Daniel Allaire danallaire
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-02 15:09:41 -04:00
7549c61e75 serveur_dovecot (Dovecot 2.4) : IMAP + auth LDAP + TLS step_ca — prouvé
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-02 13:27:06 -04:00
f3e78c55e1 docs: architecture d'identité/SSO (OpenLDAP source, Keycloak fédéré)
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-02 12:52:51 -04:00
e01adac67b Courriel : pivot de Stalwart vers Postfix/Dovecot/rspamd
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-02 10:24:54 -04:00
e3efbb5b1a serveur_stalwart : Phase 1 (install + démarrage), code prod
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-02 09:45:40 -04:00
1a59af4d5b serveur_openldap : installer debconf-utils (module debconf) — validé en réel
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-02 09:32:27 -04:00
68af9172c3 deployer : socle en premier dans l'ordre des playbooks
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-02 07:43:32 -04:00
6117e2820c docs(courriel): faits réels du recon DNS + démarche A/B
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-02 07:27:47 -04:00
1edd205d13 serveur_openldap : TLS via step_ca + organisation en intrant (code prod)
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-02 06:50:52 -04:00
1e2c323156 docs: cadrage du service de courriel souverain (Stalwart, full self-host)
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-02 00:00:16 -04:00
a5903f192b client_pki : SANs explicites sur le certificat d'hôte (mTLS)
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-01 23:26:48 -04:00
a8319d4367 serveur_nginx : corriger server_tokens en double (Debian 13)
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-01 22:17:46 -04:00
937ac700b9 instancier : déchiffrer la voûte pour ansible-inventory (exit 4)
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-01 21:44:30 -04:00
27b8f51f15 step_ca : dry-run check-safe (install + init du dépôt Smallstep)
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-01 21:29:20 -04:00
bbcf087904 Câbler les secrets des rôles à leur variable de voûte (vault_*)
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-01 21:18:12 -04:00
4d26c15104 GUI : « Vérifier » demande (optionnellement) le mot de passe vault
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-01 21:01:54 -04:00
f82630de6c Rendre le dry-run (--check) fiable sur les rôles applicatifs
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-01 17:52:42 -04:00
213724f566 GUI : réparer « Appliquer le plan » (forçait pas) + rendre l'auto-actif visible
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-01 17:39:50 -04:00
347e739818 GUI : état réel (sonde de vie) + auto-actif
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-01 15:58:39 -04:00
7a98678bd9 GUI : bouton « Pousser » (flux 100 % cliquable)
danallaire pushed to main at Alliance-Boreale/Set-OPS-Public 2026-07-01 15:38:45 -04:00
da85af2a62 Corriger 3 bugs trouvés au premier déploiement réel (asgard)