d121cf6b3f8ab42a5149eada46ba793ce9 - image: quay.io/eclipse/che-buildkit-base@sha256:effa98dd2ced30b520b25afff1a880d121cf6b3f8ab42a5149eada46ba793ce9 - # tag: quay.io/eclipse/che-buildkit-base@sha256:effa98dd2ced30b520b25afff1a880d121cf6b3f8ab42a5149eada46ba793ce9 - - name: che--centos--mongodb-36-centos7-latest-a915db7beca87198fcd7860086989fe8a327a1a4f6508025b64ab28fcc7423b2 - image: quay.io/eclipse/che--centos--mongodb-36-centos7@sha256:a915db7beca87198fcd7860086989fe8a327a1a4f6508025b64ab28fcc7423b2 - # tag: quay.io/eclipse/che--centos--mongodb-36-centos7:latest-a915db7beca87198fcd7860086989fe8a327a1a4f6508025b64ab28fcc7423b2 - - name: che--centos--mongodb-36-centos7-latest-ffdf2431bbc6d9a9d2a03e95bbbe8adb49ab9eac301f268a35038c84288259c1 - image: quay.io/eclipse/che--centos--mongodb-36-centos7@sha256:ffdf2431bbc6d9a9d2a03e95bbbe8adb49ab9eac301f268a35038c84288259c1 - # tag: quay.io/eclipse/che--centos--mongodb-36-centos7:latest-ffdf2431bbc6d9a9d2a03e95bbbe8adb49ab9eac301f268a35038c84288259c1 - - name: che--centos--mysql-57-centos7-latest-e08ee4d43b7356607685b69bde6335e27cf20c020f345b6c6c59400183882764 - image: quay.io/eclipse/che--centos--mysql-57-centos7@sha256:e08ee4d43b7356607685b69bde6335e27cf20c020f345b6c6c59400183882764 - # tag: quay.io/eclipse/che--centos--mysql-57-centos7:latest-e08ee4d43b7356607685b69bde6335e27cf20c020f345b6c6c59400183882764 - - name: che-cpp-rhel7-ce0526f - image: quay.io/eclipse/che-cpp-rhel7@sha256:aaf8cb7ff6d0559867fd14c59ddb87e7e642ab2dcb99807f407e95f2c45e1f84 - # tag: quay.io/eclipse/che-cpp-rhel7:ce0526f - - name: che-dotnet-2.2-ce0526f - image: quay.io/eclipse/che-dotnet-2.2@sha256:4463170271629f235ddcd53fddfe8ce19ac70d918fd008613b6983b4e5782139 - # tag: quay.io/eclipse/che-dotnet-2.2:ce0526f - - name: che-dotnet-3.1-ce0526f - image: quay.io/eclipse/che-dotnet-3.1@sha256:58ac9fd8aeff6a1d0ceb8d6b4eb64d439cb55b0a8b42fbbd2ebb8e876cff140c - # tag: quay.io/eclipse/che-dotnet-3.1:ce0526f - - name: che-golang-1.17-eb94b8c - image: quay.io/eclipse/che-golang-1.17@sha256:f4a25d893351679f800f3d10cf8999a6685c74967d02488f34378fa8cf4811d6 - # tag: quay.io/eclipse/che-golang-1.17:eb94b8c - - name: che-java11-gradle-ce0526f - image: quay.io/eclipse/che-java11-gradle@sha256:2a3079baf4556b3a81d54def3d293ecd54109130155b36a968ccdfe0e4ebb4cf - # tag: quay.io/eclipse/che-java11-gradle:ce0526f - - name: che-java11-maven-ce0526f - image: quay.io/eclipse/che-java11-maven@sha256:cc9e3cb0b00357ed118c130ce9f8e8e4724c718f8e2a1bd294f81696116d7b32 - # tag: quay.io/eclipse/che-java11-maven:ce0526f - - name: che-java8-maven-ce0526f - image: quay.io/eclipse/che-java8-maven@sha256:efff1c6b997cc14099173b3a7e94e700afcde3b246822888955f9e637aefcbdb - # tag: quay.io/eclipse/che-java8-maven:ce0526f - - name: che-nodejs10-community-ce0526f - image: quay.io/eclipse/che-nodejs10-community@sha256:6ce1df02636cb02b4c07947a99cb75538b7a04a7a578d3941878d46f496c57c4 - # tag: quay.io/eclipse/che-nodejs10-community:ce0526f - - name: che-nodejs10-ubi-ce0526f - image: quay.io/eclipse/che-nodejs10-ubi@sha256:87cb1ba4929c367eac010ab2b65ee04a67b0b0ecd0070b204204a7ed27308953 - # tag: quay.io/eclipse/che-nodejs10-ubi:ce0526f - - name: che-nodejs12-community-ce0526f - image: quay.io/eclipse/che-nodejs12-community@sha256:66fd9710610641572b99479cfc13282b60c55a0cbe87042cfc7ea536a3ea4122 - # tag: quay.io/eclipse/che-nodejs12-community:ce0526f - - name: che-nodejs8-centos-ce0526f - image: quay.io/eclipse/che-nodejs8-centos@sha256:b796be7ea39f9b7a1a43fad69a6093fe4d30fde0dbc4aa2b5fb4d44e9e0b3cbb - # tag: quay.io/eclipse/che-nodejs8-centos:ce0526f - - name: che-php-7-ce0526f - image: quay.io/eclipse/che-php-7@sha256:9e75e4202a53defd59a3901a569cfcee7269dbe31a9a6866e8c6d98aaa799b17 - # tag: quay.io/eclipse/che-php-7:ce0526f - - name: che-python-3.8-ce0526f - image: quay.io/eclipse/che-python-3.8@sha256:d6e3bc3336514080d706cc399b479bc278cfdfe2aa8e254df108b194c04980eb - # tag: quay.io/eclipse/che-python-3.8:ce0526f - - name: che-quarkus-ce0526f - image: quay.io/eclipse/che-quarkus@sha256:5a08ef7ecd394c78b1002be3ece6afb1fd084f28b0d48319443e01e805057928 - # tag: quay.io/eclipse/che-quarkus:ce0526f - - name: che-rust-1.39-ce0526f - image: quay.io/eclipse/che-rust-1.39@sha256:4b9f381ca0cb1f6efe1f56572a2698aa4e9b62e7c0f92da9b60bcf0c5e85733d - # tag: quay.io/eclipse/che-rust-1.39:ce0526f - - name: ubi8-minimal-8.3 - image: registry.access.redhat.com/ubi8-minimal@sha256:2f6b88c037c0503da7704bccd3fc73cb76324101af39ad28f16460e7bce98324 - # tag: registry.access.redhat.com/ubi8-minimal:8.3 - - name: ubi-minimal- - image: registry.access.redhat.com/ubi8/ubi-minimal@sha256:16da4d4c5cb289433305050a06834b7328769f8a5257ad5b4a5006465a0379ff - # tag: registry.access.redhat.com/ubi8/ubi-minimal diff --git a/bundle/stable/eclipse-che-preview-kubernetes/manifests/che-operator.clusterserviceversion.yaml.diff b/bundle/stable/eclipse-che-preview-kubernetes/manifests/che-operator.clusterserviceversion.yaml.diff deleted file mode 100644 index b25535b49..000000000 --- a/bundle/stable/eclipse-che-preview-kubernetes/manifests/che-operator.clusterserviceversion.yaml.diff +++ /dev/null @@ -1,322 +0,0 @@ ---- /home/runner/work/che-operator/che-operator/bundle/stable/eclipse-che-preview-kubernetes/generated/kubernetes/che-operator.clusterserviceversion.yaml 2021-12-03 13:11:53.737225153 +0000 -+++ /home/runner/work/che-operator/che-operator/bundle/stable/eclipse-che-preview-kubernetes/manifests/che-operator.clusterserviceversion.yaml 2021-12-03 13:14:32.620024660 +0000 -@@ -1,13 +1,15 @@ - # --# Copyright (c) 2019-2021 Red Hat, Inc. --# This program and the accompanying materials are made --# available under the terms of the Eclipse Public License 2.0 --# which is available at https://www.eclipse.org/legal/epl-2.0/ -+# Copyright (c) 2019-2021 Red Hat, Inc. -+# This program and the accompanying materials are made -+# available under the terms of the Eclipse Public License 2.0 -+# which is available at https://www.eclipse.org/legal/epl-2.0/ - # --# SPDX-License-Identifier: EPL-2.0 -+# SPDX-License-Identifier: EPL-2.0 - # --# Contributors: --# Red Hat, Inc. - initial API and implementation -+# Contributors: -+# Red Hat, Inc. - initial API and implementation -+# -+ - apiVersion: operators.coreos.com/v1alpha1 - kind: ClusterServiceVersion - metadata: -@@ -119,8 +121,8 @@ - capabilities: Seamless Upgrades - categories: Developer Tools - certified: "false" -- containerImage: quay.io/eclipse/che-operator@sha256:cb67d1adb2976f1e53d9d2fbde659871db9223544a65da14f5dd8252e0e3382b -- createdAt: "2021-11-24T12:12:56Z" -+ containerImage: quay.io/eclipse/che-operator@sha256:68fd7b2d651c90c3e101fe836c99135ffe922a3b1927335dcde78de72e349e6d -+ createdAt: "2021-12-03T13:11:54Z" - description: A Kube-native development solution that delivers portable and collaborative - developer workspaces. - operatorframework.io/suggested-namespace: eclipse-che -@@ -128,7 +130,7 @@ - operators.operatorframework.io/project_layout: go.kubebuilder.io/v3 - repository: https://github.com/eclipse-che/che-operator - support: Eclipse Foundation -- name: eclipse-che-preview-kubernetes.v7.39.2 -+ name: eclipse-che-preview-kubernetes.v7.40.0 - namespace: placeholder - spec: - apiservicedefinitions: {} -@@ -834,6 +836,17 @@ - - create - - apiGroups: - - "" -+ resourceNames: -+ - workspace-preferences-configmap -+ resources: -+ - configmaps -+ verbs: -+ - create -+ - delete -+ - get -+ - patch -+ - apiGroups: -+ - "" - resources: - - configmaps - - persistentvolumeclaims -@@ -867,6 +880,7 @@ - - create - - delete - - get -+ - patch - - apiGroups: - - "" - resources: -@@ -1053,6 +1067,7 @@ - app.kubernetes.io/instance: che - app.kubernetes.io/managed-by: olm - app.kubernetes.io/name: che -+ app.kubernetes.io/part-of: che.eclipse.org - spec: - containers: - - args: -@@ -1071,17 +1086,17 @@ - - name: OPERATOR_NAME - value: che-operator - - name: CHE_VERSION -- value: 7.39.2 -+ value: 7.40.0 - - name: RELATED_IMAGE_che_server -- value: quay.io/eclipse/che-server@sha256:ab06235f5077233e230f980fda79a893459fe957d4c464b8b60e43c99e1efefe -+ value: quay.io/eclipse/che-server@sha256:cb199aaf25db067a7ee4362771b0133ce923472fee6e71acfa653f6392679e73 - - name: RELATED_IMAGE_dashboard -- value: quay.io/eclipse/che-dashboard@sha256:55fa2d09b6f02424f5092894f4dd879abaa6fb32691f8843fbfeede46baf3bc1 -+ value: quay.io/eclipse/che-dashboard@sha256:04fa782a211721aa332116135e108aa928c6cd0b640261546336a297d0eca915 - - name: RELATED_IMAGE_plugin_registry -- value: quay.io/eclipse/che-plugin-registry@sha256:b4bd7f89965e9da17132090f69a1dd8e80ace1b6ba12d699ad254048e1e4deb5 -+ value: quay.io/eclipse/che-plugin-registry@sha256:ded7b41cbfff13a00bbac2dc93c305e4bef9e457d32a47c1e023d3857311f58d - - name: RELATED_IMAGE_devfile_registry -- value: quay.io/eclipse/che-devfile-registry@sha256:01a666f27f545bb787f565ba96f42b3535a11f52f1411a07372a6dee0ac4534a -+ value: quay.io/eclipse/che-devfile-registry@sha256:92f1aec9db749e752bb1c53f91bc1fca804f0e5b54d4470c4c356410c5bb3c06 - - name: RELATED_IMAGE_che_tls_secrets_creation_job -- value: quay.io/eclipse/che-tls-secret-creator@sha256:6f0433641e60851454e2dbbc559daf0b8e5f398e8947ca05286b4d1f9916e3e5 -+ value: quay.io/eclipse/che-tls-secret-creator@sha256:54df0ccf598d230e278d512c3b44bdf24edb280f71da32643db46e0120bfaee0 - - name: RELATED_IMAGE_pvc_jobs - value: registry.access.redhat.com/ubi8-minimal@sha256:16da4d4c5cb289433305050a06834b7328769f8a5257ad5b4a5006465a0379ff - - name: RELATED_IMAGE_postgres -@@ -1089,7 +1104,7 @@ - - name: RELATED_IMAGE_postgres_13_3 - value: quay.io/eclipse/che--centos--postgresql-13-centos7@sha256:71b24684d64da46f960682cc4216222a7e4ed8b1a31dd5a865b3e71afdea20d2 - - name: RELATED_IMAGE_keycloak -- value: quay.io/eclipse/che-keycloak@sha256:665a7a88ceb0c46d2dd8b1f049636492406c866eeec204bdfd9925f06c825742 -+ value: quay.io/eclipse/che-keycloak@sha256:9e2c6e38a2c2baf574f7cc50391c1e63a249d4399be68048b50e013775842f21 - - name: RELATED_IMAGE_che_workspace_plugin_broker_metadata - value: quay.io/eclipse/che-plugin-metadata-broker@sha256:df1ea2eadb28dbc97761adf4ea984af5ca941025a67b39c6abe373816a84bba9 - - name: RELATED_IMAGE_che_workspace_plugin_broker_artifacts -@@ -1103,7 +1118,7 @@ - - name: RELATED_IMAGE_devworkspace_controller - value: quay.io/devfile/devworkspace-controller@sha256:eacb8a72b9171e888ba54be44fa37b95a19165fda97a3fa44695ecdd3b855f56 - - name: RELATED_IMAGE_internal_rest_backup_server -- value: quay.io/eclipse/che-backup-server-rest@sha256:24983ce54474bbe87239f23773faeb59a5471a6a4b20e731518ad5738bfea6d7 -+ value: quay.io/eclipse/che-backup-server-rest@sha256:023639e023ef5d1370e4381037b6c162733ffa11ef21d902a497034f8e9ab91a - - name: RELATED_IMAGE_gateway_authentication_sidecar - value: quay.io/openshift/origin-oauth-proxy@sha256:4814e2dc961acf570a6318294ae0f253426a3d387c9b128a2522f416d0cf6e2f - - name: RELATED_IMAGE_gateway_authorization_sidecar -@@ -1164,8 +1179,8 @@ - value: quay.io/eclipse/che-plugin-sidecar@sha256:56e7960857886a05fc459ed6e73a0a386f145a2474c228c2b7ccb97a1d18b4df - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUZDCHA3GGOJSGQYTQYRZMY2DAYRSGY2TIYRYMZRTINZTGA3TGNJWHFSTAZDDHBQTAMLEG5QWIYZTGFRTSOJSGVSTKNBWHFSDEYRRGE2A____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:db86c92418b9f40b2654b8fc473073569e0dc8a01d7adc31c9925e5469d2b114 -- - name: RELATED_IMAGE_mta_vscode_extension_plugin_registry_image_IBZWQYJSGU3DUOBQGY3TMNJRG4YDQMBSGQYTSODGGUYDKMZSMEYGGNBSGNRDSMJQME4TENDDGFSGIMLFMU2WMMBTGJQTIZDCMIYDKMJYMI4TEMBVHA2A____ -- value: quay.io/windupeng/mta-vscode-extension@sha256:8067651708024198f50532a0c423b910a924c1dd1ee5f032a4dbb0518b920584 -+ - name: RELATED_IMAGE_mta_vscode_extension_plugin_registry_image_IBZWQYJSGU3DUNRRME4DSNZZG4ZDSOBQGQ2TQOJVGRSDKYLFGVQTKMBQGUZWCYJYMQYDKMDCGA3DKZLGMZTDMY3CMU3TIODEMFRTEYLCGIZGMNBWMJTA____ -+ value: quay.io/windupeng/mta-vscode-extension@sha256:61a897972980458954d5ae5a50053aa8d050b065efff6cbe748dac2ab22f46bf - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUNJQGJQWEY3GGY2TSOLGMRQWIYLCMVTDEOBZMRRWCZDDGVRTGMTDME3DEMTGMEYDEYRXGNQTOMTCGEYTGY3BGFSTKZJVMIYTOOJTG42Q____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:502abcf6599fdadabef289dcadc5c32ca622fa02b73a72b113ca1e5e5b179375 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUZRTHE4GKM3GMZSDKMRQGBRTKNTCMY2TMYJWMY3WMOLFHBSGENDBMEZWMNRTHFQTMMJSGU4DKMDGGE3DSNBRGQ2TEOBSGYYGIY3FHBQQ____ -@@ -1186,12 +1201,12 @@ - value: quay.io/eclipse/che-plugin-sidecar@sha256:2ba8fffe6f2d64f82896367a34fdb657672984548c7904f906178e8e08294277 - - name: RELATED_IMAGE_che_plugin_sidecar_plugin_registry_image_IBZWQYJSGU3DUYTCGQYDIZTGMFQTCMRVGY2WEZLCGEZGENDDMQ4DCNRQMNTGCM3GMYZWKZRTMJSTIMRQGQZTAYJWGU3DEZRRMZSTIOBWGM4WGYTGGFTA____ - value: quay.io/eclipse/che-plugin-sidecar@sha256:bb404ffaa12565beb12b4cd8160cfa3ff3ef3be420430a6562f1fe48639cbf1f -- - name: RELATED_IMAGE_che_theia_plugin_registry_image_IBZWQYJSGU3DUM3BGFSWGNTBMFTDAZTCGMYWGNJZMJRTANRYG43TEYRZMY2DEMBWMZTGGZBXG5SDQMJYHFQTGZBRME2TQY3FGAYTSZLFGFQWCYZVMRSQ____ -- value: quay.io/eclipse/che-theia@sha256:3a1ec6aaf0fb31c59bc068772b9f4206ffcd77d8189a3d1a58ce019ee1aac5de -- - name: RELATED_IMAGE_che_machine_exec_plugin_registry_image_IBZWQYJSGU3DUNTGMZSGMNLGMU2DQZBXMEZTANTBGAYGINRRGM2TSNJSMFTDSN3EMM3WMZJWMNTDQZRYMQYGEZBXME4GCNBQMRTGGMJVMNRTONZSG4YQ____ -- value: quay.io/eclipse/che-machine-exec@sha256:6ffdf5fe48d7a306a00d6135952af97dc7fe6cf8f8d0bd7a8a40dfc15cc77271 -- - name: RELATED_IMAGE_che_theia_endpoint_runtime_binary_plugin_registry_image_IBZWQYJSGU3DUNRWMVTDEM3EGVTGMMZXGE4WGNZSGMYDOYRRGNTDOZBRGVTDAZBQGFSGEZJZMRRWIZRYMRRGKNLDHE4TKODEGYYWCZTDGNQWEMRSMFSQ____ -- value: quay.io/eclipse/che-theia-endpoint-runtime-binary@sha256:66ef23d5ff3719c72307b13f7d15f0d01dbe9dcdf8dbe5c9958d61afc3ab22ae -+ - name: RELATED_IMAGE_che_theia_plugin_registry_image_IBZWQYJSGU3DUNZTGU4DQZRYMQ3GENJQG44DOMRWMU4TAYRUHBSTANTGGEYDKOJUG42TQYZZGM2TGMRTGM4WIYZRMVRTIOBRHEZGKN3GMFQTEZTDG4YQ____ -+ value: quay.io/eclipse/che-theia@sha256:73588f8d6b5078726e90b48e06f10594758c93532339dc1ec48192e7faa2fc71 -+ - name: RELATED_IMAGE_che_machine_exec_plugin_registry_image_IBZWQYJSGU3DUMTFGI2DIZDEGVRDGZLEGBRGCZRQGA2TOMDBGIYWCOJQGRRDIMBWGZQTGNLCGE3DCODBGBQTAZTCGBQWCMBSMUZTINLDGRTGCZLFMVRA____ -+ value: quay.io/eclipse/che-machine-exec@sha256:2e244dd5b3ed0baf00570a21a904b4066a35b1618a0a0fb0aa02e345c4faeeeb -+ - name: RELATED_IMAGE_che_theia_endpoint_runtime_binary_plugin_registry_image_IBZWQYJSGU3DUZBUGMZDOYRUGBRWEM3BMFSTKZBVHFTDMMJYMMYGMZJVHEYDGNRYGNSWCNDGMU2WCNBRGJTDIZBUGIYWMNZYG5RTON3FMFTDSNBTGE2Q____ -+ value: quay.io/eclipse/che-theia-endpoint-runtime-binary@sha256:d4327b40cb3aae5d59f618c0fe5903683ea4fe5a412f4d421f787c77eaf94315 - - name: RELATED_IMAGE_che_editor_jupyter_plugin_registry_image_IBZWQYJSGU3DUOBTGQZTSYLFHFSWIY3BMEZWCOJXGUZTMNZUGIZTCNLBG44TCMTGHEZWKNBZHFTDIOJYGQ3WIYJQHE2GGNBYGAYDGMLFMFSTIYTBGQ3Q____ - value: index.docker.io/ksmster/che-editor-jupyter@sha256:83439ae9edcaa3a97536742315a7912f93e499f49847da094c480031eae4ba47 - - name: RELATED_IMAGE_dirigible_openshift_plugin_registry_image_IBZWQYJSGU3DUMZTGY2TMMZVMQYWKMBUGAZTMOJXMRSWCMBWG42GEYTCMRRTONBZMM2GEZJSMRRDEOJYGE4GCOJTMI4GKMLFGUZWGM3DGUYTINBRGEZQ____ -@@ -1204,6 +1219,10 @@ - value: index.docker.io/wsskeleton/eclipse-broadway@sha256:57c82cd806a56f69aa8663f68405d0778b628a29a64fb16881b11ce9f484dda7 - - name: RELATED_IMAGE_code_server_plugin_registry_image_IBZWQYJSGU3DUZLGGA3TEOBRGAYDIOJQHFRGEMTDGIZDQNBSGJSGMMTFHE4WCNLCME2WKNBVGBTGGZJXGU2DMYRYMZQTCOBWHA2TEZRSGNRGMNRXGUYQ____ - value: index.docker.io/codercom/code-server@sha256:ef07281004909bb2c228422df2e99a5ba5e450fce7546b8fa186852f23bf6751 -+ - name: RELATED_IMAGE_universal_developer_image_plugin_registry_image_IBZWQYJSGU3DUNJTMNSWGNJYMRSDCOJQMRSDCZJQGYYTAMBUG44GCZJYG44WIN3DGI4GCYTEHBTGGOBYGNSDKZTEMY2WEZJTMVRDMZJZGQZWMZJVMU3Q____ -+ value: quay.io/devfile/universal-developer-image@sha256:53cec58dd190dd1e06100478ae879d7c28abd8fc883d5fdf5be3eb6e943fe5e7 -+ - name: RELATED_IMAGE_che_code_plugin_registry_image_NFXHG2LEMVZHG___ -+ value: quay.io/che-incubator/che-code@sha256:518dd7a3890cd49910ea56a9a3912946940d274c7fca8a84e479df67b82857f1 - - name: RELATED_IMAGE_che_buildah_base_plugin_registry_image_IBZWQYJSGU3DUNBRG4ZDAM3EHA3DEOLFMRSDSMTGGE4DOYLGMQZWKYTCGNSDQZDDGI4DGMZYMQZTIOBQHFSWENZVMZTGGMTFGA4GCNBQGBTDQZBVGZRA____ - value: quay.io/eclipse/che-buildah-base@sha256:417203d8629edd92f187afd3ebb3d8dc28338d34809eb75ffc2e08a400f8d56b - - name: RELATED_IMAGE_che_sidecar_workspace_data_sync_plugin_registry_image_IBZWQYJSGU3DUOBYMQYDCMRVHAZTOZBVME2TOY3CGI2GEYRTMVSDQMLFGZQTQZRUGEYTSYJVGA2DGYRXHEZDMYTEGJRGIMBRG4YTAOBVGRRTINDGGEYA____ -@@ -1222,8 +1241,8 @@ - value: quay.io/eclipse/che-dotnet-2.2@sha256:4463170271629f235ddcd53fddfe8ce19ac70d918fd008613b6983b4e5782139 - - name: RELATED_IMAGE_che_dotnet_3_1_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-dotnet-3.1@sha256:58ac9fd8aeff6a1d0ceb8d6b4eb64d439cb55b0a8b42fbbd2ebb8e876cff140c -- - name: RELATED_IMAGE_che_golang_1_17_devfile_registry_image_GE2DGZRSG42A____ -- value: quay.io/eclipse/che-golang-1.17@sha256:4386b101e197768ce569dddb53e96e647e9cc5184eb28ede61e8f782f5516004 -+ - name: RELATED_IMAGE_che_golang_1_17_devfile_registry_image_MVRDSNDCHBRQ____ -+ value: quay.io/eclipse/che-golang-1.17@sha256:f4a25d893351679f800f3d10cf8999a6685c74967d02488f34378fa8cf4811d6 - - name: RELATED_IMAGE_che_java11_gradle_devfile_registry_image_MNSTANJSGZTA____ - value: quay.io/eclipse/che-java11-gradle@sha256:2a3079baf4556b3a81d54def3d293ecd54109130155b36a968ccdfe0e4ebb4cf - - name: RELATED_IMAGE_che_java11_maven_devfile_registry_image_MNSTANJSGZTA____ -@@ -1250,7 +1269,7 @@ - value: registry.access.redhat.com/ubi8-minimal@sha256:2f6b88c037c0503da7704bccd3fc73cb76324101af39ad28f16460e7bce98324 - - name: RELATED_IMAGE_ubi_minimal_devfile_registry_image_ - value: registry.access.redhat.com/ubi8/ubi-minimal@sha256:16da4d4c5cb289433305050a06834b7328769f8a5257ad5b4a5006465a0379ff -- image: quay.io/eclipse/che-operator@sha256:cb67d1adb2976f1e53d9d2fbde659871db9223544a65da14f5dd8252e0e3382b -+ image: quay.io/eclipse/che-operator@sha256:68fd7b2d651c90c3e101fe836c99135ffe922a3b1927335dcde78de72e349e6d - imagePullPolicy: IfNotPresent - livenessProbe: - failureThreshold: 10 -@@ -1507,12 +1526,12 @@ - maturity: stable - provider: - name: Eclipse Foundation -- replaces: eclipse-che-preview-kubernetes.v7.39.1 -- version: 7.39.2 -+ replaces: eclipse-che-preview-kubernetes.v7.39.2 -+ version: 7.40.0 - relatedImages: -- - name: che-operator-7.39.2 -- image: quay.io/eclipse/che-operator@sha256:cb67d1adb2976f1e53d9d2fbde659871db9223544a65da14f5dd8252e0e3382b -- # tag: quay.io/eclipse/che-operator:7.39.2 -+ - name: che-operator-7.40.0 -+ image: quay.io/eclipse/che-operator@sha256:68fd7b2d651c90c3e101fe836c99135ffe922a3b1927335dcde78de72e349e6d -+ # tag: quay.io/eclipse/che-operator:7.40.0 - - name: configbump-0.1.4 - image: quay.io/che-incubator/configbump@sha256:175ff2ba1bd74429de192c0a9facf39da5699c6da9f151bd461b3dc8624dd532 - # tag: quay.io/che-incubator/configbump:0.1.4 -@@ -1531,36 +1550,36 @@ - - name: che--traefik-v2.5.0-eb30f9f09a65cee1fab5ef9c64cb4ec91b800dc3fdd738d62a9d4334f0114683 - image: quay.io/eclipse/che--traefik@sha256:eb30f9f09a65cee1fab5ef9c64cb4ec91b800dc3fdd738d62a9d4334f0114683 - # tag: quay.io/eclipse/che--traefik:v2.5.0-eb30f9f09a65cee1fab5ef9c64cb4ec91b800dc3fdd738d62a9d4334f0114683 -- - name: che-backup-server-rest-eeacd92 -- image: quay.io/eclipse/che-backup-server-rest@sha256:24983ce54474bbe87239f23773faeb59a5471a6a4b20e731518ad5738bfea6d7 -- # tag: quay.io/eclipse/che-backup-server-rest:eeacd92 -- - name: che-dashboard-7.39.2 -- image: quay.io/eclipse/che-dashboard@sha256:55fa2d09b6f02424f5092894f4dd879abaa6fb32691f8843fbfeede46baf3bc1 -- # tag: quay.io/eclipse/che-dashboard:7.39.2 -- - name: che-devfile-registry-7.39.2 -- image: quay.io/eclipse/che-devfile-registry@sha256:01a666f27f545bb787f565ba96f42b3535a11f52f1411a07372a6dee0ac4534a -- # tag: quay.io/eclipse/che-devfile-registry:7.39.2 -+ - name: che-backup-server-rest-b6cc165 -+ image: quay.io/eclipse/che-backup-server-rest@sha256:023639e023ef5d1370e4381037b6c162733ffa11ef21d902a497034f8e9ab91a -+ # tag: quay.io/eclipse/che-backup-server-rest:b6cc165 -+ - name: che-dashboard-7.40.0 -+ image: quay.io/eclipse/che-dashboard@sha256:04fa782a211721aa332116135e108aa928c6cd0b640261546336a297d0eca915 -+ # tag: quay.io/eclipse/che-dashboard:7.40.0 -+ - name: che-devfile-registry-7.40.0 -+ image: quay.io/eclipse/che-devfile-registry@sha256:92f1aec9db749e752bb1c53f91bc1fca804f0e5b54d4470c4c356410c5bb3c06 -+ # tag: quay.io/eclipse/che-devfile-registry:7.40.0 - - name: che-jwtproxy-0.10.0 - image: quay.io/eclipse/che-jwtproxy@sha256:881d1c91e7f5840314f25104ef5c0acee59ed484a5f9ef39daf3008725ea1033 - # tag: quay.io/eclipse/che-jwtproxy:0.10.0 -- - name: che-keycloak-7.39.2 -- image: quay.io/eclipse/che-keycloak@sha256:665a7a88ceb0c46d2dd8b1f049636492406c866eeec204bdfd9925f06c825742 -- # tag: quay.io/eclipse/che-keycloak:7.39.2 -+ - name: che-keycloak-7.40.0 -+ image: quay.io/eclipse/che-keycloak@sha256:9e2c6e38a2c2baf574f7cc50391c1e63a249d4399be68048b50e013775842f21 -+ # tag: quay.io/eclipse/che-keycloak:7.40.0 - - name: che-plugin-artifacts-broker-v3.4.0 - image: quay.io/eclipse/che-plugin-artifacts-broker@sha256:4891a6e19be9eae59372f4b31144653f9bd1284e0301ecfe896a099ca6a12b58 - # tag: quay.io/eclipse/che-plugin-artifacts-broker:v3.4.0 - - name: che-plugin-metadata-broker-v3.4.0 - image: quay.io/eclipse/che-plugin-metadata-broker@sha256:df1ea2eadb28dbc97761adf4ea984af5ca941025a67b39c6abe373816a84bba9 - # tag: quay.io/eclipse/che-plugin-metadata-broker:v3.4.0 -- - name: che-plugin-registry-7.39.2 -- image: quay.io/eclipse/che-plugin-registry@sha256:b4bd7f89965e9da17132090f69a1dd8e80ace1b6ba12d699ad254048e1e4deb5 -- # tag: quay.io/eclipse/che-plugin-registry:7.39.2 -- - name: che-server-7.39.2 -- image: quay.io/eclipse/che-server@sha256:ab06235f5077233e230f980fda79a893459fe957d4c464b8b60e43c99e1efefe -- # tag: quay.io/eclipse/che-server:7.39.2 -- - name: che-tls-secret-creator-alpine-d1ed4ad -- image: quay.io/eclipse/che-tls-secret-creator@sha256:6f0433641e60851454e2dbbc559daf0b8e5f398e8947ca05286b4d1f9916e3e5 -- # tag: quay.io/eclipse/che-tls-secret-creator:alpine-d1ed4ad -+ - name: che-plugin-registry-7.40.0 -+ image: quay.io/eclipse/che-plugin-registry@sha256:ded7b41cbfff13a00bbac2dc93c305e4bef9e457d32a47c1e023d3857311f58d -+ # tag: quay.io/eclipse/che-plugin-registry:7.40.0 -+ - name: che-server-7.40.0 -+ image: quay.io/eclipse/che-server@sha256:cb199aaf25db067a7ee4362771b0133ce923472fee6e71acfa653f6392679e73 -+ # tag: quay.io/eclipse/che-server:7.40.0 -+ - name: che-tls-secret-creator-alpine-01a4c34 -+ image: quay.io/eclipse/che-tls-secret-creator@sha256:54df0ccf598d230e278d512c3b44bdf24edb280f71da32643db46e0120bfaee0 -+ # tag: quay.io/eclipse/che-tls-secret-creator:alpine-01a4c34 - - name: origin-kube-rbac-proxy-4.7 - image: quay.io/openshift/origin-kube-rbac-proxy@sha256:fcce680899a37d6bdc621a58b6da0587d01cbb49a2d7b713e0d606dffc9f685a - # tag: quay.io/openshift/origin-kube-rbac-proxy:4.7 -@@ -1615,9 +1634,9 @@ - - name: che-plugin-sidecar-@sha256:db86c92418b9f40b2654b8fc473073569e0dc8a01d7adc31c9925e5469d2b114 - image: quay.io/eclipse/che-plugin-sidecar@sha256:db86c92418b9f40b2654b8fc473073569e0dc8a01d7adc31c9925e5469d2b114 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:db86c92418b9f40b2654b8fc473073569e0dc8a01d7adc31c9925e5469d2b114 -- - name: mta-vscode-extension-@sha256:8067651708024198f50532a0c423b910a924c1dd1ee5f032a4dbb0518b920584 -- image: quay.io/windupeng/mta-vscode-extension@sha256:8067651708024198f50532a0c423b910a924c1dd1ee5f032a4dbb0518b920584 -- # tag: quay.io/windupeng/mta-vscode-extension@sha256:8067651708024198f50532a0c423b910a924c1dd1ee5f032a4dbb0518b920584 -+ - name: mta-vscode-extension-@sha256:61a897972980458954d5ae5a50053aa8d050b065efff6cbe748dac2ab22f46bf -+ image: quay.io/windupeng/mta-vscode-extension@sha256:61a897972980458954d5ae5a50053aa8d050b065efff6cbe748dac2ab22f46bf -+ # tag: quay.io/windupeng/mta-vscode-extension@sha256:61a897972980458954d5ae5a50053aa8d050b065efff6cbe748dac2ab22f46bf - - name: che-plugin-sidecar-@sha256:502abcf6599fdadabef289dcadc5c32ca622fa02b73a72b113ca1e5e5b179375 - image: quay.io/eclipse/che-plugin-sidecar@sha256:502abcf6599fdadabef289dcadc5c32ca622fa02b73a72b113ca1e5e5b179375 - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:502abcf6599fdadabef289dcadc5c32ca622fa02b73a72b113ca1e5e5b179375 -@@ -1648,15 +1667,15 @@ - - name: che-plugin-sidecar-@sha256:bb404ffaa12565beb12b4cd8160cfa3ff3ef3be420430a6562f1fe48639cbf1f - image: quay.io/eclipse/che-plugin-sidecar@sha256:bb404ffaa12565beb12b4cd8160cfa3ff3ef3be420430a6562f1fe48639cbf1f - # tag: quay.io/eclipse/che-plugin-sidecar@sha256:bb404ffaa12565beb12b4cd8160cfa3ff3ef3be420430a6562f1fe48639cbf1f -- - name: che-theia-@sha256:3a1ec6aaf0fb31c59bc068772b9f4206ffcd77d8189a3d1a58ce019ee1aac5de -- image: quay.io/eclipse/che-theia@sha256:3a1ec6aaf0fb31c59bc068772b9f4206ffcd77d8189a3d1a58ce019ee1aac5de -- # tag: quay.io/eclipse/che-theia@sha256:3a1ec6aaf0fb31c59bc068772b9f4206ffcd77d8189a3d1a58ce019ee1aac5de -- - name: che-machine-exec-@sha256:6ffdf5fe48d7a306a00d6135952af97dc7fe6cf8f8d0bd7a8a40dfc15cc77271 -- image: quay.io/eclipse/che-machine-exec@sha256:6ffdf5fe48d7a306a00d6135952af97dc7fe6cf8f8d0bd7a8a40dfc15cc77271 -- # tag: quay.io/eclipse/che-machine-exec@sha256:6ffdf5fe48d7a306a00d6135952af97dc7fe6cf8f8d0bd7a8a40dfc15cc77271 -- - name: che-theia-endpoint-runtime-binary-@sha256:66ef23d5ff3719c72307b13f7d15f0d01dbe9dcdf8dbe5c9958d61afc3ab22ae -- image: quay.io/eclipse/che-theia-endpoint-runtime-binary@sha256:66ef23d5ff3719c72307b13f7d15f0d01dbe9dcdf8dbe5c9958d61afc3ab22ae -- # tag: quay.io/eclipse/che-theia-endpoint-runtime-binary@sha256:66ef23d5ff3719c72307b13f7d15f0d01dbe9dcdf8dbe5c9958d61afc3ab22ae -+ - name: che-theia-@sha256:73588f8d6b5078726e90b48e06f10594758c93532339dc1ec48192e7faa2fc71 -+ image: quay.io/eclipse/che-theia@sha256:73588f8d6b5078726e90b48e06f10594758c93532339dc1ec48192e7faa2fc71 -+ # tag: quay.io/eclipse/che-theia@sha256:73588f8d6b5078726e90b48e06f10594758c93532339dc1ec48192e7faa2fc71 -+ - name: che-machine-exec-@sha256:2e244dd5b3ed0baf00570a21a904b4066a35b1618a0a0fb0aa02e345c4faeeeb -+ image: quay.io/eclipse/che-machine-exec@sha256:2e244dd5b3ed0baf00570a21a904b4066a35b1618a0a0fb0aa02e345c4faeeeb -+ # tag: quay.io/eclipse/che-machine-exec@sha256:2e244dd5b3ed0baf00570a21a904b4066a35b1618a0a0fb0aa02e345c4faeeeb -+ - name: che-theia-endpoint-runtime-binary-@sha256:d4327b40cb3aae5d59f618c0fe5903683ea4fe5a412f4d421f787c77eaf94315 -+ image: quay.io/eclipse/che-theia-endpoint-runtime-binary@sha256:d4327b40cb3aae5d59f618c0fe5903683ea4fe5a412f4d421f787c77eaf94315 -+ # tag: quay.io/eclipse/che-theia-endpoint-runtime-binary@sha256:d4327b40cb3aae5d59f618c0fe5903683ea4fe5a412f4d421f787c77eaf94315 - - name: che-editor-jupyter-@sha256:83439ae9edcaa3a97536742315a7912f93e499f49847da094c480031eae4ba47 - image: index.docker.io/ksmster/che-editor-jupyter@sha256:83439ae9edcaa3a97536742315a7912f93e499f49847da094c480031eae4ba47 - # tag: index.docker.io/ksmster/che-editor-jupyter@sha256:83439ae9edcaa3a97536742315a7912f93e499f49847da094c480031eae4ba47 -@@ -1675,6 +1694,12 @@ - - name: code-server-@sha256:ef07281004909bb2c228422df2e99a5ba5e450fce7546b8fa186852f23bf6751 - image: index.docker.io/codercom/code-server@sha256:ef07281004909bb2c228422df2e99a5ba5e450fce7546b8fa186852f23bf6751 - # tag: index.docker.io/codercom/code-server@sha256:ef07281004909bb2c228422df2e99a5ba5e450fce7546b8fa186852f23bf6751 -+ - name: universal-developer-image-@sha256:53cec58dd190dd1e06100478ae879d7c28abd8fc883d5fdf5be3eb6e943fe5e7 -+ image: quay.io/devfile/universal-developer-image@sha256:53cec58dd190dd1e06100478ae879d7c28abd8fc883d5fdf5be3eb6e943fe5e7 -+ # tag: quay.io/devfile/universal-developer-image@sha256:53cec58dd190dd1e06100478ae879d7c28abd8fc883d5fdf5be3eb6e943fe5e7 -+ - name: che-code-insiders -+ image: quay.io/che-incubator/che-code@sha256:518dd7a3890cd49910ea56a9a3912946940d274c7fca8a84e479df67b82857f1 -+ # tag: quay.io/che-incubator/che-code:insiders - - name: che-buildah-base-@sha256:417203d8629edd92f187afd3ebb3d8dc28338d34809eb75ffc2e08a400f8d56b - image: quay.io/eclipse/che-buildah-base@sha256:417203d8629edd92f187afd3ebb3d8dc28338d34809eb75ffc2e08a400f8d56b - # tag: quay.io/eclipse/che-buildah-base@sha256:417203d8629edd92f187afd3ebb3d8dc28338d34809eb75ffc2e08a400f8d56b -@@ -1702,9 +1727,9 @@ - - name: che-dotnet-3.1-ce0526f - image: quay.io/eclipse/che-dotnet-3.1@sha256:58ac9fd8aeff6a1d0ceb8d6b4eb64d439cb55b0a8b42fbbd2ebb8e876cff140c - # tag: quay.io/eclipse/che-dotnet-3.1:ce0526f -- - name: che-golang-1.17-143f274 -- image: quay.io/eclipse/che-golang-1.17@sha256:4386b101e197768ce569dddb53e96e647e9cc5184eb28ede61e8f782f5516004 -- # tag: quay.io/eclipse/che-golang-1.17:143f274 -+ - name: che-golang-1.17-eb94b8c -+ image: quay.io/eclipse/che-golang-1.17@sha256:f4a25d893351679f800f3d10cf8999a6685c74967d02488f34378fa8cf4811d6 -+ # tag: quay.io/eclipse/che-golang-1.17:eb94b8c - - name: che-java11-gradle-ce0526f - image: quay.io/eclipse/che-java11-gradle@sha256:2a3079baf4556b3a81d54def3d293ecd54109130155b36a968ccdfe0e4ebb4cf - # tag: quay.io/eclipse/che-java11-gradle:ce0526f diff --git a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml b/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml deleted file mode 100644 index fa01c35a7..000000000 --- a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml +++ /dev/null @@ -1,138 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -apiVersion: apiextensions.k8s.io/v1 -kind: CustomResourceDefinition -metadata: - annotations: - controller-gen.kubebuilder.io/version: v0.4.1 - creationTimestamp: null - name: chebackupserverconfigurations.org.eclipse.che -spec: - group: org.eclipse.che - names: - kind: CheBackupServerConfiguration - listKind: CheBackupServerConfigurationList - plural: chebackupserverconfigurations - singular: chebackupserverconfiguration - scope: Namespaced - versions: - - name: v1 - schema: - openAPIV3Schema: - description: The `CheBackupServerConfiguration` custom resource allows defining and managing Eclipse Che Backup Server Configurations - properties: - apiVersion: - description: 'APIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' - type: string - kind: - description: 'Kind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' - type: string - metadata: - type: object - spec: - description: CheBackupServerConfigurationSpec defines the desired state of CheBackupServerConfiguration Only one type of backup server is allowed to be configured per CR. - properties: - awss3: - description: Amazon S3 or compatible alternatives. - properties: - awsAccessKeySecretRef: - description: Reference to secret that contains awsAccessKeyId and awsSecretAccessKey keys. - type: string - hostname: - description: Server hostname, defaults to 's3.amazonaws.com'. Might be customized in case of alternative server. - type: string - port: - description: Backup server port. Usually default value is used. Might be customized in case of alternative server. - type: integer - protocol: - description: Protocol to use when connection to the server. Might be customized in case of alternative server. - type: string - repositoryPasswordSecretRef: - description: Holds reference to a secret with restic repository password under 'repo-password' field to encrypt / decrypt its content. - type: string - repositoryPath: - description: Bucket name and repository, e.g. bucket/repo - type: string - required: - - awsAccessKeySecretRef - - repositoryPasswordSecretRef - - repositoryPath - type: object - rest: - description: Rest backup server configuration. - properties: - credentialsSecretRef: - description: Secret that contains username and password fields to login into restic server. Note, each repository is encrypted with own password. See ResticRepoPasswordSecretRef field. - type: string - hostname: - description: Backup server host - type: string - port: - description: Backup server port - type: integer - protocol: - description: Protocol to use when connection to the server Defaults to https. - type: string - repositoryPasswordSecretRef: - description: Holds reference to a secret with restic repository password under 'repo-password' field to encrypt / decrypt its content. - type: string - repositoryPath: - description: Restic repository path - type: string - required: - - hostname - - repositoryPasswordSecretRef - type: object - sftp: - description: Sftp backup server configuration. - properties: - hostname: - description: Backup server host - type: string - port: - description: Backup server port - type: integer - repositoryPasswordSecretRef: - description: Holds reference to a secret with restic repository password under 'repo-password' field to encrypt / decrypt its content. - type: string - repositoryPath: - description: Restic repository path, relative or absolute, e.g. /srv/repo - type: string - sshKeySecretRef: - description: Private ssh key under 'ssh-privatekey' field for passwordless login - type: string - username: - description: User login on the remote server - type: string - required: - - hostname - - repositoryPasswordSecretRef - - repositoryPath - - sshKeySecretRef - - username - type: object - type: object - status: - description: CheBackupServerConfigurationStatus defines the observed state of CheBackupServerConfiguration - type: object - type: object - served: true - storage: true - subresources: - status: {} -status: - acceptedNames: - kind: "" - plural: "" - conditions: [] - storedVersions: [] diff --git a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml.diff b/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml.diff deleted file mode 100644 index 40ada74ba..000000000 --- a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml.diff +++ /dev/null @@ -1,18 +0,0 @@ ---- /home/runner/work/che-operator/che-operator/bundle/stable/eclipse-che-preview-kubernetes/generated/kubernetes/org.eclipse.che_chebackupserverconfigurations_crd.yaml 2021-12-03 13:11:54.153253537 +0000 -+++ /home/runner/work/che-operator/che-operator/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml 2021-12-03 13:11:55.181323677 +0000 -@@ -1,3 +1,15 @@ -+# -+# Copyright (c) 2019-2021 Red Hat, Inc. -+# This program and the accompanying materials are made -+# available under the terms of the Eclipse Public License 2.0 -+# which is available at https://www.eclipse.org/legal/epl-2.0/ -+# -+# SPDX-License-Identifier: EPL-2.0 -+# -+# Contributors: -+# Red Hat, Inc. - initial API and implementation -+# -+ - apiVersion: apiextensions.k8s.io/v1 - kind: CustomResourceDefinition - metadata: diff --git a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterbackups_crd.yaml b/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterbackups_crd.yaml deleted file mode 100644 index 8f08f6ffd..000000000 --- a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterbackups_crd.yaml +++ /dev/null @@ -1,81 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -apiVersion: apiextensions.k8s.io/v1 -kind: CustomResourceDefinition -metadata: - annotations: - controller-gen.kubebuilder.io/version: v0.4.1 - creationTimestamp: null - name: checlusterbackups.org.eclipse.che -spec: - group: org.eclipse.che - names: - kind: CheClusterBackup - listKind: CheClusterBackupList - plural: checlusterbackups - singular: checlusterbackup - scope: Namespaced - versions: - - name: v1 - schema: - openAPIV3Schema: - description: The `CheClusterBackup` custom resource allows defining and managing Eclipse Che backup - properties: - apiVersion: - description: 'APIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' - type: string - kind: - description: 'Kind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' - type: string - metadata: - type: object - spec: - description: CheClusterBackupSpec defines the desired state of CheClusterBackup - properties: - backupServerConfigRef: - description: Name of custom resource with a backup server configuration to use for this backup. Note, UseInternalBackupServer field can configure internal backup server automatically. - type: string - useInternalBackupServer: - description: Automatically setup pod with REST backup server and use the server in this configuration. Note, this flag takes precedence and will overwrite existing backup server configuration. - type: boolean - type: object - status: - description: CheClusterBackupStatus defines the observed state of CheClusterBackup - properties: - cheVersion: - description: Version that was backed up - type: string - message: - description: Message explaining the state of the backup or an error message - type: string - snapshotId: - description: Last backup snapshot ID - type: string - stage: - description: Describes backup progress - type: string - state: - description: 'Backup progress state: InProgress, Failed, Succeeded' - type: string - type: object - type: object - served: true - storage: true - subresources: - status: {} -status: - acceptedNames: - kind: "" - plural: "" - conditions: [] - storedVersions: [] diff --git a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterbackups_crd.yaml.diff b/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterbackups_crd.yaml.diff deleted file mode 100644 index 6b6500c0f..000000000 --- a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterbackups_crd.yaml.diff +++ /dev/null @@ -1,18 +0,0 @@ ---- /home/runner/work/che-operator/che-operator/bundle/stable/eclipse-che-preview-kubernetes/generated/kubernetes/org.eclipse.che_checlusterbackups_crd.yaml 2021-12-03 13:11:54.349266910 +0000 -+++ /home/runner/work/che-operator/che-operator/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterbackups_crd.yaml 2021-12-03 13:11:55.185323950 +0000 -@@ -1,3 +1,15 @@ -+# -+# Copyright (c) 2019-2021 Red Hat, Inc. -+# This program and the accompanying materials are made -+# available under the terms of the Eclipse Public License 2.0 -+# which is available at https://www.eclipse.org/legal/epl-2.0/ -+# -+# SPDX-License-Identifier: EPL-2.0 -+# -+# Contributors: -+# Red Hat, Inc. - initial API and implementation -+# -+ - apiVersion: apiextensions.k8s.io/v1 - kind: CustomResourceDefinition - metadata: diff --git a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterrestores_crd.yaml b/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterrestores_crd.yaml deleted file mode 100644 index 998db4bce..000000000 --- a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterrestores_crd.yaml +++ /dev/null @@ -1,75 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -apiVersion: apiextensions.k8s.io/v1 -kind: CustomResourceDefinition -metadata: - annotations: - controller-gen.kubebuilder.io/version: v0.4.1 - creationTimestamp: null - name: checlusterrestores.org.eclipse.che -spec: - group: org.eclipse.che - names: - kind: CheClusterRestore - listKind: CheClusterRestoreList - plural: checlusterrestores - singular: checlusterrestore - scope: Namespaced - versions: - - name: v1 - schema: - openAPIV3Schema: - description: The `CheClusterRestore` custom resource allows defining and managing Eclipse Che restore - properties: - apiVersion: - description: 'APIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' - type: string - kind: - description: 'Kind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' - type: string - metadata: - type: object - spec: - description: CheClusterRestoreSpec defines the desired state of CheClusterRestore - properties: - backupServerConfigRef: - description: Name of custom resource with a backup server configuration to use for this restore. Can be omitted if only one server configuration object exists within the namespace. - type: string - snapshotId: - description: If omitted, latest snapshot will be used. - type: string - type: object - status: - description: CheClusterRestoreStatus defines the observed state of CheClusterRestore - properties: - message: - description: Restore result or error message - type: string - stage: - description: Describes phase of restore progress - type: string - state: - description: 'Restore progress state: InProgress, Failed, Succeeded' - type: string - type: object - type: object - served: true - storage: true - subresources: - status: {} -status: - acceptedNames: - kind: "" - plural: "" - conditions: [] - storedVersions: [] diff --git a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterrestores_crd.yaml.diff b/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterrestores_crd.yaml.diff deleted file mode 100644 index 65670313d..000000000 --- a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterrestores_crd.yaml.diff +++ /dev/null @@ -1,18 +0,0 @@ ---- /home/runner/work/che-operator/che-operator/bundle/stable/eclipse-che-preview-kubernetes/generated/kubernetes/org.eclipse.che_checlusterrestores_crd.yaml 2021-12-03 13:11:54.549280556 +0000 -+++ /home/runner/work/che-operator/che-operator/bundle/stable/eclipse-che-preview-kubernetes/manifests/org.eclipse.che_checlusterrestores_crd.yaml 2021-12-03 13:11:55.189324222 +0000 -@@ -1,3 +1,15 @@ -+# -+# Copyright (c) 2019-2021 Red Hat, Inc. -+# This program and the accompanying materials are made -+# available under the terms of the Eclipse Public License 2.0 -+# which is available at https://www.eclipse.org/legal/epl-2.0/ -+# -+# SPDX-License-Identifier: EPL-2.0 -+# -+# Contributors: -+# Red Hat, Inc. - initial API and implementation -+# -+ - apiVersion: apiextensions.k8s.io/v1 - kind: CustomResourceDefinition - metadata: diff --git a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org_v1_che_crd.yaml b/bundle/stable/eclipse-che-preview-kubernetes/manifests/org_v1_che_crd.yaml deleted file mode 100644 index 70d5f5202..000000000 --- a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org_v1_che_crd.yaml +++ /dev/null @@ -1,705 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -apiVersion: apiextensions.k8s.io/v1 -kind: CustomResourceDefinition -metadata: - annotations: - controller-gen.kubebuilder.io/version: v0.4.1 - creationTimestamp: null - name: checlusters.org.eclipse.che -spec: - group: org.eclipse.che - names: - kind: CheCluster - listKind: CheClusterList - plural: checlusters - singular: checluster - scope: Namespaced - versions: - - name: v1 - schema: - openAPIV3Schema: - description: The `CheCluster` custom resource allows defining and managing a Che server installation - properties: - apiVersion: - description: 'APIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' - type: string - kind: - description: 'Kind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' - type: string - metadata: - type: object - spec: - description: Desired configuration of the Che installation. Based on these settings, the Operator automatically creates and maintains several ConfigMaps that will contain the appropriate environment variables the various components of the Che installation. These generated ConfigMaps must NOT be updated manually. - properties: - auth: - description: Configuration settings related to the Authentication used by the Che installation. - properties: - debug: - description: Debug internal identity provider. - type: boolean - externalIdentityProvider: - description: 'Instructs the Operator on whether or not to deploy a dedicated Identity Provider (Keycloak or RH SSO instance). Instructs the Operator on whether to deploy a dedicated Identity Provider (Keycloak or RH-SSO instance). By default, a dedicated Identity Provider server is deployed as part of the Che installation. When `externalIdentityProvider` is `true`, no dedicated identity provider will be deployed by the Operator and you will need to provide details about the external identity provider you are about to use. See also all the other fields starting with: `identityProvider`.' - type: boolean - gatewayAuthenticationSidecarImage: - description: Gateway sidecar responsible for authentication when NativeUserMode is enabled. See link:https://github.com/oauth2-proxy/oauth2-proxy[oauth2-proxy] or link:https://github.com/openshift/oauth-proxy[openshift/oauth-proxy]. - type: string - gatewayAuthorizationSidecarImage: - description: Gateway sidecar responsible for authorization when NativeUserMode is enabled. See link:https://github.com/brancz/kube-rbac-proxy[kube-rbac-proxy] or link:https://github.com/openshift/kube-rbac-proxy[openshift/kube-rbac-proxy] - type: string - gatewayHeaderRewriteSidecarImage: - description: Deprecated. The value of this flag is ignored. Sidecar functionality is now implemented in Traefik plugin. - type: string - identityProviderAdminUserName: - description: Overrides the name of the Identity Provider administrator user. Defaults to `admin`. - type: string - identityProviderClientId: - description: Name of a Identity provider, Keycloak or RH-SSO, `client-id` that is used for Che. Override this when an external Identity Provider is in use. See the `externalIdentityProvider` field. When omitted or left blank, it is set to the value of the `flavour` field suffixed with `-public`. - type: string - identityProviderContainerResources: - description: Identity provider container custom settings. - properties: - limits: - description: Limits describes the maximum amount of compute resources allowed. - properties: - cpu: - description: CPU, in cores. (500m = .5 cores) - type: string - memory: - description: Memory, in bytes. (500Gi = 500GiB = 500 * 1024 * 1024 * 1024) - type: string - type: object - request: - description: Requests describes the minimum amount of compute resources required. - properties: - cpu: - description: CPU, in cores. (500m = .5 cores) - type: string - memory: - description: Memory, in bytes. (500Gi = 500GiB = 500 * 1024 * 1024 * 1024) - type: string - type: object - type: object - identityProviderImage: - description: Overrides the container image used in the Identity Provider, Keycloak or RH-SSO, deployment. This includes the image tag. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - identityProviderImagePullPolicy: - description: Overrides the image pull policy used in the Identity Provider, Keycloak or RH-SSO, deployment. Default value is `Always` for `nightly`, `next` or `latest` images, and `IfNotPresent` in other cases. - type: string - identityProviderIngress: - description: Ingress custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - identityProviderPassword: - description: Overrides the password of Keycloak administrator user. Override this when an external Identity Provider is in use. See the `externalIdentityProvider` field. When omitted or left blank, it is set to an auto-generated password. - type: string - identityProviderPostgresPassword: - description: Password for a Identity Provider, Keycloak or RH-SSO, to connect to the database. Override this when an external Identity Provider is in use. See the `externalIdentityProvider` field. When omitted or left blank, it is set to an auto-generated password. - type: string - identityProviderPostgresSecret: - description: 'The secret that contains `password` for the Identity Provider, Keycloak or RH-SSO, to connect to the database. When the secret is defined, the `identityProviderPostgresPassword` is ignored. When the value is omitted or left blank, the one of following scenarios applies: 1. `identityProviderPostgresPassword` is defined, then it will be used to connect to the database. 2. `identityProviderPostgresPassword` is not defined, then a new secret with the name `che-identity-postgres-secret` will be created with an auto-generated value for `password`. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label.' - type: string - identityProviderRealm: - description: Name of a Identity provider, Keycloak or RH-SSO, realm that is used for Che. Override this when an external Identity Provider is in use. See the `externalIdentityProvider` field. When omitted or left blank, it is set to the value of the `flavour` field. - type: string - identityProviderRoute: - description: Route custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - domain: - description: 'Operator uses the domain to generate a hostname for a route. In a conjunction with labels it creates a route, which is served by a non-default Ingress controller. The generated host name will follow this pattern: `-.`.' - type: string - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - identityProviderSecret: - description: 'The secret that contains `user` and `password` for Identity Provider. When the secret is defined, the `identityProviderAdminUserName` and `identityProviderPassword` are ignored. When the value is omitted or left blank, the one of following scenarios applies: 1. `identityProviderAdminUserName` and `identityProviderPassword` are defined, then they will be used. 2. `identityProviderAdminUserName` or `identityProviderPassword` are not defined, then a new secret with the name `che-identity-secret` will be created with default value `admin` for `user` and with an auto-generated value for `password`. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label.' - type: string - identityProviderURL: - description: Public URL of the Identity Provider server (Keycloak / RH-SSO server). Set this ONLY when a use of an external Identity Provider is needed. See the `externalIdentityProvider` field. By default, this will be automatically calculated and set by the Operator. - type: string - initialOpenShiftOAuthUser: - description: For operating with the OpenShift OAuth authentication, create a new user account since the kubeadmin can not be used. If the value is true, then a new OpenShift OAuth user will be created for the HTPasswd identity provider. If the value is false and the user has already been created, then it will be removed. If value is an empty, then do nothing. The user's credentials are stored in the `openshift-oauth-user-credentials` secret in 'openshift-config' namespace by Operator. Note that this solution is Openshift 4 platform-specific. - type: boolean - nativeUserMode: - description: Enables native user mode. Currently works only on OpenShift and DevWorkspace engine. Native User mode uses OpenShift OAuth directly as identity provider, without Keycloak. - type: boolean - oAuthClientName: - description: Name of the OpenShift `OAuthClient` resource used to setup identity federation on the OpenShift side. Auto-generated when left blank. See also the `OpenShiftoAuth` field. - type: string - oAuthSecret: - description: Name of the secret set in the OpenShift `OAuthClient` resource used to setup identity federation on the OpenShift side. Auto-generated when left blank. See also the `OAuthClientName` field. - type: string - openShiftoAuth: - description: 'Enables the integration of the identity provider (Keycloak / RHSSO) with OpenShift OAuth. Empty value on OpenShift by default. This will allow users to directly login with their OpenShift user through the OpenShift login, and have their workspaces created under personal OpenShift namespaces. WARNING: the `kubeadmin` user is NOT supported, and logging through it will NOT allow accessing the Che Dashboard.' - type: boolean - updateAdminPassword: - description: Forces the default `admin` Che user to update password on first login. Defaults to `false`. - type: boolean - type: object - database: - description: Configuration settings related to the database used by the Che installation. - properties: - chePostgresContainerResources: - description: PostgreSQL container custom settings - properties: - limits: - description: Limits describes the maximum amount of compute resources allowed. - properties: - cpu: - description: CPU, in cores. (500m = .5 cores) - type: string - memory: - description: Memory, in bytes. (500Gi = 500GiB = 500 * 1024 * 1024 * 1024) - type: string - type: object - request: - description: Requests describes the minimum amount of compute resources required. - properties: - cpu: - description: CPU, in cores. (500m = .5 cores) - type: string - memory: - description: Memory, in bytes. (500Gi = 500GiB = 500 * 1024 * 1024 * 1024) - type: string - type: object - type: object - chePostgresDb: - description: PostgreSQL database name that the Che server uses to connect to the DB. Defaults to `dbche`. - type: string - chePostgresHostName: - description: PostgreSQL Database host name that the Che server uses to connect to. Defaults is `postgres`. Override this value ONLY when using an external database. See field `externalDb`. In the default case it will be automatically set by the Operator. - type: string - chePostgresPassword: - description: PostgreSQL password that the Che server uses to connect to the DB. When omitted or left blank, it will be set to an automatically generated value. - type: string - chePostgresPort: - description: PostgreSQL Database port that the Che server uses to connect to. Defaults to 5432. Override this value ONLY when using an external database. See field `externalDb`. In the default case it will be automatically set by the Operator. - type: string - chePostgresSecret: - description: 'The secret that contains PostgreSQL`user` and `password` that the Che server uses to connect to the DB. When the secret is defined, the `chePostgresUser` and `chePostgresPassword` are ignored. When the value is omitted or left blank, the one of following scenarios applies: 1. `chePostgresUser` and `chePostgresPassword` are defined, then they will be used to connect to the DB. 2. `chePostgresUser` or `chePostgresPassword` are not defined, then a new secret with the name `che-postgres-secret` will be created with default value of `pgche` for `user` and with an auto-generated value for `password`. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label.' - type: string - chePostgresUser: - description: PostgreSQL user that the Che server uses to connect to the DB. Defaults to `pgche`. - type: string - externalDb: - description: 'Instructs the Operator on whether to deploy a dedicated database. By default, a dedicated PostgreSQL database is deployed as part of the Che installation. When `externalDb` is `true`, no dedicated database will be deployed by the Operator and you will need to provide connection details to the external DB you are about to use. See also all the fields starting with: `chePostgres`.' - type: boolean - postgresImage: - description: Overrides the container image used in the PostgreSQL database deployment. This includes the image tag. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - postgresImagePullPolicy: - description: Overrides the image pull policy used in the PostgreSQL database deployment. Default value is `Always` for `nightly`, `next` or `latest` images, and `IfNotPresent` in other cases. - type: string - postgresVersion: - description: 'Indicates a PostgreSQL version image to use. Allowed values are: `9.6` and `13.3`. Migrate your PostgreSQL database to switch from one version to another.' - type: string - pvcClaimSize: - description: Size of the persistent volume claim for database. Defaults to `1Gi`. To update pvc storageclass that provisions it must support resize when Eclipse Che has been already deployed. - type: string - type: object - devWorkspace: - description: DevWorkspace operator configuration - properties: - controllerImage: - description: Overrides the container image used in the DevWorkspace controller deployment. This includes the image tag. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - enable: - description: Deploys the DevWorkspace Operator in the cluster. Does nothing when a matching version of the Operator is already installed. Fails when a non-matching version of the Operator is already installed. - type: boolean - required: - - enable - type: object - imagePuller: - description: Kubernetes Image Puller configuration - properties: - enable: - description: Install and configure the Community Supported Kubernetes Image Puller Operator. When set to `true` and no spec is provided, it will create a default KubernetesImagePuller object to be managed by the Operator. When set to `false`, the KubernetesImagePuller object will be deleted, and the Operator will be uninstalled, regardless of whether a spec is provided. If the `spec.images` field is empty, a set of recommended workspace-related images will be automatically detected and pre-pulled after installation. Note that while this Operator and its behavior is community-supported, its payload may be commercially-supported for pulling commercially-supported images. - type: boolean - spec: - description: A KubernetesImagePullerSpec to configure the image puller in the CheCluster - properties: - affinity: - type: string - cachingCPULimit: - type: string - cachingCPURequest: - type: string - cachingIntervalHours: - type: string - cachingMemoryLimit: - type: string - cachingMemoryRequest: - type: string - configMapName: - type: string - daemonsetName: - type: string - deploymentName: - type: string - imagePullSecrets: - type: string - imagePullerImage: - type: string - images: - type: string - nodeSelector: - type: string - type: object - required: - - enable - type: object - k8s: - description: Configuration settings specific to Che installations made on upstream Kubernetes. - properties: - ingressClass: - description: 'Ingress class that will define the which controller will manage ingresses. Defaults to `nginx`. NB: This drives the `kubernetes.io/ingress.class` annotation on Che-related ingresses.' - type: string - ingressDomain: - description: 'Global ingress domain for a Kubernetes cluster. This MUST be explicitly specified: there are no defaults.' - type: string - ingressStrategy: - description: 'Strategy for ingress creation. Options are: `multi-host` (host is explicitly provided in ingress), `single-host` (host is provided, path-based rules) and `default-host` (no host is provided, path-based rules). Defaults to `multi-host` Deprecated in favor of `serverExposureStrategy` in the `server` section, which defines this regardless of the cluster type. When both are defined, the `serverExposureStrategy` option takes precedence.' - type: string - securityContextFsGroup: - description: The FSGroup in which the Che Pod and workspace Pods containers runs in. Default value is `1724`. - type: string - securityContextRunAsUser: - description: ID of the user the Che Pod and workspace Pods containers run as. Default value is `1724`. - type: string - singleHostExposureType: - description: When the serverExposureStrategy is set to `single-host`, the way the server, registries and workspaces are exposed is further configured by this property. The possible values are `native`, which means that the server and workspaces are exposed using ingresses on K8s or `gateway` where the server and workspaces are exposed using a custom gateway based on link:https://doc.traefik.io/traefik/[Traefik]. All the endpoints whether backed by the ingress or gateway `route` always point to the subpaths on the same domain. Defaults to `native`. - type: string - tlsSecretName: - description: Name of a secret that will be used to setup ingress TLS termination when TLS is enabled. When the field is empty string, the default cluster certificate will be used. See also the `tlsSupport` field. - type: string - type: object - metrics: - description: Configuration settings related to the metrics collection used by the Che installation. - properties: - enable: - description: Enables `metrics` the Che server endpoint. Default to `true`. - type: boolean - type: object - server: - description: General configuration settings related to the Che server, the plugin and devfile registries - properties: - airGapContainerRegistryHostname: - description: Optional host name, or URL, to an alternate container registry to pull images from. This value overrides the container registry host name defined in all the default container images involved in a Che deployment. This is particularly useful to install Che in a restricted environment. - type: string - airGapContainerRegistryOrganization: - description: Optional repository name of an alternate container registry to pull images from. This value overrides the container registry organization defined in all the default container images involved in a Che deployment. This is particularly useful to install Eclipse Che in a restricted environment. - type: string - allowUserDefinedWorkspaceNamespaces: - description: Deprecated. The value of this flag is ignored. Defines that a user is allowed to specify a Kubernetes namespace, or an OpenShift project, which differs from the default. It's NOT RECOMMENDED to set to `true` without OpenShift OAuth configured. The OpenShift infrastructure also uses this property. - type: boolean - cheClusterRoles: - description: A comma-separated list of ClusterRoles that will be assigned to Che ServiceAccount. Each role must have `app.kubernetes.io/part-of=che.eclipse.org` label. Be aware that the Che Operator has to already have all permissions in these ClusterRoles to grant them. - type: string - cheDebug: - description: Enables the debug mode for Che server. Defaults to `false`. - type: string - cheFlavor: - description: Specifies a variation of the installation. The options are `che` for upstream Che installations, or `codeready` for link:https://developers.redhat.com/products/codeready-workspaces/overview[CodeReady Workspaces] installation. Override the default value only on necessary occasions. - type: string - cheHost: - description: Public host name of the installed Che server. When value is omitted, the value it will be automatically set by the Operator. See the `cheHostTLSSecret` field. - type: string - cheHostTLSSecret: - description: Name of a secret containing certificates to secure ingress or route for the custom host name of the installed Che server. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label. See the `cheHost` field. - type: string - cheImage: - description: Overrides the container image used in Che deployment. This does NOT include the container image tag. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - cheImagePullPolicy: - description: Overrides the image pull policy used in Che deployment. Default value is `Always` for `nightly`, `next` or `latest` images, and `IfNotPresent` in other cases. - type: string - cheImageTag: - description: Overrides the tag of the container image used in Che deployment. Omit it or leave it empty to use the default image tag provided by the Operator. - type: string - cheLogLevel: - description: 'Log level for the Che server: `INFO` or `DEBUG`. Defaults to `INFO`.' - type: string - cheServerIngress: - description: The Che server ingress custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - cheServerRoute: - description: The Che server route custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - domain: - description: 'Operator uses the domain to generate a hostname for a route. In a conjunction with labels it creates a route, which is served by a non-default Ingress controller. The generated host name will follow this pattern: `-.`.' - type: string - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - cheWorkspaceClusterRole: - description: Custom cluster role bound to the user for the Che workspaces. The role must have `app.kubernetes.io/part-of=che.eclipse.org` label. The default roles are used when omitted or left blank. - type: string - customCheProperties: - additionalProperties: - type: string - description: Map of additional environment variables that will be applied in the generated `che` ConfigMap to be used by the Che server, in addition to the values already generated from other fields of the `CheCluster` custom resource (CR). When `customCheProperties` contains a property that would be normally generated in `che` ConfigMap from other CR fields, the value defined in the `customCheProperties` is used instead. - type: object - dashboardCpuLimit: - description: Overrides the CPU limit used in the dashboard deployment. In cores. (500m = .5 cores). Default to 500m. - type: string - dashboardCpuRequest: - description: Overrides the CPU request used in the dashboard deployment. In cores. (500m = .5 cores). Default to 100m. - type: string - dashboardImage: - description: Overrides the container image used in the dashboard deployment. This includes the image tag. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - dashboardImagePullPolicy: - description: Overrides the image pull policy used in the dashboard deployment. Default value is `Always` for `nightly`, `next` or `latest` images, and `IfNotPresent` in other cases. - type: string - dashboardIngress: - description: Dashboard ingress custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - dashboardMemoryLimit: - description: Overrides the memory limit used in the dashboard deployment. Defaults to 256Mi. - type: string - dashboardMemoryRequest: - description: Overrides the memory request used in the dashboard deployment. Defaults to 16Mi. - type: string - dashboardRoute: - description: Dashboard route custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - domain: - description: 'Operator uses the domain to generate a hostname for a route. In a conjunction with labels it creates a route, which is served by a non-default Ingress controller. The generated host name will follow this pattern: `-.`.' - type: string - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - devfileRegistryCpuLimit: - description: Overrides the CPU limit used in the devfile registry deployment. In cores. (500m = .5 cores). Default to 500m. - type: string - devfileRegistryCpuRequest: - description: Overrides the CPU request used in the devfile registry deployment. In cores. (500m = .5 cores). Default to 100m. - type: string - devfileRegistryImage: - description: Overrides the container image used in the devfile registry deployment. This includes the image tag. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - devfileRegistryIngress: - description: The devfile registry ingress custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - devfileRegistryMemoryLimit: - description: Overrides the memory limit used in the devfile registry deployment. Defaults to 256Mi. - type: string - devfileRegistryMemoryRequest: - description: Overrides the memory request used in the devfile registry deployment. Defaults to 16Mi. - type: string - devfileRegistryPullPolicy: - description: Overrides the image pull policy used in the devfile registry deployment. Default value is `Always` for `nightly`, `next` or `latest` images, and `IfNotPresent` in other cases. - type: string - devfileRegistryRoute: - description: The devfile registry route custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - domain: - description: 'Operator uses the domain to generate a hostname for a route. In a conjunction with labels it creates a route, which is served by a non-default Ingress controller. The generated host name will follow this pattern: `-.`.' - type: string - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - devfileRegistryUrl: - description: Deprecated in favor of `externalDevfileRegistries` fields. - type: string - disableInternalClusterSVCNames: - description: Disable internal cluster SVC names usage to communicate between components to speed up the traffic and avoid proxy issues. - type: boolean - externalDevfileRegistries: - description: External devfile registries, that serves sample, ready-to-use devfiles. Configure this in addition to a dedicated devfile registry (when `externalDevfileRegistry` is `false`) or instead of it (when `externalDevfileRegistry` is `true`) - items: - description: Settings for a configuration of the external devfile registries. - properties: - url: - description: Public URL of the devfile registry. - type: string - type: object - type: array - externalDevfileRegistry: - description: Instructs the Operator on whether to deploy a dedicated devfile registry server. By default, a dedicated devfile registry server is started. When `externalDevfileRegistry` is `true`, no such dedicated server will be started by the Operator and configure at least one devfile registry with `externalDevfileRegistries` field. - type: boolean - externalPluginRegistry: - description: Instructs the Operator on whether to deploy a dedicated plugin registry server. By default, a dedicated plugin registry server is started. When `externalPluginRegistry` is `true`, no such dedicated server will be started by the Operator and you will have to manually set the `pluginRegistryUrl` field. - type: boolean - gitSelfSignedCert: - description: When enabled, the certificate from `che-git-self-signed-cert` ConfigMap will be propagated to the Che components and provide particular configuration for Git. Note, the `che-git-self-signed-cert` ConfigMap must have `app.kubernetes.io/part-of=che.eclipse.org` label. - type: boolean - nonProxyHosts: - description: 'List of hosts that will be reached directly, bypassing the proxy. Specify wild card domain use the following form `.` and `|` as delimiter, for example: `localhost|.my.host.com|123.42.12.32` Only use when configuring a proxy is required. Operator respects OpenShift cluster wide proxy configuration and no additional configuration is required, but defining `nonProxyHosts` in a custom resource leads to merging non proxy hosts lists from the cluster proxy configuration and ones defined in the custom resources. See the doc https://docs.openshift.com/container-platform/4.4/networking/enable-cluster-wide-proxy.html. See also the `proxyURL` fields.' - type: string - pluginRegistryCpuLimit: - description: Overrides the CPU limit used in the plugin registry deployment. In cores. (500m = .5 cores). Default to 500m. - type: string - pluginRegistryCpuRequest: - description: Overrides the CPU request used in the plugin registry deployment. In cores. (500m = .5 cores). Default to 100m. - type: string - pluginRegistryImage: - description: Overrides the container image used in the plugin registry deployment. This includes the image tag. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - pluginRegistryIngress: - description: Plugin registry ingress custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - pluginRegistryMemoryLimit: - description: Overrides the memory limit used in the plugin registry deployment. Defaults to 256Mi. - type: string - pluginRegistryMemoryRequest: - description: Overrides the memory request used in the plugin registry deployment. Defaults to 16Mi. - type: string - pluginRegistryPullPolicy: - description: Overrides the image pull policy used in the plugin registry deployment. Default value is `Always` for `nightly`, `next` or `latest` images, and `IfNotPresent` in other cases. - type: string - pluginRegistryRoute: - description: Plugin registry route custom settings. - properties: - annotations: - additionalProperties: - type: string - description: Unstructured key value map stored with a resource that may be set by external tools to store and retrieve arbitrary metadata. - type: object - domain: - description: 'Operator uses the domain to generate a hostname for a route. In a conjunction with labels it creates a route, which is served by a non-default Ingress controller. The generated host name will follow this pattern: `-.`.' - type: string - labels: - description: Comma separated list of labels that can be used to organize and categorize objects by scoping and selecting. - type: string - type: object - pluginRegistryUrl: - description: Public URL of the plugin registry that serves sample ready-to-use devfiles. Set this ONLY when a use of an external devfile registry is needed. See the `externalPluginRegistry` field. By default, this will be automatically calculated by the Operator. - type: string - proxyPassword: - description: Password of the proxy server. Only use when proxy configuration is required. See the `proxyURL`, `proxyUser` and `proxySecret` fields. - type: string - proxyPort: - description: Port of the proxy server. Only use when configuring a proxy is required. See also the `proxyURL` and `nonProxyHosts` fields. - type: string - proxySecret: - description: The secret that contains `user` and `password` for a proxy server. When the secret is defined, the `proxyUser` and `proxyPassword` are ignored. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label. - type: string - proxyURL: - description: URL (protocol+host name) of the proxy server. This drives the appropriate changes in the `JAVA_OPTS` and `https(s)_proxy` variables in the Che server and workspaces containers. Only use when configuring a proxy is required. Operator respects OpenShift cluster wide proxy configuration and no additional configuration is required, but defining `proxyUrl` in a custom resource leads to overrides the cluster proxy configuration with fields `proxyUrl`, `proxyPort`, `proxyUser` and `proxyPassword` from the custom resource. See the doc https://docs.openshift.com/container-platform/4.4/networking/enable-cluster-wide-proxy.html. See also the `proxyPort` and `nonProxyHosts` fields. - type: string - proxyUser: - description: User name of the proxy server. Only use when configuring a proxy is required. See also the `proxyURL`, `proxyPassword` and `proxySecret` fields. - type: string - selfSignedCert: - description: Deprecated. The value of this flag is ignored. The Che Operator will automatically detect whether the router certificate is self-signed and propagate it to other components, such as the Che server. - type: boolean - serverCpuLimit: - description: Overrides the CPU limit used in the Che server deployment In cores. (500m = .5 cores). Default to 1. - type: string - serverCpuRequest: - description: Overrides the CPU request used in the Che server deployment In cores. (500m = .5 cores). Default to 100m. - type: string - serverExposureStrategy: - description: Sets the server and workspaces exposure type. Possible values are `multi-host`, `single-host`, `default-host`. Defaults to `multi-host`, which creates a separate ingress, or OpenShift routes, for every required endpoint. `single-host` makes Che exposed on a single host name with workspaces exposed on subpaths. Read the docs to learn about the limitations of this approach. Also consult the `singleHostExposureType` property to further configure how the Operator and the Che server make that happen on Kubernetes. `default-host` exposes the Che server on the host of the cluster. Read the docs to learn about the limitations of this approach. - type: string - serverMemoryLimit: - description: Overrides the memory limit used in the Che server deployment. Defaults to 1Gi. - type: string - serverMemoryRequest: - description: Overrides the memory request used in the Che server deployment. Defaults to 512Mi. - type: string - serverTrustStoreConfigMapName: - description: Name of the ConfigMap with public certificates to add to Java trust store of the Che server. This is often required when adding the OpenShift OAuth provider, which has HTTPS endpoint signed with self-signed cert. The Che server must be aware of its CA cert to be able to request it. This is disabled by default. The Config Map must have `app.kubernetes.io/part-of=che.eclipse.org` label. - type: string - singleHostGatewayConfigMapLabels: - additionalProperties: - type: string - description: The labels that need to be present in the ConfigMaps representing the gateway configuration. - type: object - singleHostGatewayConfigSidecarImage: - description: The image used for the gateway sidecar that provides configuration to the gateway. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - singleHostGatewayImage: - description: The image used for the gateway in the single host mode. Omit it or leave it empty to use the default container image provided by the Operator. - type: string - tlsSupport: - description: Deprecated. Instructs the Operator to deploy Che in TLS mode. This is enabled by default. Disabling TLS sometimes cause malfunction of some Che components. - type: boolean - useInternalClusterSVCNames: - description: Deprecated in favor of `disableInternalClusterSVCNames`. - type: boolean - workspaceNamespaceDefault: - description: Defines Kubernetes default namespace in which user's workspaces are created for a case when a user does not override it. It's possible to use ``, `` and `` placeholders, such as che-workspace-. In that case, a new namespace will be created for each user or workspace. - type: string - type: object - storage: - description: Configuration settings related to the persistent storage used by the Che installation. - properties: - postgresPVCStorageClassName: - description: Storage class for the Persistent Volume Claim dedicated to the PostgreSQL database. When omitted or left blank, a default storage class is used. - type: string - preCreateSubPaths: - description: Instructs the Che server to start a special Pod to pre-create a sub-path in the Persistent Volumes. Defaults to `false`, however it will need to enable it according to the configuration of your Kubernetes cluster. - type: boolean - pvcClaimSize: - description: Size of the persistent volume claim for workspaces. Defaults to `10Gi`. - type: string - pvcJobsImage: - description: Overrides the container image used to create sub-paths in the Persistent Volumes. This includes the image tag. Omit it or leave it empty to use the default container image provided by the Operator. See also the `preCreateSubPaths` field. - type: string - pvcStrategy: - description: Persistent volume claim strategy for the Che server. This Can be:`common` (all workspaces PVCs in one volume), `per-workspace` (one PVC per workspace for all declared volumes) and `unique` (one PVC per declared volume). Defaults to `common`. - type: string - workspacePVCStorageClassName: - description: Storage class for the Persistent Volume Claims dedicated to the Che workspaces. When omitted or left blank, a default storage class is used. - type: string - type: object - type: object - status: - description: CheClusterStatus defines the observed state of Che installation - properties: - cheClusterRunning: - description: Status of a Che installation. Can be `Available`, `Unavailable`, or `Available, Rolling Update in Progress`. - type: string - cheURL: - description: Public URL to the Che server. - type: string - cheVersion: - description: Current installed Che version. - type: string - dbProvisioned: - description: Indicates that a PostgreSQL instance has been correctly provisioned or not. - type: boolean - devfileRegistryURL: - description: Public URL to the devfile registry. - type: string - devworkspaceStatus: - description: The status of the Devworkspace subsystem - properties: - gatewayHost: - description: GatewayHost is the resolved host of the ingress/route. This is equal to the Host in the spec on Kubernetes but contains the actual host name of the route if Host is unspecified on OpenShift. - type: string - gatewayPhase: - description: GatewayPhase specifies the phase in which the gateway deployment currently is. If the gateway is disabled, the phase is "Inactive". - type: string - message: - description: Message contains further human-readable info for why the Che cluster is in the phase it currently is. - type: string - phase: - description: Phase is the phase in which the Che cluster as a whole finds itself in. - type: string - reason: - description: A brief CamelCase message indicating details about why the Che cluster is in this state. - type: string - workspaceBaseDomain: - description: The resolved workspace base domain. This is either the copy of the explicitly defined property of the same name in the spec or, if it is undefined in the spec and we're running on OpenShift, the automatically resolved basedomain for routes. - type: string - type: object - gitHubOAuthProvisioned: - description: Indicates whether an Identity Provider instance, Keycloak or RH-SSO, has been configured to integrate with the GitHub OAuth. - type: boolean - helpLink: - description: A URL that points to some URL where to find help related to the current Operator status. - type: string - keycloakProvisioned: - description: Indicates whether an Identity Provider instance, Keycloak or RH-SSO, has been provisioned with realm, client and user. - type: boolean - keycloakURL: - description: Public URL to the Identity Provider server, Keycloak or RH-SSO,. - type: string - message: - description: A human readable message indicating details about why the Pod is in this condition. - type: string - openShiftOAuthUserCredentialsSecret: - description: OpenShift OAuth secret in `openshift-config` namespace that contains user credentials for HTPasswd identity provider. - type: string - openShiftoAuthProvisioned: - description: Indicates whether an Identity Provider instance, Keycloak or RH-SSO, has been configured to integrate with the OpenShift OAuth. - type: boolean - pluginRegistryURL: - description: Public URL to the plugin registry. - type: string - reason: - description: A brief CamelCase message indicating details about why the Pod is in this state. - type: string - type: object - type: object - served: true - storage: true - subresources: - status: {} -status: - acceptedNames: - kind: "" - plural: "" - conditions: [] - storedVersions: [] diff --git a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org_v1_che_crd.yaml.diff b/bundle/stable/eclipse-che-preview-kubernetes/manifests/org_v1_che_crd.yaml.diff deleted file mode 100644 index 52e0e90a6..000000000 --- a/bundle/stable/eclipse-che-preview-kubernetes/manifests/org_v1_che_crd.yaml.diff +++ /dev/null @@ -1,116 +0,0 @@ ---- /home/runner/work/che-operator/che-operator/bundle/stable/eclipse-che-preview-kubernetes/generated/kubernetes/org_v1_che_crd.yaml 2021-12-03 13:11:53.941239072 +0000 -+++ /home/runner/work/che-operator/che-operator/bundle/stable/eclipse-che-preview-kubernetes/manifests/org_v1_che_crd.yaml 2021-12-03 13:11:55.181323677 +0000 -@@ -1,13 +1,15 @@ - # --# Copyright (c) 2019-2021 Red Hat, Inc. --# This program and the accompanying materials are made --# available under the terms of the Eclipse Public License 2.0 --# which is available at https://www.eclipse.org/legal/epl-2.0/ -+# Copyright (c) 2019-2021 Red Hat, Inc. -+# This program and the accompanying materials are made -+# available under the terms of the Eclipse Public License 2.0 -+# which is available at https://www.eclipse.org/legal/epl-2.0/ - # --# SPDX-License-Identifier: EPL-2.0 -+# SPDX-License-Identifier: EPL-2.0 - # --# Contributors: --# Red Hat, Inc. - initial API and implementation -+# Contributors: -+# Red Hat, Inc. - initial API and implementation -+# -+ - apiVersion: apiextensions.k8s.io/v1 - kind: CustomResourceDefinition - metadata: -@@ -113,7 +115,7 @@ - description: Password for a Identity Provider, Keycloak or RH-SSO, to connect to the database. Override this when an external Identity Provider is in use. See the `externalIdentityProvider` field. When omitted or left blank, it is set to an auto-generated password. - type: string - identityProviderPostgresSecret: -- description: 'The secret that contains `password` for the Identity Provider, Keycloak or RH-SSO, to connect to the database. When the secret is defined, the `identityProviderPostgresPassword` is ignored. When the value is omitted or left blank, the one of following scenarios applies: 1. `identityProviderPostgresPassword` is defined, then it will be used to connect to the database. 2. `identityProviderPostgresPassword` is not defined, then a new secret with the name `che-identity-postgres-secret` will be created with an auto-generated value for `password`.' -+ description: 'The secret that contains `password` for the Identity Provider, Keycloak or RH-SSO, to connect to the database. When the secret is defined, the `identityProviderPostgresPassword` is ignored. When the value is omitted or left blank, the one of following scenarios applies: 1. `identityProviderPostgresPassword` is defined, then it will be used to connect to the database. 2. `identityProviderPostgresPassword` is not defined, then a new secret with the name `che-identity-postgres-secret` will be created with an auto-generated value for `password`. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label.' - type: string - identityProviderRealm: - description: Name of a Identity provider, Keycloak or RH-SSO, realm that is used for Che. Override this when an external Identity Provider is in use. See the `externalIdentityProvider` field. When omitted or left blank, it is set to the value of the `flavour` field. -@@ -134,7 +136,7 @@ - type: string - type: object - identityProviderSecret: -- description: 'The secret that contains `user` and `password` for Identity Provider. When the secret is defined, the `identityProviderAdminUserName` and `identityProviderPassword` are ignored. When the value is omitted or left blank, the one of following scenarios applies: 1. `identityProviderAdminUserName` and `identityProviderPassword` are defined, then they will be used. 2. `identityProviderAdminUserName` or `identityProviderPassword` are not defined, then a new secret with the name `che-identity-secret` will be created with default value `admin` for `user` and with an auto-generated value for `password`.' -+ description: 'The secret that contains `user` and `password` for Identity Provider. When the secret is defined, the `identityProviderAdminUserName` and `identityProviderPassword` are ignored. When the value is omitted or left blank, the one of following scenarios applies: 1. `identityProviderAdminUserName` and `identityProviderPassword` are defined, then they will be used. 2. `identityProviderAdminUserName` or `identityProviderPassword` are not defined, then a new secret with the name `che-identity-secret` will be created with default value `admin` for `user` and with an auto-generated value for `password`. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label.' - type: string - identityProviderURL: - description: Public URL of the Identity Provider server (Keycloak / RH-SSO server). Set this ONLY when a use of an external Identity Provider is needed. See the `externalIdentityProvider` field. By default, this will be automatically calculated and set by the Operator. -@@ -198,7 +200,7 @@ - description: PostgreSQL Database port that the Che server uses to connect to. Defaults to 5432. Override this value ONLY when using an external database. See field `externalDb`. In the default case it will be automatically set by the Operator. - type: string - chePostgresSecret: -- description: 'The secret that contains PostgreSQL`user` and `password` that the Che server uses to connect to the DB. When the secret is defined, the `chePostgresUser` and `chePostgresPassword` are ignored. When the value is omitted or left blank, the one of following scenarios applies: 1. `chePostgresUser` and `chePostgresPassword` are defined, then they will be used to connect to the DB. 2. `chePostgresUser` or `chePostgresPassword` are not defined, then a new secret with the name `che-postgres-secret` will be created with default value of `pgche` for `user` and with an auto-generated value for `password`.' -+ description: 'The secret that contains PostgreSQL`user` and `password` that the Che server uses to connect to the DB. When the secret is defined, the `chePostgresUser` and `chePostgresPassword` are ignored. When the value is omitted or left blank, the one of following scenarios applies: 1. `chePostgresUser` and `chePostgresPassword` are defined, then they will be used to connect to the DB. 2. `chePostgresUser` or `chePostgresPassword` are not defined, then a new secret with the name `che-postgres-secret` will be created with default value of `pgche` for `user` and with an auto-generated value for `password`. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label.' - type: string - chePostgresUser: - description: PostgreSQL user that the Che server uses to connect to the DB. Defaults to `pgche`. -@@ -215,6 +217,9 @@ - postgresVersion: - description: 'Indicates a PostgreSQL version image to use. Allowed values are: `9.6` and `13.3`. Migrate your PostgreSQL database to switch from one version to another.' - type: string -+ pvcClaimSize: -+ description: Size of the persistent volume claim for database. Defaults to `1Gi`. To update pvc storageclass that provisions it must support resize when Eclipse Che has been already deployed. -+ type: string - type: object - devWorkspace: - description: DevWorkspace operator configuration -@@ -312,7 +317,7 @@ - description: Deprecated. The value of this flag is ignored. Defines that a user is allowed to specify a Kubernetes namespace, or an OpenShift project, which differs from the default. It's NOT RECOMMENDED to set to `true` without OpenShift OAuth configured. The OpenShift infrastructure also uses this property. - type: boolean - cheClusterRoles: -- description: A comma-separated list of ClusterRoles that will be assigned to Che ServiceAccount. Be aware that the Che Operator has to already have all permissions in these ClusterRoles to grant them. -+ description: A comma-separated list of ClusterRoles that will be assigned to Che ServiceAccount. Each role must have `app.kubernetes.io/part-of=che.eclipse.org` label. Be aware that the Che Operator has to already have all permissions in these ClusterRoles to grant them. - type: string - cheDebug: - description: Enables the debug mode for Che server. Defaults to `false`. -@@ -324,7 +329,7 @@ - description: Public host name of the installed Che server. When value is omitted, the value it will be automatically set by the Operator. See the `cheHostTLSSecret` field. - type: string - cheHostTLSSecret: -- description: Name of a secret containing certificates to secure ingress or route for the custom host name of the installed Che server. See the `cheHost` field. -+ description: Name of a secret containing certificates to secure ingress or route for the custom host name of the installed Che server. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label. See the `cheHost` field. - type: string - cheImage: - description: Overrides the container image used in Che deployment. This does NOT include the container image tag. Omit it or leave it empty to use the default container image provided by the Operator. -@@ -366,7 +371,7 @@ - type: string - type: object - cheWorkspaceClusterRole: -- description: Custom cluster role bound to the user for the Che workspaces. The default roles are used when omitted or left blank. -+ description: Custom cluster role bound to the user for the Che workspaces. The role must have `app.kubernetes.io/part-of=che.eclipse.org` label. The default roles are used when omitted or left blank. - type: string - customCheProperties: - additionalProperties: -@@ -486,7 +491,7 @@ - description: Instructs the Operator on whether to deploy a dedicated plugin registry server. By default, a dedicated plugin registry server is started. When `externalPluginRegistry` is `true`, no such dedicated server will be started by the Operator and you will have to manually set the `pluginRegistryUrl` field. - type: boolean - gitSelfSignedCert: -- description: When enabled, the certificate from `che-git-self-signed-cert` ConfigMap will be propagated to the Che components and provide particular configuration for Git. -+ description: When enabled, the certificate from `che-git-self-signed-cert` ConfigMap will be propagated to the Che components and provide particular configuration for Git. Note, the `che-git-self-signed-cert` ConfigMap must have `app.kubernetes.io/part-of=che.eclipse.org` label. - type: boolean - nonProxyHosts: - description: 'List of hosts that will be reached directly, bypassing the proxy. Specify wild card domain use the following form `.` and `|` as delimiter, for example: `localhost|.my.host.com|123.42.12.32` Only use when configuring a proxy is required. Operator respects OpenShift cluster wide proxy configuration and no additional configuration is required, but defining `nonProxyHosts` in a custom resource leads to merging non proxy hosts lists from the cluster proxy configuration and ones defined in the custom resources. See the doc https://docs.openshift.com/container-platform/4.4/networking/enable-cluster-wide-proxy.html. See also the `proxyURL` fields.' -@@ -546,7 +551,7 @@ - description: Port of the proxy server. Only use when configuring a proxy is required. See also the `proxyURL` and `nonProxyHosts` fields. - type: string - proxySecret: -- description: The secret that contains `user` and `password` for a proxy server. When the secret is defined, the `proxyUser` and `proxyPassword` are ignored. -+ description: The secret that contains `user` and `password` for a proxy server. When the secret is defined, the `proxyUser` and `proxyPassword` are ignored. The secret must have `app.kubernetes.io/part-of=che.eclipse.org` label. - type: string - proxyURL: - description: URL (protocol+host name) of the proxy server. This drives the appropriate changes in the `JAVA_OPTS` and `https(s)_proxy` variables in the Che server and workspaces containers. Only use when configuring a proxy is required. Operator respects OpenShift cluster wide proxy configuration and no additional configuration is required, but defining `proxyUrl` in a custom resource leads to overrides the cluster proxy configuration with fields `proxyUrl`, `proxyPort`, `proxyUser` and `proxyPassword` from the custom resource. See the doc https://docs.openshift.com/container-platform/4.4/networking/enable-cluster-wide-proxy.html. See also the `proxyPort` and `nonProxyHosts` fields. -@@ -573,7 +578,7 @@ - description: Overrides the memory request used in the Che server deployment. Defaults to 512Mi. - type: string - serverTrustStoreConfigMapName: -- description: Name of the ConfigMap with public certificates to add to Java trust store of the Che server. This is often required when adding the OpenShift OAuth provider, which has HTTPS endpoint signed with self-signed cert. The Che server must be aware of its CA cert to be able to request it. This is disabled by default. -+ description: Name of the ConfigMap with public certificates to add to Java trust store of the Che server. This is often required when adding the OpenShift OAuth provider, which has HTTPS endpoint signed with self-signed cert. The Che server must be aware of its CA cert to be able to request it. This is disabled by default. The Config Map must have `app.kubernetes.io/part-of=che.eclipse.org` label. - type: string - singleHostGatewayConfigMapLabels: - additionalProperties: diff --git a/bundle/stable/eclipse-che-preview-kubernetes/metadata/annotations.yaml b/bundle/stable/eclipse-che-preview-kubernetes/metadata/annotations.yaml deleted file mode 100644 index e01d1a364..000000000 --- a/bundle/stable/eclipse-che-preview-kubernetes/metadata/annotations.yaml +++ /dev/null @@ -1,27 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -annotations: - # Core bundle annotations. - operators.operatorframework.io.bundle.mediatype.v1: registry+v1 - operators.operatorframework.io.bundle.manifests.v1: manifests/ - operators.operatorframework.io.bundle.metadata.v1: metadata/ - operators.operatorframework.io.bundle.package.v1: eclipse-che-preview-kubernetes - operators.operatorframework.io.bundle.channels.v1: stable - operators.operatorframework.io.bundle.channel.default.v1: stable - operators.operatorframework.io.metrics.builder: operator-sdk-v1.6.1+git - operators.operatorframework.io.metrics.mediatype.v1: metrics+v1 - operators.operatorframework.io.metrics.project_layout: go.kubebuilder.io/v3 - - # Annotations for testing. - operators.operatorframework.io.test.mediatype.v1: scorecard+v1 - operators.operatorframework.io.test.config.v1: tests/scorecard/ diff --git a/bundle/stable/eclipse-che-preview-kubernetes/tests/scorecard/config.yaml b/bundle/stable/eclipse-che-preview-kubernetes/tests/scorecard/config.yaml deleted file mode 100644 index 938d07f28..000000000 --- a/bundle/stable/eclipse-che-preview-kubernetes/tests/scorecard/config.yaml +++ /dev/null @@ -1,47 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -apiVersion: scorecard.operatorframework.io/v1alpha3 -kind: Configuration -metadata: - name: config -stages: -- parallel: true - tests: - - entrypoint: - - scorecard-test - - basic-check-spec - image: quay.io/operator-framework/scorecard-test:v1.7.1 - labels: - suite: basic - test: basic-check-spec-test - - entrypoint: - - scorecard-test - - olm-bundle-validation - image: quay.io/operator-framework/scorecard-test:v1.7.1 - labels: - suite: olm - test: olm-bundle-validation-test - - entrypoint: - - scorecard-test - - olm-crds-have-validation - image: quay.io/operator-framework/scorecard-test:v1.7.1 - labels: - suite: olm - test: olm-crds-have-validation-test - - entrypoint: - - scorecard-test - - olm-spec-descriptors - image: quay.io/operator-framework/scorecard-test:v1.7.1 - labels: - suite: olm - test: olm-spec-descriptors-test diff --git a/config/platforms/kubernetes/che-operator.clusterserviceversion-description-patch.yaml b/config/platforms/kubernetes/che-operator.clusterserviceversion-description-patch.yaml deleted file mode 100644 index 1e183d5f4..000000000 --- a/config/platforms/kubernetes/che-operator.clusterserviceversion-description-patch.yaml +++ /dev/null @@ -1,100 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -- op: replace - path: /spec/description - value: | - A collaborative Kubernetes-native development solution that delivers Kubernetes workspaces and in-browser IDE for rapid cloud application development. - This operator installs PostgreSQL, Keycloak, Plugin registry, Devfile registry and the Eclipse Che server, as well as configures all these services. - - ## Prerequisites - - Operator Lifecycle Manager (OLM) greater than or equal to v0.17.0 needs to be installed. - - ## How to Install - Install `Eclipse Che Operator` by following instructions in top right button `Install`. - - A new pod che-operator is created in `my-eclipse-che` namespace - - ``` - $ kubectl get pods --all-namespaces | grep my-eclipse-che - my-eclipse-che che-operator-554c564476-fl98z 1/1 Running 0 13s - ``` - - The operator is now providing new Custom Resources Definitions: `checluster.org.eclipse.che` - - Create a new Eclipse Che instance by creating a new CheCluster resource: - - On the bottom of this page, there is a section `Custom Resource Definitions` with `Eclipse Che Cluster` name. - - Click on `View YAML Example` *Link* and copy the content to a new file named `my-eclipse-che.yaml` - **Important!** Make sure you provide **K8s.ingressDomain** which is a global ingress domain of your k8s cluster, for example, `gcp.my-ide.cloud` - Create the new CheCluster by creating the resource in the `my-eclipse-che` namespace : - ``` - $ kubectl create -f my-eclipse-che.yaml -n my-eclipse-che - ``` - ***important:*** The operator is only tracking resources in its own namespace. If CheCluster is not created in this namespace it's ignored. - The operator will now create pods for Eclipse Che. The deployment status can be tracked by looking at the Operator logs by using the command: - ``` - $ kubectl logs -n my-eclipse-che che-operator-554c564476-fl98z - ``` - ***important:*** pod name is different on each installation - - When all Eclipse Che containers are running, the Eclipse Che URL is printed in the logs. - - Eclipse Che URL can be tracked by searching for available trace: - ``` - $ kubectl logs -f -n my-eclipse-che che-operator-7b6b4bcb9c-m4m2m | grep "Eclipse Che is now available" - time="2019-08-01T13:31:05Z" level=info msg="Eclipse Che is now available at: http://che-my-eclipse-che.gcp.my-ide.cloud" - ``` - When Eclipse Che is ready, the Eclipse Che URL is displayed in CheCluster resource in `status` section - ``` - $ kubectl describe checluster/eclipse-che -n my-eclipse-che - ``` - - ``` - Status: - Che Cluster Running: Available - Che URL: http://che-my-eclipse-che.gcp.my-ide.cloud - Che Version: 7.26.0 - ... - ``` - - By opening this URL in a web browser, Eclipse Che is ready to use. - - ## Defaults - By default, the operator deploys Eclipse Che with: - * Bundled PostgreSQL and Keycloak - * Common PVC strategy - * Auto-generated passwords - * TLS mode (secure ingresses) - * Communicate between components using internal cluster SVC names - - ## Installation Options - Eclipse Che operator installation options include: - * Connection to external database and Keycloak - * Configuration of default passwords and object names - * PVC strategy (once shared PVC for all workspaces, PVC per workspace, or PVC per volume) - * Authentication options - - Use `kubectl edit checluster/eclipse-che -n my-eclipse-che` to update Eclipse Che configuration. - See more configuration options in the [Installation guide](https://www.eclipse.org/che/docs/che-7/installation-guide/configuring-the-che-installation/). - - ### External Database and Keycloak - Follow the guides to configure external [Keycloak](https://www.eclipse.org/che/docs/che-7/administration-guide/configuring-authorization/#configuring-che-to-use-external-keycloak_che) - and [Database](https://www.eclipse.org/che/docs/che-7/administration-guide/external-database-setup/) setup. - - ### Certificates and TLS Secrets - Eclipse Che uses auto-generated self-signed certificates by default and TLS mode is on. - To use a default certificate of a Kubernetes cluster set empty value in `spec.k8s.tlsSecretName` field: - ``` - kubectl patch checluster/eclipse-che --type=json -p '[{"op": "replace", "path": "/spec/k8s/tlsSecretName", "value": ""}]' -n my-eclipse-che - ``` diff --git a/config/platforms/kubernetes/che-operator.clusterserviceversion-name-patch.yaml b/config/platforms/kubernetes/che-operator.clusterserviceversion-name-patch.yaml deleted file mode 100644 index 29eebc538..000000000 --- a/config/platforms/kubernetes/che-operator.clusterserviceversion-name-patch.yaml +++ /dev/null @@ -1,16 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -- op: replace - path: /metadata/name - value: - eclipse-che-preview-kubernetes.v0.0.0 diff --git a/config/platforms/kubernetes/kustomization.yaml b/config/platforms/kubernetes/kustomization.yaml deleted file mode 100644 index 037089bbb..000000000 --- a/config/platforms/kubernetes/kustomization.yaml +++ /dev/null @@ -1,27 +0,0 @@ -# -# Copyright (c) 2019-2021 Red Hat, Inc. -# This program and the accompanying materials are made -# available under the terms of the Eclipse Public License 2.0 -# which is available at https://www.eclipse.org/legal/epl-2.0/ -# -# SPDX-License-Identifier: EPL-2.0 -# -# Contributors: -# Red Hat, Inc. - initial API and implementation -# - -bases: - - ../../manifests -patchesJson6902: -- path: che-operator.clusterserviceversion-description-patch.yaml - target: - group: operators.coreos.com - version: v1alpha1 - kind: ClusterServiceVersion - name: eclipse-che-preview-.v0.0.0 -- path: che-operator.clusterserviceversion-name-patch.yaml - target: - group: operators.coreos.com - version: v1alpha1 - kind: ClusterServiceVersion - name: eclipse-che-preview-.v0.0.0 diff --git a/config/rbac/cluster_role.yaml b/config/rbac/cluster_role.yaml index 46f050a2f..3c4adcdbb 100644 --- a/config/rbac/cluster_role.yaml +++ b/config/rbac/cluster_role.yaml @@ -605,6 +605,14 @@ rules: - create - get - update + - apiGroups: + - metrics.k8s.io + resources: + - pods + verbs: + - get + - list + - watch - apiGroups: - monitoring.coreos.com resources: diff --git a/helmcharts/next/templates/cluster_role.yaml b/helmcharts/next/templates/cluster_role.yaml index 46f050a2f..3c4adcdbb 100644 --- a/helmcharts/next/templates/cluster_role.yaml +++ b/helmcharts/next/templates/cluster_role.yaml @@ -605,6 +605,14 @@ rules: - create - get - update + - apiGroups: + - metrics.k8s.io + resources: + - pods + verbs: + - get + - list + - watch - apiGroups: - monitoring.coreos.com resources: diff --git a/make-release.sh b/make-release.sh index 89e520ab8..9c550ebfe 100755 --- a/make-release.sh +++ b/make-release.sh @@ -228,16 +228,6 @@ releaseOlmFiles() { echo "[INFO] releaseOlmFiles :: Validate changes" grep -q "version: "$RELEASE $openshift/che-operator.clusterserviceversion.yaml - if [[ $channel == "stable" ]];then - local kubernetes=$RELEASE_DIR/bundle/$channel/eclipse-che-preview-kubernetes/manifests - grep -q "version: "$RELEASE $kubernetes/che-operator.clusterserviceversion.yaml - - test -f $kubernetes/org_v1_che_crd.yaml - test -f $kubernetes/org.eclipse.che_chebackupserverconfigurations_crd.yaml - test -f $kubernetes/org.eclipse.che_checlusterbackups_crd.yaml - test -f $kubernetes/org.eclipse.che_checlusterrestores_crd.yaml - fi - test -f $openshift/org_v1_che_crd.yaml test -f $openshift/org.eclipse.che_chebackupserverconfigurations_crd.yaml test -f $openshift/org.eclipse.che_checlusterbackups_crd.yaml @@ -256,7 +246,6 @@ pushOlmBundlesToQuayIo() { echo "[INFO] Push OLM bundles to quay.io" . ${RELEASE_DIR}/olm/buildCatalog.sh -c tech-preview-stable-all-namespaces -p openshift -i quay.io/eclipse/eclipse-che-openshift-opm-catalog:test -f - . ${RELEASE_DIR}/olm/buildCatalog.sh -c stable -p kubernetes -i quay.io/eclipse/eclipse-che-kubernetes-opm-catalog:test -f . ${RELEASE_DIR}/olm/buildCatalog.sh -c stable -p openshift -i quay.io/eclipse/eclipse-che-openshift-opm-catalog:test -f } diff --git a/olm/README.md b/olm/README.md index 9cfaa8535..d268cc0c4 100644 --- a/olm/README.md +++ b/olm/README.md @@ -13,29 +13,26 @@ WARNING: Please make sure to use the precise `v1.7.1` version of the `operator-s ## Eclipse Che OLM bundles -OLM (operator lifecycle manager) provides ways of installing operators. One of the convenient way how to achieve it is by using OLM bundles. See more about the format: https://github.com/openshift/enhancements/blob/master/enhancements/olm/operator-bundle.md. There two "next" platform-specific OLM bundles for Сhe operator: +OLM (operator lifecycle manager) provides ways of installing operators. One of the convenient way how to achieve it is by using OLM bundles. See more about the format: https://github.com/openshift/enhancements/blob/master/enhancements/olm/operator-bundle.md. There two OLM bundles: -- `bundle/next/eclipse-che-preview-kubernetes/manifests` -- `bundle/next/eclipse-che-preview-openshift/manifests` +- `bundle/next/eclipse-che-preview-openshift/manifests` for the `next` channel +- `bundle/stable/eclipse-che-preview-openshift/manifests` for the `stable` channel -Each bundle consists of a cluster service version file (CSV) and a custom resource definition file (CRD). CRD file describes `checlusters` Kubernetes api resource object(object fields name, format, description and so on). Kubernetes api needs this information to correctly store a custom resource object "checluster". Custom resource object users could modify to change Eclipse Che configuration. Che operator watches `checlusters` object and re-deploy Che with desired configuration. The CSV file contains all "deploy" and "permission" specific information, which OLM needs to install Eclipse Che operator. +Each bundle consists of a cluster service version file (CSV) and a custom resource definition files (CRD). CRD file describes `checlusters` Kubernetes api resource object(object fields name, format, description and so on). Kubernetes api needs this information to correctly store a custom resource object "checluster". Custom resource object users could modify to change Eclipse Che configuration. Che operator watches `checlusters` object and re-deploy Che with desired configuration. The CSV file contains all "deploy" and "permission" specific information, which OLM needs to install Eclipse Che operator. ## Testing custom CatalogSource and next bundle images To test next Che operator you have to use the OLM CatalogSource(index) image. -CatalogSource image stores in the internal database information about OLM bundles with different versions of the Eclipse Che. For next channel (dependent on platform) Eclipse Che provides two CatalogSource images: +CatalogSource image stores in the internal database information about OLM bundles with different versions of the Eclipse Che. +Eclipse Che provides `quay.io/eclipse/eclipse-che-openshift-opm-catalog:next` catalog source images for the `next` channel. - - `quay.io/eclipse/eclipse-che-kubernetes-opm-catalog:next` for Kubernetes platform; - - `quay.io/eclipse/eclipse-che-openshift-opm-catalog:next` for Openshift platform; +For each new next version Eclipse Che provides the corresponding bundle image with name pattern: -For each new next version Eclipse Che provides next bundle image with name pattern: - -`quay.io/eclipse/eclipse-che--opm-bundles:-.next` +`quay.io/eclipse/eclipse-che-openshift-opm-bundles:-.next` For example: ``` -quay.io/eclipse/eclipse-che-kubernetes-opm-bundles:7.18.0-1.next quay.io/eclipse/eclipse-che-openshift-opm-bundles:7.19.0-5.next ``` @@ -46,8 +43,8 @@ with your latest development changes and use it in the test scripts. To build th ```bash $ olm/buildCatalog.sh \ - -c (next|next-all-namespaces|stable|tech-preview-all-namespaces) \ - -p (openshift|kubernetes) \ + -c (next|stable) \ + -p (openshift) \ -i ``` @@ -65,60 +62,21 @@ If your CatalogSource image contains few bundles, you can test migration from pr $ ./testUpdate.sh -p openshift -c next -i -n eclipse-che ``` -### Testing custom CatalogSource and bundle images on the Kubernetes +# Install Eclipse Che from `stable` channel using testing catalog source image -To test your custom CatalogSource and bundle images on the Kubernetes you need to use public image registry. For "docker.io" you don't need any extra steps with pre-creation image repositories. But for "quay.io" you should pre-create the bundle and catalog image repositories manually and make them publicly visible. If you want to save repositories "private", then it is not necessary to pre-create them, but you need to provide an image pull secret to the cluster to prevent image pull 'unauthorized' error. +Before publishing Eclipse Che in the community operator catalogs, we test new release using "stable" OLM channel +from testing catalog source image. -To test the latest custom "next" bundle: - -```bash -$ ./testCatalog.sh -p kubernetes -c next -i -n eclipse-che -``` - -If your CatalogSource image contains few bundles, you can test migration from previous bundle to the latest: - -```bash -$ ./testUpdate.sh -p kubernetes -c next -i -n eclipse-che -``` - -Also you can test your changes without a public registry. You can use the minikube cluster and enable the minikube "registry" addon. For this purpose use the script: - -```bash -$ olm/minikube-registry-addon.sh -``` - -This script creates port forward to minikube private registry: `127.0.0.1:5000`. Should be launched before test execution in the separated terminal. To stop this script you can use `Ctrl+C`. You can check that private registry was forwarded to the localhost: - -```bash -$ curl -X GET localhost:5000/v2/_catalog -{"repositories":[]} -``` - -With this private registry you can test Che operator from development bundle: - -```bash -$ olm/buildCatalog.sh -p kubernetes -c next -i 127.0.0.1:5000/test/catalog:test -$ olm/testCatalog.sh -p kubernetes -c next -i 127.0.0.1:5000/test/catalog:test -n eclipse-che -``` - -> Tips: If minikube was installed locally (driver 'none', local installation minikube), then registry is available on the host 0.0.0.0 without port forwarding but it requires `sudo`. - -# Install stable "preview" Eclipse Che using chectl - -Before publishing Eclipse Che in the community operator catalogs, we are testing new release using "stable" OLM channel -from "preview" catalog source image. -Stable "preview" Eclipse Che can be installed via chectl. - -1. Create a custom catalog source yaml and define platform(openshift or kubernetes): +1. Create a custom catalog source: ```yaml apiVersion: operators.coreos.com/v1alpha1 kind: CatalogSource metadata: name: eclipse-che-preview-custom - namespace: + namespace: eclipse-che spec: - image: quay.io/eclipse/eclipse-che--opm-catalog:test + image: quay.io/eclipse/eclipse-che-openshift-opm-catalog:test sourceType: grpc updateStrategy: registryPoll: @@ -128,5 +86,5 @@ spec: 2. Deploy Che operator: ```bash -$ chectl server:deploy --installer=olm --platform= --catalog-source-yaml --olm-channel=stable --package-manifest-name=eclipse-che-preview- +$ chectl server:deploy --installer=olm --platform=openshift --catalog-source-yaml --olm-channel=stable --package-manifest-name=eclipse-che-preview-openshift ``` diff --git a/olm/olm.sh b/olm/olm.sh index 1cd91797b..242b9b1bf 100755 --- a/olm/olm.sh +++ b/olm/olm.sh @@ -20,47 +20,31 @@ ROOT_DIR=$(dirname "${BASE_DIR}") source ${ROOT_DIR}/olm/check-yq.sh function getPackageName() { - platform="${1}" - if [ -z "${1}" ]; then - echo "[ERROR] Please specify first argument: 'platform'" - exit 1 - fi - - echo "eclipse-che-preview-${platform}" + echo "eclipse-che-preview-openshift" } function getBundlePath() { - platform="${1}" - if [ -z "${platform}" ]; then - echo "[ERROR] Please specify first argument: 'platform'" - exit 1 - fi - channel="${2}" + channel="${1}" if [ -z "${channel}" ]; then - echo "[ERROR] Please specify second argument: 'channel'" + echo "[ERROR] 'channel' is not specified" exit 1 fi - echo "${ROOT_DIR}/bundle/${channel}/$(getPackageName "${platform}")" + echo "${ROOT_DIR}/bundle/${channel}/$(getPackageName)" } createCatalogSource() { - platform="${1}" - if [ -z "${platform}" ]; then - echo "[ERROR] Please specify first argument: 'platform'" - exit 1 - fi - namespace="${2}" + namespace="${1}" if [ -z "${namespace}" ]; then echo "[ERROR] Please specify second argument: 'namespace'" exit 1 fi - CATALOG_IMAGENAME="${3}" + CATALOG_IMAGENAME="${2}" if [ -z "${CATALOG_IMAGENAME}" ]; then echo "[ERROR] Please specify third argument: 'catalog image'" exit 1 fi - packageName=$(getPackageName "${platform}") + packageName=$(getPackageName) kubectl apply -f - <&1 | sed -e 's/^/ /' +cd "${communityOperatorsLocalGitFolder}" +git remote add upstream https://github.com/k8s-operatorhub/community-operators +git remote remove upstream +git remote add upstream https://github.com/redhat-openshift-ecosystem/community-operators-prod + +git fetch upstream ${base_branch}:upstream/${base_branch} + +branch="update-eclipse-che" +branch="${branch}-operator-${LAST_PACKAGE_VERSION}" +echo +echo " - Create branch '${branch}' in the local 'community-operators' repository: ${communityOperatorsLocalGitFolder}" +git checkout upstream/${base_branch} +git checkout -b "${branch}" 2>&1 | sed -e 's/^/ /' + +subFolder="operators" +folderToUpdate="${communityOperatorsLocalGitFolder}/${subFolder}/eclipse-che" +destinationPackageFilePath="${folderToUpdate}/eclipse-che.package.yaml" + +for channel in "${STABLE_CHANNELS[@]}" do - INDEX_IMAGE="quay.io/eclipse/eclipse-che-${platform}-opm-catalog:test" - packageName="eclipse-che-preview-${platform}" + getLatestsStableVersions + if [[ $channel == "tech-preview-stable-all-namespaces" ]];then + # Add suffix for stable- channel + LAST_PACKAGE_VERSION="$LAST_PACKAGE_VERSION-all-namespaces" + PREVIOUS_PACKAGE_VERSION="${PREVIOUS_PACKAGE_VERSION}-all-namespaces" + fi + echo - echo "## Prepare the OperatorHub package to push to the 'community-operators' repository for platform '${platform}' from local package '${packageName}'" - manifestPackagesDir=$(mktemp -d -t che-${platform}-manifest-packages-XXX) - echo "[INFO] Folder with manifest packages: ${manifestPackagesDir}" - packageBaseFolderPath="${manifestPackagesDir}/${packageName}" - - sourcePackageFilePath="${packageBaseFolderPath}/package.yaml" - communityOperatorsLocalGitFolder="${packageBaseFolderPath}/generated/community-operators" - - echo " - Clone the 'community-operators' GitHub repository to temporary folder: ${communityOperatorsLocalGitFolder}" - - if [ "${platform}" == "openshift" ] - then - GIT_REMOTE_FORK="https://${GITHUB_USER}:${GITHUB_TOKEN}@github.com/${fork_org}/community-operators-prod.git" - GIT_REMOTE_FORK_CLEAN="https://github.com/${fork_org}/community-operators-prod.git" - fi - rm -Rf "${communityOperatorsLocalGitFolder}" - mkdir -p "${communityOperatorsLocalGitFolder}" - git clone "${GIT_REMOTE_FORK}" "${communityOperatorsLocalGitFolder}" 2>&1 | sed -e 's/^/ /' - cd "${communityOperatorsLocalGitFolder}" - git remote add upstream https://github.com/k8s-operatorhub/community-operators - if [ "${platform}" == "openshift" ] - then - git remote remove upstream - git remote add upstream https://github.com/redhat-openshift-ecosystem/community-operators-prod + echo " - Last package pre-release version of local package: ${LAST_PACKAGE_VERSION}" + echo " - Last package release version of cloned 'community-operators' repository: ${PREVIOUS_PACKAGE_VERSION}" + if [[ "${LAST_PACKAGE_VERSION}" == "${PREVIOUS_PACKAGE_VERSION}" ]] && [[ "${FORCE}" == "" ]]; then + echo "#### ERROR ####" + echo "Release ${LAST_PACKAGE_VERSION} already exists in the '${subFolder}/eclipse-che' package !" + exit 1 fi + echo " => will create release '${LAST_PACKAGE_VERSION}' in the following package folder :'${folderToUpdate}'" - git fetch upstream ${base_branch}:upstream/${base_branch} - - branch="update-eclipse-che" - if [ "${platform}" == "kubernetes" ] - then - branch="${branch}-upstream" - fi - branch="${branch}-operator-${LAST_PACKAGE_VERSION}" + mkdir -p "${folderToUpdate}/${LAST_PACKAGE_VERSION}/manifests" + mkdir -p "${folderToUpdate}/${LAST_PACKAGE_VERSION}/metadata" echo - echo " - Create branch '${branch}' in the local 'community-operators' repository: ${communityOperatorsLocalGitFolder}" - git checkout upstream/${base_branch} - git checkout -b "${branch}" 2>&1 | sed -e 's/^/ /' + sed \ + -e "/^ replaces: ${packageName}.v.*/d" \ + -e "/^ version: ${LAST_PACKAGE_VERSION}/i\ \ replaces: eclipse-che.v${PREVIOUS_PACKAGE_VERSION}" \ + -e "s/${packageName}/eclipse-che/" \ + "${OPERATOR_REPO}/bundle/$channel/eclipse-che-preview-openshift/manifests/che-operator.clusterserviceversion.yaml" \ + > "${folderToUpdate}/${LAST_PACKAGE_VERSION}/manifests/eclipse-che.v${LAST_PACKAGE_VERSION}.clusterserviceversion.yaml" - platformSubFolder="operators" - folderToUpdate="${communityOperatorsLocalGitFolder}/${platformSubFolder}/eclipse-che" - destinationPackageFilePath="${folderToUpdate}/eclipse-che.package.yaml" + echo " - Update the CRD files" + cp "${OPERATOR_REPO}/bundle/$channel/eclipse-che-preview-openshift/manifests/org_v1_che_crd.yaml" "${folderToUpdate}/${LAST_PACKAGE_VERSION}/manifests/checlusters.org.eclipse.che.crd.yaml" + cp "${OPERATOR_REPO}/bundle/$channel/eclipse-che-preview-openshift/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml" "${folderToUpdate}/${LAST_PACKAGE_VERSION}/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml" + cp "${OPERATOR_REPO}/bundle/$channel/eclipse-che-preview-openshift/manifests//org.eclipse.che_checlusterbackups_crd.yaml" "${folderToUpdate}/${LAST_PACKAGE_VERSION}/manifests/org.eclipse.che_checlusterbackups_crd.yaml" + cp "${OPERATOR_REPO}/bundle/$channel/eclipse-che-preview-openshift/manifests//org.eclipse.che_checlusterrestores_crd.yaml" "${folderToUpdate}/${LAST_PACKAGE_VERSION}/manifests/org.eclipse.che_checlusterrestores_crd.yaml" + echo - for channel in "${STABLE_CHANNELS[@]}" - do - getLatestsStableVersions - if [[ $channel == "tech-preview-stable-all-namespaces" && $platform == "kubernetes" ]];then - continue - fi - - if [[ $channel == "tech-preview-stable-all-namespaces" ]];then - # Add suffix for stable- channel - LAST_PACKAGE_VERSION="$LAST_PACKAGE_VERSION-all-namespaces" - PREVIOUS_PACKAGE_VERSION="${PREVIOUS_PACKAGE_VERSION}-all-namespaces" - fi - - echo - echo " - Last package pre-release version of local package: ${LAST_PACKAGE_VERSION}" - echo " - Last package release version of cloned 'community-operators' repository: ${PREVIOUS_PACKAGE_VERSION}" - if [[ "${LAST_PACKAGE_VERSION}" == "${PREVIOUS_PACKAGE_VERSION}" ]] && [[ "${FORCE}" == "" ]]; then - echo "#### ERROR ####" - echo "Release ${LAST_PACKAGE_VERSION} already exists in the '${platformSubFolder}/eclipse-che' package !" - exit 1 - fi - echo " => will create release '${LAST_PACKAGE_VERSION}' in the following package folder :'${folderToUpdate}'" - - mkdir -p "${folderToUpdate}/${LAST_PACKAGE_VERSION}/manifests" - mkdir -p "${folderToUpdate}/${LAST_PACKAGE_VERSION}/metadata" - echo - sed \ - -e "/^ replaces: ${packageName}.v.*/d" \ - -e "/^ version: ${LAST_PACKAGE_VERSION}/i\ \ replaces: eclipse-che.v${PREVIOUS_PACKAGE_VERSION}" \ - -e "s/${packageName}/eclipse-che/" \ - "${OPERATOR_REPO}/bundle/$channel/eclipse-che-preview-$platform/manifests/che-operator.clusterserviceversion.yaml" \ - > "${folderToUpdate}/${LAST_PACKAGE_VERSION}/manifests/eclipse-che.v${LAST_PACKAGE_VERSION}.clusterserviceversion.yaml" - - echo " - Update the CRD files" - cp "${OPERATOR_REPO}/bundle/$channel/eclipse-che-preview-$platform/manifests/org_v1_che_crd.yaml" "${folderToUpdate}/${LAST_PACKAGE_VERSION}/manifests/checlusters.org.eclipse.che.crd.yaml" - cp "${OPERATOR_REPO}/bundle/$channel/eclipse-che-preview-$platform/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml" "${folderToUpdate}/${LAST_PACKAGE_VERSION}/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml" - cp "${OPERATOR_REPO}/bundle/$channel/eclipse-che-preview-$platform/manifests//org.eclipse.che_checlusterbackups_crd.yaml" "${folderToUpdate}/${LAST_PACKAGE_VERSION}/manifests/org.eclipse.che_checlusterbackups_crd.yaml" - cp "${OPERATOR_REPO}/bundle/$channel/eclipse-che-preview-$platform/manifests//org.eclipse.che_checlusterrestores_crd.yaml" "${folderToUpdate}/${LAST_PACKAGE_VERSION}/manifests/org.eclipse.che_checlusterrestores_crd.yaml" - echo - - cp ${OPERATOR_REPO}/bundle/$channel/eclipse-che-preview-$platform/metadata/* "${folderToUpdate}/${LAST_PACKAGE_VERSION}/metadata" - sed \ - -e 's/operators.operatorframework.io.bundle.package.v1: eclipse-che-preview-'${platform}'/operators.operatorframework.io.bundle.package.v1: eclipse-che/' \ - -e '/operators.operatorframework.io.test.config.v1/d' \ - -e '/operators.operatorframework.io.test.mediatype.v1: scorecard+v1/d' \ - -i "${folderToUpdate}/${LAST_PACKAGE_VERSION}/metadata/annotations.yaml" - done + cp ${OPERATOR_REPO}/bundle/$channel/eclipse-che-preview-openshift/metadata/* "${folderToUpdate}/${LAST_PACKAGE_VERSION}/metadata" + sed \ + -e 's/operators.operatorframework.io.bundle.package.v1: eclipse-che-preview-openshift/operators.operatorframework.io.bundle.package.v1: eclipse-che/' \ + -e '/operators.operatorframework.io.test.config.v1/d' \ + -e '/operators.operatorframework.io.test.mediatype.v1: scorecard+v1/d' \ + -i "${folderToUpdate}/${LAST_PACKAGE_VERSION}/metadata/annotations.yaml" # NOTE: if you update this file, you need to submit a PR against these two files: # https://github.com/redhat-openshift-ecosystem/community-operators-prod/blob/main/operators/eclipse-che/ci.yaml @@ -172,24 +153,15 @@ do echo " - Commit changes" cd "${communityOperatorsLocalGitFolder}" git add --all - git commit -s -m "Update eclipse-che operator for ${platform} to release ${LAST_PACKAGE_VERSION}" + git commit -s -m "Update eclipse-che operator to release ${LAST_PACKAGE_VERSION}" echo echo " - Push branch ${branch} to ${GIT_REMOTE_FORK_CLEAN}" git push ${FORCE} origin "${branch}" echo - template_file="https://raw.githubusercontent.com/k8s-operatorhub/community-operators/${base_branch}/docs/pull_request_template.md" - if [ "${platform}" == "openshift" ] - then - template_file="https://raw.githubusercontent.com/redhat-openshift-ecosystem/community-operators-prod/${base_branch}/docs/pull_request_template.md" - fi + template_file="https://raw.githubusercontent.com/redhat-openshift-ecosystem/community-operators-prod/${base_branch}/docs/pull_request_template.md" HUB=$(command -v hub 2>/dev/null) - - upstream_org="k8s-operatorhub" - if [ "${platform}" == "openshift" ] - then - upstream_org="redhat-openshift-ecosystem" - fi + upstream_org="redhat-openshift-ecosystem" if [[ $HUB ]] && [[ -x $HUB ]]; then echo " - Use $HUB to generate PR from template: ${template_file}" PRbody=$(curl -sSLo - ${template_file} | \ diff --git a/olm/release-olm-files.sh b/olm/release-olm-files.sh index 38c175046..b5001fa67 100755 --- a/olm/release-olm-files.sh +++ b/olm/release-olm-files.sh @@ -41,37 +41,37 @@ setLatestReleasedVersion() { } downloadLatestReleasedBundleCRCRD() { - mkdir -p "${STABLE_BUNDLE_PATH}/manifests" "${STABLE_BUNDLE_PATH}/generated/${platform}" "${STABLE_BUNDLE_PATH}/metadata" - PRE_RELEASE_CSV="${STABLE_BUNDLE_PATH}/generated/${platform}/che-operator.clusterserviceversion.yaml" - PRE_RELEASE_CHE_CRD="${STABLE_BUNDLE_PATH}/generated/${platform}/org_v1_che_crd.yaml" - PRE_RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD="${STABLE_BUNDLE_PATH}/generated/${platform}/org.eclipse.che_chebackupserverconfigurations_crd.yaml" - PRE_RELEASE_CHE_BACKUP_CRD="${STABLE_BUNDLE_PATH}/generated/${platform}/org.eclipse.che_checlusterbackups_crd.yaml" - PRE_RELEASE_CHE_RESTORE_CRD="${STABLE_BUNDLE_PATH}/generated/${platform}/org.eclipse.che_checlusterrestores_crd.yaml" + mkdir -p "${STABLE_BUNDLE_PATH}/manifests" "${STABLE_BUNDLE_PATH}/generated/openshift" "${STABLE_BUNDLE_PATH}/metadata" + PRE_RELEASE_CSV="${STABLE_BUNDLE_PATH}/generated/openshift/che-operator.clusterserviceversion.yaml" + PRE_RELEASE_CHE_CRD="${STABLE_BUNDLE_PATH}/generated/openshift/org_v1_che_crd.yaml" + PRE_RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD="${STABLE_BUNDLE_PATH}/generated/openshift/org.eclipse.che_chebackupserverconfigurations_crd.yaml" + PRE_RELEASE_CHE_BACKUP_CRD="${STABLE_BUNDLE_PATH}/generated/openshift/org.eclipse.che_checlusterbackups_crd.yaml" + PRE_RELEASE_CHE_RESTORE_CRD="${STABLE_BUNDLE_PATH}/generated/openshift/org.eclipse.che_checlusterrestores_crd.yaml" compareResult=$(pysemver compare "${LAST_RELEASE_VERSION}" "7.34.0") if [ "${compareResult}" == "1" ]; then - wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/bundle/stable/eclipse-che-preview-${platform}/manifests/che-operator.clusterserviceversion.yaml" \ + wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/bundle/stable/eclipse-che-preview-openshift/manifests/che-operator.clusterserviceversion.yaml" \ -q -O "${PRE_RELEASE_CSV}" - wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/bundle/stable/eclipse-che-preview-${platform}/manifests/org_v1_che_crd.yaml" \ + wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/bundle/stable/eclipse-che-preview-openshift/manifests/org_v1_che_crd.yaml" \ -q -O "${PRE_RELEASE_CHE_CRD}" - wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/bundle/stable/eclipse-che-preview-${platform}/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml" \ + wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/bundle/stable/eclipse-che-preview-openshift/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml" \ -q -O "${PRE_RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD}" - wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/bundle/stable/eclipse-che-preview-${platform}/manifests/org.eclipse.che_checlusterbackups_crd.yaml" \ + wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/bundle/stable/eclipse-che-preview-openshift/manifests/org.eclipse.che_checlusterbackups_crd.yaml" \ -q -O "${PRE_RELEASE_CHE_BACKUP_CRD}" - wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/bundle/stable/eclipse-che-preview-${platform}/manifests/org.eclipse.che_checlusterrestores_crd.yaml" \ + wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/bundle/stable/eclipse-che-preview-openshift/manifests/org.eclipse.che_checlusterrestores_crd.yaml" \ -q -O "${PRE_RELEASE_CHE_RESTORE_CRD}" else # don't exit immediately if some resources are absent set +e - wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/deploy/olm-catalog/stable/eclipse-che-preview-${platform}/manifests/che-operator.clusterserviceversion.yaml" \ + wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/deploy/olm-catalog/stable/eclipse-che-preview-openshift/manifests/che-operator.clusterserviceversion.yaml" \ -q -O "${PRE_RELEASE_CSV}" - wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/deploy/olm-catalog/stable/eclipse-che-preview-${platform}/manifests/org_v1_che_crd.yaml" \ + wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/deploy/olm-catalog/stable/eclipse-che-preview-openshift/manifests/org_v1_che_crd.yaml" \ -q -O "${PRE_RELEASE_CHE_CRD}" - wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/deploy/olm-catalog/stable/eclipse-che-preview-${platform}/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml" \ + wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/deploy/olm-catalog/stable/eclipse-che-preview-openshift/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml" \ -q -O "${PRE_RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD}" - wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/deploy/olm-catalog/stable/eclipse-che-preview-${platform}/manifests/org.eclipse.che_checlusterbackups_crd.yaml" \ + wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/deploy/olm-catalog/stable/eclipse-che-preview-openshift/manifests/org.eclipse.che_checlusterbackups_crd.yaml" \ -q -O "${PRE_RELEASE_CHE_BACKUP_CRD}" - wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/deploy/olm-catalog/stable/eclipse-che-preview-${platform}/manifests/org.eclipse.che_checlusterrestores_crd.yaml" \ + wget "https://raw.githubusercontent.com/eclipse-che/che-operator/${LAST_RELEASE_VERSION}/deploy/olm-catalog/stable/eclipse-che-preview-openshift/manifests/org.eclipse.che_checlusterrestores_crd.yaml" \ -q -O "${PRE_RELEASE_CHE_RESTORE_CRD}" set -e fi @@ -84,119 +84,109 @@ if [[ -z "$RELEASE" ]] || [[ -z "$CHANNEL" ]]; then fi -for platform in 'kubernetes' 'openshift' -do - source ${BASE_DIR}/olm.sh - echo "[INFO] Creating release '${RELEASE}' for platform '${platform}'" +source ${BASE_DIR}/olm.sh +echo "[INFO] Creating release '${RELEASE}'" - if [[ ${CHANNEL} == "tech-preview-stable-all-namespaces" ]] && [[ ${platform} == "kubernetes" ]];then - continue - fi +if [[ ${CHANNEL} == "tech-preview-stable-all-namespaces" ]]; then + NEXT_BUNDLE_PATH=$(getBundlePath "next-all-namespaces") +else + NEXT_BUNDLE_PATH=$(getBundlePath "next") +fi - if [[ ${CHANNEL} == "tech-preview-stable-all-namespaces" ]]; then - NEXT_BUNDLE_PATH=$(getBundlePath "${platform}" "next-all-namespaces") - else - NEXT_BUNDLE_PATH=$(getBundlePath "${platform}" "next") - fi +LAST_NEXT_CSV="${NEXT_BUNDLE_PATH}/manifests/che-operator.clusterserviceversion.yaml" +lastPackageNextVersion=$(yq -r ".spec.version" "${LAST_NEXT_CSV}") +echo "[INFO] Last package next version: ${lastPackageNextVersion}" - LAST_NEXT_CSV="${NEXT_BUNDLE_PATH}/manifests/che-operator.clusterserviceversion.yaml" - lastPackageNextVersion=$(yq -r ".spec.version" "${LAST_NEXT_CSV}") - echo "[INFO] Last package next version: ${lastPackageNextVersion}" +STABLE_BUNDLE_PATH=$(getBundlePath $CHANNEL) +RELEASE_CSV="${STABLE_BUNDLE_PATH}/manifests/che-operator.clusterserviceversion.yaml" +RELEASE_CHE_CRD="${STABLE_BUNDLE_PATH}/manifests/org_v1_che_crd.yaml" +RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD="${STABLE_BUNDLE_PATH}/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml" +RELEASE_CHE_BACKUP_CRD="${STABLE_BUNDLE_PATH}/manifests/org.eclipse.che_checlusterbackups_crd.yaml" +RELEASE_CHE_RESTORE_CRD="${STABLE_BUNDLE_PATH}/manifests/org.eclipse.che_checlusterrestores_crd.yaml" - STABLE_BUNDLE_PATH=$(getBundlePath "${platform}" $CHANNEL) - RELEASE_CSV="${STABLE_BUNDLE_PATH}/manifests/che-operator.clusterserviceversion.yaml" - RELEASE_CHE_CRD="${STABLE_BUNDLE_PATH}/manifests/org_v1_che_crd.yaml" - RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD="${STABLE_BUNDLE_PATH}/manifests/org.eclipse.che_chebackupserverconfigurations_crd.yaml" - RELEASE_CHE_BACKUP_CRD="${STABLE_BUNDLE_PATH}/manifests/org.eclipse.che_checlusterbackups_crd.yaml" - RELEASE_CHE_RESTORE_CRD="${STABLE_BUNDLE_PATH}/manifests/org.eclipse.che_checlusterrestores_crd.yaml" +MANAGER_YAML="${OPERATOR_DIR}/config/manager/manager.yaml" - MANAGER_YAML="${OPERATOR_DIR}/config/manager/manager.yaml" +setLatestReleasedVersion +downloadLatestReleasedBundleCRCRD +packageName=$(getPackageName) - setLatestReleasedVersion - downloadLatestReleasedBundleCRCRD - packageName=$(getPackageName "${platform}") +echo "[INFO] Will create release '${RELEASE}' from next version ${lastPackageNextVersion}'" - echo "[INFO] Will create release '${RELEASE}' from next version ${lastPackageNextVersion}'" +sed \ +-e 's/imagePullPolicy: *Always/imagePullPolicy: IfNotPresent/' \ +-e 's/"cheImageTag": *"next"/"cheImageTag": ""/' \ +-e 's|quay.io/eclipse/che-dashboard:next|quay.io/eclipse/che-dashboard:'${RELEASE}'|' \ +-e 's|"identityProviderImage": *"quay.io/eclipse/che-keycloak:next"|"identityProviderImage": ""|' \ +-e 's|"devfileRegistryImage": *"quay.io/eclipse/che-devfile-registry:next"|"devfileRegistryImage": ""|' \ +-e 's|"pluginRegistryImage": *"quay.io/eclipse/che-plugin-registry:next"|"pluginRegistryImage": ""|' \ +-e "/^ replaces: ${packageName}.v.*/d" \ +-e "s/^ version: ${lastPackageNextVersion}/ version: ${RELEASE}/" \ +-e "/^ version: ${RELEASE}/i\ \ replaces: ${packageName}.v${LAST_RELEASE_VERSION}" \ +-e "s/: next/: ${RELEASE}/" \ +-e "s/:next/:${RELEASE}/" \ +-e "s/${lastPackageNextVersion}/${RELEASE}/" \ +-e "s/createdAt:.*$/createdAt: \"$(date -u +%FT%TZ)\"/" "${LAST_NEXT_CSV}" > "${RELEASE_CSV}" - sed \ - -e 's/imagePullPolicy: *Always/imagePullPolicy: IfNotPresent/' \ - -e 's/"cheImageTag": *"next"/"cheImageTag": ""/' \ - -e 's|quay.io/eclipse/che-dashboard:next|quay.io/eclipse/che-dashboard:'${RELEASE}'|' \ - -e 's|"identityProviderImage": *"quay.io/eclipse/che-keycloak:next"|"identityProviderImage": ""|' \ - -e 's|"devfileRegistryImage": *"quay.io/eclipse/che-devfile-registry:next"|"devfileRegistryImage": ""|' \ - -e 's|"pluginRegistryImage": *"quay.io/eclipse/che-plugin-registry:next"|"pluginRegistryImage": ""|' \ - -e "/^ replaces: ${packageName}.v.*/d" \ - -e "s/^ version: ${lastPackageNextVersion}/ version: ${RELEASE}/" \ - -e "/^ version: ${RELEASE}/i\ \ replaces: ${packageName}.v${LAST_RELEASE_VERSION}" \ - -e "s/: next/: ${RELEASE}/" \ - -e "s/:next/:${RELEASE}/" \ - -e "s/${lastPackageNextVersion}/${RELEASE}/" \ - -e "s/createdAt:.*$/createdAt: \"$(date -u +%FT%TZ)\"/" "${LAST_NEXT_CSV}" > "${RELEASE_CSV}" +if [[ ${CHANNEL} == "tech-preview-stable-all-namespaces" ]];then + # Set tech-preview-stable-all-namespaces versions + yq -Yi '.spec.replaces |= "'${packageName}'.v'$LAST_RELEASE_VERSION'-all-namespaces"' ${RELEASE_CSV} + yq -Yi '.spec.version |= "'${RELEASE}'-all-namespaces"' ${RELEASE_CSV} + yq -Yi '.metadata.name |= "eclipse-che-preview-openshift.v'${RELEASE}'-all-namespaces"' ${RELEASE_CSV} +fi - if [[ ${CHANNEL} == "tech-preview-stable-all-namespaces" ]];then - # Set tech-preview-stable-all-namespaces versions - yq -Yi '.spec.replaces |= "'${packageName}'.v'$LAST_RELEASE_VERSION'-all-namespaces"' ${RELEASE_CSV} - yq -Yi '.spec.version |= "'${RELEASE}'-all-namespaces"' ${RELEASE_CSV} - yq -Yi '.metadata.name |= "eclipse-che-preview-openshift.v'${RELEASE}'-all-namespaces"' ${RELEASE_CSV} - fi +# Remove from devWorkspace in stable channel and hide the value from UI +if [[ ${CHANNEL} == "stable" ]];then + CR_SAMPLE=$(yq ".metadata.annotations.\"alm-examples\" | fromjson | del( .[] | select(.kind == \"CheCluster\") | .spec.devWorkspace)" "${RELEASE_CSV}" | sed -r 's/"/\\"/g') + yq -rY " (.metadata.annotations.\"alm-examples\") = \"${CR_SAMPLE}\"" "${RELEASE_CSV}" > "${RELEASE_CSV}.old" + yq -Yi '.spec.customresourcedefinitions.owned[] |= (select(.name == "checlusters.org.eclipse.che").specDescriptors += [{"path":"devWorkspace", "x-descriptors": ["urn:alm:descriptor:com.tectonic.ui:hidden"]}])' "${RELEASE_CSV}.old" + mv "${RELEASE_CSV}.old" "${RELEASE_CSV}" + yq -rYi "(.spec.install.spec.deployments [] | select(.name == \"che-operator\") | .spec.template.spec.containers[] | select(.name == \"che-operator\").env[] | select(.name == \"ALLOW_DEVWORKSPACE_ENGINE\") | .value ) = \"false\"" ${RELEASE_CSV} +fi - # Remove from devWorkspace in stable channel and hide the value from UI - if [[ ${CHANNEL} == "stable" ]];then - CR_SAMPLE=$(yq ".metadata.annotations.\"alm-examples\" | fromjson | del( .[] | select(.kind == \"CheCluster\") | .spec.devWorkspace)" "${RELEASE_CSV}" | sed -r 's/"/\\"/g') - yq -rY " (.metadata.annotations.\"alm-examples\") = \"${CR_SAMPLE}\"" "${RELEASE_CSV}" > "${RELEASE_CSV}.old" - yq -Yi '.spec.customresourcedefinitions.owned[] |= (select(.name == "checlusters.org.eclipse.che").specDescriptors += [{"path":"devWorkspace", "x-descriptors": ["urn:alm:descriptor:com.tectonic.ui:hidden"]}])' "${RELEASE_CSV}.old" - mv "${RELEASE_CSV}.old" "${RELEASE_CSV}" +cp "${NEXT_BUNDLE_PATH}/manifests/org_v1_che_crd.yaml" "${RELEASE_CHE_CRD}" +cp "${NEXT_BUNDLE_PATH}/manifests/org.eclipse.che_chebackupserverconfigurations.yaml" "${RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD}" +cp "${NEXT_BUNDLE_PATH}/manifests/org.eclipse.che_checlusterbackups.yaml" "${RELEASE_CHE_BACKUP_CRD}" +cp "${NEXT_BUNDLE_PATH}/manifests/org.eclipse.che_checlusterrestores.yaml" "${RELEASE_CHE_RESTORE_CRD}" +cp -rf "${NEXT_BUNDLE_PATH}/bundle.Dockerfile" "${STABLE_BUNDLE_PATH}" +cp -rf "${NEXT_BUNDLE_PATH}/metadata" "${STABLE_BUNDLE_PATH}" +cp -rf "${NEXT_BUNDLE_PATH}/tests" "${STABLE_BUNDLE_PATH}" - if [[ ${platform} == "openshift" ]];then - yq -rYi "(.spec.install.spec.deployments [] | select(.name == \"che-operator\") | .spec.template.spec.containers[] | select(.name == \"che-operator\").env[] | select(.name == \"ALLOW_DEVWORKSPACE_ENGINE\") | .value ) = \"false\"" ${RELEASE_CSV} - fi - fi +ANNOTATION_METADATA_YAML="${STABLE_BUNDLE_PATH}/metadata/annotations.yaml" +sed \ +-e 's/operators.operatorframework.io.bundle.channels.v1: .*/operators.operatorframework.io.bundle.channels.v1: '$CHANNEL'/' \ +-e 's/operators.operatorframework.io.bundle.channel.default.v1: .*/operators.operatorframework.io.bundle.channel.default.v1: '$CHANNEL'/' \ +-i "${ANNOTATION_METADATA_YAML}" - cp "${NEXT_BUNDLE_PATH}/manifests/org_v1_che_crd.yaml" "${RELEASE_CHE_CRD}" - cp "${NEXT_BUNDLE_PATH}/manifests/org.eclipse.che_chebackupserverconfigurations.yaml" "${RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD}" - cp "${NEXT_BUNDLE_PATH}/manifests/org.eclipse.che_checlusterbackups.yaml" "${RELEASE_CHE_BACKUP_CRD}" - cp "${NEXT_BUNDLE_PATH}/manifests/org.eclipse.che_checlusterrestores.yaml" "${RELEASE_CHE_RESTORE_CRD}" - cp -rf "${NEXT_BUNDLE_PATH}/bundle.Dockerfile" "${STABLE_BUNDLE_PATH}" - cp -rf "${NEXT_BUNDLE_PATH}/metadata" "${STABLE_BUNDLE_PATH}" - cp -rf "${NEXT_BUNDLE_PATH}/tests" "${STABLE_BUNDLE_PATH}" +BUNDLE_DOCKERFILE="${STABLE_BUNDLE_PATH}/bundle.Dockerfile" +sed \ +-e 's/LABEL operators.operatorframework.io.bundle.channels.v1=.*/LABEL operators.operatorframework.io.bundle.channels.v1='$CHANNEL'/' \ +-e 's/LABEL operators.operatorframework.io.bundle.channel.default.v1=.*/LABEL operators.operatorframework.io.bundle.channel.default.v1='$CHANNEL'/' \ +-i "${BUNDLE_DOCKERFILE}" - ANNOTATION_METADATA_YAML="${STABLE_BUNDLE_PATH}/metadata/annotations.yaml" - sed \ - -e 's/operators.operatorframework.io.bundle.channels.v1: .*/operators.operatorframework.io.bundle.channels.v1: '$CHANNEL'/' \ - -e 's/operators.operatorframework.io.bundle.channel.default.v1: .*/operators.operatorframework.io.bundle.channel.default.v1: '$CHANNEL'/' \ - -i "${ANNOTATION_METADATA_YAML}" +pushd "${CURRENT_DIR}" || exit 1 +source ${BASE_DIR}/addDigests.sh -w ${BASE_DIR} \ + -t "${RELEASE}" \ + -s "${RELEASE_CSV}" \ + -o "${MANAGER_YAML}" +popd || exit 1 - BUNDLE_DOCKERFILE="${STABLE_BUNDLE_PATH}/bundle.Dockerfile" - sed \ - -e 's/LABEL operators.operatorframework.io.bundle.channels.v1=.*/LABEL operators.operatorframework.io.bundle.channels.v1='$CHANNEL'/' \ - -e 's/LABEL operators.operatorframework.io.bundle.channel.default.v1=.*/LABEL operators.operatorframework.io.bundle.channel.default.v1='$CHANNEL'/' \ - -i "${BUNDLE_DOCKERFILE}" +pushd "${OPERATOR_DIR}" || exit 1 +make add-license "${RELEASE_CSV}" +make add-license "${MANAGER_YAML}" +popd || exit 1 - pushd "${CURRENT_DIR}" || exit 1 - source ${BASE_DIR}/addDigests.sh -w ${BASE_DIR} \ - -t "${RELEASE}" \ - -s "${RELEASE_CSV}" \ - -o "${MANAGER_YAML}" - popd || exit 1 - - pushd "${OPERATOR_DIR}" || exit 1 - make add-license "${RELEASE_CSV}" - make add-license "${MANAGER_YAML}" - popd || exit 1 - - if [[ -n "${PRE_RELEASE_CSV}" ]] && [[ -n "${PRE_RELEASE_CHE_CRD}" ]]; then - diff -u "${PRE_RELEASE_CSV}" "${RELEASE_CSV}" > "${RELEASE_CSV}.diff" || true - diff -u "${PRE_RELEASE_CHE_CRD}" "${RELEASE_CHE_CRD}" > "${RELEASE_CHE_CRD}.diff" || true - fi - if [[ -n "${PRE_RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD}" ]]; then - diff -u "${PRE_RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD}" "${RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD}" > "${RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD}.diff" || true - fi - if [[ -n "${PRE_RELEASE_CHE_BACKUP_CRD}" ]]; then - diff -u "${PRE_RELEASE_CHE_BACKUP_CRD}" "${RELEASE_CHE_BACKUP_CRD}" > "${RELEASE_CHE_BACKUP_CRD}.diff" || true - fi - if [[ -n "${PRE_RELEASE_CHE_RESTORE_CRD}" ]]; then - diff -u "${PRE_RELEASE_CHE_RESTORE_CRD}" "${RELEASE_CHE_RESTORE_CRD}" > "${RELEASE_CHE_RESTORE_CRD}.diff" || true - fi -done +if [[ -n "${PRE_RELEASE_CSV}" ]] && [[ -n "${PRE_RELEASE_CHE_CRD}" ]]; then + diff -u "${PRE_RELEASE_CSV}" "${RELEASE_CSV}" > "${RELEASE_CSV}.diff" || true + diff -u "${PRE_RELEASE_CHE_CRD}" "${RELEASE_CHE_CRD}" > "${RELEASE_CHE_CRD}.diff" || true +fi +if [[ -n "${PRE_RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD}" ]]; then + diff -u "${PRE_RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD}" "${RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD}" > "${RELEASE_CHE_BACKUP_SERVER_CONFIGURATION_CRD}.diff" || true +fi +if [[ -n "${PRE_RELEASE_CHE_BACKUP_CRD}" ]]; then + diff -u "${PRE_RELEASE_CHE_BACKUP_CRD}" "${RELEASE_CHE_BACKUP_CRD}" > "${RELEASE_CHE_BACKUP_CRD}.diff" || true +fi +if [[ -n "${PRE_RELEASE_CHE_RESTORE_CRD}" ]]; then + diff -u "${PRE_RELEASE_CHE_RESTORE_CRD}" "${RELEASE_CHE_RESTORE_CRD}" > "${RELEASE_CHE_RESTORE_CRD}.diff" || true +fi echo "[INFO] Release bundles successfully created."