Skip to content

ci: publish immutable Commander image for KiaB - #2332

Open
booker-keeper wants to merge 2 commits into
masterfrom
feature/kiab-ecr-image
Open

ci: publish immutable Commander image for KiaB#2332
booker-keeper wants to merge 2 commits into
masterfrom
feature/kiab-ecr-image

Conversation

@booker-keeper

Copy link
Copy Markdown

Summary

Add a GA-ready Docker/ECR publication workflow for Keeper Commander so it can be included as an optional Keeper-in-a-Box bundle artifact.

Changes

  • Add PR and manual-dispatch CI for tests and image publication.
  • Publish immutable branch/SHA image tags to the commander ECR repository.
  • Run image smoke tests and Trivy scanning before push.
  • Add a runtime-neutral config.kiab.example.json template.
  • Make the default server runtime-configurable through KEEPER_SERVER instead of baking an endpoint into the image.
  • No ECS/service deployment is performed.

Runtime configuration

The image does not bake in cloud or KiaB endpoints. Operators provide a config file or KEEPER_SERVER at runtime. KiaB can mount a config containing local.keepersecurity.com; cloud deployments can use the default or a normal Commander config.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant