Skip to content

[CI] BK Vault plugin for EC access #8377

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 13 commits into from
Jul 2, 2025
Merged

[CI] BK Vault plugin for EC access #8377

merged 13 commits into from
Jul 2, 2025

Conversation

pazone
Copy link
Collaborator

@pazone pazone commented Jun 6, 2025

What does this PR do?

Introduces BK Vault plugin. Simplifies EC access and prevents possible issues
Windows retry tested in this build

Why is it important?

Checklist

  • I have read and understood the pull request guidelines of this project.
  • My code follows the style guidelines of this project
  • I have commented my code, particularly in hard-to-understand areas
  • I have made corresponding changes to the documentation
  • I have made corresponding change to the default configuration files
  • I have added tests that prove my fix is effective or that my feature works
  • I have added an entry in ./changelog/fragments using the changelog tool
  • I have added an integration test or an E2E test

Disruptive User Impact

How to test this PR locally

Related issues

Questions to ask yourself

  • How are we going to support this in production?
  • How are we going to measure its adoption?
  • How are we going to debug this?
  • What are the metrics I should take care of?
  • ...

@pazone pazone added the enhancement New feature or request label Jun 6, 2025
@mergify mergify bot assigned pazone Jun 6, 2025
Copy link
Contributor

mergify bot commented Jun 6, 2025

This pull request does not have a backport label. Could you fix it @pazone? 🙏
To fixup this pull request, you need to add the backport labels for the needed
branches, such as:

  • backport-./d./d is the label that automatically backports to the 8./d branch. /d is the digit
  • backport-active-all is the label that automatically backports to all active branches.
  • backport-active-8 is the label that automatically backports to all active minor branches for the 8 major.
  • backport-active-9 is the label that automatically backports to all active minor branches for the 9 major.

@pazone pazone added skip-changelog backport-active-all Automated backport with mergify to all the active branches labels Jun 6, 2025
@pazone pazone changed the title [CI] BK Vault plugin for ES access [CI] BK Vault plugin for EC access Jun 6, 2025
@pazone pazone marked this pull request as ready for review June 6, 2025 12:51
@pazone pazone requested review from a team as code owners June 6, 2025 12:51
Copy link
Member

@v1v v1v left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I really like this approach, so it helps to document the consumers and reduce the overhead in the scripts, those scripts should run in a configured environment for simplicity.

I left a few comments

Copy link
Member

@v1v v1v left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Overall, it looks good to me. However, I have a few comments:

  • There is a question regarding the inclusion of the environment in the name of the anchor plugin ID.
  • Please utilize the GitHub issue related to the OGC replacement to provide additional context.
  • Make sure to include the removed plugin in one of the steps.

@pazone pazone requested a review from v1v June 16, 2025 11:26
v1v
v1v previously approved these changes Jun 16, 2025
Copy link
Member

@v1v v1v left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM, thanks Pavel!

@v1v
Copy link
Member

v1v commented Jun 16, 2025

I think there are missing changes in some other pipelines:

Start ESS stack for FIPS integration tests
source .buildkite/scripts/steps/ess_start.sh

See https://github.com/elastic/elastic-agent/blob/main/.buildkite/bk.integration-fips.pipeline.yml

@pazone pazone requested a review from pkoutsovasilis June 16, 2025 15:14
@pazone
Copy link
Collaborator Author

pazone commented Jun 16, 2025

Updated the FIPS pipeline

@pazone pazone requested a review from v1v June 16, 2025 15:21
@v1v v1v requested a review from a team June 16, 2025 15:23
@pazone pazone requested a review from oakrizan June 16, 2025 15:33
Copy link

Quality Gate passed Quality Gate passed

Issues
0 New issues
0 Fixed issues
0 Accepted issues

Measures
0 Security Hotspots
No data about Coverage
No data about Duplication

See analysis details on SonarQube

@elasticmachine
Copy link
Collaborator

💛 Build succeeded, but was flaky

Failed CI Steps

History

cc @pazone

@pazone pazone merged commit e2505e4 into main Jul 2, 2025
19 checks passed
@pazone pazone deleted the ci_use_vault_plugin branch July 2, 2025 13:40
Copy link
Contributor

github-actions bot commented Jul 2, 2025

@Mergifyio backport 8.17 8.18 8.19 9.0 9.1

Copy link
Contributor

mergify bot commented Jul 2, 2025

backport 8.17 8.18 8.19 9.0 9.1

✅ Backports have been created

mergify bot pushed a commit that referenced this pull request Jul 2, 2025
* [CI] BK Vault plugin for ES access

* Typo

* Typo

* Quick Windows test

* Quick test Windows

* Revert last two commits

* Applied proposed changes

* Fixed indentation

* revert buildkite_analytics_token deletion

* Remaned the anchor

* Added the issue to comments

* Updated FIPS pipeline

(cherry picked from commit e2505e4)

# Conflicts:
#	.buildkite/bk.integration-fips.pipeline.yml
mergify bot pushed a commit that referenced this pull request Jul 2, 2025
* [CI] BK Vault plugin for ES access

* Typo

* Typo

* Quick Windows test

* Quick test Windows

* Revert last two commits

* Applied proposed changes

* Fixed indentation

* revert buildkite_analytics_token deletion

* Remaned the anchor

* Added the issue to comments

* Updated FIPS pipeline

(cherry picked from commit e2505e4)

# Conflicts:
#	.buildkite/bk.integration-fips.pipeline.yml
mergify bot pushed a commit that referenced this pull request Jul 2, 2025
* [CI] BK Vault plugin for ES access

* Typo

* Typo

* Quick Windows test

* Quick test Windows

* Revert last two commits

* Applied proposed changes

* Fixed indentation

* revert buildkite_analytics_token deletion

* Remaned the anchor

* Added the issue to comments

* Updated FIPS pipeline

(cherry picked from commit e2505e4)
mergify bot pushed a commit that referenced this pull request Jul 2, 2025
* [CI] BK Vault plugin for ES access

* Typo

* Typo

* Quick Windows test

* Quick test Windows

* Revert last two commits

* Applied proposed changes

* Fixed indentation

* revert buildkite_analytics_token deletion

* Remaned the anchor

* Added the issue to comments

* Updated FIPS pipeline

(cherry picked from commit e2505e4)

# Conflicts:
#	.buildkite/bk.integration-fips.pipeline.yml
mergify bot pushed a commit that referenced this pull request Jul 2, 2025
* [CI] BK Vault plugin for ES access

* Typo

* Typo

* Quick Windows test

* Quick test Windows

* Revert last two commits

* Applied proposed changes

* Fixed indentation

* revert buildkite_analytics_token deletion

* Remaned the anchor

* Added the issue to comments

* Updated FIPS pipeline

(cherry picked from commit e2505e4)
pazone added a commit that referenced this pull request Jul 4, 2025
* [CI] BK Vault plugin for ES access

* Typo

* Typo

* Quick Windows test

* Quick test Windows

* Revert last two commits

* Applied proposed changes

* Fixed indentation

* revert buildkite_analytics_token deletion

* Remaned the anchor

* Added the issue to comments

* Updated FIPS pipeline

(cherry picked from commit e2505e4)

Co-authored-by: Pavel Zorin <[email protected]>
pazone added a commit that referenced this pull request Jul 4, 2025
* [CI] BK Vault plugin for EC access (#8377)

* [CI] BK Vault plugin for ES access

* Typo

* Typo

* Quick Windows test

* Quick test Windows

* Revert last two commits

* Applied proposed changes

* Fixed indentation

* revert buildkite_analytics_token deletion

* Remaned the anchor

* Added the issue to comments

* Updated FIPS pipeline

(cherry picked from commit e2505e4)

# Conflicts:
#	.buildkite/bk.integration-fips.pipeline.yml

* Remove backported fips pipeline

---------

Co-authored-by: Pavel Zorin <[email protected]>
pazone added a commit that referenced this pull request Jul 4, 2025
* [CI] BK Vault plugin for ES access

* Typo

* Typo

* Quick Windows test

* Quick test Windows

* Revert last two commits

* Applied proposed changes

* Fixed indentation

* revert buildkite_analytics_token deletion

* Remaned the anchor

* Added the issue to comments

* Updated FIPS pipeline

(cherry picked from commit e2505e4)

Co-authored-by: Pavel Zorin <[email protected]>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
backport-active-all Automated backport with mergify to all the active branches enhancement New feature or request skip-changelog
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants