Addresses the WKS PoC review (Notion 2026-05-26). All docs in English. - README: purpose, docs table of contents, annotated repo tree - docs/getting_started.md: prerequisites (WKS account, OIDC, SSH, VPN) + first deploy - docs/ansible.md: playbook table, "Running Ansible", service parameters, cheatsheet - docs/secrets.md: canonical Bao login (moved out of README) + demo defaults - docs/operations.md: full Makefile reference - docs/inventories.md: repo layout, topology, standard folder structure, walkthrough - docs/testing.md: static checks, inventory resolution, smoke test / dry run - remove ARCHITECTURE.md (architecture docs live externally) Also includes the gymburgdorf inventory build-out (bookstack, homarr, opnform, send) and scripts/bao-seed.sh. site.yml keeps a third traefik play (traefik_servers minus the vagrant _dmz/_backend split) so the demo inventories still configure their reverse proxy after the rebase onto main.
65 lines
No EOL
1.1 KiB
YAML
65 lines
No EOL
1.1 KiB
YAML
all:
|
|
children:
|
|
all_servers:
|
|
hosts:
|
|
reverseproxy:
|
|
ansible_host: 172.16.9.111
|
|
ansible_user: root
|
|
application:
|
|
ansible_host: 172.16.19.101
|
|
ansible_user: root
|
|
storage:
|
|
ansible_host: 172.16.19.102
|
|
ansible_user: root
|
|
turn:
|
|
ansible_host: 172.16.9.112
|
|
ansible_user: root
|
|
|
|
traefik_servers:
|
|
children:
|
|
all_servers:
|
|
|
|
backend_servers:
|
|
hosts:
|
|
application:
|
|
storage:
|
|
|
|
garage_servers:
|
|
hosts:
|
|
storage:
|
|
|
|
nextcloud_servers:
|
|
hosts:
|
|
application:
|
|
|
|
collabora_servers:
|
|
hosts:
|
|
application:
|
|
|
|
drawio_servers:
|
|
hosts:
|
|
application:
|
|
|
|
authentik_servers:
|
|
hosts:
|
|
application:
|
|
|
|
authentik_outpost_ldap_servers:
|
|
hosts:
|
|
application:
|
|
|
|
send_servers:
|
|
hosts:
|
|
application:
|
|
|
|
opnform_servers:
|
|
hosts:
|
|
application:
|
|
|
|
homarr_servers:
|
|
hosts:
|
|
application:
|
|
|
|
bookstack_servers:
|
|
hosts:
|
|
application: |