Files
arr-suite-template-bootstrap/group_vars/all/vault.yml.example
openhands 24f2cd64e9 Initial template repository
🎬 ARR Suite Template Bootstrap - Complete Media Automation Stack

Features:
- 16 production services (Prowlarr, Sonarr, Radarr, Plex, etc.)
- One-command Ansible deployment
- VPN-protected downloads via Gluetun
- Tailscale secure access
- Production-ready security (UFW, Fail2Ban)
- Automated backups and monitoring
- Comprehensive documentation

Ready for customization and deployment to any VPS.

Co-authored-by: openhands <openhands@all-hands.dev>
2025-11-28 04:26:12 +00:00

57 lines
1.6 KiB
Plaintext

# Ansible Vault Secrets Template
# Copy this file to vault.yml and encrypt with: ansible-vault encrypt vault.yml
# Edit with: ansible-vault edit vault.yml
# VPN Credentials
vault_vpn_provider: "nordvpn" # or "surfshark", "expressvpn", etc.
vault_vpn_username: "your_vpn_username"
vault_vpn_password: "your_vpn_password"
# API Keys (leave empty to auto-generate)
vault_prowlarr_api_key: ""
vault_sonarr_api_key: ""
vault_radarr_api_key: ""
vault_lidarr_api_key: ""
vault_whisparr_api_key: ""
vault_bazarr_api_key: ""
vault_jellyseerr_api_key: ""
vault_sabnzbd_api_key: ""
# Indexer Credentials (Optional)
vault_nzbgeek_api_key: "your_nzbgeek_api_key"
vault_nzbgeek_username: "your_nzbgeek_username"
# Usenet Provider (Optional)
vault_usenet_provider_host: "news.your-provider.com"
vault_usenet_provider_port: "563"
vault_usenet_provider_username: "your_usenet_username"
vault_usenet_provider_password: "your_usenet_password"
vault_usenet_provider_ssl: true
# Plex Configuration
vault_plex_claim: "" # Get from https://plex.tv/claim (optional)
# Notification Settings (Optional)
vault_discord_webhook: ""
vault_telegram_bot_token: ""
vault_telegram_chat_id: ""
# Database Passwords (if using external databases)
vault_postgres_password: ""
vault_mysql_password: ""
# SSL Certificates (if using custom certs)
vault_ssl_cert_path: ""
vault_ssl_key_path: ""
vault_ssl_ca_path: ""
# Backup Encryption
vault_backup_encryption_key: "your_backup_encryption_key"
# SSH Keys for remote backup
vault_backup_ssh_private_key: |
-----BEGIN OPENSSH PRIVATE KEY-----
your_private_key_here
-----END OPENSSH PRIVATE KEY-----
vault_backup_ssh_public_key: "ssh-rsa your_public_key_here"