mirror of
https://github.com/dredx/prole.git
synced 2026-09-23 11:03:59 +00:00
Password resolution order for PROLE_KDC_MASTER_PASSWORD and KNOE_GUEST_PASSWORD: 1. Env var (existing) 2. knoe-kdc-secrets k8s Secret (existing) 3. prole-kdc-secrets k8s Secret (new — used by live prole deployment) 4. 1Password via op read (new — OP_KDC_MASTER_PASSWORD_REF / OP_KDC_GUEST_PASSWORD_REF) 5. PROLE_LOCAL_ADMIN_PASSWORD (existing) 6. die with actionable message Add try_op_read() helper: wraps op CLI, returns 1 if op not available or ref empty. conf/k3s.cfg: add KNOE_ADMIN_PRINCIPAL=chrisfu, OP_KDC_MASTER_PASSWORD_REF, OP_KDC_GUEST_PASSWORD_REF placeholders (empty — user fills in op:// URIs). Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| cnpg-placement | ||
| dev | ||
| postgresql | ||
| prod | ||
| service | ||
| test | ||
| database_versions.json | ||
| gke.cfg | ||
| k3d.cfg | ||
| k3s.cfg | ||
| knoe.cfg | ||
| knoe.silent.all.cfg | ||
| port-mapping.cfg | ||