-
Configure Day0 ops
- Deploy AAP instance using TekTon + ArgoCD
- Use aap-as-a-service-gitops repo
- Include metadata
- Instance requestor
- Instance approver
- ServiceNow transaction ID
- Configure break-glass/superuser account
- The
admin
superuser account is created automatically by the AAP Operator
- The
- Deploy AAP instance using TekTon + ArgoCD
-
Configure Day1 ops
- Upload manifest
- Create organisation
- maxHosts
-
Configure Day2 ops
- external auth
-
priviledged userscan't map user to team or org using OIDC -
allowed userscan't map user to team or org using OIDC - permit external authentication using SSO
-
- external auth
-
Production-ise
- App of Apps - for automated cleanup
- Make app ingress FQDN dynamic
- Have
curl
commands exit non-zero if HTTP status not 200 - Make steps idempotent