Skip to content

docs: close out the roadmap items this run finished - #39

Merged
Gerrrt merged 1 commit into
mainfrom
docs/roadmap-closeout
Aug 19, 2026
Merged

docs: close out the roadmap items this run finished#39
Gerrrt merged 1 commit into
mainfrom
docs/roadmap-closeout

Conversation

@Gerrrt

@Gerrrt Gerrrt commented Aug 19, 2026

Copy link
Copy Markdown
Owner

Documentation only — nothing that runs changes.

Moved to Done

Added to Done (real work, never tracked as roadmap items)

Corrected

The SNMP rotation Done entry said three of four devices. All four are
rotated. The switch also still accepts its previous community — an accepted
residual recorded in SECURITY.md, not an omission. "Three of four" hid both
halves of that.

Sharpened

The ifXTable item gains what a future attempt needs:

Deliberately left open

SNMPv3 authPriv (blocked on the switch), egress filtering, the MokerLink’s
residual community, the UPS battery, Alloy rollout, blackbox-exporter, the
10.0.30.10 Proxmox/iLO ambiguity, dashboard screenshots, and everything under
Infrastructure and Automation.

Blast radius

None.

  • No change to network segmentation or firewall rules
  • No new port published to a VLAN that could not already reach the service
  • No credential added outside secrets/*.sops.yaml

Verification

./scripts/validate.sh passes; markdownlint-cli2 clean.

  • make validate passes
  • Deployed to the lab — n/a, docs only
  • Docs updated

Grafana behind TLS is done and moves to Done, with the detail that matters —
Prometheus verifies it with ca_file and server_name rather than
insecure_skip_verify.

Three completions that were never roadmap items but belong in the record:
Alertmanager now points at a real receiver, where the ntfy.example.invalid
placeholder had meant no alert was ever delivered; four dashboards now show
their own component's firing alerts, where forty rules previously existed with
nothing surfacing them; and the UPS dashboard no longer reports a battery the
rack does not have.

Corrects a Done entry that has gone stale: the SNMP rotation says three of four
devices. All four are rotated. The switch also still holds its previous
community, which is an accepted residual rather than an omission, and saying
"three of four" hides both halves of that.

The ifXTable item gains the two things a future attempt needs. It is newly
actionable — the switch has only polled at all since the three stacked faults
in #22 were cleared — and it has a trap: this firmware returns ifSpecific with
a zero-length value that makes snmp-exporter discard the entire response, so
the walk enumerates columns and must stay clear of column 22.

Nothing here changes what runs.
@Gerrrt
Gerrrt merged commit 3fc222b into main Aug 19, 2026
3 checks passed
@Gerrrt
Gerrrt deleted the docs/roadmap-closeout branch August 19, 2026 23:21
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant