Murat ÖZDEMİR 9e20f2fcf8 chore(prod): capture production bootstrap access configuration
Document and commit the production bootstrap state after the initial Hetzner and Ansible rollout.

- switch Ansible prod runbooks to use the shared vault password file

- record production admin CIDRs, SSH key path, encrypted group vault, and encrypted per-host vault files

- add generated production inventory and the prod setup history notes from the first bootstrap

- keep root password login disabled while preserving key-based root access for Ansible bootstrap continuity

- document separate Hetzner projects and tokens for test/prod and commit the prod provider lock file

- remove the private Redis firewall allowance from the prod Terraform firewall and matching setup docs
2026-05-19 17:49:59 +03:00

11 lines
743 B
YAML

$ANSIBLE_VAULT;1.1;AES256
33343166373333306130643431346235663338353864613434383735616433633965323138653430
6533303238613038656233653533636134643431643264390a386663306439303563313133393037
30363065323637653565343364396131383965633333633039653734666339636161373531386537
3732383139366330350a653938323231323066336639643035373662643336616235636334383264
66316531643566376130656434663732396233353839306364353861653461353537316236656563
64376362303738623636313934326239396135636564313434336562333033313661663231616636
35373462313039313062323861343732643933366332303231366139643938643461396537663232
36343739383536383566616136353831313836666534333564653366323563343839376137343135
66393132376665346532346466363232616530373138376663633666366465343562