Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
5 changes: 5 additions & 0 deletions README.md
Original file line number Diff line number Diff line change
Expand Up @@ -417,6 +417,11 @@ This profile:
- Sets `DEV_K8S=true` to enable Platformatic DB service file watching
- Uses the same base image (`node:22.20.0-alpine`) as production for native module compatibility
- Enables ICC skew protection, so `desk deploy` creates a separate versioned workload for every deploy (see [`deploy`](#deploy))
- Adds a development-only "Log in as" to the ICC login page, next to GitHub,
to test teams and permissions with several users: log in with GitHub as the
super-admin (an email in `GITHUB_OAUTH_VALID_EMAILS`), invite test accounts
in Settings > Users, then use "Log in as" with their emails. It bypasses
authentication, so it is for local clusters only

When code changes are made in the local repositories, the services will automatically reload.

Expand Down
2 changes: 1 addition & 1 deletion charts/v4/config.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -24,7 +24,7 @@ cluster:
dependencies:
platformatic/helm:
location: 'oci://ghcr.io/platformatic/helm'
version: '4.3.0'
version: '4.4.0'
releaseName: 'platformatic'
namespace: 'platformatic'

Expand Down
13 changes: 13 additions & 0 deletions profiles/development.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -62,6 +62,8 @@ platformatic:
default_routing_mode: query # query | cookie; per-app override in ICC settings
icc_jobs:
enable: true
invite_users:
enable: true # "Invite users" in Settings > Users (chart > 4.3.0)

login_methods:
google:
Expand All @@ -74,6 +76,17 @@ platformatic:
client_id: "{{ GITHUB_OAUTH_CLIENT_ID }}"
client_secret: "{{ GITHUB_OAUTH_CLIENT_SECRET }}"
valid_emails: "{{ GITHUB_OAUTH_VALID_EMAILS }}"
# Development-only "Log in as" on the login page: signs in as any
# existing account by email, to test teams and permissions with
# several users. Adds `dev` to VITE_SUPPORTED_LOGINS.
dev:
enable: true

env:
# Turns on the gateway route behind "Log in as" (GET /api/login/dev).
# It bypasses authentication: local clusters only.
- name: PLT_DEV_LOGIN_AS
value: "true"

log_level: info

Expand Down
8 changes: 7 additions & 1 deletion schemas/v4/profile.js
Original file line number Diff line number Diff line change
Expand Up @@ -76,7 +76,13 @@ const IccSpecificSchema = Type.Object({
client_secret: Type.Optional(Type.String()),
valid_emails: Type.Optional(Type.String())
}))),
secrets: Type.Optional(Type.Record(Type.String(), Type.String()))
secrets: Type.Optional(Type.Record(Type.String(), Type.String())),
// Extra environment variables for the ICC container, appended by the
// chart after its own. Declared here because parsing drops unknown keys.
env: Type.Optional(Type.Array(Type.Object({
name: Type.String(),
value: Type.String()
})))
})

const ImagePullSecretSchema = Type.Object({
Expand Down
5 changes: 4 additions & 1 deletion tests/profile-schema.test.js
Original file line number Diff line number Diff line change
Expand Up @@ -68,7 +68,10 @@ test('parse a full v4 profile', async t => {
},
secrets: {
icc_session: 'aaaaaaaaaaaaaaaaaaaaaaaa'
}
},
env: [
{ name: 'PLT_DEV_LOGIN_AS', value: 'true' }
]
},

machinist: {
Expand Down