Addresses the WKS PoC review (Notion 2026-05-26). All docs in English. - README: purpose, docs table of contents, annotated repo tree - docs/getting_started.md: prerequisites (WKS account, OIDC, SSH, VPN) + first deploy - docs/ansible.md: playbook table, "Running Ansible", service parameters, cheatsheet - docs/secrets.md: canonical Bao login (moved out of README) + demo defaults - docs/operations.md: full Makefile reference - docs/inventories.md: repo layout, topology, standard folder structure, walkthrough - docs/testing.md: static checks, inventory resolution, smoke test / dry run - remove ARCHITECTURE.md (architecture docs live externally) Also includes the gymburgdorf inventory build-out (bookstack, homarr, opnform, send) and scripts/bao-seed.sh. site.yml keeps a third traefik play (traefik_servers minus the vagrant _dmz/_backend split) so the demo inventories still configure their reverse proxy after the rebase onto main.
8 lines
371 B
YAML
8 lines
371 B
YAML
---
|
|
# Send: anonymized self-hosted file-share (no login). First entry is the
|
|
# canonical public FQDN (used as BASE_URL); the *.int.* entry covers the
|
|
# server-to-server hop from the DMZ reverseproxy with a cert SAN that
|
|
# matches the backend hostname (same split-horizon pattern as cloud/draw).
|
|
send_domains:
|
|
- "send.gymb.souveredu.ch"
|
|
- "send.int.gymb.souveredu.ch"
|