railiance-infra/docs/adr
codex 4d9e77c968
All checks were successful
CI Smoke / host-smoke (push) Successful in 0s
CI Smoke / container-smoke (push) Successful in 1s
Close RAIL-HO-WP-0009 declared-state gaps; leave live 6443 prune gated
Make the k3s API tunnel-only (ADR-005), stop declaring Flannel VXLAN
open to Anywhere, tag the base role so firewall can be scoped, and
schedule the Goss declared-vs-live check. CoulombCore sets ufw_manage
false so a converge cannot enable UFW there. T02 still needs operator
approval for make converge-firewall HOST=Railiance01.
2026-08-15 15:41:59 +02:00
..
ADR-002-repo-boundary-hosts-vs-bootstrap.md feat(adr): add ADR-003 (5-repo OAS stack); supersede ADR-002 2026-03-10 00:27:18 +01:00
ADR-003-railiance-5repo-stack-architecture.md feat(adr): add ADR-003 (5-repo OAS stack); supersede ADR-002 2026-03-10 00:27:18 +01:00
ADR-004-forgejo-in-cluster-actions-runner.md ADR-004: Forgejo in-cluster Actions runner on railiance01 2026-07-03 22:29:28 +02:00
ADR-005-k3s-api-tunnel-only.md Close RAIL-HO-WP-0009 declared-state gaps; leave live 6443 prune gated 2026-08-15 15:41:59 +02:00