Skip to content

Instantly share code, notes, and snippets.

View jcpowermac's full-sized avatar

Joseph Callen jcpowermac

View GitHub Profile
@jcpowermac
jcpowermac / create-backends.sh
Last active January 9, 2023 14:54
haproxy dataplaneapi - create many backend servers
#!/bin/bash
USERNAME=dataplaneapi
PASSWORD=dataplaneapi
MASTER_BACKENDS=("api-server" "machine-config-server")
INGRESS_BACKENDS=("router-http" "router-https")
@jcpowermac
jcpowermac / alternative.md
Last active August 31, 2022 19:29
yaml from infra vsphere changes
$ kubectl get infrastructure.config.openshift.io/cluster -o yaml
apiVersion: config.openshift.io/v1
kind: Infrastructure
metadata:
  annotations:
    kcp.dev/cluster: root
@jcpowermac
jcpowermac / build.sh
Created March 3, 2022 19:45
okd build fcos
#!/bin/bash
set +x
source ./cosa.sh
FCOS_BUILD="fcos-build"
OKD_VERSION="4.10"
MCOIMAGE="registry.ci.openshift.org/origin/${OKD_VERSION}:machine-config-operator"
ARTIMAGE="registry.ci.openshift.org/origin/${OKD_VERSION}:artifacts"
OKD_REPO="./okd-repo"
OVERLAY_EXTENSIONS="./overlay/extensions"
@jcpowermac
jcpowermac / main.py
Created September 20, 2021 21:09
random-vsphere-release-ci
import random
import ruamel.yaml
from crontab import CronTab
supported_versions = ["4.6", "4.7", "4.8", "4.9", "4.10"]
job_variants = ["e2e-vsphere-upi", "e2e-vsphere-upi-serial", "e2e-vsphere", "e2e-vsphere-serial", "e2e-vsphere-techpreview", "e2e-vsphere-techpreview-serial"]
min_apart = 10
def main():
@jcpowermac
jcpowermac / a_README.md
Created March 3, 2021 20:53
Running kubectl-trace in openshift

kubectl trace in openshift

trace runs as a Job, if there are problems look there: oc get jobs.

oc trace run  --serviceaccount=kubectltrace pod/machine-api-controllers-56db5fcc9c-n9f4d -c machine-controller -f vsphere-session.bt 
@jcpowermac
jcpowermac / create-existing-folder-permissions.sh
Created January 13, 2021 17:29
openshift vsphere permissions with govc
#!/bin/bash
set -e
set -x
declare -A roles
VCENTER="Cns.Searchable InventoryService.Tagging.AttachTag InventoryService.Tagging.CreateCategory InventoryService.Tagging.CreateTag InventoryService.Tagging.DeleteCategory InventoryService.Tagging.DeleteTag InventoryService.Tagging.EditCategory InventoryService.Tagging.EditTag Sessions.ValidateSession StorageProfile.View"
VCENTER_ROLE_NAME="openshift-vcenter-level"
@jcpowermac
jcpowermac / create-existing-folder-permissions.sh
Created January 13, 2021 14:36
openshift vsphere permissions with govc
#!/bin/bash
set -e
set -x
declare -A roles
VCENTER="Cns.Searchable InventoryService.Tagging.AttachTag InventoryService.Tagging.CreateCategory InventoryService.Tagging.CreateTag InventoryService.Tagging.DeleteCategory InventoryService.Tagging.DeleteTag InventoryService.Tagging.EditCategory InventoryService.Tagging.EditTag Sessions.ValidateSession StorageProfile.View"
VCENTER_ROLE_NAME="openshift-vcenter-level"
@jcpowermac
jcpowermac / README.md
Last active January 8, 2021 22:18
openshift serverless with VMware event broker
@jcpowermac
jcpowermac / ServiceMonitoring.yaml
Created December 18, 2020 19:34
vsphere exporter in openshift (will submit pr)
apiVersion: monitoring.coreos.com/v1
kind: ServiceMonitor
metadata:
labels:
k8s-app: vmware-exporter
name: vmware-exporter-monitor
namespace: openshift-vsphere-infra
spec:
endpoints:
- interval: 30s
@jcpowermac
jcpowermac / README.md
Created December 8, 2020 18:23
vCenter: role, privileges, permissions - mitmproxy

There is a proxy already running on vCenter - assuming this proxies the various services running on vCenter via the single port (TCP 443 - https):

Modify /sdk changing the port to 28085.

root@ip-172-31-250-99 [ /etc/vmware-rhttpproxy/endpoints.conf.d ]# cat vpxd-rhttpproxy-endpoint.conf 
/sdk local 28085 redirect allow