Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Consolidate all inventories so that anyone of us can deploy any piece of the infrastructure #91

Closed
hellais opened this issue Mar 15, 2017 · 2 comments

Comments

@hellais
Copy link
Member

hellais commented Mar 15, 2017

@darkk suggested that it's possible to use ansible vaults to store secrets encrypted and commit them directly to this tree.

I think we agree on the fact that there are fairly few secrets inside of the actual inventories (I believe we don't consider hostnames, IPs and ports to be secret).

I would be good to start doing this for at least one of the services so that we have an idea of how it works for one service and @darkk and I can start learning how to deploy them.

This would also I believe encourage me to use ooni-sysadmin more and do less deployment tasks manually.

@SuperQ
Copy link
Contributor

SuperQ commented Mar 15, 2017

👍, Ansible vaults are good for secrets. We use them for FOSDEM deployment.

@darkk
Copy link
Contributor

darkk commented Aug 21, 2017

Seems, the process is converging -- new hosts are deployed using public inventory, old one are cleaned up (e.g. #123).

@darkk darkk closed this as completed Aug 21, 2017
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants