Expose the artifactapi remotes API's new mirrorlist field so users can
configure extra upstream mirror base URLs. The API load-balances
base_url + mirrorlist with failover.
- Add optional mirrorlist list attribute to the remote resource schema
and the remote data source (read-only).
- Wire it end-to-end: TF model, wire model (json mirrorlist,omitempty),
modelToAPI/apiToModel, and preserve null/empty list semantics to avoid
plan churn.
- Scope to rpm/deb/alpine via ValidateConfig (plan-time error on other
remote types); API 400 is the backstop.
- Docs + rpm example; unit tests for round-trip, null handling, and the
type-scoping validation.
Add upstream_dial_timeout, upstream_tls_timeout and
upstream_response_header_timeout (seconds; 0 = server default) to the
remote resource and data source, matching the artifactapi server. Wire
them through the API model, schema, create/read/update mapping, docs and
unit tests.