Split per O&M lane work order. Full history: KNEL/PFVCluster. https://projects.knownelement.com/issues/769#note-4152
15 lines
845 B
Markdown
15 lines
845 B
Markdown
# secrets
|
|
|
|
> **Docs live on Discourse — this repo is the executable source of truth.**
|
|
> **Topic:** https://community.turnsys.com/t/329
|
|
> **Redmine:** https://projects.knownelement.com/issues/770 · **Split from** KNEL/PFVCluster@041d311 per [#769](https://projects.knownelement.com/issues/769)
|
|
|
|
Secrets management tooling: Vaultwarden SoR bootstrap, HashiCorp Vault, Ansible vault. House rule: ONE secrets home (~/.creds, 0600); configs hold refs (env:/file:), never material. [\#770]
|
|
|
|
## Layout
|
|
- `scripts/` — rule engine + hooks (see `bash scripts/check-rules.sh --fast`)
|
|
- (imported content at repo root, mirroring its PFVCluster path layout)
|
|
|
|
## Provenance
|
|
Code imported from KNEL/PFVCluster (041d311); full git history retained in PFVCluster. Enforcement layer copied per ADOPTING.md. IaC consumers: KNEL/KNELIAC references this repo.
|