
I want GitHub Actions CD when I merge changes to `main`

How about we...

  • Add a private SSH key for the ansible_service_account to repo secrets
  • Roll out the new service account public key on the hosts in the Ansible inventory
  • Add another repo secret for the Ansible Vault key
  • Create a GitHub Actions workflow that run ansible-playbook bootstrap.yml --diff for us

Known hosts:

[]:622 ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIE4vBfnFG/U76eqgbLFqkp2yMKR3cpNrwPc6lTZAFNfq
[]:622 ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAINyaOsHcT6Sy2UJMg40vxq+xxhPvvaSVjS2u0pxKy1dT
[]:623 ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIKSP+L5mjXBT5UqCi9/rHWFAeMCqhGyxYVbSQfmDkNuB