feat: prevent robots from crawling long branches and prevent zip download #146

Open
thesuperRL wants to merge 1 commit from crawler-archive-disk into main
Owner
No description provided.
feat: prevent robots from crawling long branches and prevent zip download
All checks were successful
atlantis/plan 17/17 projects planned successfully.
atlantis/pre_workflow_hook: Generate atlantis.yaml from the flake succeeded.
atlantis/plan: posthog No changes. Your infrastructure matches the configuration.
atlantis/plan: governance No changes. Your infrastructure matches the configuration.
atlantis/plan: forgejo No changes. Your infrastructure matches the configuration.
atlantis/plan: snot No changes. Your infrastructure matches the configuration.
atlantis/plan: garage-webadmin No changes. Your infrastructure matches the configuration.
kennel/build build succeeded
atlantis/plan: litellm No changes. Your infrastructure matches the configuration.
kennel/deploy deployment healthy
atlantis/plan: webhook No changes. Your infrastructure matches the configuration.
atlantis/plan: keycloak No changes. Your infrastructure matches the configuration.
atlantis/plan: hosts No changes. Your infrastructure matches the configuration.
atlantis/plan: vaultwarden No changes. Your infrastructure matches the configuration.
atlantis/plan: kennel No changes. Your infrastructure matches the configuration.
atlantis/plan: headscale No changes. Your infrastructure matches the configuration.
atlantis/plan: matrix No changes. Your infrastructure matches the configuration.
atlantis/plan: ricochet No changes. Your infrastructure matches the configuration.
atlantis/plan: observability No changes. Your infrastructure matches the configuration.
atlantis/plan: openbao No changes. Your infrastructure matches the configuration.
atlantis/plan: atlantis No changes. Your infrastructure matches the configuration.
atlantis/apply 17/17 projects up to date.
CI / check-1 (pull_request) Successful in 2m54s
CI / build (pull_request) Successful in 3m24s
CI / check (pull_request) Successful in 0s
4fd8b29286

Kennel Deployments

Service URL
docs https://infrastructure-docs-pr-146.scottylabs.net

Last updated for commit 4fd8b29.

<!-- kennel-deployment --> ### Kennel Deployments | Service | URL | | --- | --- | | docs | https://infrastructure-docs-pr-146.scottylabs.net | Last updated for commit `4fd8b29`.

Ran Plan for 17 projects:

  1. project: posthog dir: . workspace: posthog
  2. project: governance dir: . workspace: governance
  3. project: forgejo dir: . workspace: forgejo
  4. project: snot dir: . workspace: snot
  5. project: garage-webadmin dir: . workspace: garage-webadmin
  6. project: litellm dir: . workspace: litellm
  7. project: webhook dir: . workspace: webhook
  8. project: keycloak dir: . workspace: keycloak
  9. project: hosts dir: . workspace: hosts
  10. project: vaultwarden dir: . workspace: vaultwarden
  11. project: kennel dir: . workspace: kennel
  12. project: headscale dir: . workspace: headscale
  13. project: matrix dir: . workspace: matrix
  14. project: ricochet dir: . workspace: ricochet
  15. project: observability dir: . workspace: observability
  16. project: openbao dir: . workspace: openbao
  17. project: atlantis dir: . workspace: atlantis

1. project: posthog dir: . workspace: posthog

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
this derivation will be built:
  /nix/store/1c6gaw2qhpy68xb677zbsbddk48wh0kk-config.tf.json.drv
building '/nix/store/1c6gaw2qhpy68xb677zbsbddk48wh0kk-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding hashicorp/random versions matching "~> 3.0"...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
data.cloudflare_zones.all: Reading...
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 1s [id=scottylabs]
data.cloudflare_zones.all: Read complete after 1s
cloudflare_dns_record.this["v"]: Refreshing state... [id=a34d75a85d3128693767b2db9b7f233e]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p posthog
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p posthog
    

No changes. Your infrastructure matches the configuration.


2. project: governance dir: . workspace: governance

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
this derivation will be built:
  /nix/store/6v622w15ckamjncmy5mfcf8qcmnqhvql-config.tf.json.drv
this path will be fetched (4.1 KiB download, 14.9 KiB unpacked):
  /nix/store/l9wkilihbd6xg5f7dmwzyxjlmaly45ib-jq-1.8.2-dev
copying path '/nix/store/l9wkilihbd6xg5f7dmwzyxjlmaly45ib-jq-1.8.2-dev' from 'http://localhost:5000'...
building '/nix/store/6v622w15ckamjncmy5mfcf8qcmnqhvql-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding hashicorp/random versions matching "~> 3.0"...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
vault_policy.governance: Refreshing state... [id=governance]
vault_kv_secret_v2.governance_ci_bot_token: Refreshing state... [id=secret/data/secretspec/governance/ci/BOT_TOKEN]
vault_approle_auth_backend_role.governance: Refreshing state... [id=auth/approle/role/governance]
data.cloudflare_zones.all: Reading...
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
data.keycloak_openid_client.realm_management: Reading...
keycloak_openid_client.governance_cli: Refreshing state... [id=f19d0308-19a8-4fc4-aa5f-f909fc38c5fe]
data.keycloak_openid_client.realm_management: Read complete after 0s [id=a0a15f13-b554-4bed-9fb2-3e63e0301278]
data.cloudflare_zones.all: Read complete after 1s
vault_kv_secret_v2.governance_ci_keycloak_client_id: Refreshing state... [id=secret/data/secretspec/governance/ci/KEYCLOAK_CLIENT_ID]
keycloak_openid_client_service_account_role.governance_cli_realm_management["manage-users"]: Refreshing state... [id=90ac5826-08a5-4d89-8855-3d7b249de131/eb96eb71-82eb-4317-b8f5-326472e11484]
keycloak_openid_client_service_account_role.governance_cli_realm_management["view-users"]: Refreshing state... [id=90ac5826-08a5-4d89-8855-3d7b249de131/65f4c673-fc55-430c-b4b6-fd14ed151966]
keycloak_openid_client_service_account_role.governance_cli_realm_management["query-clients"]: Refreshing state... [id=90ac5826-08a5-4d89-8855-3d7b249de131/16d40468-7ba1-4f17-ba0d-0741880f291a]
vault_kv_secret_v2.governance_ci_keycloak_client_secret: Refreshing state... [id=secret/data/secretspec/governance/ci/KEYCLOAK_CLIENT_SECRET]
keycloak_openid_client_service_account_role.governance_cli_realm_management["manage-clients"]: Refreshing state... [id=90ac5826-08a5-4d89-8855-3d7b249de131/366f6242-2ce3-4be8-b861-3561e3c4b865]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p governance
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p governance
    

No changes. Your infrastructure matches the configuration.


3. project: forgejo dir: . workspace: forgejo

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
this derivation will be built:
  /nix/store/0qi8w5mzglcw43zdyfp7i50il2dkzz3w-config.tf.json.drv
building '/nix/store/0qi8w5mzglcw43zdyfp7i50il2dkzz3w-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding hashicorp/random versions matching "~> 3.0"...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
garage_key.forgejo: Refreshing state... [id=GKea9810d648000e3e3b8df725]
garage_bucket.forgejo: Refreshing state... [id=65e2f6d77ab1d627c920b8e6bd764551f5f8b0334fd1f67bc47c5f5c30546960]
data.cloudflare_zones.all: Reading...
vault_kv_secret_v2.forgejo_storage: Refreshing state... [id=secret/data/infra/forgejo-storage]
garage_bucket_permission.forgejo: Refreshing state... [id=65e2f6d77ab1d627c920b8e6bd764551f5f8b0334fd1f67bc47c5f5c30546960/GKea9810d648000e3e3b8df725]
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
keycloak_openid_client.forgejo: Refreshing state... [id=110b9b02-18e1-4bac-b5ce-936bbfbc83d6]
keycloak_openid_group_membership_protocol_mapper.forgejo_groups: Refreshing state... [id=72c7154f-372d-4a39-97c0-6516a88d6198]
vault_kv_secret_v2.forgejo_oidc: Refreshing state... [id=secret/data/infra/forgejo-oidc]
data.cloudflare_zones.all: Read complete after 1s
cloudflare_dns_record.this["git"]: Refreshing state... [id=f0fa6f4acf6bf381474c1a9304225f68]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p forgejo
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p forgejo
    

No changes. Your infrastructure matches the configuration.


4. project: snot dir: . workspace: snot

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
this derivation will be built:
  /nix/store/x76y1ciahakd4pz9h4r1znd0d5cpxn1d-config.tf.json.drv
building '/nix/store/x76y1ciahakd4pz9h4r1znd0d5cpxn1d-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding hashicorp/random versions matching "~> 3.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
data.cloudflare_zones.all: Reading...
data.cloudflare_zones.all: Read complete after 0s
cloudflare_dns_record.this["knot"]: Refreshing state... [id=264276915648465296ad9d24fb70a29b]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p snot
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p snot
    

No changes. Your infrastructure matches the configuration.


5. project: garage-webadmin dir: . workspace: garage-webadmin

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'...
copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'...
copying path '/nix/store/w2c23ykc12mswlg8hrrjzb5gv9gvkzwq-source' from 'http://localhost:5000'...
this derivation will be built:
  /nix/store/irqmprvqk4d2cahl7i5vsccf9r05dl09-config.tf.json.drv
building '/nix/store/irqmprvqk4d2cahl7i5vsccf9r05dl09-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding hashicorp/random versions matching "~> 3.0"...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
random_password.garage_webadmin_jwt: Refreshing state... [id=none]
vault_kv_secret_v2.garage_webadmin_jwt: Refreshing state... [id=secret/data/infra/garage-webadmin-jwt]
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
keycloak_openid_client.garage_webadmin: Refreshing state... [id=a48c9f66-cde3-463d-970c-b2d7de716185]
data.cloudflare_zones.all: Reading...
keycloak_openid_group_membership_protocol_mapper.garage_webadmin_groups: Refreshing state... [id=a86e928b-6c7a-4081-a291-637e752fbabf]
vault_kv_secret_v2.garage_webadmin_oidc: Refreshing state... [id=secret/data/infra/garage-webadmin-oidc]
data.cloudflare_zones.all: Read complete after 1s
cloudflare_dns_record.this["garage"]: Refreshing state... [id=4054146ceff1515773704f89136b25f1]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p garage-webadmin
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p garage-webadmin
    

No changes. Your infrastructure matches the configuration.


6. project: litellm dir: . workspace: litellm

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'...
copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'...
copying path '/nix/store/w2c23ykc12mswlg8hrrjzb5gv9gvkzwq-source' from 'http://localhost:5000'...
this derivation will be built:
  /nix/store/27mpfrh1f88r4wfddyz693s32sm607px-config.tf.json.drv
building '/nix/store/27mpfrh1f88r4wfddyz693s32sm607px-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding hashicorp/random versions matching "~> 3.0"...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
random_password.litellm_master_key: Refreshing state... [id=none]
random_password.cli_proxy_api_key: Refreshing state... [id=none]
random_password.litellm_salt_key: Refreshing state... [id=none]
vault_kv_secret_v2.cli_proxy_api_key: Refreshing state... [id=secret/data/infra/cli-proxy-api-key]
vault_kv_secret_v2.litellm_master_key: Refreshing state... [id=secret/data/infra/litellm-master-key]
vault_kv_secret_v2.litellm_salt_key: Refreshing state... [id=secret/data/infra/litellm-salt-key]
data.cloudflare_zones.all: Reading...
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
keycloak_openid_client.litellm: Refreshing state... [id=4ee5ecdd-c370-4a52-93ae-744332e0a509]
data.cloudflare_zones.all: Read complete after 1s
vault_kv_secret_v2.litellm_oidc: Refreshing state... [id=secret/data/infra/litellm-oidc]
keycloak_openid_group_membership_protocol_mapper.litellm_groups: Refreshing state... [id=b2e932af-b3e8-4cac-a6ea-027c1022a22f]
cloudflare_dns_record.this["litellm"]: Refreshing state... [id=0fa6e5399aa6a69d978d6d425ca14f44]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p litellm
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p litellm
    

No changes. Your infrastructure matches the configuration.


7. project: webhook dir: . workspace: webhook

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
this derivation will be built:
  /nix/store/wgav76jcys7nrbfw7x4cknk9gjcqc3lp-config.tf.json.drv
building '/nix/store/wgav76jcys7nrbfw7x4cknk9gjcqc3lp-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Finding hashicorp/random versions matching "~> 3.0"...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
data.cloudflare_zones.all: Reading...
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
data.cloudflare_zones.all: Read complete after 2s
cloudflare_dns_record.this["webhooks"]: Refreshing state... [id=0ec7b1a8c64ceb6e83ded9a5842a1198]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p webhook
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p webhook
    

No changes. Your infrastructure matches the configuration.


8. project: keycloak dir: . workspace: keycloak

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'...
this derivation will be built:
  /nix/store/w0lzfz9lrnk7h4l3xlq3i3cmd0rndggb-config.tf.json.drv
building '/nix/store/w0lzfz9lrnk7h4l3xlq3i3cmd0rndggb-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding hashicorp/random versions matching "~> 3.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
data.vault_kv_secret_v2.keycloak_idp: Reading...
data.vault_kv_secret_v2.forgejo_idp: Reading...
data.vault_kv_secret_v2.forgejo_idp: Read complete after 0s [id=secret/data/infra/forgejo-idp]
data.vault_kv_secret_v2.keycloak_idp: Read complete after 0s [id=secret/data/infra/keycloak-idp]
data.cloudflare_zones.all: Reading...
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
keycloak_oidc_google_identity_provider.google: Refreshing state... [id=google]
keycloak_custom_identity_provider_mapper.github_id: Refreshing state... [id=e7462d44-1d0b-49e6-ae64-fb88031492c4]
keycloak_custom_identity_provider_mapper.github_name: Refreshing state... [id=0d38db58-87ca-46f4-82e5-23cba653dc12]
keycloak_custom_identity_provider_mapper.github_email: Refreshing state... [id=9cdd2173-27de-46ae-bff3-66ee03797ab1]
keycloak_oidc_identity_provider.cmu_git: Refreshing state... [id=cmu-dev]
keycloak_custom_identity_provider_mapper.github_username: Refreshing state... [id=c07573c3-8e48-4084-89cb-3a628e5cdae2]
keycloak_oidc_identity_provider.slack: Refreshing state... [id=slack]
keycloak_oidc_identity_provider.codeberg: Refreshing state... [id=codeberg]
keycloak_custom_identity_provider_mapper.google_name: Refreshing state... [id=9d5c678f-df91-493d-a575-be1ce56a34e0]
keycloak_custom_identity_provider_mapper.google_id: Refreshing state... [id=eda09ecd-d9ce-4ab0-a585-8f7d45dff7de]
keycloak_custom_identity_provider_mapper.google_email: Refreshing state... [id=ab2117f2-dcbf-4409-a7b7-c7354317e6cc]
keycloak_realm_user_profile.scottylabs: Refreshing state... [id=scottylabs]
keycloak_custom_identity_provider_mapper.codeberg_id: Refreshing state... [id=850eadbb-9508-4fac-9d43-d0f5cee2fc59]
keycloak_custom_identity_provider_mapper.codeberg_name: Refreshing state... [id=8aa1c7b9-97d8-489f-a2dc-6e427c98fdb5]
keycloak_custom_identity_provider_mapper.codeberg_email: Refreshing state... [id=2bce1987-97ce-4ee5-adda-0e435c2b49ef]
keycloak_custom_identity_provider_mapper.codeberg_username: Refreshing state... [id=e64e5c0b-d189-414d-b3bd-762d46d30a93]
keycloak_custom_identity_provider_mapper.cmudev_name: Refreshing state... [id=17703dd7-f88f-4d6b-88f0-e7561e796c8f]
keycloak_custom_identity_provider_mapper.cmudev_username: Refreshing state... [id=8f04fb48-8434-43d6-accd-5b3a1e48e9b2]
keycloak_custom_identity_provider_mapper.slack_id: Refreshing state... [id=7d6f3768-e0a7-41c2-b252-95d2709c65b7]
keycloak_custom_identity_provider_mapper.slack_email: Refreshing state... [id=ea769c6c-b497-49ec-9a4d-8ba28005e62d]
keycloak_custom_identity_provider_mapper.slack_name: Refreshing state... [id=2e4d5410-12d5-46b3-b3d4-7f5b17ee0556]
keycloak_custom_identity_provider_mapper.cmudev_email: Refreshing state... [id=2763e7d7-f102-479e-a560-41704bcf5e4b]
keycloak_custom_identity_provider_mapper.cmudev_id: Refreshing state... [id=5944bfd3-9704-482e-ac25-c41a40351cd7]
data.cloudflare_zones.all: Read complete after 2s
cloudflare_dns_record.this["idp"]: Refreshing state... [id=76512b10636c34a8230d5618d365d6bc]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
╷
│ Warning: Deprecated Resource
│ 
│   with data.vault_kv_secret_v2.forgejo_idp,
│   on config.tf.json line 15, in data.vault_kv_secret_v2.forgejo_idp:
│   15:       },
│ 
│ Deprecated. Please use new Ephemeral KVV2 Secret resource
│ `vault_kv_secret_v2` instead
│ 
│ (and 3 more similar warnings elsewhere)
╵
╷
│ Warning: Value derived from a deprecated source
│ 
│   with keycloak_oidc_google_identity_provider.google,
│   on config.tf.json line 274, in resource.keycloak_oidc_google_identity_provider.google:
│  274:       }
│ 
│ This value is derived from data.vault_kv_secret_v2.keycloak_idp, which is
│ deprecated with the following message:
│ 
│ Deprecated. Please use new Ephemeral KVV2 Secret resource
│ `vault_kv_secret_v2` instead
│ 
│ (and one more similar warning elsewhere)
╵
  • ▶️ To apply this plan, comment:
    atlantis apply -p keycloak
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p keycloak
    

No changes. Your infrastructure matches the configuration.


9. project: hosts dir: . workspace: hosts

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'...
remote: Enumerating objects: 128, done.        
remote: Counting objects:   0% (1/128)        
remote: Counting objects:   1% (2/128)        
remote: Counting objects:   2% (3/128)        
remote: Counting objects:   3% (4/128)        
remote: Counting objects:   4% (6/128)        
remote: Counting objects:   5% (7/128)        
remote: Counting objects:   6% (8/128)        
remote: Counting objects:   7% (9/128)        
remote: Counting objects:   8% (11/128)        
remote: Counting objects:   9% (12/128)        
remote: Counting objects:  10% (13/128)        
remote: Counting objects:  11% (15/128)        
remote: Counting objects:  12% (16/128)        
remote: Counting objects:  13% (17/128)        
remote: Counting objects:  14% (18/128)        
remote: Counting objects:  15% (20/128)        
remote: Counting objects:  16% (21/128)        
remote: Counting objects:  17% (22/128)        
remote: Counting objects:  18% (24/128)        
remote: Counting objects:  19% (25/128)        
remote: Counting objects:  20% (26/128)        
remote: Counting objects:  21% (27/128)        
remote: Counting objects:  22% (29/128)        
remote: Counting objects:  23% (30/128)        
remote: Counting objects:  24% (31/128)        
remote: Counting objects:  25% (32/128)        
remote: Counting objects:  26% (34/128)        
remote: Counting objects:  27% (35/128)        
remote: Counting objects:  28% (36/128)        
remote: Counting objects:  29% (38/128)        
remote: Counting objects:  30% (39/128)        
remote: Counting objects:  31% (40/128)        
remote: Counting objects:  32% (41/128)        
remote: Counting objects:  33% (43/128)        
remote: Counting objects:  34% (44/128)        
remote: Counting objects:  35% (45/128)        
remote: Counting objects:  36% (47/128)        
remote: Counting objects:  37% (48/128)        
remote: Counting objects:  38% (49/128)        
remote: Counting objects:  39% (50/128)        
remote: Counting objects:  40% (52/128)        
remote: Counting objects:  41% (53/128)        
remote: Counting objects:  42% (54/128)        
remote: Counting objects:  43% (56/128)        
remote: Counting objects:  44% (57/128)        
remote: Counting objects:  45% (58/128)        
remote: Counting objects:  46% (59/128)        
remote: Counting objects:  47% (61/128)        
remote: Counting objects:  48% (62/128)        
remote: Counting objects:  49% (63/128)        
remote: Counting objects:  50% (64/128)        
remote: Counting objects:  51% (66/128)        
remote: Counting objects:  52% (67/128)        
remote: Counting objects:  53% (68/128)        
remote: Counting objects:  54% (70/128)        
remote: Counting objects:  55% (71/128)        
remote: Counting objects:  56% (72/128)        
remote: Counting objects:  57% (73/128)        
remote: Counting objects:  58% (75/128)        
remote: Counting objects:  59% (76/128)        
remote: Counting objects:  60% (77/128)        
remote: Counting objects:  61% (79/128)        
remote: Counting objects:  62% (80/128)        
remote: Counting objects:  63% (81/128)        
remote: Counting objects:  64% (82/128)        
remote: Counting objects:  65% (84/128)        
remote: Counting objects:  66% (85/128)        
remote: Counting objects:  67% (86/128)        
remote: Counting objects:  68% (88/128)        
remote: Counting objects:  69% (89/128)        
remote: Counting objects:  70% (90/128)        
remote: Counting objects:  71% (91/128)        
remote: Counting objects:  72% (93/128)        
remote: Counting objects:  73% (94/128)        
remote: Counting objects:  74% (95/128)        
remote: Counting objects:  75% (96/128)        
remote: Counting objects:  76% (98/128)        
remote: Counting objects:  77% (99/128)        
remote: Counting objects:  78% (100/128)        
remote: Counting objects:  79% (102/128)        
remote: Counting objects:  80% (103/128)        
remote: Counting objects:  81% (104/128)        
remote: Counting objects:  82% (105/128)        
remote: Counting objects:  83% (107/128)        
remote: Counting objects:  84% (108/128)        
remote: Counting objects:  85% (109/128)        
remote: Counting objects:  86% (111/128)        
remote: Counting objects:  87% (112/128)        
remote: Counting objects:  88% (113/128)        
remote: Counting objects:  89% (114/128)        
remote: Counting objects:  90% (116/128)        
remote: Counting objects:  91% (117/128)        
remote: Counting objects:  92% (118/128)        
remote: Counting objects:  93% (120/128)        
remote: Counting objects:  94% (121/128)        
remote: Counting objects:  95% (122/128)        
remote: Counting objects:  96% (123/128)        
remote: Counting objects:  97% (125/128)        
remote: Counting objects:  98% (126/128)        
remote: Counting objects:  99% (127/128)        
remote: Counting objects: 100% (128/128)        
remote: Counting objects: 100% (128/128), done.        
remote: Compressing objects:   0% (1/124)        
remote: Compressing objects:   1% (2/124)        
remote: Compressing objects:   2% (3/124)        
remote: Compressing objects:   3% (4/124)        
remote: Compressing objects:   4% (5/124)        
remote: Compressing objects:   5% (7/124)        
remote: Compressing objects:   6% (8/124)        
remote: Compressing objects:   7% (9/124)        
remote: Compressing objects:   8% (10/124)        
remote: Compressing objects:   9% (12/124)        
remote: Compressing objects:  10% (13/124)        
remote: Compressing objects:  11% (14/124)        
remote: Compressing objects:  12% (15/124)        
remote: Compressing objects:  13% (17/124)        
remote: Compressing objects:  14% (18/124)        
remote: Compressing objects:  15% (19/124)        
remote: Compressing objects:  16% (20/124)        
remote: Compressing objects:  17% (22/124)        
remote: Compressing objects:  18% (23/124)        
remote: Compressing objects:  19% (24/124)        
remote: Compressing objects:  20% (25/124)        
remote: Compressing objects:  21% (27/124)        
remote: Compressing objects:  22% (28/124)        
remote: Compressing objects:  23% (29/124)        
remote: Compressing objects:  24% (30/124)        
remote: Compressing objects:  25% (31/124)        
remote: Compressing objects:  26% (33/124)        
remote: Compressing objects:  27% (34/124)        
remote: Compressing objects:  28% (35/124)        
remote: Compressing objects:  29% (36/124)        
remote: Compressing objects:  30% (38/124)        
remote: Compressing objects:  31% (39/124)        
remote: Compressing objects:  32% (40/124)        
remote: Compressing objects:  33% (41/124)        
remote: Compressing objects:  34% (43/124)        
remote: Compressing objects:  35% (44/124)        
remote: Compressing objects:  36% (45/124)        
remote: Compressing objects:  37% (46/124)        
remote: Compressing objects:  38% (48/124)        
remote: Compressing objects:  39% (49/124)        
remote: Compressing objects:  40% (50/124)        
remote: Compressing objects:  41% (51/124)        
remote: Compressing objects:  42% (53/124)        
remote: Compressing objects:  43% (54/124)        
remote: Compressing objects:  44% (55/124)        
remote: Compressing objects:  45% (56/124)        
remote: Compressing objects:  46% (58/124)        
remote: Compressing objects:  47% (59/124)        
remote: Compressing objects:  48% (60/124)        
remote: Compressing objects:  49% (61/124)        
remote: Compressing objects:  50% (62/124)        
remote: Compressing objects:  51% (64/124)        
remote: Compressing objects:  52% (65/124)        
remote: Compressing objects:  53% (66/124)        
remote: Compressing objects:  54% (67/124)        
remote: Compressing objects:  55% (69/124)        
remote: Compressing objects:  56% (70/124)        
remote: Compressing objects:  57% (71/124)        
remote: Compressing objects:  58% (72/124)        
remote: Compressing objects:  59% (74/124)        
remote: Compressing objects:  60% (75/124)        
remote: Compressing objects:  61% (76/124)        
remote: Compressing objects:  62% (77/124)        
remote: Compressing objects:  63% (79/124)        
remote: Compressing objects:  64% (80/124)        
remote: Compressing objects:  65% (81/124)        
remote: Compressing objects:  66% (82/124)        
remote: Compressing objects:  67% (84/124)        
remote: Compressing objects:  68% (85/124)        
remote: Compressing objects:  69% (86/124)        
remote: Compressing objects:  70% (87/124)        
remote: Compressing objects:  71% (89/124)        
remote: Compressing objects:  72% (90/124)        
remote: Compressing objects:  73% (91/124)        
remote: Compressing objects:  74% (92/124)        
remote: Compressing objects:  75% (93/124)        
remote: Compressing objects:  76% (95/124)        
remote: Compressing objects:  77% (96/124)        
remote: Compressing objects:  78% (97/124)        
remote: Compressing objects:  79% (98/124)        
remote: Compressing objects:  80% (100/124)        
remote: Compressing objects:  81% (101/124)        
remote: Compressing objects:  82% (102/124)        
remote: Compressing objects:  83% (103/124)        
remote: Compressing objects:  84% (105/124)        
remote: Compressing objects:  85% (106/124)        
remote: Compressing objects:  86% (107/124)        
remote: Compressing objects:  87% (108/124)        
remote: Compressing objects:  88% (110/124)        
remote: Compressing objects:  89% (111/124)        
remote: Compressing objects:  90% (112/124)        
remote: Compressing objects:  91% (113/124)        
remote: Compressing objects:  92% (115/124)        
remote: Compressing objects:  93% (116/124)        
remote: Compressing objects:  94% (117/124)        
remote: Compressing objects:  95% (118/124)        
remote: Compressing objects:  96% (120/124)        
remote: Compressing objects:  97% (121/124)        
remote: Compressing objects:  98% (122/124)        
remote: Compressing objects:  99% (123/124)        
remote: Compressing objects: 100% (124/124)        
remote: Compressing objects: 100% (124/124), done.        
Receiving objects:   0% (1/128)
Receiving objects:   1% (2/128)
Receiving objects:   2% (3/128)
Receiving objects:   3% (4/128)
Receiving objects:   4% (6/128)
Receiving objects:   5% (7/128)
Receiving objects:   6% (8/128)
Receiving objects:   7% (9/128)
Receiving objects:   8% (11/128)
Receiving objects:   9% (12/128)
Receiving objects:  10% (13/128)
Receiving objects:  11% (15/128)
Receiving objects:  12% (16/128)
Receiving objects:  13% (17/128)
Receiving objects:  14% (18/128)
Receiving objects:  15% (20/128)
Receiving objects:  16% (21/128)
Receiving objects:  17% (22/128)
Receiving objects:  18% (24/128)
Receiving objects:  19% (25/128)
Receiving objects:  20% (26/128)
Receiving objects:  21% (27/128)
Receiving objects:  22% (29/128)
Receiving objects:  23% (30/128)
Receiving objects:  24% (31/128)
Receiving objects:  25% (32/128)
Receiving objects:  26% (34/128)
Receiving objects:  27% (35/128)
Receiving objects:  28% (36/128)
Receiving objects:  29% (38/128)
Receiving objects:  30% (39/128)
Receiving objects:  31% (40/128)
Receiving objects:  32% (41/128)
Receiving objects:  33% (43/128)
Receiving objects:  34% (44/128)
remote: Total 128 (delta 7), reused 50 (delta 0), pack-reused 0 (from 0)        
Receiving objects:  35% (45/128)
Receiving objects:  36% (47/128)
Receiving objects:  37% (48/128)
Receiving objects:  38% (49/128)
Receiving objects:  39% (50/128)
Receiving objects:  40% (52/128)
Receiving objects:  41% (53/128)
Receiving objects:  42% (54/128)
Receiving objects:  43% (56/128)
Receiving objects:  44% (57/128)
Receiving objects:  45% (58/128)
Receiving objects:  46% (59/128)
Receiving objects:  47% (61/128)
Receiving objects:  48% (62/128)
Receiving objects:  49% (63/128)
Receiving objects:  50% (64/128)
Receiving objects:  51% (66/128)
Receiving objects:  52% (67/128)
Receiving objects:  53% (68/128)
Receiving objects:  54% (70/128)
Receiving objects:  55% (71/128)
Receiving objects:  56% (72/128)
Receiving objects:  57% (73/128)
Receiving objects:  58% (75/128)
Receiving objects:  59% (76/128)
Receiving objects:  60% (77/128)
Receiving objects:  61% (79/128)
Receiving objects:  62% (80/128)
Receiving objects:  63% (81/128)
Receiving objects:  64% (82/128)
Receiving objects:  65% (84/128)
Receiving objects:  66% (85/128)
Receiving objects:  67% (86/128)
Receiving objects:  68% (88/128)
Receiving objects:  69% (89/128)
Receiving objects:  70% (90/128)
Receiving objects:  71% (91/128)
Receiving objects:  72% (93/128)
Receiving objects:  73% (94/128)
Receiving objects:  74% (95/128)
Receiving objects:  75% (96/128)
Receiving objects:  76% (98/128)
Receiving objects:  77% (99/128)
Receiving objects:  78% (100/128)
Receiving objects:  79% (102/128)
Receiving objects:  80% (103/128)
Receiving objects:  81% (104/128)
Receiving objects:  82% (105/128)
Receiving objects:  83% (107/128)
Receiving objects:  84% (108/128)
Receiving objects:  85% (109/128)
Receiving objects:  86% (111/128)
Receiving objects:  87% (112/128)
Receiving objects:  88% (113/128)
Receiving objects:  89% (114/128)
Receiving objects:  90% (116/128)
Receiving objects:  91% (117/128)
Receiving objects:  92% (118/128)
Receiving objects:  93% (120/128)
Receiving objects:  94% (121/128)
Receiving objects:  95% (122/128)
Receiving objects:  96% (123/128)
Receiving objects:  97% (125/128)
Receiving objects:  98% (126/128)
Receiving objects:  99% (127/128)
Receiving objects: 100% (128/128)
Receiving objects: 100% (128/128), 145.40 KiB | 8.55 MiB/s, done.
Resolving deltas:   0% (0/7)
Resolving deltas:  14% (1/7)
Resolving deltas:  28% (2/7)
Resolving deltas:  42% (3/7)
Resolving deltas:  57% (4/7)
Resolving deltas:  71% (5/7)
Resolving deltas:  85% (6/7)
Resolving deltas: 100% (7/7)
Resolving deltas: 100% (7/7), done.
From https://git.cmu.dev/ScottyLabs/kennel
 * branch            bb6122e6622a130c12938115af735f0bfa2bf1f9 -> FETCH_HEAD
copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'...
copying path '/nix/store/8ggr67sci43hlp8ba6rhjrdhhj5490am-source' from 'http://localhost:5000'...
this derivation will be built:
  /nix/store/s0fvw3y06fxmklj7gsq0m7cm0iavrsky-config.tf.json.drv
building '/nix/store/s0fvw3y06fxmklj7gsq0m7cm0iavrsky-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding hashicorp/random versions matching "~> 3.0"...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
data.cloudflare_zones.all: Reading...
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
data.cloudflare_zones.all: Read complete after 2s
cloudflare_dns_record.this["infra-01"]: Refreshing state... [id=30f50d5655d03d54b472480be1476c1c]
cloudflare_dns_record.this["infra-02"]: Refreshing state... [id=1856c054b772a4ac62e0f53625163997]
cloudflare_dns_record.this["signage-01"]: Refreshing state... [id=a80079e44697aebac2cbda4ab85a79ee]
cloudflare_dns_record.this["deploy-01"]: Refreshing state... [id=bcb794198cc3e1ad25e3707e3af7fd1d]
cloudflare_dns_record.this["snoopy"]: Refreshing state... [id=7f849c841bba1c0d46009308acaf7f55]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p hosts
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p hosts
    

No changes. Your infrastructure matches the configuration.


10. project: vaultwarden dir: . workspace: vaultwarden

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
this derivation will be built:
  /nix/store/hnv1nxp60z9p6858l3rkp6nqxxv6j8xy-config.tf.json.drv
building '/nix/store/hnv1nxp60z9p6858l3rkp6nqxxv6j8xy-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding hashicorp/random versions matching "~> 3.0"...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
data.cloudflare_zones.all: Reading...
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
data.cloudflare_zones.all: Read complete after 2s
cloudflare_dns_record.this["vault"]: Refreshing state... [id=7828e0eeb9e7f251c797f565828a47f6]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p vaultwarden
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p vaultwarden
    

No changes. Your infrastructure matches the configuration.


11. project: kennel dir: . workspace: kennel

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'...
copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'...
this derivation will be built:
  /nix/store/0fhbjya56rkxv03ll3qlnwv0b0hk0h0v-config.tf.json.drv
building '/nix/store/0fhbjya56rkxv03ll3qlnwv0b0hk0h0v-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding hashicorp/random versions matching "~> 3.0"...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
vault_policy.kennel: Refreshing state... [id=kennel]
vault_approle_auth_backend_role.kennel: Refreshing state... [id=auth/approle/role/kennel]
data.cloudflare_zones.all: Reading...
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
data.cloudflare_zones.all: Read complete after 1s
cloudflare_dns_record.this["s3.kennel"]: Refreshing state... [id=d3acfc0e5ca45e0704c40d9e3fa2e60f]
cloudflare_dns_record.this["kennel"]: Refreshing state... [id=a34066db99519085f24a01cebcb25d69]
cloudflare_dns_record.this["*"]: Refreshing state... [id=2d4b06ae1c39a5d196a27114e07c97e9]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p kennel
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p kennel
    

No changes. Your infrastructure matches the configuration.


12. project: headscale dir: . workspace: headscale

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'...
copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'...
this derivation will be built:
  /nix/store/4c43x8mv70kg3vn5h64j93bb0fhqa3xf-config.tf.json.drv
building '/nix/store/4c43x8mv70kg3vn5h64j93bb0fhqa3xf-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding hashicorp/random versions matching "~> 3.0"...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
random_password.headplane_cookie: Refreshing state... [id=none]
vault_kv_secret_v2.headplane_cookie: Refreshing state... [id=secret/data/infra/headplane-cookie]
data.cloudflare_zones.all: Reading...
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
keycloak_openid_client.headplane: Refreshing state... [id=40d2dbf9-409b-4edc-974c-85d5e939efac]
keycloak_openid_client.headscale: Refreshing state... [id=f2875c14-dfff-4fd4-b60b-4d1e066aaeb8]
keycloak_openid_group_membership_protocol_mapper.headplane_groups: Refreshing state... [id=fd683ca7-ed77-44f1-b3cc-47241ccb6fb7]
vault_kv_secret_v2.headplane_oidc: Refreshing state... [id=secret/data/infra/headplane-oidc]
keycloak_openid_group_membership_protocol_mapper.headscale_groups: Refreshing state... [id=f091397a-9b6e-4887-9913-12fb542d7210]
vault_kv_secret_v2.headscale_oidc: Refreshing state... [id=secret/data/infra/headscale-oidc]
data.cloudflare_zones.all: Read complete after 1s
cloudflare_dns_record.this["headscale"]: Refreshing state... [id=4207dabef0c8dc1972f9d5aa1cd17a00]
cloudflare_dns_record.this["headplane"]: Refreshing state... [id=9139cfa1f058db85d837defe0460fd20]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p headscale
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p headscale
    

No changes. Your infrastructure matches the configuration.


13. project: matrix dir: . workspace: matrix

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'...
copying path '/nix/store/w2c23ykc12mswlg8hrrjzb5gv9gvkzwq-source' from 'http://localhost:5000'...
this derivation will be built:
  /nix/store/pccibjaj7mzgih97r1bkpsfq60k746ym-config.tf.json.drv
building '/nix/store/pccibjaj7mzgih97r1bkpsfq60k746ym-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding hashicorp/random versions matching "~> 3.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
data.cloudflare_zones.all: Reading...
data.cloudflare_zones.all: Read complete after 1s
cloudflare_dns_record.this["matrix"]: Refreshing state... [id=c37d2e1a4edf950b4af4544574c159a8]
cloudflare_dns_record.this["@"]: Refreshing state... [id=63ff3b423afd444f8bd31201db232ada]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p matrix
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p matrix
    

No changes. Your infrastructure matches the configuration.


14. project: ricochet dir: . workspace: ricochet

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'...
copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'...
copying path '/nix/store/w2c23ykc12mswlg8hrrjzb5gv9gvkzwq-source' from 'http://localhost:5000'...
this derivation will be built:
  /nix/store/82wwgs2jxmjnvippgnry59vlxnanixxr-config.tf.json.drv
building '/nix/store/82wwgs2jxmjnvippgnry59vlxnanixxr-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Finding hashicorp/random versions matching "~> 3.0"...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
data.cloudflare_zones.all: Reading...
data.cloudflare_zones.all: Read complete after 2s
cloudflare_dns_record.this["oauth"]: Refreshing state... [id=346fac8950e4873a27d5cfb72104783d]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p ricochet
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p ricochet
    

No changes. Your infrastructure matches the configuration.


15. project: observability dir: . workspace: observability

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'...
copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'...
copying path '/nix/store/w2c23ykc12mswlg8hrrjzb5gv9gvkzwq-source' from 'http://localhost:5000'...
this derivation will be built:
  /nix/store/wiclns9j0mgpqb8wqminw3fsbpilvsi5-config.tf.json.drv
building '/nix/store/wiclns9j0mgpqb8wqminw3fsbpilvsi5-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding hashicorp/random versions matching "~> 3.0"...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
random_password.grafana_secret_key: Refreshing state... [id=none]
vault_kv_secret_v2.grafana_secret_key: Refreshing state... [id=secret/data/infra/grafana-secret-key]
data.cloudflare_zones.all: Reading...
garage_bucket.loki_chunks: Refreshing state... [id=f6c7e9f9881b09dc6bb9e3bce85f425fc97c526343f5b819086ac692339425c3]
garage_key.tempo: Refreshing state... [id=GK9769dcb3b38a1ae26ac62b3c]
garage_bucket.tempo_traces: Refreshing state... [id=d0776d1c829f4fe5cf4e6317d02057fbecc7cf8c39a28f7be5391bba0aaf632c]
garage_key.loki: Refreshing state... [id=GKeed8ed294debe12a38bbd470]
vault_kv_secret_v2.loki_s3: Refreshing state... [id=secret/data/infra/loki-s3]
vault_kv_secret_v2.tempo_s3: Refreshing state... [id=secret/data/infra/tempo-s3]
garage_bucket_permission.tempo: Refreshing state... [id=d0776d1c829f4fe5cf4e6317d02057fbecc7cf8c39a28f7be5391bba0aaf632c/GK9769dcb3b38a1ae26ac62b3c]
garage_bucket_permission.loki: Refreshing state... [id=f6c7e9f9881b09dc6bb9e3bce85f425fc97c526343f5b819086ac692339425c3/GKeed8ed294debe12a38bbd470]
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
keycloak_openid_client.grafana: Refreshing state... [id=527e25bc-77c3-43d5-ac28-32aa2f21fa9c]
keycloak_openid_group_membership_protocol_mapper.grafana_groups: Refreshing state... [id=5c54e939-7a03-4857-93f5-437ca25e206e]
vault_kv_secret_v2.grafana_oidc: Refreshing state... [id=secret/data/infra/grafana-oidc]
data.cloudflare_zones.all: Read complete after 1s
cloudflare_dns_record.this["uptime"]: Refreshing state... [id=0909f2bd8ade5d54a53b58a2a3fef540]
cloudflare_dns_record.this["grafana"]: Refreshing state... [id=9924f9e66892a5aeafe09ed0128a65a0]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p observability
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p observability
    

No changes. Your infrastructure matches the configuration.


16. project: openbao dir: . workspace: openbao

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'...
copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'...
copying path '/nix/store/w2c23ykc12mswlg8hrrjzb5gv9gvkzwq-source' from 'http://localhost:5000'...
this derivation will be built:
  /nix/store/zf39hxv79910l8c8sy5hpmj6xr6hbm4r-config.tf.json.drv
building '/nix/store/zf39hxv79910l8c8sy5hpmj6xr6hbm4r-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Finding hashicorp/random versions matching "~> 3.0"...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
data.cloudflare_zones.all: Reading...
vault_mount.kv: Refreshing state... [id=secret]
vault_policy.shared_read: Refreshing state... [id=shared-read]
vault_auth_backend.approle: Refreshing state... [id=approle]
vault_policy.devops: Refreshing state... [id=devops]
vault_policy.ci: Refreshing state... [id=ci]
vault_policy.infra: Refreshing state... [id=infra]
vault_jwt_auth_backend.forgejo: Refreshing state... [id=jwt]
vault_identity_group.devops: Refreshing state... [id=6922ccb6-70c2-acef-0580-49477441e3ff]
vault_identity_group.all_members: Refreshing state... [id=17a94032-1dfa-8c66-af1f-ac3942f8d13f]
vault_approle_auth_backend_role.host["signage-01"]: Refreshing state... [id=auth/approle/role/signage-01]
vault_jwt_auth_backend_role.ci: Refreshing state... [id=auth/jwt/role/ci]
vault_approle_auth_backend_role.host["deploy-01"]: Refreshing state... [id=auth/approle/role/deploy-01]
vault_approle_auth_backend_role.host["snoopy"]: Refreshing state... [id=auth/approle/role/snoopy]
vault_approle_auth_backend_role.host["infra-01"]: Refreshing state... [id=auth/approle/role/infra-01]
vault_kv_secret_v2.cachix: Refreshing state... [id=secret/data/shared/cachix]
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 1s [id=scottylabs]
keycloak_openid_client.openbao: Refreshing state... [id=86926066-77c5-458e-be5a-cb585b75c818]
keycloak_openid_group_membership_protocol_mapper.openbao_groups: Refreshing state... [id=cafd878e-dbc6-4376-95de-f09c2e5b9870]
vault_jwt_auth_backend.oidc: Refreshing state... [id=oidc]
vault_identity_group_alias.all_members: Refreshing state... [id=3371c9f2-3d4b-eafe-20e5-f2bfed63fdb9]
vault_identity_group_alias.devops: Refreshing state... [id=f7f8c2b9-125e-5c92-efda-361e93cd2d2a]
vault_jwt_auth_backend_role.default: Refreshing state... [id=auth/oidc/role/default]
data.cloudflare_zones.all: Read complete after 1s
cloudflare_dns_record.this["secrets"]: Refreshing state... [id=c24ad8899e7a3b573f1d2d7b95711926]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p openbao
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p openbao
    

No changes. Your infrastructure matches the configuration.


17. project: atlantis dir: . workspace: atlantis

Show Output
warning: ignoring untrusted flake configuration setting 'extra-substituters'.
Pass '--accept-flake-config' to trust it
warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'.
Pass '--accept-flake-config' to trust it
error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy
copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'...
copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'...
copying path '/nix/store/w2c23ykc12mswlg8hrrjzb5gv9gvkzwq-source' from 'http://localhost:5000'...
this derivation will be built:
  /nix/store/b956lvmplmxywly23mlb19y7hrdbspqm-config.tf.json.drv
building '/nix/store/b956lvmplmxywly23mlb19y7hrdbspqm-config.tf.json.drv'...


Initializing the backend...

Successfully configured the backend "s3"! OpenTofu will automatically
use this backend unless the backend configuration changes.

Initializing provider plugins...
- Finding keycloak/keycloak versions matching "~> 5.0"...
- Finding hashicorp/random versions matching "~> 3.0"...
- Finding hashicorp/vault versions matching "~> 5.0"...
- Finding cloudflare/cloudflare versions matching "~> 5.0"...
- Finding svalabs/forgejo versions matching "~> 1.0"...
- Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"...
- Installing cloudflare/cloudflare v5.24.0 to the shared cache directory...
- Installing keycloak/keycloak v5.9.0 to the shared cache directory...
- Installing hashicorp/vault v5.11.0 to the shared cache directory...
- Installing hashicorp/random v3.9.0 to the shared cache directory...
- Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory...
- Installing svalabs/forgejo v1.6.0 to the shared cache directory...
- Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated)
- Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory
- Installed hashicorp/random v3.9.0 (unauthenticated)
- Using hashicorp/random v3.9.0 from the shared cache directory
- Installed hashicorp/vault v5.11.0 (unauthenticated)
- Using hashicorp/vault v5.11.0 from the shared cache directory
- Installed svalabs/forgejo v1.6.0 (unauthenticated)
- Using svalabs/forgejo v1.6.0 from the shared cache directory
- Installed keycloak/keycloak v5.9.0 (unauthenticated)
- Using keycloak/keycloak v5.9.0 from the shared cache directory
- Installed cloudflare/cloudflare v5.24.0 (unauthenticated)
- Using cloudflare/cloudflare v5.24.0 from the shared cache directory

OpenTofu has created a lock file .terraform.lock.hcl to record the provider
selections it made above. Include this file in your version control repository
so that OpenTofu can guarantee to make the same selections by default when
you run "tofu init" in the future.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ Skip tofu init when using provider development overrides. It is not
│ necessary and may error unexpectedly.
╵

╷
│ Warning: Incomplete lock file information for providers
│ 
│ Due to your customized provider installation methods, OpenTofu was forced
│ to calculate lock file checksums locally for the following providers:
│   - cloudflare/cloudflare
│   - hashicorp/random
│   - hashicorp/vault
│   - keycloak/keycloak
│   - registry.terraform.io/jkossis/garage
│   - svalabs/forgejo
│ 
│ The current .terraform.lock.hcl file only includes checksums for
│ linux_amd64, so OpenTofu running on another platform will fail to install
│ these providers.
│ 
│ To calculate additional checksums for another platform, run:
│   tofu providers lock -platform=linux_amd64
│ (where linux_amd64 is the platform to generate)
╵

OpenTofu has been successfully initialized!

You may now begin working with OpenTofu. Try running "tofu plan" to see
any changes that are required for your infrastructure. All OpenTofu commands
should now work.

If you ever set or change modules or backend configuration for OpenTofu,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

╷
│ Warning: Provider development overrides are in effect
│ 
│ The following provider development overrides are set in the CLI
│ configuration:
│  - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2
│ 
│ The behavior may therefore not match any released version of the provider
│ and applying changes may cause the state to become incompatible with
│ published releases.
╵
random_password.atlantis_webhook_secret: Refreshing state... [id=none]
vault_kv_secret_v2.atlantis_webhook: Refreshing state... [id=secret/data/infra/atlantis]
data.keycloak_realm.scottylabs: Reading...
data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs]
data.cloudflare_zones.all: Reading...
data.forgejo_repository.infrastructure: Reading...
data.forgejo_repository.governance: Reading...
data.forgejo_repository.governance: Read complete after 0s [name=governance]
data.forgejo_repository.infrastructure: Read complete after 0s [name=infrastructure]
forgejo_repository_webhook.governance: Refreshing state...
forgejo_repository_webhook.infrastructure: Refreshing state...
data.cloudflare_zones.all: Read complete after 2s
cloudflare_dns_record.this["atlantis"]: Refreshing state... [id=d0419d10a0c0bb715bcbadc7a1c73cbb]

No changes. Your infrastructure matches the configuration.

OpenTofu has compared your real infrastructure against your configuration and
found no differences, so no changes are needed.
  • ▶️ To apply this plan, comment:
    atlantis apply -p atlantis
    
  • 🚮 To delete this plan and lock, click here
  • 🔁 To plan this project again, comment:
    atlantis plan -p atlantis
    

No changes. Your infrastructure matches the configuration.


Plan Summary

17 projects, 0 with changes, 17 with no changes, 0 failed

  • To apply all unapplied plans from this Pull Request, comment:
    atlantis apply
    
  • 🚮 To delete all plans and locks from this Pull Request, comment:
    atlantis unlock
    
Ran Plan for 17 projects: 1. project: `posthog` dir: `.` workspace: `posthog` 1. project: `governance` dir: `.` workspace: `governance` 1. project: `forgejo` dir: `.` workspace: `forgejo` 1. project: `snot` dir: `.` workspace: `snot` 1. project: `garage-webadmin` dir: `.` workspace: `garage-webadmin` 1. project: `litellm` dir: `.` workspace: `litellm` 1. project: `webhook` dir: `.` workspace: `webhook` 1. project: `keycloak` dir: `.` workspace: `keycloak` 1. project: `hosts` dir: `.` workspace: `hosts` 1. project: `vaultwarden` dir: `.` workspace: `vaultwarden` 1. project: `kennel` dir: `.` workspace: `kennel` 1. project: `headscale` dir: `.` workspace: `headscale` 1. project: `matrix` dir: `.` workspace: `matrix` 1. project: `ricochet` dir: `.` workspace: `ricochet` 1. project: `observability` dir: `.` workspace: `observability` 1. project: `openbao` dir: `.` workspace: `openbao` 1. project: `atlantis` dir: `.` workspace: `atlantis` --- ### 1. project: `posthog` dir: `.` workspace: `posthog` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy this derivation will be built: /nix/store/1c6gaw2qhpy68xb677zbsbddk48wh0kk-config.tf.json.drv building '/nix/store/1c6gaw2qhpy68xb677zbsbddk48wh0kk-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding hashicorp/random versions matching "~> 3.0"... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ data.cloudflare_zones.all: Reading... data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 1s [id=scottylabs] data.cloudflare_zones.all: Read complete after 1s cloudflare_dns_record.this["v"]: Refreshing state... [id=a34d75a85d3128693767b2db9b7f233e] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p posthog ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fposthog%252Fposthog) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p posthog ``` No changes. Your infrastructure matches the configuration. --- ### 2. project: `governance` dir: `.` workspace: `governance` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy this derivation will be built: /nix/store/6v622w15ckamjncmy5mfcf8qcmnqhvql-config.tf.json.drv this path will be fetched (4.1 KiB download, 14.9 KiB unpacked): /nix/store/l9wkilihbd6xg5f7dmwzyxjlmaly45ib-jq-1.8.2-dev copying path '/nix/store/l9wkilihbd6xg5f7dmwzyxjlmaly45ib-jq-1.8.2-dev' from 'http://localhost:5000'... building '/nix/store/6v622w15ckamjncmy5mfcf8qcmnqhvql-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding hashicorp/random versions matching "~> 3.0"... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ vault_policy.governance: Refreshing state... [id=governance] vault_kv_secret_v2.governance_ci_bot_token: Refreshing state... [id=secret/data/secretspec/governance/ci/BOT_TOKEN] vault_approle_auth_backend_role.governance: Refreshing state... [id=auth/approle/role/governance] data.cloudflare_zones.all: Reading... data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] data.keycloak_openid_client.realm_management: Reading... keycloak_openid_client.governance_cli: Refreshing state... [id=f19d0308-19a8-4fc4-aa5f-f909fc38c5fe] data.keycloak_openid_client.realm_management: Read complete after 0s [id=a0a15f13-b554-4bed-9fb2-3e63e0301278] data.cloudflare_zones.all: Read complete after 1s vault_kv_secret_v2.governance_ci_keycloak_client_id: Refreshing state... [id=secret/data/secretspec/governance/ci/KEYCLOAK_CLIENT_ID] keycloak_openid_client_service_account_role.governance_cli_realm_management["manage-users"]: Refreshing state... [id=90ac5826-08a5-4d89-8855-3d7b249de131/eb96eb71-82eb-4317-b8f5-326472e11484] keycloak_openid_client_service_account_role.governance_cli_realm_management["view-users"]: Refreshing state... [id=90ac5826-08a5-4d89-8855-3d7b249de131/65f4c673-fc55-430c-b4b6-fd14ed151966] keycloak_openid_client_service_account_role.governance_cli_realm_management["query-clients"]: Refreshing state... [id=90ac5826-08a5-4d89-8855-3d7b249de131/16d40468-7ba1-4f17-ba0d-0741880f291a] vault_kv_secret_v2.governance_ci_keycloak_client_secret: Refreshing state... [id=secret/data/secretspec/governance/ci/KEYCLOAK_CLIENT_SECRET] keycloak_openid_client_service_account_role.governance_cli_realm_management["manage-clients"]: Refreshing state... [id=90ac5826-08a5-4d89-8855-3d7b249de131/366f6242-2ce3-4be8-b861-3561e3c4b865] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p governance ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fgovernance%252Fgovernance) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p governance ``` No changes. Your infrastructure matches the configuration. --- ### 3. project: `forgejo` dir: `.` workspace: `forgejo` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy this derivation will be built: /nix/store/0qi8w5mzglcw43zdyfp7i50il2dkzz3w-config.tf.json.drv building '/nix/store/0qi8w5mzglcw43zdyfp7i50il2dkzz3w-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding hashicorp/random versions matching "~> 3.0"... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ garage_key.forgejo: Refreshing state... [id=GKea9810d648000e3e3b8df725] garage_bucket.forgejo: Refreshing state... [id=65e2f6d77ab1d627c920b8e6bd764551f5f8b0334fd1f67bc47c5f5c30546960] data.cloudflare_zones.all: Reading... vault_kv_secret_v2.forgejo_storage: Refreshing state... [id=secret/data/infra/forgejo-storage] garage_bucket_permission.forgejo: Refreshing state... [id=65e2f6d77ab1d627c920b8e6bd764551f5f8b0334fd1f67bc47c5f5c30546960/GKea9810d648000e3e3b8df725] data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] keycloak_openid_client.forgejo: Refreshing state... [id=110b9b02-18e1-4bac-b5ce-936bbfbc83d6] keycloak_openid_group_membership_protocol_mapper.forgejo_groups: Refreshing state... [id=72c7154f-372d-4a39-97c0-6516a88d6198] vault_kv_secret_v2.forgejo_oidc: Refreshing state... [id=secret/data/infra/forgejo-oidc] data.cloudflare_zones.all: Read complete after 1s cloudflare_dns_record.this["git"]: Refreshing state... [id=f0fa6f4acf6bf381474c1a9304225f68] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p forgejo ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fforgejo%252Fforgejo) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p forgejo ``` No changes. Your infrastructure matches the configuration. --- ### 4. project: `snot` dir: `.` workspace: `snot` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy this derivation will be built: /nix/store/x76y1ciahakd4pz9h4r1znd0d5cpxn1d-config.tf.json.drv building '/nix/store/x76y1ciahakd4pz9h4r1znd0d5cpxn1d-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding hashicorp/random versions matching "~> 3.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding keycloak/keycloak versions matching "~> 5.0"... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] data.cloudflare_zones.all: Reading... data.cloudflare_zones.all: Read complete after 0s cloudflare_dns_record.this["knot"]: Refreshing state... [id=264276915648465296ad9d24fb70a29b] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p snot ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fsnot%252Fsnot) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p snot ``` No changes. Your infrastructure matches the configuration. --- ### 5. project: `garage-webadmin` dir: `.` workspace: `garage-webadmin` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'... copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'... copying path '/nix/store/w2c23ykc12mswlg8hrrjzb5gv9gvkzwq-source' from 'http://localhost:5000'... this derivation will be built: /nix/store/irqmprvqk4d2cahl7i5vsccf9r05dl09-config.tf.json.drv building '/nix/store/irqmprvqk4d2cahl7i5vsccf9r05dl09-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding hashicorp/random versions matching "~> 3.0"... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ random_password.garage_webadmin_jwt: Refreshing state... [id=none] vault_kv_secret_v2.garage_webadmin_jwt: Refreshing state... [id=secret/data/infra/garage-webadmin-jwt] data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] keycloak_openid_client.garage_webadmin: Refreshing state... [id=a48c9f66-cde3-463d-970c-b2d7de716185] data.cloudflare_zones.all: Reading... keycloak_openid_group_membership_protocol_mapper.garage_webadmin_groups: Refreshing state... [id=a86e928b-6c7a-4081-a291-637e752fbabf] vault_kv_secret_v2.garage_webadmin_oidc: Refreshing state... [id=secret/data/infra/garage-webadmin-oidc] data.cloudflare_zones.all: Read complete after 1s cloudflare_dns_record.this["garage"]: Refreshing state... [id=4054146ceff1515773704f89136b25f1] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p garage-webadmin ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fgarage-webadmin%252Fgarage-webadmin) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p garage-webadmin ``` No changes. Your infrastructure matches the configuration. --- ### 6. project: `litellm` dir: `.` workspace: `litellm` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'... copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'... copying path '/nix/store/w2c23ykc12mswlg8hrrjzb5gv9gvkzwq-source' from 'http://localhost:5000'... this derivation will be built: /nix/store/27mpfrh1f88r4wfddyz693s32sm607px-config.tf.json.drv building '/nix/store/27mpfrh1f88r4wfddyz693s32sm607px-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding hashicorp/random versions matching "~> 3.0"... - Finding hashicorp/vault versions matching "~> 5.0"... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ random_password.litellm_master_key: Refreshing state... [id=none] random_password.cli_proxy_api_key: Refreshing state... [id=none] random_password.litellm_salt_key: Refreshing state... [id=none] vault_kv_secret_v2.cli_proxy_api_key: Refreshing state... [id=secret/data/infra/cli-proxy-api-key] vault_kv_secret_v2.litellm_master_key: Refreshing state... [id=secret/data/infra/litellm-master-key] vault_kv_secret_v2.litellm_salt_key: Refreshing state... [id=secret/data/infra/litellm-salt-key] data.cloudflare_zones.all: Reading... data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] keycloak_openid_client.litellm: Refreshing state... [id=4ee5ecdd-c370-4a52-93ae-744332e0a509] data.cloudflare_zones.all: Read complete after 1s vault_kv_secret_v2.litellm_oidc: Refreshing state... [id=secret/data/infra/litellm-oidc] keycloak_openid_group_membership_protocol_mapper.litellm_groups: Refreshing state... [id=b2e932af-b3e8-4cac-a6ea-027c1022a22f] cloudflare_dns_record.this["litellm"]: Refreshing state... [id=0fa6e5399aa6a69d978d6d425ca14f44] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p litellm ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Flitellm%252Flitellm) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p litellm ``` No changes. Your infrastructure matches the configuration. --- ### 7. project: `webhook` dir: `.` workspace: `webhook` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy this derivation will be built: /nix/store/wgav76jcys7nrbfw7x4cknk9gjcqc3lp-config.tf.json.drv building '/nix/store/wgav76jcys7nrbfw7x4cknk9gjcqc3lp-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Finding hashicorp/random versions matching "~> 3.0"... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ data.cloudflare_zones.all: Reading... data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] data.cloudflare_zones.all: Read complete after 2s cloudflare_dns_record.this["webhooks"]: Refreshing state... [id=0ec7b1a8c64ceb6e83ded9a5842a1198] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p webhook ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fwebhook%252Fwebhook) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p webhook ``` No changes. Your infrastructure matches the configuration. --- ### 8. project: `keycloak` dir: `.` workspace: `keycloak` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'... this derivation will be built: /nix/store/w0lzfz9lrnk7h4l3xlq3i3cmd0rndggb-config.tf.json.drv building '/nix/store/w0lzfz9lrnk7h4l3xlq3i3cmd0rndggb-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding hashicorp/random versions matching "~> 3.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding keycloak/keycloak versions matching "~> 5.0"... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ data.vault_kv_secret_v2.keycloak_idp: Reading... data.vault_kv_secret_v2.forgejo_idp: Reading... data.vault_kv_secret_v2.forgejo_idp: Read complete after 0s [id=secret/data/infra/forgejo-idp] data.vault_kv_secret_v2.keycloak_idp: Read complete after 0s [id=secret/data/infra/keycloak-idp] data.cloudflare_zones.all: Reading... data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] keycloak_oidc_google_identity_provider.google: Refreshing state... [id=google] keycloak_custom_identity_provider_mapper.github_id: Refreshing state... [id=e7462d44-1d0b-49e6-ae64-fb88031492c4] keycloak_custom_identity_provider_mapper.github_name: Refreshing state... [id=0d38db58-87ca-46f4-82e5-23cba653dc12] keycloak_custom_identity_provider_mapper.github_email: Refreshing state... [id=9cdd2173-27de-46ae-bff3-66ee03797ab1] keycloak_oidc_identity_provider.cmu_git: Refreshing state... [id=cmu-dev] keycloak_custom_identity_provider_mapper.github_username: Refreshing state... [id=c07573c3-8e48-4084-89cb-3a628e5cdae2] keycloak_oidc_identity_provider.slack: Refreshing state... [id=slack] keycloak_oidc_identity_provider.codeberg: Refreshing state... [id=codeberg] keycloak_custom_identity_provider_mapper.google_name: Refreshing state... [id=9d5c678f-df91-493d-a575-be1ce56a34e0] keycloak_custom_identity_provider_mapper.google_id: Refreshing state... [id=eda09ecd-d9ce-4ab0-a585-8f7d45dff7de] keycloak_custom_identity_provider_mapper.google_email: Refreshing state... [id=ab2117f2-dcbf-4409-a7b7-c7354317e6cc] keycloak_realm_user_profile.scottylabs: Refreshing state... [id=scottylabs] keycloak_custom_identity_provider_mapper.codeberg_id: Refreshing state... [id=850eadbb-9508-4fac-9d43-d0f5cee2fc59] keycloak_custom_identity_provider_mapper.codeberg_name: Refreshing state... [id=8aa1c7b9-97d8-489f-a2dc-6e427c98fdb5] keycloak_custom_identity_provider_mapper.codeberg_email: Refreshing state... [id=2bce1987-97ce-4ee5-adda-0e435c2b49ef] keycloak_custom_identity_provider_mapper.codeberg_username: Refreshing state... [id=e64e5c0b-d189-414d-b3bd-762d46d30a93] keycloak_custom_identity_provider_mapper.cmudev_name: Refreshing state... [id=17703dd7-f88f-4d6b-88f0-e7561e796c8f] keycloak_custom_identity_provider_mapper.cmudev_username: Refreshing state... [id=8f04fb48-8434-43d6-accd-5b3a1e48e9b2] keycloak_custom_identity_provider_mapper.slack_id: Refreshing state... [id=7d6f3768-e0a7-41c2-b252-95d2709c65b7] keycloak_custom_identity_provider_mapper.slack_email: Refreshing state... [id=ea769c6c-b497-49ec-9a4d-8ba28005e62d] keycloak_custom_identity_provider_mapper.slack_name: Refreshing state... [id=2e4d5410-12d5-46b3-b3d4-7f5b17ee0556] keycloak_custom_identity_provider_mapper.cmudev_email: Refreshing state... [id=2763e7d7-f102-479e-a560-41704bcf5e4b] keycloak_custom_identity_provider_mapper.cmudev_id: Refreshing state... [id=5944bfd3-9704-482e-ac25-c41a40351cd7] data.cloudflare_zones.all: Read complete after 2s cloudflare_dns_record.this["idp"]: Refreshing state... [id=76512b10636c34a8230d5618d365d6bc] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ╷ │ Warning: Deprecated Resource │ │ with data.vault_kv_secret_v2.forgejo_idp, │ on config.tf.json line 15, in data.vault_kv_secret_v2.forgejo_idp: │ 15: }, │ │ Deprecated. Please use new Ephemeral KVV2 Secret resource │ `vault_kv_secret_v2` instead │ │ (and 3 more similar warnings elsewhere) ╵ ╷ │ Warning: Value derived from a deprecated source │ │ with keycloak_oidc_google_identity_provider.google, │ on config.tf.json line 274, in resource.keycloak_oidc_google_identity_provider.google: │ 274: } │ │ This value is derived from data.vault_kv_secret_v2.keycloak_idp, which is │ deprecated with the following message: │ │ Deprecated. Please use new Ephemeral KVV2 Secret resource │ `vault_kv_secret_v2` instead │ │ (and one more similar warning elsewhere) ╵ ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p keycloak ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fkeycloak%252Fkeycloak) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p keycloak ``` No changes. Your infrastructure matches the configuration. --- ### 9. project: `hosts` dir: `.` workspace: `hosts` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'... remote: Enumerating objects: 128, done. remote: Counting objects: 0% (1/128) remote: Counting objects: 1% (2/128) remote: Counting objects: 2% (3/128) remote: Counting objects: 3% (4/128) remote: Counting objects: 4% (6/128) remote: Counting objects: 5% (7/128) remote: Counting objects: 6% (8/128) remote: Counting objects: 7% (9/128) remote: Counting objects: 8% (11/128) remote: Counting objects: 9% (12/128) remote: Counting objects: 10% (13/128) remote: Counting objects: 11% (15/128) remote: Counting objects: 12% (16/128) remote: Counting objects: 13% (17/128) remote: Counting objects: 14% (18/128) remote: Counting objects: 15% (20/128) remote: Counting objects: 16% (21/128) remote: Counting objects: 17% (22/128) remote: Counting objects: 18% (24/128) remote: Counting objects: 19% (25/128) remote: Counting objects: 20% (26/128) remote: Counting objects: 21% (27/128) remote: Counting objects: 22% (29/128) remote: Counting objects: 23% (30/128) remote: Counting objects: 24% (31/128) remote: Counting objects: 25% (32/128) remote: Counting objects: 26% (34/128) remote: Counting objects: 27% (35/128) remote: Counting objects: 28% (36/128) remote: Counting objects: 29% (38/128) remote: Counting objects: 30% (39/128) remote: Counting objects: 31% (40/128) remote: Counting objects: 32% (41/128) remote: Counting objects: 33% (43/128) remote: Counting objects: 34% (44/128) remote: Counting objects: 35% (45/128) remote: Counting objects: 36% (47/128) remote: Counting objects: 37% (48/128) remote: Counting objects: 38% (49/128) remote: Counting objects: 39% (50/128) remote: Counting objects: 40% (52/128) remote: Counting objects: 41% (53/128) remote: Counting objects: 42% (54/128) remote: Counting objects: 43% (56/128) remote: Counting objects: 44% (57/128) remote: Counting objects: 45% (58/128) remote: Counting objects: 46% (59/128) remote: Counting objects: 47% (61/128) remote: Counting objects: 48% (62/128) remote: Counting objects: 49% (63/128) remote: Counting objects: 50% (64/128) remote: Counting objects: 51% (66/128) remote: Counting objects: 52% (67/128) remote: Counting objects: 53% (68/128) remote: Counting objects: 54% (70/128) remote: Counting objects: 55% (71/128) remote: Counting objects: 56% (72/128) remote: Counting objects: 57% (73/128) remote: Counting objects: 58% (75/128) remote: Counting objects: 59% (76/128) remote: Counting objects: 60% (77/128) remote: Counting objects: 61% (79/128) remote: Counting objects: 62% (80/128) remote: Counting objects: 63% (81/128) remote: Counting objects: 64% (82/128) remote: Counting objects: 65% (84/128) remote: Counting objects: 66% (85/128) remote: Counting objects: 67% (86/128) remote: Counting objects: 68% (88/128) remote: Counting objects: 69% (89/128) remote: Counting objects: 70% (90/128) remote: Counting objects: 71% (91/128) remote: Counting objects: 72% (93/128) remote: Counting objects: 73% (94/128) remote: Counting objects: 74% (95/128) remote: Counting objects: 75% (96/128) remote: Counting objects: 76% (98/128) remote: Counting objects: 77% (99/128) remote: Counting objects: 78% (100/128) remote: Counting objects: 79% (102/128) remote: Counting objects: 80% (103/128) remote: Counting objects: 81% (104/128) remote: Counting objects: 82% (105/128) remote: Counting objects: 83% (107/128) remote: Counting objects: 84% (108/128) remote: Counting objects: 85% (109/128) remote: Counting objects: 86% (111/128) remote: Counting objects: 87% (112/128) remote: Counting objects: 88% (113/128) remote: Counting objects: 89% (114/128) remote: Counting objects: 90% (116/128) remote: Counting objects: 91% (117/128) remote: Counting objects: 92% (118/128) remote: Counting objects: 93% (120/128) remote: Counting objects: 94% (121/128) remote: Counting objects: 95% (122/128) remote: Counting objects: 96% (123/128) remote: Counting objects: 97% (125/128) remote: Counting objects: 98% (126/128) remote: Counting objects: 99% (127/128) remote: Counting objects: 100% (128/128) remote: Counting objects: 100% (128/128), done. remote: Compressing objects: 0% (1/124) remote: Compressing objects: 1% (2/124) remote: Compressing objects: 2% (3/124) remote: Compressing objects: 3% (4/124) remote: Compressing objects: 4% (5/124) remote: Compressing objects: 5% (7/124) remote: Compressing objects: 6% (8/124) remote: Compressing objects: 7% (9/124) remote: Compressing objects: 8% (10/124) remote: Compressing objects: 9% (12/124) remote: Compressing objects: 10% (13/124) remote: Compressing objects: 11% (14/124) remote: Compressing objects: 12% (15/124) remote: Compressing objects: 13% (17/124) remote: Compressing objects: 14% (18/124) remote: Compressing objects: 15% (19/124) remote: Compressing objects: 16% (20/124) remote: Compressing objects: 17% (22/124) remote: Compressing objects: 18% (23/124) remote: Compressing objects: 19% (24/124) remote: Compressing objects: 20% (25/124) remote: Compressing objects: 21% (27/124) remote: Compressing objects: 22% (28/124) remote: Compressing objects: 23% (29/124) remote: Compressing objects: 24% (30/124) remote: Compressing objects: 25% (31/124) remote: Compressing objects: 26% (33/124) remote: Compressing objects: 27% (34/124) remote: Compressing objects: 28% (35/124) remote: Compressing objects: 29% (36/124) remote: Compressing objects: 30% (38/124) remote: Compressing objects: 31% (39/124) remote: Compressing objects: 32% (40/124) remote: Compressing objects: 33% (41/124) remote: Compressing objects: 34% (43/124) remote: Compressing objects: 35% (44/124) remote: Compressing objects: 36% (45/124) remote: Compressing objects: 37% (46/124) remote: Compressing objects: 38% (48/124) remote: Compressing objects: 39% (49/124) remote: Compressing objects: 40% (50/124) remote: Compressing objects: 41% (51/124) remote: Compressing objects: 42% (53/124) remote: Compressing objects: 43% (54/124) remote: Compressing objects: 44% (55/124) remote: Compressing objects: 45% (56/124) remote: Compressing objects: 46% (58/124) remote: Compressing objects: 47% (59/124) remote: Compressing objects: 48% (60/124) remote: Compressing objects: 49% (61/124) remote: Compressing objects: 50% (62/124) remote: Compressing objects: 51% (64/124) remote: Compressing objects: 52% (65/124) remote: Compressing objects: 53% (66/124) remote: Compressing objects: 54% (67/124) remote: Compressing objects: 55% (69/124) remote: Compressing objects: 56% (70/124) remote: Compressing objects: 57% (71/124) remote: Compressing objects: 58% (72/124) remote: Compressing objects: 59% (74/124) remote: Compressing objects: 60% (75/124) remote: Compressing objects: 61% (76/124) remote: Compressing objects: 62% (77/124) remote: Compressing objects: 63% (79/124) remote: Compressing objects: 64% (80/124) remote: Compressing objects: 65% (81/124) remote: Compressing objects: 66% (82/124) remote: Compressing objects: 67% (84/124) remote: Compressing objects: 68% (85/124) remote: Compressing objects: 69% (86/124) remote: Compressing objects: 70% (87/124) remote: Compressing objects: 71% (89/124) remote: Compressing objects: 72% (90/124) remote: Compressing objects: 73% (91/124) remote: Compressing objects: 74% (92/124) remote: Compressing objects: 75% (93/124) remote: Compressing objects: 76% (95/124) remote: Compressing objects: 77% (96/124) remote: Compressing objects: 78% (97/124) remote: Compressing objects: 79% (98/124) remote: Compressing objects: 80% (100/124) remote: Compressing objects: 81% (101/124) remote: Compressing objects: 82% (102/124) remote: Compressing objects: 83% (103/124) remote: Compressing objects: 84% (105/124) remote: Compressing objects: 85% (106/124) remote: Compressing objects: 86% (107/124) remote: Compressing objects: 87% (108/124) remote: Compressing objects: 88% (110/124) remote: Compressing objects: 89% (111/124) remote: Compressing objects: 90% (112/124) remote: Compressing objects: 91% (113/124) remote: Compressing objects: 92% (115/124) remote: Compressing objects: 93% (116/124) remote: Compressing objects: 94% (117/124) remote: Compressing objects: 95% (118/124) remote: Compressing objects: 96% (120/124) remote: Compressing objects: 97% (121/124) remote: Compressing objects: 98% (122/124) remote: Compressing objects: 99% (123/124) remote: Compressing objects: 100% (124/124) remote: Compressing objects: 100% (124/124), done. Receiving objects: 0% (1/128) Receiving objects: 1% (2/128) Receiving objects: 2% (3/128) Receiving objects: 3% (4/128) Receiving objects: 4% (6/128) Receiving objects: 5% (7/128) Receiving objects: 6% (8/128) Receiving objects: 7% (9/128) Receiving objects: 8% (11/128) Receiving objects: 9% (12/128) Receiving objects: 10% (13/128) Receiving objects: 11% (15/128) Receiving objects: 12% (16/128) Receiving objects: 13% (17/128) Receiving objects: 14% (18/128) Receiving objects: 15% (20/128) Receiving objects: 16% (21/128) Receiving objects: 17% (22/128) Receiving objects: 18% (24/128) Receiving objects: 19% (25/128) Receiving objects: 20% (26/128) Receiving objects: 21% (27/128) Receiving objects: 22% (29/128) Receiving objects: 23% (30/128) Receiving objects: 24% (31/128) Receiving objects: 25% (32/128) Receiving objects: 26% (34/128) Receiving objects: 27% (35/128) Receiving objects: 28% (36/128) Receiving objects: 29% (38/128) Receiving objects: 30% (39/128) Receiving objects: 31% (40/128) Receiving objects: 32% (41/128) Receiving objects: 33% (43/128) Receiving objects: 34% (44/128) remote: Total 128 (delta 7), reused 50 (delta 0), pack-reused 0 (from 0) Receiving objects: 35% (45/128) Receiving objects: 36% (47/128) Receiving objects: 37% (48/128) Receiving objects: 38% (49/128) Receiving objects: 39% (50/128) Receiving objects: 40% (52/128) Receiving objects: 41% (53/128) Receiving objects: 42% (54/128) Receiving objects: 43% (56/128) Receiving objects: 44% (57/128) Receiving objects: 45% (58/128) Receiving objects: 46% (59/128) Receiving objects: 47% (61/128) Receiving objects: 48% (62/128) Receiving objects: 49% (63/128) Receiving objects: 50% (64/128) Receiving objects: 51% (66/128) Receiving objects: 52% (67/128) Receiving objects: 53% (68/128) Receiving objects: 54% (70/128) Receiving objects: 55% (71/128) Receiving objects: 56% (72/128) Receiving objects: 57% (73/128) Receiving objects: 58% (75/128) Receiving objects: 59% (76/128) Receiving objects: 60% (77/128) Receiving objects: 61% (79/128) Receiving objects: 62% (80/128) Receiving objects: 63% (81/128) Receiving objects: 64% (82/128) Receiving objects: 65% (84/128) Receiving objects: 66% (85/128) Receiving objects: 67% (86/128) Receiving objects: 68% (88/128) Receiving objects: 69% (89/128) Receiving objects: 70% (90/128) Receiving objects: 71% (91/128) Receiving objects: 72% (93/128) Receiving objects: 73% (94/128) Receiving objects: 74% (95/128) Receiving objects: 75% (96/128) Receiving objects: 76% (98/128) Receiving objects: 77% (99/128) Receiving objects: 78% (100/128) Receiving objects: 79% (102/128) Receiving objects: 80% (103/128) Receiving objects: 81% (104/128) Receiving objects: 82% (105/128) Receiving objects: 83% (107/128) Receiving objects: 84% (108/128) Receiving objects: 85% (109/128) Receiving objects: 86% (111/128) Receiving objects: 87% (112/128) Receiving objects: 88% (113/128) Receiving objects: 89% (114/128) Receiving objects: 90% (116/128) Receiving objects: 91% (117/128) Receiving objects: 92% (118/128) Receiving objects: 93% (120/128) Receiving objects: 94% (121/128) Receiving objects: 95% (122/128) Receiving objects: 96% (123/128) Receiving objects: 97% (125/128) Receiving objects: 98% (126/128) Receiving objects: 99% (127/128) Receiving objects: 100% (128/128) Receiving objects: 100% (128/128), 145.40 KiB | 8.55 MiB/s, done. Resolving deltas: 0% (0/7) Resolving deltas: 14% (1/7) Resolving deltas: 28% (2/7) Resolving deltas: 42% (3/7) Resolving deltas: 57% (4/7) Resolving deltas: 71% (5/7) Resolving deltas: 85% (6/7) Resolving deltas: 100% (7/7) Resolving deltas: 100% (7/7), done. From https://git.cmu.dev/ScottyLabs/kennel * branch bb6122e6622a130c12938115af735f0bfa2bf1f9 -> FETCH_HEAD copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'... copying path '/nix/store/8ggr67sci43hlp8ba6rhjrdhhj5490am-source' from 'http://localhost:5000'... this derivation will be built: /nix/store/s0fvw3y06fxmklj7gsq0m7cm0iavrsky-config.tf.json.drv building '/nix/store/s0fvw3y06fxmklj7gsq0m7cm0iavrsky-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding hashicorp/random versions matching "~> 3.0"... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ data.cloudflare_zones.all: Reading... data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] data.cloudflare_zones.all: Read complete after 2s cloudflare_dns_record.this["infra-01"]: Refreshing state... [id=30f50d5655d03d54b472480be1476c1c] cloudflare_dns_record.this["infra-02"]: Refreshing state... [id=1856c054b772a4ac62e0f53625163997] cloudflare_dns_record.this["signage-01"]: Refreshing state... [id=a80079e44697aebac2cbda4ab85a79ee] cloudflare_dns_record.this["deploy-01"]: Refreshing state... [id=bcb794198cc3e1ad25e3707e3af7fd1d] cloudflare_dns_record.this["snoopy"]: Refreshing state... [id=7f849c841bba1c0d46009308acaf7f55] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p hosts ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fhosts%252Fhosts) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p hosts ``` No changes. Your infrastructure matches the configuration. --- ### 10. project: `vaultwarden` dir: `.` workspace: `vaultwarden` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy this derivation will be built: /nix/store/hnv1nxp60z9p6858l3rkp6nqxxv6j8xy-config.tf.json.drv building '/nix/store/hnv1nxp60z9p6858l3rkp6nqxxv6j8xy-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding hashicorp/random versions matching "~> 3.0"... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ data.cloudflare_zones.all: Reading... data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] data.cloudflare_zones.all: Read complete after 2s cloudflare_dns_record.this["vault"]: Refreshing state... [id=7828e0eeb9e7f251c797f565828a47f6] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p vaultwarden ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fvaultwarden%252Fvaultwarden) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p vaultwarden ``` No changes. Your infrastructure matches the configuration. --- ### 11. project: `kennel` dir: `.` workspace: `kennel` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'... copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'... this derivation will be built: /nix/store/0fhbjya56rkxv03ll3qlnwv0b0hk0h0v-config.tf.json.drv building '/nix/store/0fhbjya56rkxv03ll3qlnwv0b0hk0h0v-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding hashicorp/random versions matching "~> 3.0"... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ vault_policy.kennel: Refreshing state... [id=kennel] vault_approle_auth_backend_role.kennel: Refreshing state... [id=auth/approle/role/kennel] data.cloudflare_zones.all: Reading... data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] data.cloudflare_zones.all: Read complete after 1s cloudflare_dns_record.this["s3.kennel"]: Refreshing state... [id=d3acfc0e5ca45e0704c40d9e3fa2e60f] cloudflare_dns_record.this["kennel"]: Refreshing state... [id=a34066db99519085f24a01cebcb25d69] cloudflare_dns_record.this["*"]: Refreshing state... [id=2d4b06ae1c39a5d196a27114e07c97e9] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p kennel ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fkennel%252Fkennel) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p kennel ``` No changes. Your infrastructure matches the configuration. --- ### 12. project: `headscale` dir: `.` workspace: `headscale` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'... copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'... this derivation will be built: /nix/store/4c43x8mv70kg3vn5h64j93bb0fhqa3xf-config.tf.json.drv building '/nix/store/4c43x8mv70kg3vn5h64j93bb0fhqa3xf-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding hashicorp/random versions matching "~> 3.0"... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ random_password.headplane_cookie: Refreshing state... [id=none] vault_kv_secret_v2.headplane_cookie: Refreshing state... [id=secret/data/infra/headplane-cookie] data.cloudflare_zones.all: Reading... data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] keycloak_openid_client.headplane: Refreshing state... [id=40d2dbf9-409b-4edc-974c-85d5e939efac] keycloak_openid_client.headscale: Refreshing state... [id=f2875c14-dfff-4fd4-b60b-4d1e066aaeb8] keycloak_openid_group_membership_protocol_mapper.headplane_groups: Refreshing state... [id=fd683ca7-ed77-44f1-b3cc-47241ccb6fb7] vault_kv_secret_v2.headplane_oidc: Refreshing state... [id=secret/data/infra/headplane-oidc] keycloak_openid_group_membership_protocol_mapper.headscale_groups: Refreshing state... [id=f091397a-9b6e-4887-9913-12fb542d7210] vault_kv_secret_v2.headscale_oidc: Refreshing state... [id=secret/data/infra/headscale-oidc] data.cloudflare_zones.all: Read complete after 1s cloudflare_dns_record.this["headscale"]: Refreshing state... [id=4207dabef0c8dc1972f9d5aa1cd17a00] cloudflare_dns_record.this["headplane"]: Refreshing state... [id=9139cfa1f058db85d837defe0460fd20] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p headscale ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fheadscale%252Fheadscale) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p headscale ``` No changes. Your infrastructure matches the configuration. --- ### 13. project: `matrix` dir: `.` workspace: `matrix` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'... copying path '/nix/store/w2c23ykc12mswlg8hrrjzb5gv9gvkzwq-source' from 'http://localhost:5000'... this derivation will be built: /nix/store/pccibjaj7mzgih97r1bkpsfq60k746ym-config.tf.json.drv building '/nix/store/pccibjaj7mzgih97r1bkpsfq60k746ym-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding hashicorp/random versions matching "~> 3.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding hashicorp/vault versions matching "~> 5.0"... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] data.cloudflare_zones.all: Reading... data.cloudflare_zones.all: Read complete after 1s cloudflare_dns_record.this["matrix"]: Refreshing state... [id=c37d2e1a4edf950b4af4544574c159a8] cloudflare_dns_record.this["@"]: Refreshing state... [id=63ff3b423afd444f8bd31201db232ada] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p matrix ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fmatrix%252Fmatrix) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p matrix ``` No changes. Your infrastructure matches the configuration. --- ### 14. project: `ricochet` dir: `.` workspace: `ricochet` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'... copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'... copying path '/nix/store/w2c23ykc12mswlg8hrrjzb5gv9gvkzwq-source' from 'http://localhost:5000'... this derivation will be built: /nix/store/82wwgs2jxmjnvippgnry59vlxnanixxr-config.tf.json.drv building '/nix/store/82wwgs2jxmjnvippgnry59vlxnanixxr-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Finding hashicorp/random versions matching "~> 3.0"... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] data.cloudflare_zones.all: Reading... data.cloudflare_zones.all: Read complete after 2s cloudflare_dns_record.this["oauth"]: Refreshing state... [id=346fac8950e4873a27d5cfb72104783d] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p ricochet ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fricochet%252Fricochet) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p ricochet ``` No changes. Your infrastructure matches the configuration. --- ### 15. project: `observability` dir: `.` workspace: `observability` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'... copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'... copying path '/nix/store/w2c23ykc12mswlg8hrrjzb5gv9gvkzwq-source' from 'http://localhost:5000'... this derivation will be built: /nix/store/wiclns9j0mgpqb8wqminw3fsbpilvsi5-config.tf.json.drv building '/nix/store/wiclns9j0mgpqb8wqminw3fsbpilvsi5-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding hashicorp/random versions matching "~> 3.0"... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ random_password.grafana_secret_key: Refreshing state... [id=none] vault_kv_secret_v2.grafana_secret_key: Refreshing state... [id=secret/data/infra/grafana-secret-key] data.cloudflare_zones.all: Reading... garage_bucket.loki_chunks: Refreshing state... [id=f6c7e9f9881b09dc6bb9e3bce85f425fc97c526343f5b819086ac692339425c3] garage_key.tempo: Refreshing state... [id=GK9769dcb3b38a1ae26ac62b3c] garage_bucket.tempo_traces: Refreshing state... [id=d0776d1c829f4fe5cf4e6317d02057fbecc7cf8c39a28f7be5391bba0aaf632c] garage_key.loki: Refreshing state... [id=GKeed8ed294debe12a38bbd470] vault_kv_secret_v2.loki_s3: Refreshing state... [id=secret/data/infra/loki-s3] vault_kv_secret_v2.tempo_s3: Refreshing state... [id=secret/data/infra/tempo-s3] garage_bucket_permission.tempo: Refreshing state... [id=d0776d1c829f4fe5cf4e6317d02057fbecc7cf8c39a28f7be5391bba0aaf632c/GK9769dcb3b38a1ae26ac62b3c] garage_bucket_permission.loki: Refreshing state... [id=f6c7e9f9881b09dc6bb9e3bce85f425fc97c526343f5b819086ac692339425c3/GKeed8ed294debe12a38bbd470] data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] keycloak_openid_client.grafana: Refreshing state... [id=527e25bc-77c3-43d5-ac28-32aa2f21fa9c] keycloak_openid_group_membership_protocol_mapper.grafana_groups: Refreshing state... [id=5c54e939-7a03-4857-93f5-437ca25e206e] vault_kv_secret_v2.grafana_oidc: Refreshing state... [id=secret/data/infra/grafana-oidc] data.cloudflare_zones.all: Read complete after 1s cloudflare_dns_record.this["uptime"]: Refreshing state... [id=0909f2bd8ade5d54a53b58a2a3fef540] cloudflare_dns_record.this["grafana"]: Refreshing state... [id=9924f9e66892a5aeafe09ed0128a65a0] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p observability ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fobservability%252Fobservability) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p observability ``` No changes. Your infrastructure matches the configuration. --- ### 16. project: `openbao` dir: `.` workspace: `openbao` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'... copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'... copying path '/nix/store/w2c23ykc12mswlg8hrrjzb5gv9gvkzwq-source' from 'http://localhost:5000'... this derivation will be built: /nix/store/zf39hxv79910l8c8sy5hpmj6xr6hbm4r-config.tf.json.drv building '/nix/store/zf39hxv79910l8c8sy5hpmj6xr6hbm4r-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Finding hashicorp/random versions matching "~> 3.0"... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ data.cloudflare_zones.all: Reading... vault_mount.kv: Refreshing state... [id=secret] vault_policy.shared_read: Refreshing state... [id=shared-read] vault_auth_backend.approle: Refreshing state... [id=approle] vault_policy.devops: Refreshing state... [id=devops] vault_policy.ci: Refreshing state... [id=ci] vault_policy.infra: Refreshing state... [id=infra] vault_jwt_auth_backend.forgejo: Refreshing state... [id=jwt] vault_identity_group.devops: Refreshing state... [id=6922ccb6-70c2-acef-0580-49477441e3ff] vault_identity_group.all_members: Refreshing state... [id=17a94032-1dfa-8c66-af1f-ac3942f8d13f] vault_approle_auth_backend_role.host["signage-01"]: Refreshing state... [id=auth/approle/role/signage-01] vault_jwt_auth_backend_role.ci: Refreshing state... [id=auth/jwt/role/ci] vault_approle_auth_backend_role.host["deploy-01"]: Refreshing state... [id=auth/approle/role/deploy-01] vault_approle_auth_backend_role.host["snoopy"]: Refreshing state... [id=auth/approle/role/snoopy] vault_approle_auth_backend_role.host["infra-01"]: Refreshing state... [id=auth/approle/role/infra-01] vault_kv_secret_v2.cachix: Refreshing state... [id=secret/data/shared/cachix] data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 1s [id=scottylabs] keycloak_openid_client.openbao: Refreshing state... [id=86926066-77c5-458e-be5a-cb585b75c818] keycloak_openid_group_membership_protocol_mapper.openbao_groups: Refreshing state... [id=cafd878e-dbc6-4376-95de-f09c2e5b9870] vault_jwt_auth_backend.oidc: Refreshing state... [id=oidc] vault_identity_group_alias.all_members: Refreshing state... [id=3371c9f2-3d4b-eafe-20e5-f2bfed63fdb9] vault_identity_group_alias.devops: Refreshing state... [id=f7f8c2b9-125e-5c92-efda-361e93cd2d2a] vault_jwt_auth_backend_role.default: Refreshing state... [id=auth/oidc/role/default] data.cloudflare_zones.all: Read complete after 1s cloudflare_dns_record.this["secrets"]: Refreshing state... [id=c24ad8899e7a3b573f1d2d7b95711926] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p openbao ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fopenbao%252Fopenbao) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p openbao ``` No changes. Your infrastructure matches the configuration. --- ### 17. project: `atlantis` dir: `.` workspace: `atlantis` <details><summary>Show Output</summary> ```diff warning: ignoring untrusted flake configuration setting 'extra-substituters'. Pass '--accept-flake-config' to trust it warning: ignoring untrusted flake configuration setting 'extra-trusted-public-keys'. Pass '--accept-flake-config' to trust it error (ignored): SQLite database '/var/lib/atlantis/.cache/nix/eval-cache-v6/e0fd7f0c7bf6ec1504a62ef56c2287a4c422e8d000730de9a4597b5edfe23caa.sqlite' is busy copying path '/nix/store/is14417zl18jdxk497xbpf8mvh130k84-source' from 'http://localhost:5000'... copying path '/nix/store/dx9wjfqn7wyslw72i3n9qyn9r4nlxglj-source' from 'http://localhost:5000'... copying path '/nix/store/w2c23ykc12mswlg8hrrjzb5gv9gvkzwq-source' from 'http://localhost:5000'... this derivation will be built: /nix/store/b956lvmplmxywly23mlb19y7hrdbspqm-config.tf.json.drv building '/nix/store/b956lvmplmxywly23mlb19y7hrdbspqm-config.tf.json.drv'... Initializing the backend... Successfully configured the backend "s3"! OpenTofu will automatically use this backend unless the backend configuration changes. Initializing provider plugins... - Finding keycloak/keycloak versions matching "~> 5.0"... - Finding hashicorp/random versions matching "~> 3.0"... - Finding hashicorp/vault versions matching "~> 5.0"... - Finding cloudflare/cloudflare versions matching "~> 5.0"... - Finding svalabs/forgejo versions matching "~> 1.0"... - Finding registry.terraform.io/jkossis/garage versions matching "~> 1.0"... - Installing cloudflare/cloudflare v5.24.0 to the shared cache directory... - Installing keycloak/keycloak v5.9.0 to the shared cache directory... - Installing hashicorp/vault v5.11.0 to the shared cache directory... - Installing hashicorp/random v3.9.0 to the shared cache directory... - Installing registry.terraform.io/jkossis/garage v1.0.5 to the shared cache directory... - Installing svalabs/forgejo v1.6.0 to the shared cache directory... - Installed registry.terraform.io/jkossis/garage v1.0.5 (unauthenticated) - Using registry.terraform.io/jkossis/garage v1.0.5 from the shared cache directory - Installed hashicorp/random v3.9.0 (unauthenticated) - Using hashicorp/random v3.9.0 from the shared cache directory - Installed hashicorp/vault v5.11.0 (unauthenticated) - Using hashicorp/vault v5.11.0 from the shared cache directory - Installed svalabs/forgejo v1.6.0 (unauthenticated) - Using svalabs/forgejo v1.6.0 from the shared cache directory - Installed keycloak/keycloak v5.9.0 (unauthenticated) - Using keycloak/keycloak v5.9.0 from the shared cache directory - Installed cloudflare/cloudflare v5.24.0 (unauthenticated) - Using cloudflare/cloudflare v5.24.0 from the shared cache directory OpenTofu has created a lock file .terraform.lock.hcl to record the provider selections it made above. Include this file in your version control repository so that OpenTofu can guarantee to make the same selections by default when you run "tofu init" in the future. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ Skip tofu init when using provider development overrides. It is not │ necessary and may error unexpectedly. ╵ ╷ │ Warning: Incomplete lock file information for providers │ │ Due to your customized provider installation methods, OpenTofu was forced │ to calculate lock file checksums locally for the following providers: │ - cloudflare/cloudflare │ - hashicorp/random │ - hashicorp/vault │ - keycloak/keycloak │ - registry.terraform.io/jkossis/garage │ - svalabs/forgejo │ │ The current .terraform.lock.hcl file only includes checksums for │ linux_amd64, so OpenTofu running on another platform will fail to install │ these providers. │ │ To calculate additional checksums for another platform, run: │ tofu providers lock -platform=linux_amd64 │ (where linux_amd64 is the platform to generate) ╵ OpenTofu has been successfully initialized! You may now begin working with OpenTofu. Try running "tofu plan" to see any changes that are required for your infrastructure. All OpenTofu commands should now work. If you ever set or change modules or backend configuration for OpenTofu, rerun this command to reinitialize your working directory. If you forget, other commands will detect it and remind you to do so if necessary. ╷ │ Warning: Provider development overrides are in effect │ │ The following provider development overrides are set in the CLI │ configuration: │ - svalabs/forgejo in /nix/store/w6a5sa6saq141hhjqlgwj56i3ldp9scw-terraform-provider-forgejo-1.4.2-team-repository.2 │ │ The behavior may therefore not match any released version of the provider │ and applying changes may cause the state to become incompatible with │ published releases. ╵ random_password.atlantis_webhook_secret: Refreshing state... [id=none] vault_kv_secret_v2.atlantis_webhook: Refreshing state... [id=secret/data/infra/atlantis] data.keycloak_realm.scottylabs: Reading... data.keycloak_realm.scottylabs: Read complete after 0s [id=scottylabs] data.cloudflare_zones.all: Reading... data.forgejo_repository.infrastructure: Reading... data.forgejo_repository.governance: Reading... data.forgejo_repository.governance: Read complete after 0s [name=governance] data.forgejo_repository.infrastructure: Read complete after 0s [name=infrastructure] forgejo_repository_webhook.governance: Refreshing state... forgejo_repository_webhook.infrastructure: Refreshing state... data.cloudflare_zones.all: Read complete after 2s cloudflare_dns_record.this["atlantis"]: Refreshing state... [id=d0419d10a0c0bb715bcbadc7a1c73cbb] No changes. Your infrastructure matches the configuration. OpenTofu has compared your real infrastructure against your configuration and found no differences, so no changes are needed. ``` </details> * :arrow_forward: To **apply** this plan, comment: ```shell atlantis apply -p atlantis ``` * :put_litter_in_its_place: To **delete** this plan and lock, click [here](https://atlantis.scottylabs.org/lock?id=ScottyLabs%252Finfrastructure%252F.%252Fatlantis%252Fatlantis) * :repeat: To **plan** this project again, comment: ```shell atlantis plan -p atlantis ``` No changes. Your infrastructure matches the configuration. --- ### Plan Summary 17 projects, 0 with changes, 17 with no changes, 0 failed * :fast_forward: To **apply** all unapplied plans from this Pull Request, comment: ```shell atlantis apply ``` * :put_litter_in_its_place: To **delete** all plans and locks from this Pull Request, comment: ```shell atlantis unlock ```
@ -15,2 +15,4 @@
signingKeyPub = "${signingKeyPriv}.pub";
signingPubKey = pkgs.writeText "forgejo-signing.pub" "ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIHIq2XYZ218T07NQbBXLCT8H+h3GVv/tqS63dnMBjCdp cmu.dev commit signing";
robotsTxt = pkgs.writeText "forgejo-robots.txt" ''
# Custom robots.txt for git.cmu.dev
Owner

you don't need to change this if you're already disabling source archives right? id rather not change the default robots.txt because thats prone to changing between forgejo versions as well

you don't need to change this if you're already disabling source archives right? id rather not change the default robots.txt because thats prone to changing between forgejo versions as well
All checks were successful
atlantis/plan 17/17 projects planned successfully.
atlantis/pre_workflow_hook: Generate atlantis.yaml from the flake succeeded.
atlantis/plan: posthog No changes. Your infrastructure matches the configuration.
atlantis/plan: governance No changes. Your infrastructure matches the configuration.
atlantis/plan: forgejo No changes. Your infrastructure matches the configuration.
atlantis/plan: snot No changes. Your infrastructure matches the configuration.
atlantis/plan: garage-webadmin No changes. Your infrastructure matches the configuration.
kennel/build build succeeded
atlantis/plan: litellm No changes. Your infrastructure matches the configuration.
kennel/deploy deployment healthy
atlantis/plan: webhook No changes. Your infrastructure matches the configuration.
atlantis/plan: keycloak No changes. Your infrastructure matches the configuration.
atlantis/plan: hosts No changes. Your infrastructure matches the configuration.
atlantis/plan: vaultwarden No changes. Your infrastructure matches the configuration.
atlantis/plan: kennel No changes. Your infrastructure matches the configuration.
atlantis/plan: headscale No changes. Your infrastructure matches the configuration.
atlantis/plan: matrix No changes. Your infrastructure matches the configuration.
atlantis/plan: ricochet No changes. Your infrastructure matches the configuration.
atlantis/plan: observability No changes. Your infrastructure matches the configuration.
atlantis/plan: openbao No changes. Your infrastructure matches the configuration.
atlantis/plan: atlantis No changes. Your infrastructure matches the configuration.
atlantis/apply 17/17 projects up to date.
CI / check-1 (pull_request) Successful in 2m54s
CI / build (pull_request) Successful in 3m24s
CI / check (pull_request) Successful in 0s
This pull request can be merged automatically.
This branch is out-of-date with the base branch
You are not authorized to merge this pull request.
View command line instructions

Checkout

From your project repository, check out a new branch and test the changes.
git fetch -u origin crawler-archive-disk:crawler-archive-disk
git switch crawler-archive-disk

Merge

Merge the changes and update on Forgejo.

Warning: The "Autodetect manual merge" setting is not enabled for this repository, you will have to mark this pull request as manually merged afterwards.

git switch main
git merge --no-ff crawler-archive-disk
git switch crawler-archive-disk
git rebase main
git switch main
git merge --ff-only crawler-archive-disk
git switch crawler-archive-disk
git rebase main
git switch main
git merge --no-ff crawler-archive-disk
git switch main
git merge --squash crawler-archive-disk
git switch main
git merge --ff-only crawler-archive-disk
git switch main
git merge crawler-archive-disk
git push origin main
Sign in to join this conversation.
No description provided.