From 87bb031ed00b7993a29d74aee2e89875c5444caf Mon Sep 17 00:00:00 2001 From: Alex Auvolat Date: Sun, 25 Dec 2022 22:31:18 +0100 Subject: Migrate prod cluster secrets to new format --- cluster/prod/app/matrix/secrets/chat/coturn/static-auth | 1 - cluster/prod/app/matrix/secrets/chat/coturn/static_auth_secret_zinzdev | 1 - cluster/prod/app/matrix/secrets/chat/easybridge/as_token | 1 - cluster/prod/app/matrix/secrets/chat/easybridge/db_pass | 1 - cluster/prod/app/matrix/secrets/chat/easybridge/db_user | 1 - cluster/prod/app/matrix/secrets/chat/easybridge/hs_token | 1 - cluster/prod/app/matrix/secrets/chat/easybridge/web_session_key | 2 -- cluster/prod/app/matrix/secrets/chat/fb2mx/as_token | 1 - cluster/prod/app/matrix/secrets/chat/fb2mx/db_url | 1 - cluster/prod/app/matrix/secrets/chat/fb2mx/hs_token | 1 - cluster/prod/app/matrix/secrets/chat/synapse/homeserver.signing.key | 1 - cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.crt | 1 - cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.dh | 1 - cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.key | 1 - cluster/prod/app/matrix/secrets/chat/synapse/ldap_binddn | 1 - cluster/prod/app/matrix/secrets/chat/synapse/ldap_bindpw | 1 - cluster/prod/app/matrix/secrets/chat/synapse/postgres_db | 1 - cluster/prod/app/matrix/secrets/chat/synapse/postgres_pwd | 1 - cluster/prod/app/matrix/secrets/chat/synapse/postgres_user | 1 - cluster/prod/app/matrix/secrets/chat/synapse/registration_shared_secret | 1 - cluster/prod/app/matrix/secrets/chat/synapse/s3_access_key | 1 - cluster/prod/app/matrix/secrets/chat/synapse/s3_secret_key | 1 - 22 files changed, 23 deletions(-) delete mode 100644 cluster/prod/app/matrix/secrets/chat/coturn/static-auth delete mode 100644 cluster/prod/app/matrix/secrets/chat/coturn/static_auth_secret_zinzdev delete mode 100644 cluster/prod/app/matrix/secrets/chat/easybridge/as_token delete mode 100644 cluster/prod/app/matrix/secrets/chat/easybridge/db_pass delete mode 100644 cluster/prod/app/matrix/secrets/chat/easybridge/db_user delete mode 100644 cluster/prod/app/matrix/secrets/chat/easybridge/hs_token delete mode 100644 cluster/prod/app/matrix/secrets/chat/easybridge/web_session_key delete mode 100644 cluster/prod/app/matrix/secrets/chat/fb2mx/as_token delete mode 100644 cluster/prod/app/matrix/secrets/chat/fb2mx/db_url delete mode 100644 cluster/prod/app/matrix/secrets/chat/fb2mx/hs_token delete mode 100644 cluster/prod/app/matrix/secrets/chat/synapse/homeserver.signing.key delete mode 100644 cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.crt delete mode 100644 cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.dh delete mode 100644 cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.key delete mode 100644 cluster/prod/app/matrix/secrets/chat/synapse/ldap_binddn delete mode 100644 cluster/prod/app/matrix/secrets/chat/synapse/ldap_bindpw delete mode 100644 cluster/prod/app/matrix/secrets/chat/synapse/postgres_db delete mode 100644 cluster/prod/app/matrix/secrets/chat/synapse/postgres_pwd delete mode 100644 cluster/prod/app/matrix/secrets/chat/synapse/postgres_user delete mode 100644 cluster/prod/app/matrix/secrets/chat/synapse/registration_shared_secret delete mode 100644 cluster/prod/app/matrix/secrets/chat/synapse/s3_access_key delete mode 100644 cluster/prod/app/matrix/secrets/chat/synapse/s3_secret_key (limited to 'cluster/prod/app/matrix/secrets/chat') diff --git a/cluster/prod/app/matrix/secrets/chat/coturn/static-auth b/cluster/prod/app/matrix/secrets/chat/coturn/static-auth deleted file mode 100644 index 43628ef..0000000 --- a/cluster/prod/app/matrix/secrets/chat/coturn/static-auth +++ /dev/null @@ -1 +0,0 @@ -USER coturn static-auth (what is this?) diff --git a/cluster/prod/app/matrix/secrets/chat/coturn/static_auth_secret_zinzdev b/cluster/prod/app/matrix/secrets/chat/coturn/static_auth_secret_zinzdev deleted file mode 100644 index c61486d..0000000 --- a/cluster/prod/app/matrix/secrets/chat/coturn/static_auth_secret_zinzdev +++ /dev/null @@ -1 +0,0 @@ -USER Serveur coturn (TURN/STUN) d'Adrien, c'est un jeton d'identification. \ No newline at end of file diff --git a/cluster/prod/app/matrix/secrets/chat/easybridge/as_token b/cluster/prod/app/matrix/secrets/chat/easybridge/as_token deleted file mode 100644 index 5fa4e3c..0000000 --- a/cluster/prod/app/matrix/secrets/chat/easybridge/as_token +++ /dev/null @@ -1 +0,0 @@ -CMD openssl rand -hex 32 diff --git a/cluster/prod/app/matrix/secrets/chat/easybridge/db_pass b/cluster/prod/app/matrix/secrets/chat/easybridge/db_pass deleted file mode 100644 index 7e1f94b..0000000 --- a/cluster/prod/app/matrix/secrets/chat/easybridge/db_pass +++ /dev/null @@ -1 +0,0 @@ -SERVICE_PASSWORD easybridge diff --git a/cluster/prod/app/matrix/secrets/chat/easybridge/db_user b/cluster/prod/app/matrix/secrets/chat/easybridge/db_user deleted file mode 100644 index 436267c..0000000 --- a/cluster/prod/app/matrix/secrets/chat/easybridge/db_user +++ /dev/null @@ -1 +0,0 @@ -CONST easybridge diff --git a/cluster/prod/app/matrix/secrets/chat/easybridge/hs_token b/cluster/prod/app/matrix/secrets/chat/easybridge/hs_token deleted file mode 100644 index 5fa4e3c..0000000 --- a/cluster/prod/app/matrix/secrets/chat/easybridge/hs_token +++ /dev/null @@ -1 +0,0 @@ -CMD openssl rand -hex 32 diff --git a/cluster/prod/app/matrix/secrets/chat/easybridge/web_session_key b/cluster/prod/app/matrix/secrets/chat/easybridge/web_session_key deleted file mode 100644 index 614bed7..0000000 --- a/cluster/prod/app/matrix/secrets/chat/easybridge/web_session_key +++ /dev/null @@ -1,2 +0,0 @@ -CMD openssl rand -hex 32 - diff --git a/cluster/prod/app/matrix/secrets/chat/fb2mx/as_token b/cluster/prod/app/matrix/secrets/chat/fb2mx/as_token deleted file mode 100644 index 5fa4e3c..0000000 --- a/cluster/prod/app/matrix/secrets/chat/fb2mx/as_token +++ /dev/null @@ -1 +0,0 @@ -CMD openssl rand -hex 32 diff --git a/cluster/prod/app/matrix/secrets/chat/fb2mx/db_url b/cluster/prod/app/matrix/secrets/chat/fb2mx/db_url deleted file mode 100644 index f06e265..0000000 --- a/cluster/prod/app/matrix/secrets/chat/fb2mx/db_url +++ /dev/null @@ -1 +0,0 @@ -USER fb2mx database URL, format: postgres://username:password@hostname/dbname diff --git a/cluster/prod/app/matrix/secrets/chat/fb2mx/hs_token b/cluster/prod/app/matrix/secrets/chat/fb2mx/hs_token deleted file mode 100644 index 5fa4e3c..0000000 --- a/cluster/prod/app/matrix/secrets/chat/fb2mx/hs_token +++ /dev/null @@ -1 +0,0 @@ -CMD openssl rand -hex 32 diff --git a/cluster/prod/app/matrix/secrets/chat/synapse/homeserver.signing.key b/cluster/prod/app/matrix/secrets/chat/synapse/homeserver.signing.key deleted file mode 100644 index 099bd18..0000000 --- a/cluster/prod/app/matrix/secrets/chat/synapse/homeserver.signing.key +++ /dev/null @@ -1 +0,0 @@ -USER Synapse homeserver ed25519 signing key diff --git a/cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.crt b/cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.crt deleted file mode 100644 index b696093..0000000 --- a/cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.crt +++ /dev/null @@ -1 +0,0 @@ -SSL_CERT synapse im.deuxfleurs.fr diff --git a/cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.dh b/cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.dh deleted file mode 100644 index 0231fed..0000000 --- a/cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.dh +++ /dev/null @@ -1 +0,0 @@ -USER_LONG DH parameters for matrix ssl key? how does this work? diff --git a/cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.key b/cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.key deleted file mode 100644 index feee544..0000000 --- a/cluster/prod/app/matrix/secrets/chat/synapse/homeserver.tls.key +++ /dev/null @@ -1 +0,0 @@ -SSL_KEY synapse im.deuxfleurs.fr diff --git a/cluster/prod/app/matrix/secrets/chat/synapse/ldap_binddn b/cluster/prod/app/matrix/secrets/chat/synapse/ldap_binddn deleted file mode 100644 index 2631bef..0000000 --- a/cluster/prod/app/matrix/secrets/chat/synapse/ldap_binddn +++ /dev/null @@ -1 +0,0 @@ -SERVICE_DN matrix Matrix chat server diff --git a/cluster/prod/app/matrix/secrets/chat/synapse/ldap_bindpw b/cluster/prod/app/matrix/secrets/chat/synapse/ldap_bindpw deleted file mode 100644 index ba07446..0000000 --- a/cluster/prod/app/matrix/secrets/chat/synapse/ldap_bindpw +++ /dev/null @@ -1 +0,0 @@ -SERVICE_PASSWORD matrix diff --git a/cluster/prod/app/matrix/secrets/chat/synapse/postgres_db b/cluster/prod/app/matrix/secrets/chat/synapse/postgres_db deleted file mode 100644 index 74eefa7..0000000 --- a/cluster/prod/app/matrix/secrets/chat/synapse/postgres_db +++ /dev/null @@ -1 +0,0 @@ -CONST synapse diff --git a/cluster/prod/app/matrix/secrets/chat/synapse/postgres_pwd b/cluster/prod/app/matrix/secrets/chat/synapse/postgres_pwd deleted file mode 100644 index ba07446..0000000 --- a/cluster/prod/app/matrix/secrets/chat/synapse/postgres_pwd +++ /dev/null @@ -1 +0,0 @@ -SERVICE_PASSWORD matrix diff --git a/cluster/prod/app/matrix/secrets/chat/synapse/postgres_user b/cluster/prod/app/matrix/secrets/chat/synapse/postgres_user deleted file mode 100644 index b08e86a..0000000 --- a/cluster/prod/app/matrix/secrets/chat/synapse/postgres_user +++ /dev/null @@ -1 +0,0 @@ -CONST matrix diff --git a/cluster/prod/app/matrix/secrets/chat/synapse/registration_shared_secret b/cluster/prod/app/matrix/secrets/chat/synapse/registration_shared_secret deleted file mode 100644 index b82f191..0000000 --- a/cluster/prod/app/matrix/secrets/chat/synapse/registration_shared_secret +++ /dev/null @@ -1 +0,0 @@ -CMD head -c 32 /dev/urandom | base64 diff --git a/cluster/prod/app/matrix/secrets/chat/synapse/s3_access_key b/cluster/prod/app/matrix/secrets/chat/synapse/s3_access_key deleted file mode 100644 index ab09a8e..0000000 --- a/cluster/prod/app/matrix/secrets/chat/synapse/s3_access_key +++ /dev/null @@ -1 +0,0 @@ -USER matrix diff --git a/cluster/prod/app/matrix/secrets/chat/synapse/s3_secret_key b/cluster/prod/app/matrix/secrets/chat/synapse/s3_secret_key deleted file mode 100644 index ab09a8e..0000000 --- a/cluster/prod/app/matrix/secrets/chat/synapse/s3_secret_key +++ /dev/null @@ -1 +0,0 @@ -USER matrix -- cgit v1.2.3