[main]: Update home-server

This commit is contained in:
John Gatward committed 2026-10-06 16:57:11 +01:00
1 parent 81b43de3f1
commit 283096a43d
7 files changed
+82 -15

No files matched your search

+28 -5
View File
@@ -8,10 +8,12 @@ last_reviewed: "2026-10-06"
sources:
- kind: owner-report
reference: "RAID/media tradeoff, CGNAT/public IPv4 rationale, no alerting and running monitoring/log containers, 2026-10-06"
- kind: owner-report
reference: "Outages over one day catastrophic; no independent credentials except restic key, recovery evidence, host-config archive or operational rules, 2026-10-06"
related: [home-server.reference, home-server.host, home-server.mercury, home-server.networking, home-server.storage, home-server.backups, home-server.deployment]
update_triggers: [data-priority-change, architecture-change, alerting-change, recovery-test]
unknowns:
- acceptable-downtime-and-data-loss-by-service
- acceptable-data-loss-and-recovery-order-by-service
- data-criticality-outside-the-four-backed-up-directories
- tested-full-host-recovery-order
- monitoring-review-frequency
@@ -45,7 +47,28 @@ stopped services and storage failures require manual detection.
## Recovery status
No restore test performed. Backup scope is documented in [Backups](backups.md);
OS, host configuration and named-volume coverage must not be inferred from
the four-directory plan. Recovery priorities, RPO/RTO and validated bootstrap
instructions remain unconfirmed.
| Item | Current status |
| --- | --- |
| Jupiter outage tolerance | At most 24 hours; longer is catastrophic to the owner |
| Recovery time | Not measured; 24-hour objective is not demonstrated |
| Acceptable data loss / RPO | Not defined |
| Independent recovery secrets | Restic encryption key only |
| Backup/integrity evidence | None supplied |
| Restore exercise | Never performed |
| Independent host-config archive | Not maintained |
| Operational rules / rollback policy | Not established |
Backup scope is documented in [Backups](backups.md). The four-directory plan
does not establish OS, host-configuration or named-volume recovery.
## Proposed recovery storage
Not implemented:
- Private Git repository: sanitized host configuration and bootstrap instructions.
- Encrypted off-host/offline archive: required credentials and secret-bearing configuration.
- Independent access instructions: account recovery, archive location and decryption.
Access/decryption must work without Jupiter or Portainer. A private Git
repository is not a substitute for protecting secret values. Restic key custody
alone does not provide Google Drive access.