Document and commit the production bootstrap state after the initial Hetzner and Ansible rollout. - switch Ansible prod runbooks to use the shared vault password file - record production admin CIDRs, SSH key path, encrypted group vault, and encrypted per-host vault files - add generated production inventory and the prod setup history notes from the first bootstrap - keep root password login disabled while preserving key-based root access for Ansible bootstrap continuity - document separate Hetzner projects and tokens for test/prod and commit the prod provider lock file - remove the private Redis firewall allowance from the prod Terraform firewall and matching setup docs
11 lines
743 B
YAML
11 lines
743 B
YAML
$ANSIBLE_VAULT;1.1;AES256
|
|
34636563333137303834326537653261653665653432353536373361633631383665623730323838
|
|
6335626530306664386664363933313430366633306639650a336532643964366338383962633663
|
|
62356431663737323734356532376437303837363936346662393664626162643063343761306361
|
|
6433643837326665610a623939393065373165653330643930393130343830336230626333646137
|
|
33666530343663306262306565323039653831623138366361353861653132616138653238366438
|
|
65396335666161666431353639373838343464326631303939616633316538613633373762303935
|
|
36393939393664663863616539373565326563393366343135306264643433353731663933313838
|
|
37366334333530343732343639383362643464303266653566316439663834393731363337393137
|
|
37626239643761666537613233613939353161373366346635656436613432616530
|