Open-source enclave docs and bitnamilegacy guidance for IDSP
search cancel

Open-source enclave docs and bitnamilegacy guidance for IDSP

book

Article ID: 427045

calendar_today

Updated On:

Products

Symantec Identity Security Platform - IDSP (formerly VIP Authentication Hub)

Issue/Introduction

Running IDSP (Symantec Identity Security Platform formerly known as AuthHub),

  • What is the official documentation for setting up IDSP enclave services (Prometheus/Grafana) using open source images?
  • As a short-term workaround, bitnami proposes to use "bitnamilegacy":

    When supported, how to make the change?
    What are the minimal values changes to switch from Bitnami to bitnamilegacy in the set-up (image repository/tag, chart name)?
    What are the known caveats (supportability, deprecation, CVE tracking) ?

Resolution

The documentation has been updated to use bitnamilegacy (1).

The limitation about bitnamilegacy is that there won't be any update on the latest version.

When wanting to continue to use bitnami images, get a license (2).

As a third party component, consult prometheus and grafana to get an idea how to migrate using open-source images.

To avoid CVE, deprecation, and supportability challenges:

  • Get a bitnami license;
  • Use any other open source option like kube-prometheus (3).

The presence of the mention "bitnami/kube-prometheus" at the beginning of the command line is justified by the fact that the bitnamilegacy charts are hosted on official site which is paid site.

oci://registry-1.docker.io/bitnamichartslegacy

Bitnamilegacy Images (latest open source images) are hosted on open source https://hub.docker.com/ and compatible chart version (bitnami/kube-prometheus ) 11.3.10 are available on open source bitnami charts source - https://charts.bitnami.com/bitnami.

Hence these are referring to use bitnamilegacy Images from https://hub.docker.com/ and chart from https://charts.bitnami.com/bitnami.

It is required to mention parameter with value ("--set operator.image.repository=bitnamilegacy/grafana-operator" ) as images are recides at specific path in docker hub.

Additional Information

  1. Deploying Prometheus and Grafana in a Non-Openshift Cluster

  2. Continued use of Bitnami Images in VIP Authentication Hub

  3. prometheus-operator / kube-prometheus