- run.yml: base plays (geerlingguy.security) for jira and git; gpu01 play with security + docker + nvidia_gpu - roles/nvidia_gpu: driver pinned >=580 (Blackwell), CUDA repo, container toolkit incl. the nvidia-ctk runtime configure step - manuals/20260714-nvidia-driver-install.md: dated per convention, corrected (pinned -server driver instead of autoinstall+cuda-drivers mix, toolkit optional, added missing nvidia-ctk/docker restart step) - gpu01 folder: planning docs under notes/, runbooks under manuals/, scripts/; convention documented in CLAUDE.md - scripts/share-analysis.ps1: read-only SMB share analysis for the Windows server (projektplan §2.1) - TODO.md: Phase-0 pre-work items from the projektplan Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Ansible
Global configuration for all Phytron servers. Run everything from this directory, preferably via just.
Layout
hosts.ini— inventory; one group per host (phy_z_*), host aliases match the real hostnamesgroup_vars/all.yml— defaults for all hosts;group_vars/<group>.ymlholds per-host overrides onlygroup_vars/secrets.yml— ansible-vault encrypted secretsrun.yml— main playbook;playbooks/— utilities (update, shutdown)roles/— custom roles; external roles come fromrequirements.yml
Usage
just reqs # install Galaxy role requirements
just run <HOST> [ARGS] # run run.yml against one host, e.g. just run phy_z_srv_cloud
just compose <HOST> # docker compose tasks only (--tags compose)
just vault edit # edit encrypted secrets (encrypt/decrypt/edit)