railiance-infra/ansible/roles
codex 4d9e77c968
All checks were successful
CI Smoke / host-smoke (push) Successful in 0s
CI Smoke / container-smoke (push) Successful in 1s
Close RAIL-HO-WP-0009 declared-state gaps; leave live 6443 prune gated
Make the k3s API tunnel-only (ADR-005), stop declaring Flannel VXLAN
open to Anywhere, tag the base role so firewall can be scoped, and
schedule the Goss declared-vs-live check. CoulombCore sets ufw_manage
false so a converge cannot enable UFW there. T02 still needs operator
approval for make converge-firewall HOST=Railiance01.
2026-08-15 15:41:59 +02:00
..
base Close RAIL-HO-WP-0009 declared-state gaps; leave live 6443 prune gated 2026-08-15 15:41:59 +02:00
custodian_agent/tasks feat(custodian-agent): Ansible role + Makefile for Custodian SSH identity 2026-03-27 01:21:57 +01:00
goss Close RAIL-HO-WP-0009 declared-state gaps; leave live 6443 prune gated 2026-08-15 15:41:59 +02:00
resource_limits Close RAIL-HO-WP-0009 declared-state gaps; leave live 6443 prune gated 2026-08-15 15:41:59 +02:00
sops_agent/tasks Close RAIL-HO-WP-0009 declared-state gaps; leave live 6443 prune gated 2026-08-15 15:41:59 +02:00
ssh_ca_host feat(ssh): add bootstrap-ssh-ca role for OpenBao SSH user CA trust 2026-06-18 01:06:43 +02:00
swapfile/tasks Close RAIL-HO-WP-0009 declared-state gaps; leave live 6443 prune gated 2026-08-15 15:41:59 +02:00
wireguard/tasks feat: initial import of RailianceHosts starter 2025-09-13 20:26:11 +02:00