Merge pull request 'Upgrade Gitea to 28.0.0, Gitea Runner to 4.0.0' (#676) from chore/upgrade_gitea into master

Reviewed-on: #676
This commit was merged in pull request #676.
This commit is contained in:
raucao committed 2026-10-04 10:46:10 +00:00
commit 663d10d322
6 files changed
+35 -10

No files matched your search

+20
View File
@@ -2,6 +2,26 @@
This file is used to list changes made in each version of the kosmos_gitea cookbook.
# 0.3.1
- Upgrade the Gitea Actions runner from 2.0.0 to 4.0.0. No config changes were
required: `cache.host`/`cache.port` on the user-defined `gitea-actions`
network match the 4.0 cache-through-runner model, and `valid_volumes` is not
used. Note that host-escape `container.options` are now stripped unless
privileged mode is enabled.
# 0.3.0
- Upgrade Gitea from 1.27.1 to 28.0.0 (Gitea dropped the `1.` version prefix).
- Remove `[server] DOMAIN`; Gitea 28 ignores it. Set `ROOT_URL` to the literal
domain, which is now the authoritative source for the instance/SSH domain.
- Drop the removed `external` host preset from `[security] ALLOWED_HOST_LIST`
(webhook egress). Lax mode still allows public hosts.
- Set `[actions] RUN_RETENTION_DAYS = 0` to preserve action run history, which
Gitea 28 would otherwise delete after 400 days.
- Set `proxy_http_version 1.1` in the nginx web vhost so the new WebSocket
notification endpoint (`/-/ws`) can be upgraded.
# 0.2.2
- Add `config.yaml` for the gitea actions runner, enabling the built-in cache
@@ -1,5 +1,5 @@
node.default["gitea"]["version"] = "1.27.1"
node.default["gitea"]["checksum"] = "86a7ac26e7f9c9cca0f56c4fac07fff205d5fc3bca0e54af23a204f07b833bc9"
node.default["gitea"]["version"] = "28.0.0"
node.default["gitea"]["checksum"] = "7f82b522c4a98191e8ace49d85e17a2056a3cedc3054a6367c13c0a813d015a8"
node.default["gitea"]["repo"] = nil
node.default["gitea"]["revision"] = nil
node.default["gitea"]["working_directory"] = "/var/lib/gitea"
@@ -16,15 +16,16 @@ node.default["gitea"]["config"] = {
"logger.access.MODE" => ""
},
"actions": {
"enabled" => true
"enabled" => true,
"run_retention_days" => 0
},
"webhook": {
"allowed_host_list" => "external,127.0.1.1"
"allowed_host_list" => "127.0.1.1"
}
}
node.default["gitea"]["runner"]["version"] = "2.0.0"
node.default["gitea"]["runner"]["checksum"] = "447156b33407ee045409f5552bd4a188a315cdd4085b4b498d8d4a9ad26c9f73"
node.default["gitea"]["runner"]["version"] = "4.0.0"
node.default["gitea"]["runner"]["checksum"] = "02a3f52a9c8f3bb2d60f12696afea95ab980cbe1a60ec6eaa575749836c85216"
node.default["gitea"]["runner"]["cache_base_port"] = 8088
node.default["gitea"]["runner"]["config"] = {
"runner" => {
+1 -1
View File
@@ -4,7 +4,7 @@ maintainer_email 'ops@kosmos.org'
license 'MIT'
description 'Installs/configures Gitea'
long_description 'Installs/configures Gitea'
version '0.2.2'
version '0.3.1'
chef_version '>= 14.0'
depends "firewall"
@@ -90,7 +90,7 @@ if node.chef_environment == "production"
node.normal["gitea"]["config"] = {
"webhook": {
"allowed_host_list" => "external,#{allowed_webhook_hosts.join(",")}"
"allowed_host_list" => allowed_webhook_hosts.join(",")
}
}
end
@@ -7,9 +7,9 @@ HTTP_PORT = 3000
DISABLE_SSH = false
SSH_PORT = 22
PROTOCOL = http
DOMAIN = <%= @domain %>
# Gitea 28 ignores [server] DOMAIN; the domain now comes from ROOT_URL
# Gitea is running behind an nginx reverse load balancer, use an HTTPS root URL
ROOT_URL = https://%(DOMAIN)s
ROOT_URL = https://<%= @domain %>
# REDIRECT_OTHER_PORT = true
# PORT_TO_REDIRECT = 3001
# ENABLE_LETSENCRYPT = true
@@ -125,6 +125,7 @@ MINIO_USE_SSL=<%= c["use_ssl"] %>
<% if @config["actions"]["enabled"] %>
[actions]
ENABLED = true
RUN_RETENTION_DAYS = <%= @config["actions"]["run_retention_days"] %>
<% end %>
[other]
@@ -26,6 +26,7 @@ server {
location ~ ^/(avatars|repo-avatars)/.*$ {
proxy_buffers 1024 8k;
proxy_pass http://_gitea_web;
proxy_http_version 1.1;
expires 30d;
proxy_set_header Connection $http_connection;
proxy_set_header Upgrade $http_upgrade;
@@ -40,6 +41,7 @@ server {
client_max_body_size 0;
proxy_buffers 1024 8k;
proxy_pass http://_gitea_web;
proxy_http_version 1.1;
proxy_set_header Connection $http_connection;
proxy_set_header Upgrade $http_upgrade;
proxy_set_header Host $host;
@@ -51,6 +53,7 @@ server {
location / {
proxy_buffers 1024 8k;
proxy_pass http://_gitea_web;
proxy_http_version 1.1;
proxy_set_header Connection $http_connection;
proxy_set_header Upgrade $http_upgrade;
proxy_set_header Host $host;