Commit 3eeb402
authored
feat: allow officina-ci to SSH to officina-instance hosts (#361)
Add Tailscale ACL grant and SSH rule so tag:officina-ci can reach
tag:officina-instance on port 22 as root. Required for the officina
provision-host-secrets workflow to deposit tokens and trigger the
reconciler via tailscale ssh.1 parent b0c8457 commit 3eeb402
1 file changed
Lines changed: 11 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
84 | 84 | | |
85 | 85 | | |
86 | 86 | | |
| 87 | + | |
| 88 | + | |
| 89 | + | |
| 90 | + | |
| 91 | + | |
87 | 92 | | |
88 | 93 | | |
89 | 94 | | |
| |||
119 | 124 | | |
120 | 125 | | |
121 | 126 | | |
| 127 | + | |
| 128 | + | |
| 129 | + | |
| 130 | + | |
| 131 | + | |
| 132 | + | |
122 | 133 | | |
123 | 134 | | |
124 | 135 | | |
| |||
0 commit comments