operations: second-operator onboarding and escrow of the vault password and state passphrase #468
Etiketter
Inga etiketter
area/backups
area/ci
area/control-panel
area/identity
area/infra
area/observability
area/payments
area/security
area/storage
area/web
blocked
needs-info
needs-triage
ready-for-implementation
type
bug
type
chore
type
docs
type
epic
type
feature
type
task
wontfix
Ingen milstolpe
Inget projekt
Inga tilldelade
1 deltagare
Notiser
Förfallodatum
Inget förfallodatum satt.
Beroenden
Inga beroenden satta
Referens
bitborg/bitborg-infra#468
Läser in…
Hänvisa till i nytt ärende
Ingen beskrivning angiven.
Ta bort grenen "%!s()"
Borttagning av en gren är permanent. Även om den borttagna grenen kan fortsätta existera en kort tid innan den faktiskt tas bort, kan det INTE ångras i de flesta fall. Vill du fortsätta?
#157 covers the disaster-recovery age key. The Ansible vault password and the OpenTofu state passphrase have the same single point of failure: one operator's password manager. There is no written path for a second operator to gain vault, SSH, OpenStack, Forgejo admin, Kanidm admin and DNS registrar access.
Write the onboarding runbook, and put all three secrets under split knowledge (Shamir or a second holder). Pair with #157 and #161 so one drill proves the whole chain.
Epic: bitborg/bitborg-docs#107