Page MenuHomeDevCentral

Create restic users and generate S3 credentials
ClosedPublic

Authored by dereckson on Sat, Sep 5, 22:44.
Tags
None
Referenced Files
F51520839: D4206.id11062.diff
Sat, Sep 26, 07:11
F51520838: D4206.id11058.diff
Sat, Sep 26, 07:11
F51520834: D4206.id11030.diff
Sat, Sep 26, 07:11
F51520803: D4206.diff
Sat, Sep 26, 07:10
F51516311: D4206.diff
Sat, Sep 26, 06:25
F51507111: D4206.id.diff
Sat, Sep 26, 04:58
F51497934: D4206.diff
Sat, Sep 26, 03:13
F51457764: D4206.id11030.diff
Fri, Sep 25, 18:22
Subscribers
None

Details

Summary

We create the accounts per container and server:

  • for -amaris, every server
  • for -darak, WindRiver as experimental test
  • for -vakor, Complector

Those 13 accounts are separate OVH project users,
with separate credentials stored in Vault.

-amaris accounts are intended to be included in by-server Vault policy,
-vakor account can use a approle, as an unprivileged account can do this.

Diff Detail

Repository
rOPS Nasqueron Operations
Lint
Lint Passed
Unit
No Test Coverage
Branch
ovh-backups-restic-users
Build Status
Buildable 6881
Build 7169: arc lint + arc unit

Event Timeline

dereckson created this revision.

Rebased. Remove version to be idempotent.

Deployed and idempotent.

This revision is now accepted and ready to land.Sun, Sep 13, 23:20