mmt-infra/docs/INFRA_PLAYBOOK.md

10 lines
603 B
Markdown
Raw Normal View History

2024-05-01 04:33:35 -04:00
Registering a new internal machine <hostname>:
1. Register <hostname>.pub.infra.hatecomputers.club A record -> public ipv4
2. Register <hostname>.int.infra.hatecomputers.club A record -> internal ipv4 in 10.155.0.0/16 subnet
3. Put it on the internal VPN. i.e. add <hostname>.pub... in the wireguard-mesh after allowing ssh to root and everything
4. Run the wireguard-mesh playbook
5. Update the inventory record in wireguard-mesh to <hostname>.int...
6. Now run the deploy-common playbook to allow ssh only internally, debugging as necessary if needed ; it should just work :))
7. Add your new roles!