Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Privatize CoA deployments by default #647

Open
jsaun opened this issue Apr 26, 2023 · 0 comments
Open

Privatize CoA deployments by default #647

jsaun opened this issue Apr 26, 2023 · 0 comments
Assignees
Milestone

Comments

@jsaun
Copy link
Contributor

jsaun commented Apr 26, 2023

  1. Make private networking the default option when deploying a new CoA instance.
  2. Automate all work currently needed to be done manually to create a private CoA instance from the wiki https://github.com/microsoft/CromwellOnAzure/wiki/Setting-up-private-networking-for-Cromwell-on-Azure

Subtasks:
Remove the --private-networking flag and add an --public-networking flag to revert to previous behavior.
Create CoA Vnet with NSG and inbound connections blocked.
microsoft/ga4gh-tes#209 Cache Docker images in Azure Storage as block blobs
Create private ACR for TES, Cromwell & TriggerService images, and call ACR to import those images into the repo. (Potentially not needed if its possible to start AKS from a container stored in blob storage)

@MattMcL4475 MattMcL4475 added this to the 4.4.0 milestone Apr 28, 2023
@jsaun jsaun self-assigned this May 3, 2023
@MattMcL4475 MattMcL4475 modified the milestones: 4.4.0, next Jun 30, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants