Document and commit the production bootstrap state after the initial Hetzner and Ansible rollout. - switch Ansible prod runbooks to use the shared vault password file - record production admin CIDRs, SSH key path, encrypted group vault, and encrypted per-host vault files - add generated production inventory and the prod setup history notes from the first bootstrap - keep root password login disabled while preserving key-based root access for Ansible bootstrap continuity - document separate Hetzner projects and tokens for test/prod and commit the prod provider lock file - remove the private Redis firewall allowance from the prod Terraform firewall and matching setup docs
11 lines
743 B
YAML
11 lines
743 B
YAML
$ANSIBLE_VAULT;1.1;AES256
|
|
33343166373333306130643431346235663338353864613434383735616433633965323138653430
|
|
6533303238613038656233653533636134643431643264390a386663306439303563313133393037
|
|
30363065323637653565343364396131383965633333633039653734666339636161373531386537
|
|
3732383139366330350a653938323231323066336639643035373662643336616235636334383264
|
|
66316531643566376130656434663732396233353839306364353861653461353537316236656563
|
|
64376362303738623636313934326239396135636564313434336562333033313661663231616636
|
|
35373462313039313062323861343732643933366332303231366139643938643461396537663232
|
|
36343739383536383566616136353831313836666534333564653366323563343839376137343135
|
|
66393132376665346532346466363232616530373138376663633666366465343562
|