Brandon Hopkins
df39c2b254
[infrastructure] Deprecate legacy Dex and Zitadel getting-started scripts ( #6952 )
...
## Describe your changes
Retire the legacy Dex and Zitadel installation scripts by replacing
their implementations with compatibility notices that:
- Exit unsuccessfully before making any system changes.
- Direct new deployments to `getting-started.sh` and the self-hosting
quickstart.
- Explain that the current installer uses NetBird's embedded Dex-based
identity provider.
- Direct users to configure Zitadel through the NetBird Dashboard or
follow the advanced guide for a standalone identity-provider deployment.
- Clarify that Dex support, Zitadel support, and existing deployments
are not deprecated.
- Announce that the compatibility notices will be removed in NetBird
v0.80.
Replace the legacy Zitadel provisioning workflow with CI checks that
verify both scripts fail, write their notices to stderr, and include the
expected documentation links and removal version.
## Issue ticket number and link
No single issue tracks this deprecation.
Related to:
- Legacy installer failures: #4980 , #4698 , #3566 , #3010 , #2834 , #2094 ,
#2046 , and #1966 .
- Legacy installer enhancement requests: #4510 and #1785 .
## Stack
Standalone PR based on `main`.
<!-- branch-stack -->
### Checklist
- [ ] Is it a bug fix
- [ ] Is a typo/documentation fix
- [ ] Is a feature enhancement
- [ ] It is a refactor
- [x] Created tests that fail without the change (if possible)
- [x] This change does **not** modify the public API, gRPC protocols,
functionality behavior, CLI / service flags, or introduce a new feature
— **OR** I have discussed it with the NetBird team beforehand (link the
issue / Slack thread in the description). See
[CONTRIBUTING.md](https://github.com/netbirdio/netbird/blob/main/CONTRIBUTING.md#discuss-changes-with-the-netbird-team-first ).
> By submitting this pull request, you confirm that you have read and
agree to the terms of the [Contributor License
Agreement](https://github.com/netbirdio/netbird/blob/main/CONTRIBUTOR_LICENSE_AGREEMENT.md ).
## Documentation
Select exactly one:
- [ ] I added/updated documentation for this change
- [x] Documentation is **not needed** for this change because the
compatibility notices link to the existing quickstart,
identity-provider, and advanced deployment documentation.
### Docs PR URL (required if "docs added" is checked)
Paste the PR link from https://github.com/netbirdio/docs here:
N/A
<!-- codesmith:footer -->
---
<a
href="https://app.blacksmith.sh/netbirdio/codesmith/netbird/pr/6952 "><picture><source
media="(prefers-color-scheme: dark)"
srcset="https://pr-comments-assets.blacksmith.sh/codesmith/view-with-codesmith-dark-v2.svg "><source
media="(prefers-color-scheme: light)"
srcset="https://pr-comments-assets.blacksmith.sh/codesmith/view-with-codesmith-light-v2.svg "><img
alt="View with [code]smith"
src="https://pr-comments-assets.blacksmith.sh/codesmith/view-with-codesmith-dark-v2.svg "></picture></a>
<a
href="https://backend.blacksmith.sh/track/enable-autofix?expires=1787867848&installation_model_id=427504&pr_number=6952&repository=netbirdio%2Fnetbird&return_to=https%3A%2F%2Fgithub.com%2Fnetbirdio%2Fnetbird%2Fpull%2F6952&signature=0dcc8cda6a3daa5647fa0d40a0f143fef9ad6258aa9ba07a861e658efd244ad1 "><picture><source
media="(prefers-color-scheme: dark)"
srcset="https://pr-comments-assets.blacksmith.sh/codesmith/autofix-with-codesmith-dark.svg "><source
media="(prefers-color-scheme: light)"
srcset="https://pr-comments-assets.blacksmith.sh/codesmith/autofix-with-codesmith-light.svg "><img
alt="Autofix with [code]smith"
src="https://pr-comments-assets.blacksmith.sh/codesmith/autofix-with-codesmith-dark.svg "></picture></a>
<sup>Need help on this PR? Tag <code>@codesmith-bot</code> with what you
need. Autofix is disabled.</sup>
<!-- codesmith:autofix:disabled -->
<!-- /codesmith:footer -->
<!-- This is an auto-generated comment: release notes by coderabbit.ai
-->
## Summary by CodeRabbit
- **Breaking Changes**
- Retired the legacy Dex and Zitadel getting-started installation
scripts.
- These scripts now exit with an explanatory deprecation message and
direct users to the current setup flow and documentation.
- Existing workflows now verify that the retired scripts fail as
expected and provide the appropriate migration guidance.
<!-- end of auto-generated comment: release notes by coderabbit.ai -->
2026-07-29 12:20:43 +02:00
Pascal Fischer
f5c41e3018
[misc] set permissions on env file for getting started scripts ( #5761 )
2026-04-01 14:13:53 +02:00
Misha Bragin
cd9a867ad0
[client] Delete TURNConfig section from script ( #4639 )
2025-10-17 19:48:26 +02:00
Maycon Santos
34341d95a9
Adjust signal port for websocket connections ( #4594 )
2025-10-06 15:22:02 -03:00
Maycon Santos
b85045e723
[misc] Update infra scripts with ws proxy for browser client ( #4566 )
...
* Update infra scripts with ws proxy for browser client
* add ws proxy to nginx tmpl
2025-10-02 00:52:54 +02:00
Bethuel Mmbaga
cf7f6c355f
[misc] Remove default zitadel admin user in deployment script ( #4482 )
...
* Delete default zitadel-admin user during initialization
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* Refactor
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
---------
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2025-09-11 21:20:10 +02:00
Philippe Vaucher
91e7423989
[misc] Docker compose improvements ( #4037 )
...
* Use container defaults
* Remove docker compose version when generating zitadel config
2025-07-22 19:44:49 +02:00
Krzysztof Nazarewski (kdn)
dbdef04b9e
[misc] getting-started-with-zitadel.sh: drop unnecessary port 8080 ( #4075 )
2025-07-02 02:35:13 +02:00
Robert Neumann
c6cceba381
Update getting-started-with-zitadel.sh - fix zitadel user console ( #3446 )
2025-06-05 14:16:04 +02:00
VYSE V.E.O
703647da1e
fix client unsupported h2 protocol when only 443 activated ( #3009 )
...
When I remove 80 http port in Caddyfile, netbird client cannot connect server:443. Logs show error below:
{"level":"debug","ts":1733809631.4012625,"logger":"http.stdlib","msg":"http: TLS handshake error from redacted:41580: tls: client requested unsupported application protocols ([h2])"}
I wonder here h2 protocol is absent.
2024-12-16 14:17:46 +01:00
v1rusnl
e52d352a48
Update Caddyfile and Docker Compose to support HTTP3 ( #2822 )
2024-11-30 10:26:31 +01:00
Stefano
b9f205b2ce
[misc] Update Zitadel from v2.54.10 to v2.64.1
2024-10-28 10:08:17 +01:00
Emre Oksum
f942491b91
Update Zitadel version on quickstart script ( #2744 )
...
Update Zitadel version at docker compose in quickstart script from 2.54.3 to 2.54.10 because 2.54.3 isn't stable and has a lot of bugs.
2024-10-16 17:51:21 +02:00
Maycon Santos
5932298ce0
Add log setting to Caddy container ( #2684 )
...
This avoids full disk on busy systems
2024-10-02 11:48:09 +02:00
Zoltan Papp
0c039274a4
[relay] Feature/relay integration ( #2244 )
...
This update adds new relay integration for NetBird clients. The new relay is based on web sockets and listens on a single port.
- Adds new relay implementation with websocket with single port relaying mechanism
- refactor peer connection logic, allowing upgrade and downgrade from/to P2P connection
- peer connections are faster since it connects first to relay and then upgrades to P2P
- maintains compatibility with old clients by not using the new relay
- updates infrastructure scripts with new relay service
2024-09-08 12:06:14 +02:00
Eduard Gert
fcf150f704
Use X-Frame-Options sameorigin header ( #2547 )
2024-09-06 15:39:08 +02:00
Maycon Santos
43a8ba97e3
Add log config and removed domain ( #2194 )
...
removed domainname for coturn service as it is needed only for SSL configs
Added log configuration for each service with a rotation and max size
ensure ZITADEL_DATABASE=postgres works
2024-06-25 13:54:09 +02:00
Robert Neumann
17874771cc
Feature/Use Zitadel Postgres Integration by default ( #2181 )
...
replaces cockroachDB as default DB for Zitadel in the getting started script to deploy script. Users can switch back to cockroachDB by setting the environment variable ZITADEL_DATABASE to cockroach.
2024-06-25 11:10:11 +02:00
Robert Neumann
3cf4d5758f
Update Zitadel and CockroachDB Container Image Version ( #2169 )
...
* fix type in docker compose
* Update docker compose cockroachdb to latest-23.2 and zitadel to 2.54.3
2024-06-22 12:44:45 +02:00
Maycon Santos
e1c50248d9
Add support for device flow on getting started with zitadel ( #1616 )
2024-02-26 12:33:16 +01:00
Maycon Santos
62bacee8dc
Use dashboard v2 for getting started scripts ( #1530 )
2024-02-05 17:10:08 +01:00
Maycon Santos
c61cb00f40
Add external-ip support for coturn ( #1439 )
...
Handles the case when users are running Coturn with peers in the same network, and these peers connect to the relay server via private IP addresses (e.g., Oracle cloud), which causes relay candidates to be allocated using private IP addresses. This causes issues with external peers who can't reach these private addresses.
Use the provided IP address with NETBIRD_TURN_EXTERNAL_IP or discover the address via https://jsonip.com API.
For quick-start guide with Zitadel, we only use the discover method with the external API
2024-01-10 13:03:46 +01:00
Bethuel Mmbaga
5469de53c5
Fix quickstart script incompatibility with latest Zitadel version ( #1400 )
2023-12-27 16:15:06 +01:00
Maycon Santos
b726b3262d
Add codespell job ( #1281 )
...
add codespell workflow and fixed spelling issues
2023-11-07 13:37:57 +01:00
Fábio C. Barrionuevo da Luz
8524cc75d6
Add safe security headers ( #1121 )
...
This pull-request add/changes the HTTP headers to include
safe defaults to Caddy and get the A+ score on
the https://observatory.mozilla.org/ test
2023-09-04 15:49:07 +02:00
Maycon Santos
a9b9b3fa0a
Fix input reading for NetBird domain in getting-started-with-zitadel.sh ( #1064 )
2023-08-08 20:10:14 +02:00
Maycon Santos
8aa4f240c7
Add getting started script with Zitadel ( #1005 )
...
add getting started script with zitadel
limit tests for infrastructure file workflow
limit release workflow based on relevant files
2023-08-03 19:19:17 +02:00