Document and commit the production bootstrap state after the initial Hetzner and Ansible rollout. - switch Ansible prod runbooks to use the shared vault password file - record production admin CIDRs, SSH key path, encrypted group vault, and encrypted per-host vault files - add generated production inventory and the prod setup history notes from the first bootstrap - keep root password login disabled while preserving key-based root access for Ansible bootstrap continuity - document separate Hetzner projects and tokens for test/prod and commit the prod provider lock file - remove the private Redis firewall allowance from the prod Terraform firewall and matching setup docs
11 lines
743 B
YAML
11 lines
743 B
YAML
$ANSIBLE_VAULT;1.1;AES256
|
|
39626463653031613934666436643634613565633662653239623463663762633866346533643735
|
|
3136656338316232613833666562356666333336663936370a373432636135396332666662656363
|
|
64333265663465636639646234313666656335656530613935363461356338323534623434646561
|
|
3034393565356664300a326530393266393536336230343539626232363034373636393330313964
|
|
64346136623433663232323561353532653830373935343134646633303836663839663261656231
|
|
37643830323836333531336565396639376265323636616638646565336531393837313430623463
|
|
37323934623962643462303934616139376339343766356230336464663132333363643634333062
|
|
63643936363235656335613737653033353965666561303663313239386437303561663962653363
|
|
34396133613133376262313038373336626465346262646265323732363764356662
|