Post-Tyranny-Tech-Infrastru.../ansible/roles
Pieter 9a38486322 feat: Add brand recovery flow config and improve security
- Add brand default recovery flow configuration to Authentik setup
- Update create_recovery_flow.py to set brand's recovery flow automatically
- All 17 servers now have brand recovery flow configured

Security improvements:
- Remove secrets/clients/*.sops.yaml from git tracking
- Remove ansible/host_vars/ from git tracking
- Update .gitignore to exclude sensitive config files
- Files remain encrypted and local, just not in repo

Note: Files still exist in git history. Consider using BFG Repo Cleaner
to remove them completely if needed.

🤖 Generated with Claude Code

Co-Authored-By: Claude <noreply@anthropic.com>
2026-01-26 09:17:08 +01:00
..
authentik feat: Add brand recovery flow config and improve security 2026-01-26 09:17:08 +01:00
common feat: Add DNS configuration and Docker improvements 2026-01-20 19:06:32 +01:00
diun feat: Configure Diun with Docker Hub auth and watchRepo control 2026-01-24 13:16:25 +01:00
docker feat: Add DNS configuration and Docker improvements 2026-01-20 19:06:32 +01:00
kuma security: Remove exposed Kuma API key from defaults 2026-01-20 21:46:18 +01:00
mailgun/tasks fix: Resolve Authentik email delivery issues 2026-01-13 09:52:23 +01:00
nextcloud refactor: Remove Zitadel references and clean up templates 2026-01-23 20:40:34 +01:00
traefik refactor: Remove Zitadel references and clean up templates 2026-01-23 20:40:34 +01:00