Repository navigation
v0.1.0-alpha: The Hyperscaler Exit Strategy
Pre-release
Pre-release
·
1 commit
to main
since this release
Refactors internal production infrastructure (Symmy/OD Máj) into a public open-source framework.
Core Architecture:
- K3s: 3-Node High-Availability Control Plane with embedded etcd.
- Infrastructure (Terraform): Modular Hetzner Cloud provisioning.
- Air-Gapped Simulation: Cluster nodes are provisioned with zero public IPv4 interfaces. All egress traffic is strictly routed via the Bastion using a custom Squid Proxy configuration.
- Security: Hardened Bastion (UFW/Fail2Ban/Unattended-Upgrades) acting as the single SSH jump host.
Automation & Configuration:
- Ansible Roles: Decoupled roles for
bastionhardening andk3sbootstrapping. - Proxy Injection: Automated injection of
HTTP_PROXYenvironment variables.
Status:
- Terraform: Stable/Production-Ready.
- Ansible: Core logic functional; variable abstraction and generalization in progress.