-
Notifications
You must be signed in to change notification settings - Fork 2.6k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
feat(deps): added renovate config for custom regexes #4978
base: master
Are you sure you want to change the base?
feat(deps): added renovate config for custom regexes #4978
Conversation
Signed-off-by: ivan katliarchuk <ivan.katliarchuk@gmail.com>
Hi @ivankatliarchuk. Thanks for your PR. I'm waiting for a kubernetes-sigs member to verify that this patch is reasonable to test. If it is, they should reply with Once the patch is verified, the new status will be reflected by the I understand the commands that are listed here. Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. |
That sound good to me. |
I don’t think we should proceed with this. We don’t have permissions to do changes like adding apps and I don’t see a lot of problems with dependabot. Updating the version docs like in the linked PR is really no hassle compared to what we have to pull off every time we do a release due to the constraints that the kubernetes flow imposes to us. |
So you would not consider renovate as a github action? I do get that there are multiple steps, and not all of them are simple. But step-by-step you could automate pretty much everything and make it quite safe at the same time too. |
@ivankatliarchuk sorry, I misunderstood. I'm okay with the action, but I don't think we should fully switch to renovate, dependabot is working quite fine for us for regular dependency updates and we won't be enabling other github apps on this repo. |
Could be related. kubernetes/org#5126 Need to spend a bit more time on that one to understand current permissions and security concerns if any |
So renovate as integration is not allowed at the moment
The github action job seems like no restrictions, but still digging |
Signed-off-by: ivan katliarchuk <ivan.katliarchuk@gmail.com>
* master: (198 commits) fix(aws-sd): service instances registration and deregistration (kubernetes-sigs#5135) chore(docs): generate docs/monitoring/metrics.md file (kubernetes-sigs#5117) feat(chart): add helm-unittest framework (kubernetes-sigs#5137) feat(chart): add helm-unittest framework feat(aws): always create AAAA alias records in route53 (kubernetes-sigs#5111) feat(aws): fetch zones with tags batching (kubernetes-sigs#5058) docs: openwrt webhook (kubernetes-sigs#5132) docs(proposal): ipv6 internal node ip rollback plan (kubernetes-sigs#5081) docs(proposal): update date format chore(deps): bump the dev-dependencies group across 1 directory with 7 updates Update README.md with proper link to dev guide Add OpenStack Designate webook provider to readme chore(deps): bump the dev-dependencies group with 3 updates chore(deps): bump the dev-dependencies group with 20 updates chore(deps): bump azure/setup-helm in the dev-dependencies group style: formatting fix: remove broken test fix test name chore: upgrade ExternalDNS to go 1.24 chore-makefile-coverage ...
Signed-off-by: ivan katliarchuk <ivan.katliarchuk@gmail.com>
[APPROVALNOTIFIER] This PR is NOT APPROVED This pull-request has been approved by: The full list of commands accepted by this bot can be found here.
Needs approval from an approver in each of these files:
Approvers can indicate their approval by writing |
Hi @Raffo wdyt? I found no evidences that GitHub Actions are not allowed. |
Example pull-request ik-workshop#39 |
With renovate we only do custom regexes and pre-commit, as it's not supported. So only features that not yet supported by dependabot dependabot/dependabot-core#1524, it's not a replacement of dependabot |
Signed-off-by: ivan katliarchuk <ivan.katliarchuk@gmail.com>
Signed-off-by: ivan katliarchuk <ivan.katliarchuk@gmail.com>
Description
Fixes #4973
Result on forked repo https://github.com/ik-workshop/external-dns-fork-renovate-bootstrap/pull/24/files
How to onboard
I'll share config how to onboard. Onboarding very similar to Dependabot as well.
Go to Github App
Allow Renovate to access required repo. No credentials required
Trust Renovate App
You can access UI as well
Check the logs of a recent job
Regex used in config
Checklist