Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
1 change: 1 addition & 0 deletions contributing_to_docs/tools_and_setup.adoc
Original file line number Diff line number Diff line change
@@ -1,5 +1,6 @@
[id="contributing-to-docs-tools-and-setup"]
= Install and set up the tools and software

:icons:
:toc: macro
:toc-title:
Expand Down
1 change: 1 addition & 0 deletions modules/recommended-node-host-practices.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * post_installation_configuration/node-tasks.adoc

:_mod-docs-content-type: REFERENCE
[id="recommended-node-host-practices_{context}"]
= Recommended node host practices

Expand Down
1 change: 1 addition & 0 deletions modules/recommended-scale-practices.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * scalability_and_performance/recommended-performance-scale-practices/recommended-control-plane-practices.adoc

:_mod-docs-content-type: CONCEPT
[id="recommended-scale-practices_{context}"]
= Recommended practices for scaling the cluster

Expand Down
1 change: 1 addition & 0 deletions modules/red-hat-marketplace-features.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * applications/red-hat-marketplace.adoc

:_mod-docs-content-type: CONCEPT
[id="red-hat-marketplace-features_{context}"]
= Red Hat Marketplace features

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * registry/index.adoc

:_mod-docs-content-type: CONCEPT
[id="registry-authentication-enabled-registry-overview_{context}"]
= Authentication enabled Red Hat registry

Expand Down
1 change: 1 addition & 0 deletions modules/registry-integrated-openshift-registry.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -3,6 +3,7 @@
//* registry/registry-options
//* registry/index.adoc

:_mod-docs-content-type: CONCEPT
[id="registry-integrated-openshift-registry_{context}"]
= Integrated {product-registry}

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * registry/configuring-registry-storage-aws-user-infrastructure.adoc

:_mod-docs-content-type: REFERENCE
[id="registry-operator-configuration-resource-overview-aws-s3_{context}"]
= Image Registry Operator configuration parameters for AWS S3

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * openshift_images/configuring-registry-operator.adoc

:_mod-docs-content-type: REFERENCE
[id="registry-operator-configuration-resource-overview-gcp-gcs_{context}"]
= Image Registry Operator configuration parameters for {gcp-short} GCS

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * registry/configuring_registry_storage/configuring-registry-storage-openstack-user-infrastructure.adoc

:_mod-docs-content-type: REFERENCE
[id="registry-operator-configuration-resource-overview-openstack-swift_{context}"]
= Image Registry Operator configuration parameters for {rh-openstack} Swift

Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,7 +2,7 @@
//
// * openshift_images/configuring-registry-operator.adoc


:_mod-docs-content-type: REFERENCE
[id="registry-operator-distribution-across-availability-zones_{context}"]
= Image Registry Operator distribution across availability zones

Expand Down
1 change: 1 addition & 0 deletions modules/registry-quay-overview.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * registry/index.adoc

:_mod-docs-content-type: CONCEPT
[id="registry-quay-overview_{context}"]
= {quay} registries

Expand Down
1 change: 1 addition & 0 deletions modules/registry-removed.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -13,6 +13,7 @@
// * registry/configuring_registry_storage/configuring-registry-storage-baremetal.adoc
// * registry/configuring_registry_storage/configuring-registry-storage-vsphere.adoc

:_mod-docs-content-type: CONCEPT
[id="registry-removed_{context}"]
= Image registry removed during installation

Expand Down
1 change: 1 addition & 0 deletions modules/sample-windows-workload-deployment.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * windows_containers/scheduling-windows-workloads.adoc

:_mod-docs-content-type: REFERENCE
[id="sample-windows-workload-deployment_{context}"]
= Sample Windows container workload deployment

Expand Down
2 changes: 1 addition & 1 deletion modules/samples-operator-configuration.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,7 +2,7 @@
//
// * openshift_images/configuring_samples_operator.adoc


:_mod-docs-content-type: REFERENCE
[id="samples-operator-configuration_{context}"]
= Cluster Samples Operator configuration parameters

Expand Down
1 change: 1 addition & 0 deletions modules/scheduling-virtual-hardware-update-on-vsphere.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// updating/updating_a_cluster/updating-hardware-on-nodes-running-in-vsphere.adoc

:_mod-docs-content-type: CONCEPT
[id="scheduling-virtual-hardware-update-on-vsphere_{context}"]
= Scheduling an update for virtual hardware on vSphere

Expand Down
1 change: 1 addition & 0 deletions modules/sdpolicy-logging.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * osd_architecture/osd_policy/osd-service-definition.adoc

:_mod-docs-content-type: CONCEPT
[id="sdpolicy-logging_{context}"]
= Logging
{product-title} provides optional integrated log forwarding to Amazon CloudWatch (on AWS) or {gcp-full} Logging (on {gcp-short}).
Expand Down
1 change: 1 addition & 0 deletions modules/sdpolicy-monitoring.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * osd_architecture/osd_policy/osd-service-definition.adoc

:_mod-docs-content-type: CONCEPT
[id="sdpolicy-monitoring_{context}"]
= Monitoring

Expand Down
1 change: 1 addition & 0 deletions modules/sdpolicy-networking.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * osd_architecture/osd_policy/osd-service-definition.adoc

:_mod-docs-content-type: CONCEPT
[id="sdpolicy-networking_{context}"]
= Networking

Expand Down
1 change: 1 addition & 0 deletions modules/sdpolicy-platform.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -3,6 +3,7 @@
//
// * osd_architecture/osd_policy/osd-service-definition.adoc

:_mod-docs-content-type: REFERENCE
[id="sdpolicy-platform_{context}"]
= Platform

Expand Down
1 change: 1 addition & 0 deletions modules/sdpolicy-security.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * osd_architecture/osd_policy/osd-service-definition.adoc

:_mod-docs-content-type: CONCEPT
[id="sdpolicy-security_{context}"]
= Security

Expand Down
1 change: 1 addition & 0 deletions modules/sdpolicy-storage.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -3,6 +3,7 @@
//
// * osd_architecture/osd_policy/osd-service-definition.adoc

:_mod-docs-content-type: CONCEPT
[id="sdpolicy-storage_{context}"]
= Storage

Expand Down
1 change: 1 addition & 0 deletions modules/security-build-designing.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * security/container_security/security-build.adoc

:_mod-docs-content-type: CONCEPT
[id="security-build-designing_{context}"]
= Designing your build process

Expand Down
20 changes: 8 additions & 12 deletions modules/security-build-inputs.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,21 +2,18 @@
//
// * security/container_security/security-build.adoc

:_mod-docs-content-type: PROCEDURE
[id="security-build-inputs_{context}"]
= Securing inputs during builds

In some scenarios, build operations require credentials to access dependent
resources, but it is undesirable for those credentials to be available in the
final application image produced by the build. You can define input secrets for
this purpose.
In some scenarios, build operations require credentials to access dependent resources, but it is undesirable for those credentials to be available in the final application image produced by the build. You can define input secrets for this purpose.

For example, when building a Node.js application, you can set up your private
mirror for Node.js modules. To download modules from that private
mirror, you must supply a custom `.npmrc` file for the build that contains
a URL, user name, and password. For security reasons, you do not want to expose
your credentials in the application image.
For example, when building a Node.js application, you can set up your private mirror for Node.js modules. To download modules from that private mirror, you must supply a custom `.npmrc` file for the build that contains
a URL, user name, and password. For security reasons, you do not want to expose your credentials in the application image.

Using this example scenario, you can add an input secret to a new `BuildConfig` object:
Using this example scenario, you can add an input secret to a new `BuildConfig` object.

.Procedure

. Create the secret, if it does not exist:
+
Expand All @@ -25,8 +22,7 @@ Using this example scenario, you can add an input secret to a new `BuildConfig`
$ oc create secret generic secret-npmrc --from-file=.npmrc=~/.npmrc
----
+
This creates a new secret named `secret-npmrc`, which contains the base64
encoded content of the `~/.npmrc` file.
This creates a new secret named `secret-npmrc`, which contains the base64 encoded content of the `~/.npmrc` file.

. Add the secret to the `source` section in the existing `BuildConfig` object:
+
Expand Down
1 change: 1 addition & 0 deletions modules/security-build-knative.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * security/container_security/security-build.adoc

:_mod-docs-content-type: CONCEPT
[id="security-build-knative_{context}"]
= Building Knative serverless applications

Expand Down
1 change: 1 addition & 0 deletions modules/security-build-management.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * security/container_security/security-build.adoc

:_mod-docs-content-type: CONCEPT
[id="security-build-management_{context}"]
= Managing builds

Expand Down
1 change: 1 addition & 0 deletions modules/security-build-once.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * security/container_security/security-build.adoc

:_mod-docs-content-type: CONCEPT
[id="security-build-once_{context}"]
= Building once, deploying everywhere

Expand Down
1 change: 1 addition & 0 deletions modules/security-container-content-external-scanning.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * security/container_security/security-container-content.adoc

:_mod-docs-content-type: REFERENCE
[id="security-container-content-external-scanning_{context}"]
= Integrating external scanning

Expand Down
1 change: 1 addition & 0 deletions modules/security-container-content-inside.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * security/container_security/security-container-content.adoc

:_mod-docs-content-type: CONCEPT
[id="security-container-content-inside_{context}"]
= Securing inside the container

Expand Down
1 change: 1 addition & 0 deletions modules/security-container-content-scanning.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * security/container_security/security-container-content.adoc

:_mod-docs-content-type: CONCEPT
[id="security-container-content-scanning_{context}"]
= Security scanning in {op-system-base}

Expand Down
1 change: 1 addition & 0 deletions modules/security-container-content-universal.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * security/container_security/security-container-content.adoc

:_mod-docs-content-type: CONCEPT
[id="security-container-content-universal_{context}"]
= Creating redistributable images with UBI

Expand Down
8 changes: 3 additions & 5 deletions modules/security-deploy-continuous.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,12 +2,10 @@
//
// * security/container_security/security-deploy.adoc

:_mod-docs-content-type: CONCEPT
[id="security-deploy-continuous_{context}"]
= Automating continuous deployment

You can integrate your own continuous deployment (CD) tooling with
{product-title}.
You can integrate your own continuous deployment (CD) tooling with {product-title}.

By leveraging CI/CD and {product-title}, you can automate the process of
rebuilding the application to incorporate the latest fixes, testing, and
ensuring that it is deployed everywhere within the environment.
By leveraging CI/CD and {product-title}, you can automate the process of rebuilding the application to incorporate the latest fixes, testing, and ensuring that it is deployed everywhere within the environment.
1 change: 1 addition & 0 deletions modules/security-deploy-image-sources.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * security/container_security/security-deploy.adoc

:_mod-docs-content-type: REFERENCE
[id="security-deploy-image-sources_{context}"]
= Controlling what image sources can be deployed

Expand Down
1 change: 1 addition & 0 deletions modules/security-deploy-signature.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * security/container_security/security-deploy.adoc

:_mod-docs-content-type: CONCEPT
[id="security-deploy-signature_{context}"]
= Using signature transports

Expand Down
1 change: 1 addition & 0 deletions modules/security-deploy-trigger.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * security/container_security/security-deploy.adoc

:_mod-docs-content-type: CONCEPT
[id="security-deploy-trigger_{context}"]
= Controlling container deployments with triggers

Expand Down
2 changes: 1 addition & 1 deletion modules/security-hardening-how.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,8 +2,8 @@
//
// * security/container_security/security-hardening.adoc

:_mod-docs-content-type: CONCEPT
[id="security-hardening-how_{context}"]

= Choosing how to harden {op-system}

Direct modification of {op-system} systems in {product-title} is discouraged. Instead, you should think of modifying systems in pools of nodes, such as worker nodes and control plane nodes. When a new node is needed, in non-bare metal installs, you can request a new node of the type you want and it will be created from an {op-system} image plus the modifications you created earlier.
Expand Down
2 changes: 1 addition & 1 deletion modules/security-hardening-what.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,8 +2,8 @@
//
// * security/container_security/security-hardening.adoc

:_mod-docs-content-type: CONCEPT
[id="security-hardening-what_{context}"]

= Choosing what to harden in {op-system}
ifdef::openshift-origin[]
For information on how to approach security for any {op-system-base} system, see the link:https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/9#Security[Security] category in the Red{nbsp}Hat Enterprise Linux 9 documentation.
Expand Down
2 changes: 2 additions & 0 deletions modules/security-hosts-vms-openshift.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,8 +2,10 @@
//
// * security/container_security/security-hosts-vms.adoc

:_mod-docs-content-type: CONCEPT
[id="security-hosts-vms-openshift_{context}"]
= Securing {product-title}

When you deploy {product-title}, you have the choice of an
installer-provisioned infrastructure (there are several available platforms)
or your own user-provisioned infrastructure.
Expand Down
1 change: 1 addition & 0 deletions modules/security-hosts-vms-rhcos.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * security/container_security/security-hosts-vms.adoc

:_mod-docs-content-type: CONCEPT
[id="security-hosts-vms-rhcos_{context}"]
= Securing containers on {op-system-first}

Expand Down
1 change: 1 addition & 0 deletions modules/security-hosts-vms-vs-containers.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
//
// * security/container_security/security-hosts-vms.adoc

:_mod-docs-content-type: CONCEPT
[id="security-hosts-vms-vs-containers_{context}"]
= Comparing virtualization and containers

Expand Down
Loading