ClubCedille / ClubCedille/k8s-shared

Mirror: intégration Ansible (distribution cert client + credentials Nix)

Open
#396 0 comments 0 reactions 0 assignees View on GitHub
mirror
Dominant language
YAML
Stars
3
Forks
1
Avg merge
3h 52m
Merged PRs (30d)
101

Description

Ajouter au flow CloudInit/Ansible existant (AnsibleInfra) :
- Distribution du cert client mTLS fleet vers `/etc/apt/ssl/`, config dnf/pacman(XferCommand)/pkg équivalente
- Distribution des credentials BasicAuth pour le cache Nix
- Injection du cert client dans le build opnsense-cloudinit (git.etsmtl.club/CEDILLE/opnsense-cloudinit)

Dépend de: pilote pkg-cache, cache Nix + BasicAuth.

Contributor guide

No contributing guide indexed for this repository

Research direction

Start with the existing CloudInit/AnsibleInfra flow and identify how the fleet mTLS client certificate and Nix BasicAuth credentials are currently handled. Review the pkg-cache and Nix cache prerequisites, then inspect the opnsense-cloudinit build at git.etsmtl.club/CEDILLE/opnsense-cloudinit. Done means the certificate and credentials are distributed and the certificate is injected into that build for the required package-manager configurations.

Written by the indexing model from the issue text.

Assessment

Tech stack
ansible
Domain
devops, infrastructure, security
Issue type
Feature
Difficulty
4/5
Estimated time
3-5 days
Activity status
Active
Clarity
Mostly clear
Newbie friendliness
45/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.