Add latest changes from gitlab-org/gitlab@master
This commit is contained in:
parent
38a4098900
commit
58c42f2f45
|
@ -10,6 +10,10 @@ value_type: number
|
||||||
status: active
|
status: active
|
||||||
time_frame: 28d
|
time_frame: 28d
|
||||||
data_source: redis_hll
|
data_source: redis_hll
|
||||||
|
instrumentation_class: RedisHLLMetric
|
||||||
|
options:
|
||||||
|
events:
|
||||||
|
- design_action
|
||||||
distribution:
|
distribution:
|
||||||
- ce
|
- ce
|
||||||
- ee
|
- ee
|
||||||
|
|
|
@ -10,6 +10,10 @@ value_type: number
|
||||||
status: active
|
status: active
|
||||||
time_frame: 28d
|
time_frame: 28d
|
||||||
data_source: redis_hll
|
data_source: redis_hll
|
||||||
|
instrumentation_class: RedisHLLMetric
|
||||||
|
options:
|
||||||
|
events:
|
||||||
|
- wiki_action
|
||||||
distribution:
|
distribution:
|
||||||
- ce
|
- ce
|
||||||
- ee
|
- ee
|
||||||
|
|
|
@ -10,6 +10,10 @@ value_type: number
|
||||||
status: active
|
status: active
|
||||||
time_frame: 28d
|
time_frame: 28d
|
||||||
data_source: redis_hll
|
data_source: redis_hll
|
||||||
|
instrumentation_class: RedisHLLMetric
|
||||||
|
options:
|
||||||
|
events:
|
||||||
|
- project_action
|
||||||
distribution:
|
distribution:
|
||||||
- ce
|
- ce
|
||||||
- ee
|
- ee
|
||||||
|
|
|
@ -10,6 +10,10 @@ value_type: number
|
||||||
status: active
|
status: active
|
||||||
time_frame: 28d
|
time_frame: 28d
|
||||||
data_source: redis_hll
|
data_source: redis_hll
|
||||||
|
instrumentation_class: RedisHLLMetric
|
||||||
|
options:
|
||||||
|
events:
|
||||||
|
- git_write_action
|
||||||
distribution:
|
distribution:
|
||||||
- ce
|
- ce
|
||||||
- ee
|
- ee
|
||||||
|
|
|
@ -179,7 +179,7 @@ These configuration settings are available:
|
||||||
| `allow_username_or_email_login` | If enabled, GitLab ignores everything after the first `@` in the LDAP username submitted by the user on sign-in. If you are using `uid: 'userPrincipalName'` on ActiveDirectory you must disable this setting, because the userPrincipalName contains an `@`. | **{dotted-circle}** No | boolean |
|
| `allow_username_or_email_login` | If enabled, GitLab ignores everything after the first `@` in the LDAP username submitted by the user on sign-in. If you are using `uid: 'userPrincipalName'` on ActiveDirectory you must disable this setting, because the userPrincipalName contains an `@`. | **{dotted-circle}** No | boolean |
|
||||||
| `block_auto_created_users` | To maintain tight control over the number of billable users on your GitLab installation, enable this setting to keep new users blocked until they have been cleared by an administrator (default: false). | **{dotted-circle}** No | boolean |
|
| `block_auto_created_users` | To maintain tight control over the number of billable users on your GitLab installation, enable this setting to keep new users blocked until they have been cleared by an administrator (default: false). | **{dotted-circle}** No | boolean |
|
||||||
| `base` | Base where we can search for users. | **{check-circle}** Yes | `'ou=people,dc=gitlab,dc=example'` or `'DC=mydomain,DC=com'` |
|
| `base` | Base where we can search for users. | **{check-circle}** Yes | `'ou=people,dc=gitlab,dc=example'` or `'DC=mydomain,DC=com'` |
|
||||||
| `user_filter` | Filter LDAP users. Format: [RFC 4515](https://tools.ietf.org/search/rfc4515) Note: GitLab does not support `omniauth-ldap`'s custom filter syntax. | **{dotted-circle}** No | For examples, read [Examples of user filters](#examples-of-user-filters). |
|
| `user_filter` | Filter LDAP users. Format: [RFC 4515](https://www.rfc-editor.org/rfc/rfc4515.html) Note: GitLab does not support `omniauth-ldap`'s custom filter syntax. | **{dotted-circle}** No | For examples, read [Examples of user filters](#examples-of-user-filters). |
|
||||||
| `lowercase_usernames` | If enabled, GitLab converts the name to lower case. | **{dotted-circle}** No | boolean |
|
| `lowercase_usernames` | If enabled, GitLab converts the name to lower case. | **{dotted-circle}** No | boolean |
|
||||||
| `retry_empty_result_with_codes` | An array of LDAP query response code that attempt to retry the operation if the result/content is empty. For Google Secure LDAP, set this value to `[80]`. | **{dotted-circle}** No | `[80]` |
|
| `retry_empty_result_with_codes` | An array of LDAP query response code that attempt to retry the operation if the result/content is empty. For Google Secure LDAP, set this value to `[80]`. | **{dotted-circle}** No | `[80]` |
|
||||||
|
|
||||||
|
@ -281,7 +281,7 @@ This example results in a sign-in page with the following tabs:
|
||||||
|
|
||||||
To limit all GitLab access to a subset of the LDAP users on your LDAP server, first narrow the
|
To limit all GitLab access to a subset of the LDAP users on your LDAP server, first narrow the
|
||||||
configured `base`. However, to further filter users if
|
configured `base`. However, to further filter users if
|
||||||
necessary, you can set up an LDAP user filter. The filter must comply with [RFC 4515](https://tools.ietf.org/search/rfc4515).
|
necessary, you can set up an LDAP user filter. The filter must comply with [RFC 4515](https://www.rfc-editor.org/rfc/rfc4515.html).
|
||||||
|
|
||||||
- Example user filter for Omnibus GitLab instances:
|
- Example user filter for Omnibus GitLab instances:
|
||||||
|
|
||||||
|
@ -336,7 +336,7 @@ The `user_filter` DN can contain special characters. For example:
|
||||||
```
|
```
|
||||||
|
|
||||||
These characters must be escaped as documented in
|
These characters must be escaped as documented in
|
||||||
[RFC 4515](https://tools.ietf.org/search/rfc4515).
|
[RFC 4515](https://www.rfc-editor.org/rfc/rfc4515.html).
|
||||||
|
|
||||||
- Escape commas with `\2C`. For example:
|
- Escape commas with `\2C`. For example:
|
||||||
|
|
||||||
|
|
|
@ -8,7 +8,7 @@ type: reference
|
||||||
# How to set up Consul **(PREMIUM SELF)**
|
# How to set up Consul **(PREMIUM SELF)**
|
||||||
|
|
||||||
A Consul cluster consists of both
|
A Consul cluster consists of both
|
||||||
[server and client agents](https://www.consul.io/docs/agent).
|
[server and client agents](https://developer.hashicorp.com/consul/docs/agent).
|
||||||
The servers run on their own nodes and the clients run on other nodes that in
|
The servers run on their own nodes and the clients run on other nodes that in
|
||||||
turn communicate with the servers.
|
turn communicate with the servers.
|
||||||
|
|
||||||
|
@ -99,7 +99,7 @@ Consul nodes communicate using the raft protocol. If the current leader goes
|
||||||
offline, there must be a leader election. A leader node must exist to facilitate
|
offline, there must be a leader election. A leader node must exist to facilitate
|
||||||
synchronization across the cluster. If too many nodes go offline at the same time,
|
synchronization across the cluster. If too many nodes go offline at the same time,
|
||||||
the cluster loses quorum and doesn't elect a leader due to
|
the cluster loses quorum and doesn't elect a leader due to
|
||||||
[broken consensus](https://www.consul.io/docs/architecture/consensus).
|
[broken consensus](https://developer.hashicorp.com/consul/docs/architecture/consensus).
|
||||||
|
|
||||||
Consult the [troubleshooting section](#troubleshooting-consul) if the cluster is not
|
Consult the [troubleshooting section](#troubleshooting-consul) if the cluster is not
|
||||||
able to recover after the upgrade. The [outage recovery](#outage-recovery) may
|
able to recover after the upgrade. The [outage recovery](#outage-recovery) may
|
||||||
|
@ -148,7 +148,7 @@ you follow the Consul [outage recovery](#outage-recovery) process.
|
||||||
To be safe, it's recommended that you only restart Consul in one node at a time to
|
To be safe, it's recommended that you only restart Consul in one node at a time to
|
||||||
ensure the cluster remains intact. For larger clusters, it is possible to restart
|
ensure the cluster remains intact. For larger clusters, it is possible to restart
|
||||||
multiple nodes at a time. See the
|
multiple nodes at a time. See the
|
||||||
[Consul consensus document](https://www.consul.io/docs/architecture/consensus#deployment-table)
|
[Consul consensus document](https://developer.hashicorp.com/consul/docs/architecture/consensus#deployment-table)
|
||||||
for the number of failures it can tolerate. This is the number of simultaneous
|
for the number of failures it can tolerate. This is the number of simultaneous
|
||||||
restarts it can sustain.
|
restarts it can sustain.
|
||||||
|
|
||||||
|
@ -161,7 +161,7 @@ sudo gitlab-ctl restart consul
|
||||||
### Consul nodes unable to communicate
|
### Consul nodes unable to communicate
|
||||||
|
|
||||||
By default, Consul attempts to
|
By default, Consul attempts to
|
||||||
[bind](https://www.consul.io/docs/agent/config/config-files#bind_addr) to `0.0.0.0`, but
|
[bind](https://developer.hashicorp.com/consul/docs/agent/config/config-files#bind_addr) to `0.0.0.0`, but
|
||||||
it advertises the first private IP address on the node for other Consul nodes
|
it advertises the first private IP address on the node for other Consul nodes
|
||||||
to communicate with it. If the other nodes cannot communicate with a node on
|
to communicate with it. If the other nodes cannot communicate with a node on
|
||||||
this address, then the cluster has a failed status.
|
this address, then the cluster has a failed status.
|
||||||
|
|
|
@ -133,8 +133,8 @@ However, you should **not** reinstate your old data _except_ under one of the fo
|
||||||
If you require access to your old Grafana data but don't meet one of these criteria, you may consider:
|
If you require access to your old Grafana data but don't meet one of these criteria, you may consider:
|
||||||
|
|
||||||
1. Reinstating it temporarily.
|
1. Reinstating it temporarily.
|
||||||
1. [Exporting the dashboards](https://grafana.com/docs/grafana/latest/dashboards/export-import/#exporting-a-dashboard) you need.
|
1. [Exporting the dashboards](https://grafana.com/docs/grafana/latest/dashboards/manage-dashboards/#export-and-import-dashboards) you need.
|
||||||
1. Refreshing the data and [re-importing your dashboards](https://grafana.com/docs/grafana/latest/dashboards/export-import/#import-dashboard).
|
1. Refreshing the data and [re-importing your dashboards](https://grafana.com/docs/grafana/latest/dashboards/manage-dashboards/#export-and-import-dashboards).
|
||||||
|
|
||||||
WARNING:
|
WARNING:
|
||||||
These actions pose a temporary vulnerability while your old Grafana data is in use.
|
These actions pose a temporary vulnerability while your old Grafana data is in use.
|
||||||
|
|
|
@ -70,6 +70,6 @@ over a network which will require, based on implementation, ports `111` and
|
||||||
NOTE:
|
NOTE:
|
||||||
In some cases, the GitLab Registry will be automatically enabled by default. See [our documentation](../packages/container_registry.md) for more details.
|
In some cases, the GitLab Registry will be automatically enabled by default. See [our documentation](../packages/container_registry.md) for more details.
|
||||||
|
|
||||||
[^Consul-notes]: If using additional Consul functionality, more ports may need to be opened. See the [official documentation](https://www.consul.io/docs/install/ports#ports-table) for the list.
|
[^Consul-notes]: If using additional Consul functionality, more ports may need to be opened. See the [official documentation](https://developer.hashicorp.com/consul/docs/install/ports#ports-table) for the list.
|
||||||
|
|
||||||
[^Sidekiq-health]: If Sidekiq health check settings are not set, they will default to the Sidekiq metrics exporter settings. This default is deprecated and is set to be removed in [GitLab 15.0](https://gitlab.com/gitlab-org/gitlab/-/issues/347509).
|
[^Sidekiq-health]: If Sidekiq health check settings are not set, they will default to the Sidekiq metrics exporter settings. This default is deprecated and is set to be removed in [GitLab 15.0](https://gitlab.com/gitlab-org/gitlab/-/issues/347509).
|
||||||
|
|
|
@ -593,7 +593,7 @@ GET /api/v4/projects/1/repository/tags/my%2Ftag
|
||||||
## Request Payload
|
## Request Payload
|
||||||
|
|
||||||
API Requests can use parameters sent as [query strings](https://en.wikipedia.org/wiki/Query_string)
|
API Requests can use parameters sent as [query strings](https://en.wikipedia.org/wiki/Query_string)
|
||||||
or as a [payload body](https://tools.ietf.org/html/draft-ietf-httpbis-p3-payload-14#section-3.2).
|
or as a [payload body](https://datatracker.ietf.org/doc/html/draft-ietf-httpbis-p3-payload-14#section-3.2).
|
||||||
GET requests usually send a query string, while PUT or POST requests usually
|
GET requests usually send a query string, while PUT or POST requests usually
|
||||||
send the payload body:
|
send the payload body:
|
||||||
|
|
||||||
|
|
|
@ -63,7 +63,7 @@ For a list of scopes in GitLab, see [the provider documentation](../integration/
|
||||||
|
|
||||||
### Prevent CSRF attacks
|
### Prevent CSRF attacks
|
||||||
|
|
||||||
To [protect redirect-based flows](https://tools.ietf.org/id/draft-ietf-oauth-security-topics-13.html#rec_redirect),
|
To [protect redirect-based flows](https://datatracker.ietf.org/doc/html/draft-ietf-oauth-security-topics-13#section-3.1),
|
||||||
the OAuth specification recommends the use of "One-time use CSRF tokens carried in the state
|
the OAuth specification recommends the use of "One-time use CSRF tokens carried in the state
|
||||||
parameter, which are securely bound to the user agent", with each request to the
|
parameter, which are securely bound to the user agent", with each request to the
|
||||||
`/oauth/authorize` endpoint. This can prevent
|
`/oauth/authorize` endpoint. This can prevent
|
||||||
|
|
|
@ -138,7 +138,7 @@ For example, you can override the duration of the test with a CLI option:
|
||||||
```
|
```
|
||||||
|
|
||||||
GitLab only displays the key performance metrics in the MR widget if k6's results are saved
|
GitLab only displays the key performance metrics in the MR widget if k6's results are saved
|
||||||
via [summary export](https://k6.io/docs/results-visualization/json#summary-export)
|
via [summary export](https://k6.io/docs/results-output/real-time/json/#summary-export)
|
||||||
as a [Load Performance report artifact](../yaml/artifacts_reports.md#artifactsreportsload_performance).
|
as a [Load Performance report artifact](../yaml/artifacts_reports.md#artifactsreportsload_performance).
|
||||||
The latest Load Performance artifact available is always used, using the
|
The latest Load Performance artifact available is always used, using the
|
||||||
summary values from the test.
|
summary values from the test.
|
||||||
|
|
|
@ -39,12 +39,17 @@ end
|
||||||
|
|
||||||
As an example you might create 5 issues in between counts, which would cause the query count to increase by 5 if an N+1 problem exists.
|
As an example you might create 5 issues in between counts, which would cause the query count to increase by 5 if an N+1 problem exists.
|
||||||
|
|
||||||
In some cases the query count might change slightly between runs for unrelated reasons. In this case you might need to test `exceed_query_limit(control_count + acceptable_change)`, but this should be avoided if possible.
|
In some cases, the query count might change slightly between runs for unrelated reasons. In this case you might need to test `exceed_query_limit(control_count + acceptable_change)`, but this should be avoided if possible.
|
||||||
|
|
||||||
If this test fails, and the control was passed as a `QueryRecorder`, then the
|
If this test fails, and the control was passed as a `QueryRecorder`, then the
|
||||||
failure message indicates where the extra queries are by matching queries on
|
failure message indicates where the extra queries are by matching queries on
|
||||||
the longest common prefix, grouping similar queries together.
|
the longest common prefix, grouping similar queries together.
|
||||||
|
|
||||||
|
In some cases, N+1 specs have been written to include three requests: first one to
|
||||||
|
warm the cache, second one to establish a control, third one to validate that
|
||||||
|
ther are no N+1 queries. Rather than make an extra request to warm the cache, prefer two requests
|
||||||
|
(control and test) and configure your test to ignore [cached queries](#cached-queries) in N+1 specs.
|
||||||
|
|
||||||
## Cached queries
|
## Cached queries
|
||||||
|
|
||||||
By default, QueryRecorder ignores [cached queries](../merge_request_performance_guidelines.md#cached-queries) in the count. However, it may be better to count
|
By default, QueryRecorder ignores [cached queries](../merge_request_performance_guidelines.md#cached-queries) in the count. However, it may be better to count
|
||||||
|
@ -62,7 +67,7 @@ end
|
||||||
|
|
||||||
## Use request specs instead of controller specs
|
## Use request specs instead of controller specs
|
||||||
|
|
||||||
Use a [request spec](https://gitlab.com/gitlab-org/gitlab-foss/tree/master/spec/requests) when writing a N+1 test on the controller level.
|
Use a [request spec](https://gitlab.com/gitlab-org/gitlab/-/tree/master/spec/requests) when writing a N+1 test on the controller level.
|
||||||
|
|
||||||
Controller specs should not be used to write N+1 tests as the controller is only initialized once per example.
|
Controller specs should not be used to write N+1 tests as the controller is only initialized once per example.
|
||||||
This could lead to false successes where subsequent "requests" could have queries reduced (for example, because of memoization).
|
This could lead to false successes where subsequent "requests" could have queries reduced (for example, because of memoization).
|
||||||
|
|
|
@ -176,7 +176,7 @@ To check if any warnings are produced by your changes, run `yarn lint:stylelint`
|
||||||
catch any warnings.
|
catch any warnings.
|
||||||
|
|
||||||
If the Rake task is throwing warnings you don't understand, SCSS Lint's
|
If the Rake task is throwing warnings you don't understand, SCSS Lint's
|
||||||
documentation includes [a full list of their rules](https://stylelint.io/user-guide/rules/list/).
|
documentation includes [a full list of their rules](https://stylelint.io/user-guide/rules/).
|
||||||
|
|
||||||
### Fixing issues
|
### Fixing issues
|
||||||
|
|
||||||
|
|
|
@ -16,7 +16,7 @@ To turn on/off features behind feature flags in any of the
|
||||||
GitLab-provided environments, like staging and production, you need to
|
GitLab-provided environments, like staging and production, you need to
|
||||||
have access to the [ChatOps](../chatops_on_gitlabcom.md) bot. The ChatOps bot
|
have access to the [ChatOps](../chatops_on_gitlabcom.md) bot. The ChatOps bot
|
||||||
is currently running on the ops instance, which is different from
|
is currently running on the ops instance, which is different from
|
||||||
[GitLab.com](https://gitlab.com) or [`dev.gitlab.org`](https://dev.gitlab.org).
|
[GitLab.com](https://gitlab.com) or `dev.gitlab.org`.
|
||||||
|
|
||||||
Follow the ChatOps document to [request access](../chatops_on_gitlabcom.md#requesting-access).
|
Follow the ChatOps document to [request access](../chatops_on_gitlabcom.md#requesting-access).
|
||||||
|
|
||||||
|
@ -55,8 +55,8 @@ change feature flags or you do not have access.
|
||||||
### Enabling a feature for pre-production testing
|
### Enabling a feature for pre-production testing
|
||||||
|
|
||||||
As a first step in a feature rollout, you should enable the feature on
|
As a first step in a feature rollout, you should enable the feature on
|
||||||
[`staging.gitlab.com`](https://staging.gitlab.com)
|
`staging.gitlab.com`
|
||||||
and [`dev.gitlab.org`](https://dev.gitlab.org).
|
and `dev.gitlab.org`.
|
||||||
|
|
||||||
These two environments have different scopes.
|
These two environments have different scopes.
|
||||||
`dev.gitlab.org` is a production CE environment that has internal GitLab Inc.
|
`dev.gitlab.org` is a production CE environment that has internal GitLab Inc.
|
||||||
|
|
|
@ -435,7 +435,7 @@ For example, the following feature flags are enabled for a certain percentage of
|
||||||
|
|
||||||
If a project A has `:feature-set-1` enabled, there is no guarantee that project A also has `:feature-set-2` enabled.
|
If a project A has `:feature-set-1` enabled, there is no guarantee that project A also has `:feature-set-2` enabled.
|
||||||
|
|
||||||
For more detail, see [This is how percentages work in Flipper](https://www.hackwithpassion.com/this-is-how-percentages-work-in-flipper).
|
For more detail, see [This is how percentages work in Flipper](https://www.hackwithpassion.com/this-is-how-percentages-work-in-flipper/).
|
||||||
|
|
||||||
#### Use actors for verifying in production
|
#### Use actors for verifying in production
|
||||||
|
|
||||||
|
|
|
@ -856,7 +856,7 @@ Working with archive files like `zip`, `tar`, `jar`, `war`, `cpio`, `apk`, `rar`
|
||||||
|
|
||||||
### Zip Slip
|
### Zip Slip
|
||||||
|
|
||||||
In 2018, the security company Snyk [released a blog post](https://snyk.io/research/zip-slip-vulnerability) describing research into a widespread and critical vulnerability present in many libraries and applications which allows an attacker to overwrite arbitrary files on the server file system which, in many cases, can be leveraged to achieve remote code execution. The vulnerability was dubbed Zip Slip.
|
In 2018, the security company Snyk [released a blog post](https://security.snyk.io/research/zip-slip-vulnerability) describing research into a widespread and critical vulnerability present in many libraries and applications which allows an attacker to overwrite arbitrary files on the server file system which, in many cases, can be leveraged to achieve remote code execution. The vulnerability was dubbed Zip Slip.
|
||||||
|
|
||||||
A Zip Slip vulnerability happens when an application extracts an archive without validating and sanitizing the filenames inside the archive for directory traversal sequences that change the file location when the file is extracted.
|
A Zip Slip vulnerability happens when an application extracts an archive without validating and sanitizing the filenames inside the archive for directory traversal sequences that change the file location when the file is extracted.
|
||||||
|
|
||||||
|
|
|
@ -266,7 +266,7 @@ Arguments:
|
||||||
|
|
||||||
#### Ordinary Redis counters
|
#### Ordinary Redis counters
|
||||||
|
|
||||||
Example of implementation: [`Gitlab::UsageDataCounters::WikiPageCounter`](https://gitlab.com/gitlab-org/gitlab/-/blob/master/lib/gitlab/usage_data_counters/wiki_page_counter.rb), using Redis methods [`INCR`](https://redis.io/commands/incr) and [`GET`](https://redis.io/commands/get).
|
Example of implementation: [`Gitlab::UsageDataCounters::WikiPageCounter`](https://gitlab.com/gitlab-org/gitlab/-/blob/master/lib/gitlab/usage_data_counters/wiki_page_counter.rb), using Redis methods [`INCR`](https://redis.io/commands/incr/) and [`GET`](https://redis.io/commands/get/).
|
||||||
|
|
||||||
Events are handled by counter classes in the `Gitlab::UsageDataCounters` namespace, inheriting from `BaseCounter`, that are either:
|
Events are handled by counter classes in the `Gitlab::UsageDataCounters` namespace, inheriting from `BaseCounter`, that are either:
|
||||||
|
|
||||||
|
|
|
@ -186,7 +186,7 @@ LIMIT 100
|
||||||
|
|
||||||
### Web-specific parameters
|
### Web-specific parameters
|
||||||
|
|
||||||
Snowplow JavaScript adds [web-specific parameters](https://docs.snowplowanalytics.com/docs/collecting-data/collecting-from-own-applications/snowplow-tracker-protocol/#Web-specific_parameters) to all web events by default.
|
Snowplow JavaScript adds [web-specific parameters](https://docs.snowplow.io/docs/collecting-data/collecting-from-own-applications/snowplow-tracker-protocol/#Web-specific_parameters) to all web events by default.
|
||||||
|
|
||||||
## Related topics
|
## Related topics
|
||||||
|
|
||||||
|
|
|
@ -43,7 +43,7 @@ All metrics recorded in the GitLab production system have
|
||||||
[one-year retention](https://gitlab.com/gitlab-cookbooks/gitlab-prometheus/-/blob/31526b03fef823e2f9b3cda7c75dcd28a12418a3/attributes/prometheus.rb#L40).
|
[one-year retention](https://gitlab.com/gitlab-cookbooks/gitlab-prometheus/-/blob/31526b03fef823e2f9b3cda7c75dcd28a12418a3/attributes/prometheus.rb#L40).
|
||||||
|
|
||||||
You can also zoom in and filter the time range directly on a graph. For more information, see the
|
You can also zoom in and filter the time range directly on a graph. For more information, see the
|
||||||
[Grafana Time Range Controls](https://grafana.com/docs/grafana/latest/dashboards/time-range-controls/)
|
[Grafana Time Range Controls](https://grafana.com/docs/grafana/latest/dashboards/use-dashboards/#set-dashboard-time-range)
|
||||||
documentation.
|
documentation.
|
||||||
|
|
||||||
## Filters and annotations
|
## Filters and annotations
|
||||||
|
@ -51,7 +51,7 @@ documentation.
|
||||||
On each dashboard, there are two filters and some annotation switches on the top of the page.
|
On each dashboard, there are two filters and some annotation switches on the top of the page.
|
||||||
|
|
||||||
Some special events are meaningful to development and operational activities.
|
Some special events are meaningful to development and operational activities.
|
||||||
[Grafana annotations](https://grafana.com/docs/grafana/latest/dashboards/annotations/) mark them
|
[Grafana annotations](https://grafana.com/docs/grafana/latest/dashboards/build-dashboards/annotate-visualizations/) mark them
|
||||||
directly on the graphs.
|
directly on the graphs.
|
||||||
|
|
||||||
![Filters and annotations](img/stage_group_dashboards_filters.png)
|
![Filters and annotations](img/stage_group_dashboards_filters.png)
|
||||||
|
|
|
@ -44,7 +44,7 @@ With the Gitpod integration enabled for your GitLab instance, to enable it for y
|
||||||
|
|
||||||
For GitLab self-managed instances, a GitLab administrator needs to:
|
For GitLab self-managed instances, a GitLab administrator needs to:
|
||||||
|
|
||||||
1. Set up a Gitpod instance to integrate with GitLab. Refer to the [Gitpod documentation](https://www.gitpod.io/docs/self-hosted/latest)
|
1. Set up a Gitpod instance to integrate with GitLab. Refer to the [Gitpod documentation](https://www.gitpod.io/docs/configure/self-hosted/latest)
|
||||||
to get your instance up and running.
|
to get your instance up and running.
|
||||||
1. Enable it in GitLab:
|
1. Enable it in GitLab:
|
||||||
1. On the top bar, select **Main menu > Admin**.
|
1. On the top bar, select **Main menu > Admin**.
|
||||||
|
|
|
@ -59,7 +59,7 @@ encrypt plan output or modify the project visibility settings.
|
||||||
To configure GitLab CI/CD as a backend:
|
To configure GitLab CI/CD as a backend:
|
||||||
|
|
||||||
1. In your Terraform project, in a `.tf` file like `backend.tf`,
|
1. In your Terraform project, in a `.tf` file like `backend.tf`,
|
||||||
define the [HTTP backend](https://www.terraform.io/docs/language/settings/backends/http.html):
|
define the [HTTP backend](https://developer.hashicorp.com/terraform/language/settings/backends/http):
|
||||||
|
|
||||||
```hcl
|
```hcl
|
||||||
terraform {
|
terraform {
|
||||||
|
|
|
@ -27,7 +27,7 @@ The following table illustrates the main differences between ClearCase and Git:
|
||||||
| Server | UNIX, Windows legacy systems | UNIX, macOS |
|
| Server | UNIX, Windows legacy systems | UNIX, macOS |
|
||||||
| License | Proprietary | GPL |
|
| License | Proprietary | GPL |
|
||||||
|
|
||||||
_Taken from the slides [ClearCase and the journey to Git](https://docplayer.net/42708453-Clearcase-the-journey-to-git-migrating-your-skills-and-vobs-to-git.html) provided by [collab.net](https://www.collab.net/)_
|
_Taken from the slides [ClearCase and the journey to Git](https://docplayer.net/42708453-Clearcase-the-journey-to-git-migrating-your-skills-and-vobs-to-git.html) provided by `collab.net`_
|
||||||
|
|
||||||
## Why migrate
|
## Why migrate
|
||||||
|
|
||||||
|
|
|
@ -116,7 +116,7 @@ GitLab Pages supports only static sites.
|
||||||
```
|
```
|
||||||
|
|
||||||
1. Configure your Nuxt.js application for
|
1. Configure your Nuxt.js application for
|
||||||
[Static Site Generation](https://nuxtjs.org/docs/features/deployment-targets#static-hosting).
|
[Static Site Generation](https://nuxtjs.org/docs/features/deployment-targets/#static-hosting).
|
||||||
|
|
||||||
### Vite
|
### Vite
|
||||||
|
|
||||||
|
|
|
@ -621,10 +621,15 @@ module Gitlab
|
||||||
end
|
end
|
||||||
|
|
||||||
def action_monthly_active_users(time_period)
|
def action_monthly_active_users(time_period)
|
||||||
|
counter = Gitlab::UsageDataCounters::EditorUniqueCounter
|
||||||
date_range = { date_from: time_period[:created_at].first, date_to: time_period[:created_at].last }
|
date_range = { date_from: time_period[:created_at].first, date_to: time_period[:created_at].last }
|
||||||
|
|
||||||
event_monthly_active_users(date_range)
|
{
|
||||||
.merge!(ide_monthly_active_users(date_range))
|
action_monthly_active_users_web_ide_edit: redis_usage_data { counter.count_web_ide_edit_actions(**date_range) },
|
||||||
|
action_monthly_active_users_sfe_edit: redis_usage_data { counter.count_sfe_edit_actions(**date_range) },
|
||||||
|
action_monthly_active_users_snippet_editor_edit: redis_usage_data { counter.count_snippet_editor_edit_actions(**date_range) },
|
||||||
|
action_monthly_active_users_ide_edit: redis_usage_data { counter.count_edit_using_editor(**date_range) }
|
||||||
|
}
|
||||||
end
|
end
|
||||||
|
|
||||||
def with_duration
|
def with_duration
|
||||||
|
@ -682,30 +687,6 @@ module Gitlab
|
||||||
end
|
end
|
||||||
end
|
end
|
||||||
|
|
||||||
def event_monthly_active_users(date_range)
|
|
||||||
data = {
|
|
||||||
action_monthly_active_users_project_repo: Gitlab::UsageDataCounters::TrackUniqueEvents::PUSH_ACTION,
|
|
||||||
action_monthly_active_users_design_management: Gitlab::UsageDataCounters::TrackUniqueEvents::DESIGN_ACTION,
|
|
||||||
action_monthly_active_users_wiki_repo: Gitlab::UsageDataCounters::TrackUniqueEvents::WIKI_ACTION,
|
|
||||||
action_monthly_active_users_git_write: Gitlab::UsageDataCounters::TrackUniqueEvents::GIT_WRITE_ACTION
|
|
||||||
}
|
|
||||||
|
|
||||||
data.each do |key, event|
|
|
||||||
data[key] = redis_usage_data { Gitlab::UsageDataCounters::TrackUniqueEvents.count_unique_events(event_action: event, **date_range) }
|
|
||||||
end
|
|
||||||
end
|
|
||||||
|
|
||||||
def ide_monthly_active_users(date_range)
|
|
||||||
counter = Gitlab::UsageDataCounters::EditorUniqueCounter
|
|
||||||
|
|
||||||
{
|
|
||||||
action_monthly_active_users_web_ide_edit: redis_usage_data { counter.count_web_ide_edit_actions(**date_range) },
|
|
||||||
action_monthly_active_users_sfe_edit: redis_usage_data { counter.count_sfe_edit_actions(**date_range) },
|
|
||||||
action_monthly_active_users_snippet_editor_edit: redis_usage_data { counter.count_snippet_editor_edit_actions(**date_range) },
|
|
||||||
action_monthly_active_users_ide_edit: redis_usage_data { counter.count_edit_using_editor(**date_range) }
|
|
||||||
}
|
|
||||||
end
|
|
||||||
|
|
||||||
def distinct_count_service_desk_enabled_projects(time_period)
|
def distinct_count_service_desk_enabled_projects(time_period)
|
||||||
project_creator_id_start = minimum_id(User)
|
project_creator_id_start = minimum_id(User)
|
||||||
project_creator_id_finish = maximum_id(User)
|
project_creator_id_finish = maximum_id(User)
|
||||||
|
|
|
@ -1,14 +1,44 @@
|
||||||
# frozen_string_literal: true
|
# frozen_string_literal: true
|
||||||
|
|
||||||
module QA
|
module QA
|
||||||
# https://github.com/gitlab-qa-github/import-test <- project under test
|
# Spec uses real github.com, which means outage of github.com can actually block deployment
|
||||||
|
# Keep spec in reliable bucket but don't run in blocking pipelines
|
||||||
#
|
#
|
||||||
RSpec.describe 'Manage', product_group: :import do
|
# https://github.com/gitlab-qa-github/import-test <- project under test
|
||||||
describe 'GitHub import', :reliable do
|
RSpec.describe 'Manage', :github, :reliable, :skip_live_env, :requires_admin, product_group: :import do
|
||||||
include_context 'with github import'
|
describe 'Project import', issue: 'https://gitlab.com/gitlab-org/gitlab/-/issues/353583' do
|
||||||
|
let!(:api_client) { Runtime::API::Client.as_admin }
|
||||||
|
let!(:group) { Resource::Group.fabricate_via_api! { |resource| resource.api_client = api_client } }
|
||||||
|
let!(:user) do
|
||||||
|
Resource::User.fabricate_via_api! do |resource|
|
||||||
|
resource.api_client = api_client
|
||||||
|
resource.hard_delete_on_api_removal = true
|
||||||
|
end
|
||||||
|
end
|
||||||
|
|
||||||
context 'when imported via api' do
|
let!(:user_api_client) { Runtime::API::Client.new(user: user) }
|
||||||
it 'imports project', testcase: 'https://gitlab.com/gitlab-org/gitlab/-/quality/test_cases/347670' do
|
|
||||||
|
let(:imported_project) do
|
||||||
|
Resource::ProjectImportedFromGithub.fabricate_via_api! do |project|
|
||||||
|
project.name = 'imported-project'
|
||||||
|
project.group = group
|
||||||
|
project.github_personal_access_token = Runtime::Env.github_access_token
|
||||||
|
project.github_repository_path = 'gitlab-qa-github/import-test'
|
||||||
|
project.api_client = user_api_client
|
||||||
|
project.issue_events_import = true
|
||||||
|
project.full_notes_import = true
|
||||||
|
end
|
||||||
|
end
|
||||||
|
|
||||||
|
before do
|
||||||
|
group.add_member(user, Resource::Members::AccessLevel::MAINTAINER)
|
||||||
|
end
|
||||||
|
|
||||||
|
after do
|
||||||
|
user.remove_via_api!
|
||||||
|
end
|
||||||
|
|
||||||
|
it 'imports Github repo via api', testcase: 'https://gitlab.com/gitlab-org/gitlab/-/quality/test_cases/347670' do
|
||||||
imported_project.reload! # import the project
|
imported_project.reload! # import the project
|
||||||
|
|
||||||
expect { imported_project.project_import_status[:import_status] }.to eventually_eq('finished')
|
expect { imported_project.project_import_status[:import_status] }.to eventually_eq('finished')
|
||||||
|
@ -60,6 +90,10 @@ module QA
|
||||||
# code_owner_approval_required: true
|
# code_owner_approval_required: true
|
||||||
}
|
}
|
||||||
)
|
)
|
||||||
|
|
||||||
|
# GitHub branch protection rule "Require signed commits" is mapped to the
|
||||||
|
# "Reject unsigned commits" push rule
|
||||||
|
expect(imported_project.push_rules[:reject_unsigned_commits]).to be_truthy
|
||||||
end
|
end
|
||||||
|
|
||||||
def verify_commits_import
|
def verify_commits_import
|
||||||
|
@ -191,5 +225,4 @@ module QA
|
||||||
end
|
end
|
||||||
end
|
end
|
||||||
end
|
end
|
||||||
end
|
|
||||||
end
|
end
|
||||||
|
|
|
@ -4,8 +4,7 @@ module QA
|
||||||
# Spec uses real github.com, which means outage of github can actually block deployment
|
# Spec uses real github.com, which means outage of github can actually block deployment
|
||||||
# Keep spec in reliable bucket but don't run in blocking pipelines
|
# Keep spec in reliable bucket but don't run in blocking pipelines
|
||||||
RSpec.describe 'Manage', :github, :reliable, :skip_live_env, :requires_admin, product_group: :import do
|
RSpec.describe 'Manage', :github, :reliable, :skip_live_env, :requires_admin, product_group: :import do
|
||||||
describe 'GitHub import' do
|
describe 'Project import' do
|
||||||
context 'when imported via UI' do
|
|
||||||
let(:github_repo) { 'gitlab-qa-github/import-test' }
|
let(:github_repo) { 'gitlab-qa-github/import-test' }
|
||||||
let(:api_client) { Runtime::API::Client.as_admin }
|
let(:api_client) { Runtime::API::Client.as_admin }
|
||||||
let(:group) { Resource::Group.fabricate_via_api! { |resource| resource.api_client = api_client } }
|
let(:group) { Resource::Group.fabricate_via_api! { |resource| resource.api_client = api_client } }
|
||||||
|
@ -53,7 +52,7 @@ module QA
|
||||||
user.remove_via_api!
|
user.remove_via_api!
|
||||||
end
|
end
|
||||||
|
|
||||||
it 'imports a project', testcase: 'https://gitlab.com/gitlab-org/gitlab/-/quality/test_cases/347877' do
|
it 'imports a GitHub repo', testcase: 'https://gitlab.com/gitlab-org/gitlab/-/quality/test_cases/347877' do
|
||||||
Page::Project::Import::Github.perform do |import_page|
|
Page::Project::Import::Github.perform do |import_page|
|
||||||
import_page.add_personal_access_token(Runtime::Env.github_access_token)
|
import_page.add_personal_access_token(Runtime::Env.github_access_token)
|
||||||
|
|
||||||
|
@ -90,5 +89,4 @@ module QA
|
||||||
end
|
end
|
||||||
end
|
end
|
||||||
end
|
end
|
||||||
end
|
|
||||||
end
|
end
|
||||||
|
|
|
@ -1,43 +0,0 @@
|
||||||
# frozen_string_literal: true
|
|
||||||
|
|
||||||
module QA
|
|
||||||
RSpec.shared_context "with github import", :github, :skip_live_env, :requires_admin do
|
|
||||||
let!(:api_client) { Runtime::API::Client.as_admin }
|
|
||||||
|
|
||||||
let!(:group) do
|
|
||||||
Resource::Group.fabricate_via_api! do |resource|
|
|
||||||
resource.api_client = api_client
|
|
||||||
resource.path = "destination-group-for-import-#{SecureRandom.hex(4)}"
|
|
||||||
end
|
|
||||||
end
|
|
||||||
|
|
||||||
let!(:user) do
|
|
||||||
Resource::User.fabricate_via_api! do |resource|
|
|
||||||
resource.api_client = api_client
|
|
||||||
resource.hard_delete_on_api_removal = true
|
|
||||||
end
|
|
||||||
end
|
|
||||||
|
|
||||||
let!(:user_api_client) { Runtime::API::Client.new(user: user) }
|
|
||||||
|
|
||||||
let(:imported_project) do
|
|
||||||
Resource::ProjectImportedFromGithub.fabricate_via_api! do |project|
|
|
||||||
project.name = 'imported-project'
|
|
||||||
project.group = group
|
|
||||||
project.github_personal_access_token = Runtime::Env.github_access_token
|
|
||||||
project.github_repository_path = 'gitlab-qa-github/import-test'
|
|
||||||
project.api_client = user_api_client
|
|
||||||
project.issue_events_import = true
|
|
||||||
project.full_notes_import = true
|
|
||||||
end
|
|
||||||
end
|
|
||||||
|
|
||||||
before do
|
|
||||||
group.add_member(user, Resource::Members::AccessLevel::MAINTAINER)
|
|
||||||
end
|
|
||||||
|
|
||||||
after do
|
|
||||||
user.remove_via_api!
|
|
||||||
end
|
|
||||||
end
|
|
||||||
end
|
|
|
@ -1130,20 +1130,6 @@ RSpec.describe Gitlab::UsageData, :aggregate_failures do
|
||||||
let(:project) { build(:project) }
|
let(:project) { build(:project) }
|
||||||
|
|
||||||
before do
|
before do
|
||||||
counter = Gitlab::UsageDataCounters::TrackUniqueEvents
|
|
||||||
project_type = Event::TARGET_TYPES[:project]
|
|
||||||
wiki = Event::TARGET_TYPES[:wiki]
|
|
||||||
design = Event::TARGET_TYPES[:design]
|
|
||||||
|
|
||||||
counter.track_event(event_action: :pushed, event_target: project_type, author_id: 1)
|
|
||||||
counter.track_event(event_action: :pushed, event_target: project_type, author_id: 1)
|
|
||||||
counter.track_event(event_action: :pushed, event_target: project_type, author_id: 2)
|
|
||||||
counter.track_event(event_action: :pushed, event_target: project_type, author_id: 3)
|
|
||||||
counter.track_event(event_action: :pushed, event_target: project_type, author_id: 4, time: time - 3.days)
|
|
||||||
counter.track_event(event_action: :created, event_target: wiki, author_id: 3)
|
|
||||||
counter.track_event(event_action: :created, event_target: design, author_id: 3)
|
|
||||||
counter.track_event(event_action: :created, event_target: design, author_id: 4)
|
|
||||||
|
|
||||||
counter = Gitlab::UsageDataCounters::EditorUniqueCounter
|
counter = Gitlab::UsageDataCounters::EditorUniqueCounter
|
||||||
|
|
||||||
counter.track_web_ide_edit_action(author: user1, project: project)
|
counter.track_web_ide_edit_action(author: user1, project: project)
|
||||||
|
@ -1162,10 +1148,6 @@ RSpec.describe Gitlab::UsageData, :aggregate_failures do
|
||||||
it 'returns the distinct count of user actions within the specified time period' do
|
it 'returns the distinct count of user actions within the specified time period' do
|
||||||
expect(described_class.action_monthly_active_users(time_period)).to eq(
|
expect(described_class.action_monthly_active_users(time_period)).to eq(
|
||||||
{
|
{
|
||||||
action_monthly_active_users_design_management: 2,
|
|
||||||
action_monthly_active_users_project_repo: 3,
|
|
||||||
action_monthly_active_users_wiki_repo: 1,
|
|
||||||
action_monthly_active_users_git_write: 4,
|
|
||||||
action_monthly_active_users_web_ide_edit: 2,
|
action_monthly_active_users_web_ide_edit: 2,
|
||||||
action_monthly_active_users_sfe_edit: 2,
|
action_monthly_active_users_sfe_edit: 2,
|
||||||
action_monthly_active_users_snippet_editor_edit: 2,
|
action_monthly_active_users_snippet_editor_edit: 2,
|
||||||
|
|
|
@ -91,11 +91,8 @@ RSpec.describe API::Groups do
|
||||||
.to satisfy_one { |group| group['name'] == group1.name }
|
.to satisfy_one { |group| group['name'] == group1.name }
|
||||||
end
|
end
|
||||||
|
|
||||||
it 'avoids N+1 queries' do
|
it 'avoids N+1 queries', :use_sql_query_cache do
|
||||||
# Establish baseline
|
control = ActiveRecord::QueryRecorder.new(skip_cached: false) do
|
||||||
get api("/groups", admin)
|
|
||||||
|
|
||||||
control = ActiveRecord::QueryRecorder.new do
|
|
||||||
get api("/groups", admin)
|
get api("/groups", admin)
|
||||||
end
|
end
|
||||||
|
|
||||||
|
@ -103,7 +100,7 @@ RSpec.describe API::Groups do
|
||||||
|
|
||||||
expect do
|
expect do
|
||||||
get api("/groups", admin)
|
get api("/groups", admin)
|
||||||
end.not_to exceed_query_limit(control)
|
end.not_to exceed_all_query_limit(control)
|
||||||
end
|
end
|
||||||
|
|
||||||
context 'when statistics are requested' do
|
context 'when statistics are requested' do
|
||||||
|
|
|
@ -169,10 +169,8 @@ RSpec.describe API::Projects do
|
||||||
shared_examples_for 'projects response without N + 1 queries' do |threshold|
|
shared_examples_for 'projects response without N + 1 queries' do |threshold|
|
||||||
let(:additional_project) { create(:project, :public) }
|
let(:additional_project) { create(:project, :public) }
|
||||||
|
|
||||||
it 'avoids N + 1 queries' do
|
it 'avoids N + 1 queries', :use_sql_query_cache do
|
||||||
get api('/projects', current_user)
|
control = ActiveRecord::QueryRecorder.new(skip_cached: false) do
|
||||||
|
|
||||||
control = ActiveRecord::QueryRecorder.new do
|
|
||||||
get api('/projects', current_user)
|
get api('/projects', current_user)
|
||||||
end
|
end
|
||||||
|
|
||||||
|
@ -180,7 +178,7 @@ RSpec.describe API::Projects do
|
||||||
|
|
||||||
expect do
|
expect do
|
||||||
get api('/projects', current_user)
|
get api('/projects', current_user)
|
||||||
end.not_to exceed_query_limit(control).with_threshold(threshold)
|
end.not_to exceed_all_query_limit(control).with_threshold(threshold)
|
||||||
end
|
end
|
||||||
end
|
end
|
||||||
|
|
||||||
|
|
Loading…
Reference in New Issue