Rehearse rootless Gitea restore from verified backup

This commit is contained in:
Fabio Scotto di Santolo
2026-10-01 21:33:18 +02:00
parent 256d758b1a
commit 06d3b175cb
8 changed files with 326 additions and 9 deletions

View File

@@ -300,9 +300,10 @@ and Aegis (`10.0.0.2`). Their state is initialized ex novo in `/zpool/services/d
The Gitea move from Prometheus to Atlas is staged in
[`docs/atlas-gitea-migration.md`](docs/atlas-gitea-migration.md). Atlas has a dedicated dataset and
non-login account with an inactive rootless user Quadlet. No Gitea data has been restored or moved yet.
NPM remains on Prometheus; the source stack and public routes stay unchanged until a separately
validated HTTPS and SSH cutover.
non-login account with an inactive rootless user Quadlet. An isolated copy from the verified
Prometheus backup passed SQLite, Git, and network-disabled
rootless-container checks; it is not the final cutover copy. NPM remains on Prometheus; the source
stack and public routes stay unchanged until a separately validated HTTPS and SSH cutover.
The separate `wireguard_overlay` role manages `wg0` between Prometheus (`10.0.0.1`) and Aegis
(`10.0.0.2`), generating private keys once on their respective hosts and exchanging only public keys