Document and commit the production bootstrap state after the initial Hetzner and Ansible rollout. - switch Ansible prod runbooks to use the shared vault password file - record production admin CIDRs, SSH key path, encrypted group vault, and encrypted per-host vault files - add generated production inventory and the prod setup history notes from the first bootstrap - keep root password login disabled while preserving key-based root access for Ansible bootstrap continuity - document separate Hetzner projects and tokens for test/prod and commit the prod provider lock file - remove the private Redis firewall allowance from the prod Terraform firewall and matching setup docs
11 lines
743 B
YAML
11 lines
743 B
YAML
$ANSIBLE_VAULT;1.1;AES256
|
|
65663364653331336437306263396364393762303663643136386635323932623035653362653433
|
|
3362356535343639616331363365363131356435653634640a323932393434653066343038653037
|
|
34336538353436643136353766333865616463393961663236303164363331336461323636623934
|
|
3432393632643831640a356537633966383839653536346666663736353766346538396136363436
|
|
30643631366634653961623334363432336164636531353438346133386463663861623763613031
|
|
30386131316664643135646333323532326634373466356138613831633565336638376662323061
|
|
65636162643761623638663831376466356637306236393663383237323836366536353365383831
|
|
62343734633036376438366563616633666337323633616139373935333563386238316537353335
|
|
64653061356162656431303335313833356135363430623065656536386436313438
|