docs(backups): harden + live-activate /mnt/compose automount on ana-docker

This commit is contained in:
vh
2026-06-20 16:21:05 -07:00
parent 76b317ce3e
commit 5a3a75b73d
2 changed files with 7 additions and 4 deletions
+3 -2
View File
@@ -206,8 +206,9 @@ _As of 2026-06-20:_
(2) fstab hardened — ana-docker `/mnt/backup` → `noauto,x-systemd.automount,…`
(autofs self-heals, active next boot; `.bak-pre-harden` saved); (3) esh-pve-nas
VERIFIED **not** PBS-covered → esh-vm-db (a DB!) + vm-esh-nas are restic-only.
STILL OPEN: rotate the 5 rest-server creds (operator, offline); harden
`/mnt/compose` too (also bare defaults); the 3 esh + ana-docker restic clients
`/mnt/compose` ALSO hardened + automount activated live (2026-06-20, binds no
container — proved the autofs pattern works on ana-docker). STILL OPEN: rotate the
5 rest-server creds (operator, offline); the 3 esh + ana-docker restic clients
clear at tonight's 01:00.
- **ana-docker disk incident RESOLVED — root cause was a 94 GB unrotated