All secrets are now stored in Vault and provisioned through Salt, with policies restricting access to secrets by node.
- Queries
- All Stories
- Search
- Advanced Search
- Transactions
- Transaction Logs
All Stories
Mar 7 2023
The point is currently moot as we don't have an operations SIG large enough to allow key shares.
Current status: ZR has been decom, we now deploy credentials through from Vault.
And with the Zemke-Rhyne decom, we're done.
Zemke-Rhyne is now decommissioned, as all secrets have been migrated to Vault.
Also, D2853 offers a nice thing to link to: we need to ensure if the source file: value matches the filename.
Consolidate network for pillar
Update network to reuse docker-001 canonical IPv4 and IPv6
Alternative way: tmux new -AD -s some-session-name, so yup, seems a correct approach without naming sessions.
Any new deployment of Discourse, we'll take a decision where to host it.
Configuration file
Mar 6 2023
Mar 5 2023
With @DorianWinty we prepared a draft regexp: salt://(%%source%%/[0-9a-zA-Z/\.-_]+)