machine_setup/ansible/environments/colo/host_vars/mrmanager

58 lines
1.1 KiB
Plaintext

os_flavor: "freebsd"
zfs_snapshot_datasets:
- path: zroot/freebsd/main/be
- path: zdata/vm
- path: zdata/vm/poudriere/disk0
include: false
- path: zdata/k8spersistent
sshd_enabled: true
loader_conf: "mrmanager_loader.conf"
rc_conf: "mrmanager_rc.conf"
network_rc: "mrmanager_network.conf"
routing_rc: "mrmanager_routing.conf"
pf_config: "mrmanager_pf.conf"
pflog_conf:
- name: 0
dev: pflog0
cputype: "amd"
hwpstate: true
etc_hosts: {}
wireguard_directory: mrmanager
enabled_wireguard:
- colo
jail_zfs_dataset: zdata/jail
jail_zfs_dataset_mountpoint: /jail
jail_canmount: "on"
jail_list:
- name: nat_dhcp
enabled: true
conf:
src: nat_dhcp
- name: admin_git
enabled: true
conf:
src: admin_git
- name: public_dns
enabled: true
conf:
src: public_dns
bhyve_dataset: zdata/vm
bhyve_canmount: "on"
# efi_dev: /dev/gpt/EFI
devfs_rules: "mrmanager_devfs.rules"
users:
talexander:
initialize: true
uid: 11235
gid: 11235
groups:
- name: wheel
authorized_keys:
- yubikey
- main_fido
- backup_fido
mole:
initialize: true
authorized_keys:
- mole