Skip to content

Conversation

@mohitrajain
Copy link
Contributor

@mohitrajain mohitrajain commented Dec 31, 2025

Summary of changes :

  • Adding awiab-staging documetation to wire-server-deploy and fix coturn port ranges
  • small change for bin/offline-vm-setup.sh

This ticket is part of cascading PRs:
#852 - clean old wiab staging script and workflows
#853 - Testing wiab-staging solution for wire-server-5.14

No labels:
The changes in the PR will be verified in #853

Change type

  • Fix
  • Feature
  • Documentation
  • Security / Upgrade

Basic information

  • THIS CHANGE REQUIRES A DEPLOYMENT PACKAGE RELEASE
  • THIS CHANGE REQUIRES A WIRE-DOCS RELEASE

Testing

  • I ran/applied the changes myself, in a test environment.
  • The CI job attached to this repo will test it for me.

Offline Build CI (label-based)

Add one or more labels to trigger offline builds:

  • build-default - Full production build (ansible, terraform, all packages)
  • build-demo - Demo/WIAB build
  • build-min - Minimal build (fastest, essential charts only)
  • build-all - Run all three builds

Note: No builds run by default. Add a label to trigger CI.

Tracking

  • I added a new entry in an appropriate subdirectory of changelog.d
  • I mentioned this PR in Jira, OR I mentioned the Jira ticket in this PR.
  • I mentioned this PR in one of the issues attached to one of our repositories.

Knowledge Transfer

  • An Asciinema session is attached to the Jira ticket.

Motivation

Objective

Reason

Use case

@mohitrajain mohitrajain requested review from a team and julialongtin as code owners December 31, 2025 17:18
@mohitrajain mohitrajain changed the title Wpb 21356 7 docs wiab staging wpb-22439 7 docs wiab staging Jan 5, 2026
@mohitrajain mohitrajain force-pushed the wpb-21356-6-github-workflow-wiab-staging branch from 594b922 to 28b9f70 Compare January 7, 2026 18:54
@mohitrajain mohitrajain force-pushed the wpb-21356-7-docs-wiab-staging branch 2 times, most recently from ea69e50 to 6dea77e Compare January 9, 2026 10:37
@mohitrajain mohitrajain force-pushed the wpb-21356-6-github-workflow-wiab-staging branch from 7b39bdd to 9e1ee11 Compare January 9, 2026 14:07
@mohitrajain mohitrajain force-pushed the wpb-21356-7-docs-wiab-staging branch from 6dea77e to be20a6c Compare January 9, 2026 14:10
@mohitrajain mohitrajain force-pushed the wpb-21356-6-github-workflow-wiab-staging branch 2 times, most recently from 21281f9 to a9032df Compare January 12, 2026 16:29
@mohitrajain mohitrajain force-pushed the wpb-21356-7-docs-wiab-staging branch from be20a6c to 6ded955 Compare January 12, 2026 16:29
@mohitrajain mohitrajain force-pushed the wpb-21356-6-github-workflow-wiab-staging branch from a9032df to 7f9ddf0 Compare January 19, 2026 17:12
@mohitrajain mohitrajain force-pushed the wpb-21356-7-docs-wiab-staging branch 2 times, most recently from 668a27c to 7c8f95f Compare January 19, 2026 17:46
Added: terraform resources for wiab-staging
Added: cd_staging script to verify the default build bundle
Changed: changed the flow of offline.yml - introduced wiab-staging build and split bundle processing with default-build
Added: wiab-staging documetation to wire-server-deploy and fix coturn port ranges
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

typo

- One physical machine with hypervisor support:
- **Memory:** 55 GiB RAM
- **Compute:** 29 vCPUs
- **Storage:** 550 GB disk space (thin-provisioned)
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

inconsistent requirements #1

| assethost | Asset/Storage Server | 4 GiB | 2 | 100 GB |
| kubenode1 | Kubernetes Node 1 | 9 GiB | 5 | 150 GB |
| kubenode2 | Kubernetes Node 2 | 9 GiB | 5 | 150 GB |
| kubenode3 | Kubernetes Node 3 | 9 GiB | 5 | 150 GB |
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

inconsistent requirements #2

- Source the `bin/offline-env.sh` shell script to set up a `d` alias that runs commands inside a Docker container with all necessary tools for offline deployment.

- **[Generating secrets](docs_ubuntu_22.04.md#generating-secrets)**
- Run `./bin/offline-secrets.sh` to generate fresh secrets for Minio and coturn services. This creates two secret files: `ansible/inventory/group_vars/all/secrets.yaml` and `values/wire-server/secrets.yaml`.
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

values/wire-server/secrets.yaml does not get generated anymore, now its prod-secrets.example.yaml, which also brings the question, why ?

Copy link
Contributor Author

@mohitrajain mohitrajain Jan 28, 2026

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

#858 - it is generated here and this PR came post creating this documentation, and the idea is to create a copy first from prod-secrets.example.yaml to secrets.yaml for each chart and make changes directly to this secrets.yaml and values.yaml, so that an admin can understand what changes has been done by our scripts. As of now, the changes are going to prod-secrets.example.yaml in #858 I will patch it to make offline-secrets run post creating the copies.

- **Deploying Helm charts**
- **[Deploying stateless services and other dependencies](docs_ubuntu_22.04.md#deploying-stateless-dependencies)**
- Deploy cassandra-external, elasticsearch-external, minio-external, and databases-ephemeral helm charts to set up connections to external data services and stateless database dependencies.

Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

you are missing rabbitmq here, which causes the deployment to fail

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

rabbitmq is coming from the helm chart, In the recent failure, i was trying to enable it again. As of this PR, rabbitmq is getting deployed using helm chart.
https://github.com/wireapp/wire-server-deploy/blob/master/bin/offline-cluster.sh#L55


- **Deploying Helm charts**
- **[Deploying stateless services and other dependencies](docs_ubuntu_22.04.md#deploying-stateless-dependencies)**
- Deploy cassandra-external, elasticsearch-external, minio-external, and databases-ephemeral helm charts to set up connections to external data services and stateless database dependencies.
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

reaper does not deploy

Failed to pull image "docker.io/bitnamilegacy/kubectl:1.32.9": rpc error: code = NotFound desc = failed to pull and unpack image "docker.io/bitnamilegacy/kubectl:1.32.9": failed to resolve reference "docker.io/bitnamilegacy/kubectl:1.32.9": docker.io/bitnamilegacy/kubectl:1.32.9: not found

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Where is it happening, can you please share the run?

### Network & Security

- **[Enabling emails for wire](smtp.md)**
- Configure SMTP for user onboarding via email. Deploy either a temporary SMTP service included in the bundle or integrate with your existing SMTP relay, and ensure proper network configuration for email delivery.
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

you can remove this, I dont see why anybody would be bothering with setting up DKIM for a test environment

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

smtp can be deployed without setting up DKIM and we would need some kind of mail service to enable user creation and testing

Copy link
Contributor

@Veki301 Veki301 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

documentation incomplete

@@ -0,0 +1,220 @@
# Scope

Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

documentation is incomplete, as we have discussed in our meeting

@mohitrajain mohitrajain force-pushed the wpb-21356-6-github-workflow-wiab-staging branch from d11d557 to d56c938 Compare January 29, 2026 17:25
@mohitrajain mohitrajain force-pushed the wpb-21356-7-docs-wiab-staging branch from 7c8f95f to a9e1137 Compare January 29, 2026 17:45
@mohitrajain mohitrajain force-pushed the wpb-21356-6-github-workflow-wiab-staging branch from fdb2c12 to 0254dc9 Compare January 29, 2026 19:18
@mohitrajain mohitrajain force-pushed the wpb-21356-7-docs-wiab-staging branch 2 times, most recently from 18d8d0c to 6350fce Compare January 29, 2026 19:21
@mohitrajain mohitrajain changed the base branch from wpb-21356-6-github-workflow-wiab-staging to wpb-22439-postgresql-repmgr_node_config January 29, 2026 19:22
@mohitrajain mohitrajain force-pushed the wpb-22439-postgresql-repmgr_node_config branch from 31d4a93 to de86aa0 Compare January 30, 2026 09:17
@mohitrajain mohitrajain force-pushed the wpb-21356-7-docs-wiab-staging branch from 6350fce to bddee18 Compare January 30, 2026 09:17
@mohitrajain mohitrajain force-pushed the wpb-22439-postgresql-repmgr_node_config branch from de86aa0 to 425c518 Compare January 30, 2026 10:09
@mohitrajain mohitrajain force-pushed the wpb-21356-7-docs-wiab-staging branch from bddee18 to bafba56 Compare January 30, 2026 10:10
@mohitrajain mohitrajain force-pushed the wpb-22439-postgresql-repmgr_node_config branch from 425c518 to 7728269 Compare January 30, 2026 16:54
@mohitrajain mohitrajain force-pushed the wpb-21356-7-docs-wiab-staging branch from bafba56 to e63a276 Compare January 30, 2026 16:56
@sonarqubecloud
Copy link

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants