Daniel FarrellandStephen Kitt e16a2c36df Minimize GHA permissions
Set the GitHub Actions token permission to null in most workflows.

This results in:

GITHUB_TOKEN Permissions
  Metadata: read

The default permissions, used without the null override, are either

GITHUB_TOKEN Permissions
  Actions: write
  Checks: write
  Contents: write
  Deployments: write
  Discussions: write
  Issues: write
  Metadata: read
  Packages: write
  Pages: write
  PullRequests: write
  RepositoryProjects: write
  SecurityEvents: write
  Statuses: write

or

GITHUB_TOKEN Permissions
  Actions: read
  Checks: read
  Contents: read
  Deployments: read
  Discussions: read
  Issues: read
  Metadata: read
  Packages: read
  Pages: read
  PullRequests: read
  RepositoryProjects: read
  SecurityEvents: read
  Statuses: read

Jobs triggered by PRs get read permissions, other jobs get write.

One job requires non-null permissions to function.

The dependent issues GHA needs PR/issues write permissions to add/remove
`dependent` labels. It needs status write permission to block/unblock
PRs when dependencies are missing/met. Fails with HttpError otherwise.

Signed-off-by: Daniel Farrell <dfarrell@redhat.com>
2022-08-25 10:47:32 +02:00
2022-08-25 10:47:32 +02:00
2022-07-15 16:41:13 +02:00
2022-07-07 12:07:07 -04:00
2020-12-17 15:44:34 +01:00
2021-12-13 07:44:09 -05:00
2020-12-17 15:44:34 +01:00
2019-03-11 22:06:52 -07:00
2022-08-01 09:41:47 -04:00
2022-05-16 08:42:14 -04:00

submariner-charts

CII Best Practices Release Charts Periodic Flake Finder

Please see the Helm docs on Submariner's website.

Development workflow

Prerequisites

Create a fork and checkout

Create a fork of the original repository, clone it locally and checkout a new branch from master.

Example:

git clone https://github.com/myuser/submariner-charts.git
cd submariner-charts
git checkout -b new-feature

Now you can modify the Helm charts according to your needs.

Use the modified charts

Locally-modified charts can be installed using helm install, referring to the local path; for example:

helm install submariner-k8s-broker ./submariner-k8s-broker ...

In the base directory of this repository, a local deployment using the local charts can be obtained by running the following command:

make deploy

This will start two kind clusters and deploy Submariner using the Broker and Operator charts.

make e2e

will run the end-to-end test suite used to validate that Submariner is working correctly.

S
Description
No description provided
Readme
10 MiB
Languages
Shell 47.9%
Go Template 19.2%
Makefile 19%
Go 13.9%