Kenneth Kehl
675952ea9b
comment out terraform debug
2025-10-23 07:44:07 -07:00
Kenneth Kehl
3261d4a988
try to change api_network_route
2025-10-22 14:34:44 -07:00
Kenneth Kehl
ab842ac947
recreate redis-v70 with the new terraform provider
2025-10-22 13:20:47 -07:00
Kenneth Kehl
2fa1d5b444
actually destroy module.redis-v70 on staging
2025-10-22 13:08:55 -07:00
Kenneth Kehl
f5c2c392a7
set up module.redis-v70 for upgrade
2025-10-22 12:18:59 -07:00
Kenneth Kehl
46b63353a7
build the new moduule.logo_upload_bucket
2025-10-22 10:44:27 -07:00
Kenneth Kehl
89160f44b8
try again
2025-10-22 09:05:47 -07:00
Kenneth Kehl
867af9c143
try again
2025-10-22 08:56:00 -07:00
Kenneth Kehl
c5432d2f15
try again
2025-10-22 08:38:34 -07:00
Kenneth Kehl
7b7f86424c
fix username and password maybe
2025-10-22 07:17:27 -07:00
Kenneth Kehl
215adde8b9
add username and password
2025-10-21 13:01:32 -07:00
Kenneth Kehl
b29bd7fc65
See if we can destroy a specific module
2025-10-21 12:41:20 -07:00
Kenneth Kehl
d4d87d9000
replace dry-run with creating a new state file and printing out the providers portion
2025-10-21 12:09:50 -07:00
Kenneth Kehl
095de8d42e
try dry run terraform provider replace
2025-10-21 09:27:17 -07:00
Beverly Nguyen
705952cc30
Remove Socket.IO dependencies and Socket infrastructure
...
- Remove socket.io-client npm package
- Remove Socket.IO from gulpfile.js
- Remove API_PUBLIC_WS_URL config variable from all environments
- Remove Socket CSP directives (cdn.socket.io, wss:// URLs)
- Remove unused data-host attribute from job template
- Update test_headers.py to remove Socket.IO assertions
- Update deployment configs (manifest.yml, deploy-config/*.yml, .github/workflows/*.yml)
2025-10-07 10:44:45 -07:00
Alex Janousek
24a735ffc2
Refactored polling for status page
2025-10-01 10:58:44 -04:00
Alex Janousek
5c00ee1840
Fix/main build 2 ( #2819 )
...
* Removed double slash
* Fixing race condition with testing
* Created cleaner solution
* Keeping flash alive longer so tests finish in main build
2025-08-07 12:52:56 -07:00
Alex Janousek
843699061d
Removed double slash ( #2817 )
2025-08-07 11:55:26 -04:00
Kenneth Kehl
2f23ff9d8f
fix drift analysis
2025-06-26 07:28:25 -07:00
ccostino
3d44e76383
Update .github/workflows/checks.yml
...
Removing extraneous vulnerability ignore config.
2025-05-30 10:57:24 -04:00
Kenneth Kehl
038f4e294a
merge from main
2025-05-29 14:46:02 -07:00
Kenneth Kehl
3fe74bea54
add exclusion
2025-05-29 11:25:01 -07:00
Carlo Costino
ba0daeaf76
Updated pip-audit ignore-vulns
...
This changeset updates the PYSEC notices to ignore to due versions that either cannot be fixed or are false positives. Specifically, this changeset removes previously ignored vulnerability reports and adds PYSEC-2023-312 to the list because it is a false positive and refers to Redis itself, not the Python Redis client (see https://github.com/pypa/advisory-database/issues/237 for details).
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-05-28 17:37:04 -04:00
Kenneth Kehl
7ba4f3658e
upgrade poetry to 2.1.3
2025-05-27 12:32:54 -07:00
Kenneth Kehl
0afc93958c
upgrade poetry to 2.1.3
2025-05-27 12:25:52 -07:00
Beverly Nguyen
790fe2d6f9
update csp using variables and testing
2025-05-22 12:03:18 -07:00
Beverly Nguyen
1b6894139d
Fix formatting
2025-05-20 10:27:07 -07:00
Beverly Nguyen
2459ecd715
Fix formatting
2025-05-20 10:26:54 -07:00
Beverly Nguyen
bc2738a97a
Added API_PUBLIC_URL to GitHub Secrets and updated deploy workflows with new API_PUBLIC_URL
2025-05-19 17:22:28 -07:00
Carlo Costino
50bdf916ba
Merge branch 'main' into fix-existing-e2e-tests
2025-05-01 09:45:23 -04:00
Beverly Nguyen
6dd44fdc2d
added feature flag
2025-04-10 12:35:04 -07:00
alexjanousekGSA
35f3203e9c
Removed feature flag
2025-03-20 14:22:41 -04:00
Carlo Costino
606b124912
Fix existing end-to-end tests
...
This changeset re-enables our existing end-to-end tests and gets them working again after responding to a security incident.
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-03-18 23:24:49 -04:00
Kenneth Kehl
9a8a80ab14
add comment
2025-03-18 10:19:02 -07:00
Kenneth Kehl
cb334c0dcd
ugh
2025-03-17 16:28:46 -07:00
Kenneth Kehl
47657d45ed
initial
2025-03-17 09:57:15 -07:00
Jonathan Bobel
20012885b1
Update checks.yml
2025-03-04 11:26:21 -05:00
Carlo Costino
fe6921e243
Update Terraform installation and configuration
...
This changeset accounts for having to explicitly install Terraform and updates our user configuration in several environments to account for team member changes.
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-02-19 21:41:32 -05:00
Carlo Costino
eadd8dddb5
Update GitHub Action References
...
This changeset updates many of our GitHub Action references to point to the latest versions to ensure they are kept up-to-date. This helps address any improvements and security patches that have been made to them.
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-02-19 16:56:09 -05:00
Kenneth Kehl
bd619af421
merge from main
2025-02-03 09:01:12 -08:00
Carlo Costino
d627ba62de
Update reference in daily check action
...
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-01-31 11:08:48 -05:00
Carlo Costino
0ba489df78
Update reference to zaproxy/action-baseline to 0.14.0
...
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-01-31 10:46:32 -05:00
Carlo Costino
4ae351b1f6
This changeset explicitly enables the FEATURE_ABOUT_PAGE_ENABLED feature flag for our dynamic scans to make sure that all pages are scanned, regardless if they are enabled on our production site or not.
...
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-01-30 16:32:12 -05:00
Kenneth Kehl
9630d085f4
Update .github/workflows/checks.yml
...
Co-authored-by: Carlo Costino <ccostino@users.noreply.github.com >
2025-01-29 13:21:28 -08:00
Kenneth Kehl
5d565ab88b
fix black and isort forever
2025-01-22 13:45:42 -08:00
Andrew Shumway
598a9af6f1
Add redis ID to ignore vulnerability list in audit/no current fix
2024-11-21 11:42:30 -07:00
Carlo Costino
312612a04d
Fix Login.gov sign in URL formatting for staging
...
This changeset fixes a typo by removing an extra E from the Login.gov sign in URL, which was causing the STATE variable to not be properly replaced with the actual state, because STATE != STATEE.
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2024-11-07 22:22:24 -05:00
Carlo Costino
a3c021b154
Fix demo and prod deploy actions
...
This changeset makes a couple of more adjustments to the prod and demo deploy actions to make sure they are in sync with staging and work.
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2024-10-16 14:26:02 -04:00
Carlo Costino
e54d18170e
Add missing env var
...
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2024-10-16 13:03:35 -04:00
Carlo Costino
fc6adc6771
Fix the prod and demo deployment actions
...
This changeset fixes the prod and deployment actions so they have the correct environment variables. It also fixes the egress proxy deploy config for each.
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2024-10-16 12:44:55 -04:00