)]}'
{"manifests/function/ephemeral/replacements/generated-secrets.yaml":[{"author":{"_account_id":21040,"name":"Alexey","email":"aodinokov@mirantis.com","username":"aodinokov"},"change_message_id":"ad60460661d7ba7f7bd897eee29584571f36c4e5","unresolved":true,"context_lines":[{"line_number":7,"context_line":"      container:"},{"line_number":8,"context_line":"        image: quay.io/airshipit/replacement-transformer:latest"},{"line_number":9,"context_line":"replacements:"},{"line_number":10,"context_line":"# Replace the proxy vars"},{"line_number":11,"context_line":"- source:"},{"line_number":12,"context_line":"    objref:"},{"line_number":13,"context_line":"      name: generated-secrets"}],"source_content_type":"text/x-yaml","patch_set":3,"id":"fe0a1d2c_04874690","line":10,"range":{"start_line":10,"start_character":0,"end_line":10,"end_character":24},"updated":"2021-01-21 05:41:31.000000000","message":"remove this comment","commit_id":"ea1cad30563c5d37dfb40ce5b1abb8ef099deca1"},{"author":{"_account_id":21040,"name":"Alexey","email":"aodinokov@mirantis.com","username":"aodinokov"},"change_message_id":"d43a09acab9dae481cb4efc6173cd2e2d2440d61","unresolved":false,"context_lines":[{"line_number":7,"context_line":"      container:"},{"line_number":8,"context_line":"        image: quay.io/airshipit/replacement-transformer:latest"},{"line_number":9,"context_line":"replacements:"},{"line_number":10,"context_line":"# Replace the proxy vars"},{"line_number":11,"context_line":"- source:"},{"line_number":12,"context_line":"    objref:"},{"line_number":13,"context_line":"      name: generated-secrets"}],"source_content_type":"text/x-yaml","patch_set":3,"id":"4db9bbcf_2474626a","line":10,"range":{"start_line":10,"start_character":0,"end_line":10,"end_character":24},"in_reply_to":"fe0a1d2c_04874690","updated":"2021-01-21 18:16:05.000000000","message":"Done","commit_id":"ea1cad30563c5d37dfb40ce5b1abb8ef099deca1"}],"manifests/function/k8scontrol/replacements/kustomization.yaml":[{"author":{"_account_id":21040,"name":"Alexey","email":"aodinokov@mirantis.com","username":"aodinokov"},"change_message_id":"9125f39f1e1094fb6f8903a8a3199f32b3b37be6","unresolved":true,"context_lines":[{"line_number":4,"context_line":"  - versions.yaml"},{"line_number":5,"context_line":"  - k8scontrol-env-vars.yaml"},{"line_number":6,"context_line":"  - networking.yaml"},{"line_number":7,"context_line":"  #- cluster.yaml"}],"source_content_type":"text/x-yaml","patch_set":3,"id":"5f6756ae_bedff573","line":7,"range":{"start_line":7,"start_character":3,"end_line":7,"end_character":17},"updated":"2021-01-21 05:15:33.000000000","message":"commented, because CA, generated with genCA causes\n+ kubectl --kubeconfig /home/ubuntu/.airship/kubeconfig --context target-cluster --request-timeout 10s get node\", \"Unable to connect to the server: x509: certificate signed by unknown authority\"]\n\nthe normal way to generate CA is [1]\nopenssl req -x509 -subj \"/CN\u003dKubernetes API\" -new -newkey rsa:2048 -nodes -keyout tls.key -sha256 -days 3650 -out tls.crt\n\ngenCA does similar CA, but\nthere is a difference:\n1. normal info:\n        X509v3 extensions:\n            X509v3 Subject Key Identifier:\n                39:6C:9A:DC:4C:1B:CA:C9:D3:4B:F6:23:D5:52:CA:73:48:71:87:8A\n            X509v3 Authority Key Identifier:\n                keyid:39:6C:9A:DC:4C:1B:CA:C9:D3:4B:F6:23:D5:52:CA:73:48:71:87:8A\n                DirName:/CN\u003dKubernetes API\n                serial:30:2A:6C:3A:81:31:AC:6E:E0:13:92:FD:45:18:E0:80:E3:13:F2:7C\n\n            X509v3 Basic Constraints:\n                CA:TRUE\n            X509v3 Key Usage:\n                Certificate Sign, CRL Sign\n2. genCA info:\n        X509v3 extensions:\n            X509v3 Key Usage: critical\n                Digital Signature, Key Encipherment, Certificate Sign\n            X509v3 Extended Key Usage:\n                TLS Web Server Authentication, TLS Web Client Authentication\n            X509v3 Basic Constraints: critical\n                CA:TRUE\n    Signature Algorithm: sha256WithRSAEncryption\n\n[1]\nhttps://cluster-api.sigs.k8s.io/tasks/certs/using-custom-certificates.html#using-custom-certificates","commit_id":"ea1cad30563c5d37dfb40ce5b1abb8ef099deca1"},{"author":{"_account_id":21040,"name":"Alexey","email":"aodinokov@mirantis.com","username":"aodinokov"},"change_message_id":"76591806db92402eb84eff5829c94f4d4198c208","unresolved":true,"context_lines":[{"line_number":4,"context_line":"  - versions.yaml"},{"line_number":5,"context_line":"  - k8scontrol-env-vars.yaml"},{"line_number":6,"context_line":"  - networking.yaml"},{"line_number":7,"context_line":"  #- cluster.yaml"}],"source_content_type":"text/x-yaml","patch_set":3,"id":"e6ad080d_9df0de46","line":7,"range":{"start_line":7,"start_character":3,"end_line":7,"end_character":17},"in_reply_to":"5f6756ae_bedff573","updated":"2021-01-21 05:27:30.000000000","message":"similar issue in sprig lib:\nhttps://github.com/Masterminds/sprig/issues/95#issuecomment-606042858","commit_id":"ea1cad30563c5d37dfb40ce5b1abb8ef099deca1"},{"author":{"_account_id":21040,"name":"Alexey","email":"aodinokov@mirantis.com","username":"aodinokov"},"change_message_id":"d43a09acab9dae481cb4efc6173cd2e2d2440d61","unresolved":true,"context_lines":[{"line_number":4,"context_line":"  - versions.yaml"},{"line_number":5,"context_line":"  - k8scontrol-env-vars.yaml"},{"line_number":6,"context_line":"  - networking.yaml"},{"line_number":7,"context_line":"  #- cluster.yaml"}],"source_content_type":"text/x-yaml","patch_set":3,"id":"63c1437c_5992c290","line":7,"range":{"start_line":7,"start_character":3,"end_line":7,"end_character":17},"in_reply_to":"e6ad080d_9df0de46","updated":"2021-01-21 18:16:05.000000000","message":"Sirisha is going to try to add and test our own genCA in templater","commit_id":"ea1cad30563c5d37dfb40ce5b1abb8ef099deca1"},{"author":{"_account_id":21040,"name":"Alexey","email":"aodinokov@mirantis.com","username":"aodinokov"},"change_message_id":"1a452c8adc5f47ed121b560e30f6ff6f9897ffd5","unresolved":true,"context_lines":[{"line_number":4,"context_line":"  - versions.yaml"},{"line_number":5,"context_line":"  - k8scontrol-env-vars.yaml"},{"line_number":6,"context_line":"  - networking.yaml"},{"line_number":7,"context_line":"  #- cluster.yaml"}],"source_content_type":"text/x-yaml","patch_set":4,"id":"ba5e92c3_ac59b9c9","line":7,"range":{"start_line":7,"start_character":2,"end_line":7,"end_character":3},"updated":"2021-01-21 18:18:43.000000000","message":"uncomment this once genCA in templater is ready","commit_id":"fb2fcb19b181b519b40223d550fdec56be8b4d5d"}],"tools/deployment/23_generate_secrets.sh":[{"author":{"_account_id":21040,"name":"Alexey","email":"aodinokov@mirantis.com","username":"aodinokov"},"change_message_id":"f9217f2f13cc96ab8a66ec18db922751f52d826e","unresolved":true,"context_lines":[{"line_number":22,"context_line":"echo \"Generating ~/.airship/kubeconfig\""},{"line_number":23,"context_line":"if [[ -z \"$EXTERNAL_KUBECONFIG\" ]]; then"},{"line_number":24,"context_line":"   # TODO: use airshipctl cluster get-kubeconfig command when it\u0027s implemented"},{"line_number":25,"context_line":"   KUSTOMIZE_PLUGIN_HOME\u003d./ kustomize build --enable_alpha_plugins manifests/site/test-site/kubeconfig/ | yq \u0027.config\u0027 --yaml-output \u003e ~/.airship/kubeconfig"},{"line_number":26,"context_line":"fi"}],"source_content_type":"text/x-sh","patch_set":15,"id":"2e75839a_18aa495e","line":25,"range":{"start_line":25,"start_character":67,"end_line":25,"end_character":76},"updated":"2021-01-24 06:56:59.000000000","message":"probably it\u0027s not correct substitution. airshipctl works in the /tmp directory... need to correct","commit_id":"a0d8e9ca79316060ca401ddffae8a642d5f65e6b"}],"tools/deployment/23_regenerate_secrets.sh":[{"author":{"_account_id":21040,"name":"Alexey","email":"aodinokov@mirantis.com","username":"aodinokov"},"change_message_id":"4415eac06e809f5d4234da59c85ccf1faeb39c66","unresolved":true,"context_lines":[{"line_number":15,"context_line":"set -xe"},{"line_number":16,"context_line":""},{"line_number":17,"context_line":"echo \"Pull site documents using airshipctl\""},{"line_number":18,"context_line":"SOPS_PGP_FP\u003d\"FBC7B9E2A4F9289AC0C1D4843D16CEE4A27381B4\" airshipctl phase run secret-generate"}],"source_content_type":"text/x-sh","patch_set":2,"id":"98703039_79f93092","line":18,"range":{"start_line":18,"start_character":0,"end_line":18,"end_character":54},"updated":"2021-01-20 23:47:40.000000000","message":"may be it\u0027s better to move this to playbook","commit_id":"06065e4456d672a1bf0bf4d46d26b33a05a7f1e4"},{"author":{"_account_id":21040,"name":"Alexey","email":"aodinokov@mirantis.com","username":"aodinokov"},"change_message_id":"ad60460661d7ba7f7bd897eee29584571f36c4e5","unresolved":true,"context_lines":[{"line_number":15,"context_line":"set -xe"},{"line_number":16,"context_line":""},{"line_number":17,"context_line":"echo \"Pull site documents using airshipctl\""},{"line_number":18,"context_line":"SOPS_PGP_FP\u003d\"FBC7B9E2A4F9289AC0C1D4843D16CEE4A27381B4\" airshipctl phase run secret-generate"}],"source_content_type":"text/x-sh","patch_set":3,"id":"76bbf51c_1c3df81e","line":18,"range":{"start_line":18,"start_character":0,"end_line":18,"end_character":54},"updated":"2021-01-21 05:41:31.000000000","message":"move this to playbook config","commit_id":"ea1cad30563c5d37dfb40ce5b1abb8ef099deca1"},{"author":{"_account_id":21040,"name":"Alexey","email":"aodinokov@mirantis.com","username":"aodinokov"},"change_message_id":"d43a09acab9dae481cb4efc6173cd2e2d2440d61","unresolved":false,"context_lines":[{"line_number":15,"context_line":"set -xe"},{"line_number":16,"context_line":""},{"line_number":17,"context_line":"echo \"Pull site documents using airshipctl\""},{"line_number":18,"context_line":"SOPS_PGP_FP\u003d\"FBC7B9E2A4F9289AC0C1D4843D16CEE4A27381B4\" airshipctl phase run secret-generate"}],"source_content_type":"text/x-sh","patch_set":3,"id":"f0458f85_ff399e45","line":18,"range":{"start_line":18,"start_character":0,"end_line":18,"end_character":54},"in_reply_to":"76bbf51c_1c3df81e","updated":"2021-01-21 18:16:05.000000000","message":"Done","commit_id":"ea1cad30563c5d37dfb40ce5b1abb8ef099deca1"}],"tools/deployment/30_deploy_controlplane.sh":[{"author":{"_account_id":16768,"name":"Ruslan Aliev","email":"raliev@mirantis.com","username":"raliev"},"change_message_id":"c3f1efcd29cb0bcca2fefad6b1cf3d0ca5b1555f","unresolved":true,"context_lines":[{"line_number":50,"context_line":"echo \"Create target k8s cluster resources\""},{"line_number":51,"context_line":"airshipctl phase run controlplane-ephemeral --debug"},{"line_number":52,"context_line":""},{"line_number":53,"context_line":"cat /home/ubuntu/.airship/kubeconfig 1\u003e\u00262"},{"line_number":54,"context_line":""},{"line_number":55,"context_line":"echo \"List all nodes in target cluster\""},{"line_number":56,"context_line":"kubectl \\"}],"source_content_type":"text/x-sh","patch_set":14,"id":"e101d105_3ef6289c","line":53,"range":{"start_line":53,"start_character":4,"end_line":53,"end_character":17},"updated":"2021-01-24 05:51:09.000000000","message":"I don\u0027t think hardcoded $HOME path is gonna work here","commit_id":"f65fdbb2a2fb05f56d91cbc54f4c58313030ccad"},{"author":{"_account_id":21040,"name":"Alexey","email":"aodinokov@mirantis.com","username":"aodinokov"},"change_message_id":"e71f0ab28fdac9c33296ff715a98354039737e7b","unresolved":false,"context_lines":[{"line_number":50,"context_line":"echo \"Create target k8s cluster resources\""},{"line_number":51,"context_line":"airshipctl phase run controlplane-ephemeral --debug"},{"line_number":52,"context_line":""},{"line_number":53,"context_line":"cat /home/ubuntu/.airship/kubeconfig 1\u003e\u00262"},{"line_number":54,"context_line":""},{"line_number":55,"context_line":"echo \"List all nodes in target cluster\""},{"line_number":56,"context_line":"kubectl \\"}],"source_content_type":"text/x-sh","patch_set":14,"id":"d674e695_d2a14ffa","line":53,"range":{"start_line":53,"start_character":4,"end_line":53,"end_character":17},"in_reply_to":"e101d105_3ef6289c","updated":"2021-01-24 06:51:52.000000000","message":"Done\n\nPS\nThank you - I agree.\nIt was for debug only and I was about to remove that...","commit_id":"f65fdbb2a2fb05f56d91cbc54f4c58313030ccad"}]}
