Some checks are pending
offline / test (push) Waiting to run
NS1 is the Proxmox host. verae-proxmox creates LXC 510 (verae-px-worker 10.10.10.20 on vmbr1) with a private NATS proxy on 10.10.10.1:4222. verae-uptime GET-watches public doors; verae-backup snapshots SQLite and worm/tree data; verae-deploy does host-deps + checkout + npm ci. Fleet overlays/ns1 are checked in (start.sh no longer rewrites JSON). User systemd + linger for keep and fleet survive reboot.
23 lines
871 B
Markdown
23 lines
871 B
Markdown
# verae-backup
|
|
|
|
Snapshot and restore **zappier SQLite**, staff IAM data, keep state, fleet-runtime (worm/tree blobs), and JetStream store if present.
|
|
|
|
**Forgejo:** https://git.georgelambert.org/marchon/verae-backup
|
|
**SSH:** `ssh://git@git.georgelambert.org:2223/marchon/verae-backup.git`
|
|
|
|
```bash
|
|
# on NS1
|
|
export BACKUP_ROOT=/SSD2/backups/verae
|
|
bash scripts/backup.sh
|
|
bash scripts/restore.sh --dry-run
|
|
# after stopping keep/fleet consumers:
|
|
# bash scripts/restore.sh --apply --archive /SSD2/backups/verae/20260101T031700Z.tgz
|
|
```
|
|
|
|
Paths: `paths.env`. Missing sources are skipped. Default retain 14 tarballs.
|
|
|
|
User timer: `systemd/verae-backup.timer` (03:17 UTC). Enable with linger.
|
|
|
|
Does **not** back up private keys. Restore identityFile **paths** on the operator host by hand.
|
|
|
|
Does **not** connect to NATS; it copies the JetStream directory if `NATS_STORE` exists.
|