[release] Bump to 0.179.47 — deploy Woodpecker CI (ci.0mpc.com)#13
Merged
Conversation
Update live_apply_evidence receipts for glitchtip, outline, and excalidraw to reflect successful 2026-05-20 deployments. Bump repo_version and platform_version to 0.179.46. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
…utline_runtime to use hex filter Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
… vhost inventory/hosts.yml: fix ansible_host IPs that were offset by 10 for 12 VMs (docker-build, backup, coolify, coolify-apps, artifact-cache, runtime-ai, runtime-general, postgres-replica, postgres-apps, postgres-data, runtime-comms, runtime-apps). All now match actual Proxmox cloud-init values. nginx_edge_publication: add database.0mpc.com as an authenticated proxy to Adminer running on runtime-general-lv3:8082. Adminer deployed manually (docker run adminer:4.8.1) with ADMINER_DEFAULT_SERVER=10.10.10.50. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
- nginx-site-neko.conf.j2: fix hostvars lookup (runtime-comms → runtime-comms-lv3) and use public_edge_effective_cert_name for wildcard cert path instead of per-domain cert that does not exist - inventory/group_vars/platform.yml: add neko_instances.operator entry for operator@0mpc.com on port 8080 (provisioned via neko_tool.py) - inventory/host_vars/proxmox-host.yml: allow docker-runtime-lv3 (10.10.10.20) to reach OpenBao at runtime-control-lv3:8201 so plausible and other services on docker-runtime can fetch secrets at startup - playbooks/vars/plausible.yml: skip local-OpenBao probe since plausible runs on docker-runtime, not runtime-control; OpenBao is reached remotely Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
- Fix woodpecker_runtime OpenBao integration: point compose-env helper at remote OpenBao on runtime-control-lv3 (not localhost) by adding common_openbao_compose_env_openbao_address and setting common_openbao_compose_env_manage_local_openbao_runtime: false, matching the minio_runtime/livekit_runtime pattern for services not co-located with the OpenBao server - Add port 3003 (Gitea API) to the Proxmox VM-level firewall inbound rule for docker-runtime-lv3 → runtime-control-lv3; without this the Woodpecker OAuth bootstrap wait task timed out after 48 retries - Simplify woodpecker_runtime verify.yml health check to use uri directly - Woodpecker public endpoint ci.0mpc.com confirmed live (HTTP 204/healthz) with Gitea OAuth bootstrap and seed repo secret applied Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Release checklist
Test plan
🤖 Generated with Claude Code