Commit Graph

195 Commits

Author SHA1 Message Date
8a3d7a8aff chore: make T06 verify scripts executable (chmod +x for check-mfa and keycape-verify used in dry-run evidence) 2026-06-03 02:03:03 +02:00
b45788d5b6 chore(consistency): sync task status from DB [auto]
Updated by fix-consistency on 2026-06-03:
  - update .custodian-brief.md for net-kingdom
2026-06-03 02:02:41 +02:00
bcac6076cb NET-WP-0017: complete T06 dry-run + T07 review/retire (onboarded+locked+offboarded t06-dryrun test user via T05 flow + verifs; evidence+validate pass; archived superseded 0015/16 + old NK-0003/4/5 bootstrap plans per T07; set platform_reopened; updated T06/T07 notes + frontmatter finished) 2026-06-03 02:01:38 +02:00
8ad71f7f26 chore(consistency): sync task status from DB [auto]
Updated by fix-consistency on 2026-06-03:
  - update .custodian-brief.md for net-kingdom
2026-06-03 01:56:22 +02:00
1f0e8490fd NET-WP-0017: implement T05 first user lifecycle operator flow (console template+guide, evidence, validate support, docs integration) 2026-06-03 01:55:43 +02:00
2036857f70 chore(consistency): sync task status from DB [auto]
Updated by fix-consistency on 2026-06-03:
  - update .custodian-brief.md for net-kingdom
2026-06-03 01:53:18 +02:00
5e7844debd NET-WP-0017: complete T03 Close Trial Taint And Retire Bootstrap Admin Paths + T04 Harden (evidence, console template, metadata flags, inventories, reviews) 2026-06-03 01:50:29 +02:00
16b57fb773 Complete OpenBao emergency drill gate 2026-06-03 00:50:23 +02:00
e7567b3fac chore(consistency): sync task status from DB [auto]
Updated by fix-consistency on 2026-06-03:
  - update .custodian-brief.md for net-kingdom
2026-06-03 00:48:36 +02:00
c7bbdac03b Record OpenBao restore drill evidence 2026-06-02 17:23:20 +02:00
eb973621e1 Record T02 audit posture progress 2026-06-02 02:02:05 +02:00
0ab7c14ec9 Add signed custody roster workflow 2026-06-02 01:11:42 +02:00
31e6d6660f Add NET-WP-0017 T02 closure validator 2026-06-02 00:24:18 +02:00
cd82285efe Require emergency drill evidence validation 2026-06-02 00:08:16 +02:00
6bd822ae71 Require concrete OpenBao restore evidence 2026-06-01 23:57:00 +02:00
8f5bfbe20e Hand off durable audit fabric to audit-core 2026-06-01 23:44:04 +02:00
f6053f5c0b Record OpenBao authenticated audit proof 2026-06-01 22:52:42 +02:00
dc4fe883a5 Add OpenBao authenticated proof runbook 2026-06-01 22:46:15 +02:00
1f09e6dcae Record OpenBao audit rollout evidence 2026-06-01 22:30:33 +02:00
53f20bf3e6 Start OpenBao audit recovery closeout 2026-06-01 22:12:22 +02:00
63c705b7c5 chore(consistency): sync task status from DB [auto]
Updated by fix-consistency on 2026-06-01:
  - update .custodian-brief.md for net-kingdom
2026-06-01 22:11:33 +02:00
9a8ec0d9a5 Finish NET-WP-0015 bootstrap handoff 2026-06-01 21:55:30 +02:00
e0c278156f chore(consistency): sync task status from DB [auto]
Updated by fix-consistency on 2026-06-01:
  - update .custodian-brief.md for net-kingdom
2026-06-01 21:54:09 +02:00
8382a11e8e Add bootstrap rebuild readiness workplan 2026-06-01 21:48:48 +02:00
155507eeb7 chore(consistency): sync task status from DB [auto]
Updated by fix-consistency on 2026-06-01:
  - update .custodian-brief.md for net-kingdom
2026-06-01 21:47:18 +02:00
c48e076429 Close OpenBao OIDC admin bootstrap path 2026-06-01 21:20:53 +02:00
ed2cc17165 chore(consistency): sync task status from DB [auto]
Updated by fix-consistency on 2026-06-01:
  - update .custodian-brief.md for net-kingdom
2026-06-01 21:19:11 +02:00
7ce5f5bab0 Simplify KeyCape MFA token refresh 2026-05-29 03:21:58 +02:00
ed991860fa Fix interactive MFA repair prompt 2026-05-29 03:18:44 +02:00
c7b82df267 Add KeyCape privacyIDEA token repair flow 2026-05-29 03:07:17 +02:00
ab99380dec Align Authelia KeyCape token auth method 2026-05-29 02:50:29 +02:00
d797ce5b62 Improve OpenBao OIDC login callback command 2026-05-29 02:31:54 +02:00
dafcd329b2 Fix OpenBao public route action state 2026-05-29 02:22:52 +02:00
e04603779c Update OpenBao onboarding readiness handoff 2026-05-29 02:11:02 +02:00
cac59a37c1 openbao and itsec tooling integration 2026-05-27 18:56:30 +02:00
733f77b448 Record State Hub IDs for onboarding readiness plan 2026-05-26 07:12:09 +02:00
c3cc548060 chore(consistency): sync task status from DB [auto]
Updated by fix-consistency on 2026-05-26:
  - update .custodian-brief.md for net-kingdom
2026-05-26 07:10:22 +02:00
9eabf6cd4d Review OpenBao onboarding readiness workplans 2026-05-26 07:08:25 +02:00
1edcfbb17d Use helper for OpenBao OIDC auth setup 2026-05-26 03:02:08 +02:00
a47c707a9a Verify KeyCape discovery without container wget 2026-05-26 02:47:01 +02:00
59c924bc18 Patch KeyCape OpenBao client without bootstrap secrets 2026-05-26 02:36:04 +02:00
1267df148a Harden KeyCape OpenBao client action 2026-05-26 02:22:24 +02:00
f3c8d70270 Split OpenBao admin identity tasks 2026-05-26 02:13:55 +02:00
9dc7e140b8 Refine OpenBao taint resolution 2026-05-26 01:50:57 +02:00
500e616202 Add OpenBao admin identity stage 2026-05-26 01:17:42 +02:00
cfd8231849 Add OpenBao admin token action 2026-05-26 00:23:06 +02:00
d0c7ff9f3b Clarify OpenBao rotation flow 2026-05-26 00:09:19 +02:00
8520ae8d7d Fix OpenBao rotation commands 2026-05-25 23:56:55 +02:00
d39dbe14b8 Add bootstrap stage rail 2026-05-25 23:36:45 +02:00
cd043ca471 Refine bootstrap actions and runbook templates 2026-05-25 23:10:02 +02:00