infrastructure stuff
Go to file
surtur d89101b437
chore: add changes
- mv common vault to group_vars/all/vault_common.yml
- conclude timesyncing setup
- enable cronie/chrony for systems
- set up dnscrypt properly, including replacing /etc/resolv.conf and
  validating the config
- fix privileges (become)
2023-07-24 17:16:33 +02:00
ansible chore: add changes 2023-07-24 17:16:33 +02:00
.envrc initial commit 2023-07-03 14:01:38 +02:00
.gitignore initial commit 2023-07-03 14:01:38 +02:00
.terraform.lock.hcl initial commit 2023-07-03 14:01:38 +02:00
main.tf initial commit 2023-07-03 14:01:38 +02:00
README.md initial commit 2023-07-03 14:01:38 +02:00
terraform.tf initial commit 2023-07-03 14:01:38 +02:00
variables.tf initial commit 2023-07-03 14:01:38 +02:00

infra

this repo holds the code describing my very own infra (machines I use/manage) and is very much a WIP.

should contain zero secrets, except encrypted either with age or ansible-vault.

terraform secrets are supplied as ENV vars at runtime by sourcing the decrypted infra-vars file using direnv, which is in turn stationed in its place using home-manager.