update links to main branch

Signed-off-by: Mark O Brien <markobri@redhat.com>
This commit is contained in:
Mark O Brien 2021-12-20 15:16:38 +00:00
parent fa23906fe6
commit 8a1e7951fa

View file

@ -3,17 +3,17 @@
- In the Fedora Infra Ansible repo edit the file **roles/batcave/files/allows**. - In the Fedora Infra Ansible repo edit the file **roles/batcave/files/allows**.
Under the correct section add **require ip** ***<server_ip>*** Under the correct section add **require ip** ***<server_ip>***
- When this change is pushed run the batcave ansible playbook on the batcave. - When this change is pushed run the batcave ansible playbook on the batcave.
You will need sysadmin-main access for this You will need sysadmin-main access for this
- Create openvpn and 2fa certificates for the new server. - Create openvpn and 2fa certificates for the new server.
This requires sysadmin main access This requires sysadmin main access
> https://pagure.io/fedora-infra/howtos/blob/master/f/generate_2fa_keys.md > * https://pagure.io/fedora-infra/howtos/blob/main/f/generate_2fa_keys.md
> https://pagure.io/fedora-infra/howtos/blob/master/f/generate_openvpn_keys.md > * https://pagure.io/fedora-infra/howtos/blob/main/f/generate_openvpn_keys.md
- In the dns repo on batcave edit the file master/168.192.in-addr.arpa - In the dns repo on batcave edit the file master/168.192.in-addr.arpa
Add the new host to one of the unused adresses. Add the new host to one of the unused adresses.
Ensure the hostname ends in .vpn.fedoraproject.org. Ensure the hostname ends in .vpn.fedoraproject.org.
Don't forget to update the serial before saving. Don't forget to update the serial before saving.
@ -21,11 +21,11 @@ Don't forget to update the serial before saving.
the new 192.168.*.* address created in the previous step to the required section the new 192.168.*.* address created in the previous step to the required section
Don't forget to update the serial before saving. Don't forget to update the serial before saving.
- When the above edits are done follow the instructions in the DNS sysadmin sop - When the above edits are done follow the instructions in the DNS sysadmin sop
about signing and pushing new dns chnages. about signing and pushing new dns chnages.
> https://fedora-infra-docs.readthedocs.io/en/latest/sysadmin-guide/sops/dns.html#editing-the-domain-s > https://docs.fedoraproject.org/en-US/infra/sysadmin_guide/dns/
- Finally in the Fedora Infra Ansible repo add a new file - Finally in the Fedora Infra Ansible repo add a new file
**roles/openvpn/server/files/ccd/*<server_name>*** with the new 192.168.*.* address. **roles/openvpn/server/files/ccd/*<server_name>*** with the new 192.168.*.* address.
View one of the existing files in the repo for a sample of formatting. View one of the existing files in the repo for a sample of formatting.
This change will be run when the server is provisioned. This change will be run when the server is provisioned.