|
SEC-012 + SEC-013: ledger rows for the two credentials this deploy created (obligation was outstanding)
SEC-012: dedicated MAAS->libvirt service key. Held by a daemon on BOTH controllers (MAAS dials the pod from the REGION, measured), authorizes a libvirt-group user, so it can drive every inner node VM and the DC edge. Rotation obligation + a SCOPE question: libvirt-group is broader than the power verbs MAAS needs; tighter grant is the hardening candidate and is Roosevelt-relevant (IPMI has the same power-only-vs-full-control question). SEC-013: admin-scoped MAAS API key materialized to disk on the region; surfaces include any maas-provider tfstate and a CLI profile. Verified by format only, never printed. Tied to whether vr1-dc0-maas is retired. Open SEC count 7 -> 9; G14 row updated in this commit (GA-R1/C1). Co-Authored-By: Claude Fable 5 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_01KiUu1oqt76tWvV4vEC3NAr |
|---|
|
|
| docs/CURRENT-STATE.md |
|---|
| docs/security-ledger.md |
|---|