unkinben 3ec4783102
ci/woodpecker/pr/ruby-validate Pipeline was successful
ci/woodpecker/pr/puppet-lint Pipeline was successful
ci/woodpecker/pr/yamllint Pipeline was successful
ci/woodpecker/pr/bolt-validate Pipeline was successful
ci/woodpecker/pr/erb-validate Pipeline was successful
ci/woodpecker/pr/epp-validate Pipeline was successful
ci/woodpecker/pr/puppet-validate Pipeline was successful
ci/woodpecker/pr/ruby-check Pipeline was successful
vault: install openbao-plugin-secrets-gitea on the storage role
Why: the new gitea token secrets engine (vault-plugin-secrets-gitea) needs
its plugin binary present on the OpenBao servers before terraform-vault can
register it in the catalog and mount it. This mirrors how the rancher, gpg,
and litellm secrets plugins are installed.

Change:
- Add openbao-plugin-secrets-gitea to profiles::packages::include on the vault
  storage role, pinned to 0.1.0 so the on-disk binary matches the sha256 that
  terraform-vault pins in its plugin catalog entry.

Claude-Session: https://claude.ai/code/session_015ur3i7D2azsMAWTSVABApv
2026-07-27 19:01:22 +10:00
2026-03-17 17:38:22 +11:00
2026-02-03 19:56:14 +11:00
2023-07-02 14:21:09 +10:00
2023-06-21 22:03:43 +10:00
2025-07-08 20:19:36 +10:00
2024-02-17 22:57:36 +11:00
S
Description
production puppet-control repository
3.7 MiB
Languages
Puppet 65.8%
HTML 28.5%
Ruby 5.7%