From 1a9daf93ef134826cc4a1fcd324e152de4d9b86e Mon Sep 17 00:00:00 2001 From: tegwick Date: Fri, 14 Aug 2026 17:48:04 +0200 Subject: [PATCH] note: WP-0002 T03 blocked on Scaleway Object Storage IAM --- ...SOURCE-WP-0002-procure-postgres-backup-storage.md | 12 +++++++----- 1 file changed, 7 insertions(+), 5 deletions(-) diff --git a/workplans/RESOURCE-WP-0002-procure-postgres-backup-storage.md b/workplans/RESOURCE-WP-0002-procure-postgres-backup-storage.md index d71d50a..8899806 100644 --- a/workplans/RESOURCE-WP-0002-procure-postgres-backup-storage.md +++ b/workplans/RESOURCE-WP-0002-procure-postgres-backup-storage.md @@ -212,11 +212,13 @@ Progress 2026-08-14: decision record written — Primary: Scaleway Multi-AZ `nl-ams`. Secondary copy: Host Europe Backup Storage or Nextcloud (T06). Inventory stays `proposed` with five-facet refs to `reef-storage`. Reef seeded (identity, topology, consumers, -planned attribute file). **Purchase approved 2026-08-14.** Blocked on founder putting the -Scaleway bootstrap API key in OpenBao -(`platform/workloads/railiance/scaleway/bootstrap`, -`reef-storage/docs/put-scaleway-bootstrap.md`). Do not paste the -secret in chat. Then run `reef-storage/tools/create-platform-audit-bucket.sh`. +planned attribute file). **Purchase approved 2026-08-14.** Bootstrap key is in OpenBao (v2, +not placeholders). Bucket create returned **Access Denied** on S3 +while Instances list succeeded — the key is valid but Object Storage +is not permitted or not enabled on the project. Founder: in the +Scaleway console open Object Storage once for that project and attach +`ObjectStorageFullAccess` (or equivalent) to the API key, then say +go again. ## T04 — Establish credential custody and hand off to rapp-postgres