Add rotate directive to serviceaccount.tf (see keepers: https://registry.terraform.io/providers/hashicorp/google/latest/docs/resources/google_service_account_key#keepers)
This will update k8s secret called api-serviceaccount
This is used by both backups and the api deployments
Just the api deployments need to be restarted since the backups will start fresh in the night
Description
Description
Status | Subtype | Assigned | Task | ||
---|---|---|---|---|---|
Resolved | Tarrow | T316764 [tracking] Rotate all secrets | |||
Resolved | Tarrow | T320422 Rotate API google service account key |
Event Timeline
Comment Actions
https://github.com/wmde/wbaas-deploy/pull/547 merged and applied.
k rollout restart deployment/api-<all-of-them> run