prometheus monitoring
Prometheus monitoring is work in progress with a basic prometheus-node-exporter setup with alertmanager, prometheus.
One question is how we access the prometheus exporters, for now the plan is to open firewall ports for monitoring.archlinux.org on every to be monitored host. An alternative would be to roll out wireguard to also replace the current postgresql firewall rules and in the future make it easier to access services securely.
Actionables
- Finish tasks in meeting request
- Write a Grafana role with provisioning
Who
- Jelle
Finer grained access
Actionables
Who
Password manager
Actionables
Discussed previously in a meeting.
-
Requirements:
- has to be used remote
- entry level per people
- sso integration or gpg?
- for storing "team" credentials such as PyPi, keycloak admin creds
-
Solutions to look into:
- password-storage
- bitwarden
- keepass
- gopass
Who
- grazzolini