aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--personal_infra/playbooks/roles/talos/README.md4
-rw-r--r--personal_infra/playbooks/roles/talos/tasks/main.yaml4
2 files changed, 4 insertions, 4 deletions
diff --git a/personal_infra/playbooks/roles/talos/README.md b/personal_infra/playbooks/roles/talos/README.md
index ec364022..6c45f997 100644
--- a/personal_infra/playbooks/roles/talos/README.md
+++ b/personal_infra/playbooks/roles/talos/README.md
@@ -1,4 +1,4 @@
```
-$ talosctl gen secrets -o talos/secrets.yaml
-$ ansible-vault encrypt talos/secrets.yaml
+$ talosctl gen secrets -o talos/$cluster-secrets.yaml
+$ ansible-vault encrypt talos/$cluster-secrets.yaml
```
diff --git a/personal_infra/playbooks/roles/talos/tasks/main.yaml b/personal_infra/playbooks/roles/talos/tasks/main.yaml
index 92d54b38..672061bc 100644
--- a/personal_infra/playbooks/roles/talos/tasks/main.yaml
+++ b/personal_infra/playbooks/roles/talos/tasks/main.yaml
@@ -38,7 +38,7 @@
- name: generate controlplane config
shell:
- cmd: talosctl gen config -t controlplane -o talos/host-{{ inventory_hostname }}.yaml --with-secrets <(ansible-vault view talos/secrets.yaml) --config-patch-control-plane @talos/host-{{ inventory_hostname }}.patch {{ talos_host.talos_cluster }} {{ talos_clusters[talos_host.talos_cluster].endpoint }}
+ cmd: talosctl gen config -t controlplane -o talos/host-{{ inventory_hostname }}.yaml --with-secrets <(ansible-vault view talos/{{ talos_host.talos_cluster }}-secrets.yaml) --config-patch-control-plane @talos/host-{{ inventory_hostname }}.patch {{ talos_host.talos_cluster }} {{ talos_clusters[talos_host.talos_cluster].endpoint }}
chdir: "{{ inventory_dir }}"
delegate_to: 127.0.0.1
when: "not 'resources' in nodes or nodes.resources|length == 0"
@@ -52,7 +52,7 @@
- name: generate talosconfig
shell:
- cmd: talosctl gen config -t talosconfig -o talos/talosconfig-{{ talos_host.talos_cluster }} --with-secrets <(ansible-vault view talos/secrets.yaml) {{ talos_host.talos_cluster }} {{ talos_clusters[talos_host.talos_cluster].endpoint }}
+ cmd: talosctl gen config -t talosconfig -o talos/talosconfig-{{ talos_host.talos_cluster }} --with-secrets <(ansible-vault view talos/{{ talos_host.talos_cluster }}-secrets.yaml) {{ talos_host.talos_cluster }} {{ talos_clusters[talos_host.talos_cluster].endpoint }}
chdir: "{{ inventory_dir }}"
delegate_to: 127.0.0.1
when: "not 'resources' in nodes or nodes.resources|length == 0"