railiance-infra/ansible/playbooks
codex d0e8f9f24e
Some checks are pending
CI Smoke / container-smoke (push) Waiting to run
CI Smoke / host-smoke (push) Successful in 0s
Apply Railiance01 firewall-only converge and close RAIL-HO-WP-0009
Operator-approved playbooks/firewall.yaml --tags firewall removed the
three public 6443 grants. Live UFW now matches ADR-005 (OpenSSH + Nydus).
2026-08-15 17:57:17 +02:00
..
bootstrap-ssh-ca.yaml feat(ssh): add bootstrap-ssh-ca role for OpenBao SSH user CA trust 2026-06-18 01:06:43 +02:00
bootstrap.yaml Close RAIL-HO-WP-0009 declared-state gaps; leave live 6443 prune gated 2026-08-15 15:41:59 +02:00
custodian-agent.yaml fix(custodian-agent): dedicated playbook, correct working dir 2026-03-27 02:20:33 +01:00
firewall.yaml Apply Railiance01 firewall-only converge and close RAIL-HO-WP-0009 2026-08-15 17:57:17 +02:00
goss-status.yaml Close RAIL-HO-WP-0009 declared-state gaps; leave live 6443 prune gated 2026-08-15 15:41:59 +02:00
verify.yaml Tighten the Goss firewall assertion and render it from the declaration 2026-08-12 03:28:35 +02:00