Skip to content

Releases: mathieu-benoit/acm-workshop

v0.3.1

06 Feb 16:53
e3b1bca
Compare
Choose a tag to compare

What's Changed

Full Changelog: e6c61d7...e3b1bca

Tested with:

  • GKE 1.25.5-gke.1500
  • ASM MCP 1.15.4-asm.2 + MDP 1.15.4-asm.2
  • ACM 1.14.1
  • Whereami 1.2.14
  • Online Boutique 0.5.0
  • Bank of Anthos 0.5.10

v0.3.0

31 Dec 05:42
Compare
Choose a tag to compare

tl,dr

  • Helm chart for Online Boutique πŸ›’
  • New Config Sync UI and Policy Controller UI pages πŸ‘€ πŸŽ„ πŸš€
  • More Cloud Armor WAF rules πŸ›‘οΈ

What's Changed

  • The Online Boutique sample is now deployed via its Helm chart instead of using Kustomize. The end user experience is way much better, hope you will like it! The other samples will follow soon too.
  • Add new Monitor resources synced page with the new Config Sync UI
  • Add new Monitor policies violations page with the new Policy Controller UI
  • Fix two issues with the GKE cluster provisioning related to the serviceUsageConsumer role and the Cloud DNS API and GKE cluster fields
  • Update the Check deployments section of each page with a link to the new Config Sync UI and the new Policy Controller UI when appropriate
  • Populate remediation field in all Constraints in order to have a link with detailed remediation per Constraint's violation in the new Policy Controller UI
  • Enable Prevent drift for Config Sync for both the Config Controller instance in Host project and the GKE cluster in Tenant project
  • Add more WAF rules with Cloud Armor such as cve, rce, methodenforcement, scannerdetection, protocolattack, php, sessionfixation, java and nodejs in addition to existing ones: xss, sqli, lfi and rfi.
  • Add Spanner and Memorystore groups for Online Boutique in the navigation panel with their respective pages
  • Review the architecture diagram image
  • External links now open in a new tab

Full Changelog: ee49a08...e6c61d7

Tested with:

  • GKE 1.25.4-gke.1600
  • ASM MCP 1.15.3-asm.2 + MDP 1.15.3-asm.1
  • ACM 1.14.0
  • Whereami 1.2.14
  • Online Boutique 0.5.0
  • Bank of Anthos 0.5.10

v0.2.4

21 Dec 13:21
Compare
Choose a tag to compare

What's Changed

Full Changelog: ba95bd2...ee49a08

Tested with:

  • GKE 1.25.4-gke.1600
  • ASM MCP 1.15.3-asm.2 + MDP 1.15.3-asm.1
  • ACM 1.14.0
  • Whereami 1.2.14
  • Online Boutique 0.5.0
  • Bank of Anthos 0.5.10

v0.2.3

13 Dec 19:30
Compare
Choose a tag to compare

What's Changed

Full Changelog: 178a5ee...ba95bd2

Tested with:

  • GKE 1.25.3-gke.800
  • ASM MCP 1.15.3-asm.2 + MDP 1.15.3-asm.1
  • ACM 1.14.0
  • Whereami 1.2.13
  • Online Boutique 0.5.0
  • Bank of Anthos 0.5.10

v0.2.2

14 Nov 14:46
178a5ee
Compare
Choose a tag to compare

What's Changed

Full Changelog: d473bea...178a5ee

Some numbers

  • 56 resources created by KCC via Config Controller
  • 245 resources synced by Config Sync across 6 repositories
  • 23 workloads in the Mesh
  • 17 Policy Controller's Constraints

Tested with:

  • GKE 1.24.4-gke.800
  • ASM 1.15.3-asm.1
  • ACM 1.13.1
  • Whereami 1.2.12
  • Online Boutique 0.4.1
  • Bank of Anthos 0.5.9

v0.2.1

10 Nov 23:58
Compare
Choose a tag to compare

What's Changed

Full Changelog: e5fad42...d473bea

v0.2.0

19 Oct 02:51
Compare
Choose a tag to compare

What's Changed

  • Use the Config Controller Autopilot instance πŸ›©οΈ
  • Set the managed Dataplane for the entire mesh at ASM installation, not per namespace (related to the installation via Fleet API now GA)
  • Add check on resources synced with the Config Sync Status UI for the GKE cluster in the Tenant project πŸ“Š
  • Review and fix the flow of the Whereami and Online Boutique apps
  • Add a GKE Security Posture section πŸ›‘οΈ
  • Use ACM 1.13.0 in GKE cluster in Tenant project
  • Use the low carbon region northamerica-northeast1 for all the regional and zonal Google Cloud Services used in this workshop 🌱
  • Use crane instead of docker pull|tag|push for the copy of the container images for Whereami and Online Boutique in the private Artifact Registry

Full Changelog: 3d4c0f2...e5fad42

v0.1.5

24 Aug 15:12
3d4c0f2
Compare
Choose a tag to compare

What's Changed

  • Cloud Armor - support of the advancedOptionsConfig.logLevel: VERBOSE feature with KCC 1.90.0
  • ACM 1.12.2 for GKE cluster in Tenant project

Full Changelog: 2fd82f5...3d4c0f2

v0.1.3

02 Aug 16:42
Compare
Choose a tag to compare

What's Changed

  • Use ACM 1.12.1 for GKE cluster in Tenant project
  • Use Cloud Armor's rules based on the new CRS 3.3 + Canary (was previously Stable)

Full Changelog: 4e8cd7b...2fd82f5

v0.1.1

22 Jun 20:21
Compare
Choose a tag to compare

What's Changed

  • Add new Secure Memorystore (redis) instance access page
  • Add gitops-tips tag
  • Add HorizontalPodAutoscaler for Ingress Gateway, and add tips about replicas field management with HPA
  • Update Agenda page
  • Update images with TLS icon

Full Changelog: a061458...4e8cd7b