Skip to content

docs(runbooks): add the nas01 rebuild procedure - #18

Merged
jmgilman merged 1 commit into
masterfrom
docs/nas01-runbook
Aug 21, 2026
Merged

docs(runbooks): add the nas01 rebuild procedure#18
jmgilman merged 1 commit into
masterfrom
docs/nas01-runbook

Conversation

@jmgilman

Copy link
Copy Markdown
Contributor

Summary

  • Runbook for rebuilding nas01 from seeded IncusOS media, proven live 2026-08-20 during the first-node bootstrap (session 002): media build from GilmanLab/fleet, raw USB write, fTPM-clear guidance, unattended install, trust + cluster-enable, mandatory recovery-key escrow, verification incl. reboot-survival, and recovery paths (escrowed key, PiKVM console).
  • Captures the hard-won lessons: never write install media to an internal drive (PCR4), never install through Ventoy, stale fTPM state causes unanswerable recovery prompts.

Validation

  • moon run docs:build passes (strict).

@jmgilman
jmgilman merged commit 969efae into master Aug 21, 2026
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant