# Copy to .env (gitignored): cp .env.example .env # # vault → .env: make vault-export-env # .env → vault: make vault-import-env # hosts → vault: make vault-pull-infra-secrets (SSH to monitoring/hermes, then import) # # Prefer vault for long-term storage; delete .env after export if you want. # Mailcow (make mailcow-mailbox MAILBOX=alerts) MAILCOW_API_KEY= ALERTS_PASSWORD= # Uptime Kuma @ 10.0.10.22:3001 (scripts/kuma-setup-smtp.sh) KUMA_URL=http://10.0.10.22:3001 KUMA_USER=admin KUMA_PASSWORD= # Kuma SMTP notification (after alerts@ mailbox exists) SMTP_HOST=mail.levkine.ca SMTP_PORT=587 SMTP_USER=alerts@levkine.ca SMTP_PASS= SMTP_TO=idobkin@gmail.com # Umami @ 10.0.10.22:3000 (admin UI password; DB pass is on LXC only) UMAMI_ADMIN_PASSWORD= # Hermes Mattermost (not Telegram) MATTERMOST_URL= MATTERMOST_TOKEN= MATTERMOST_ALLOWED_USERS= # Optional: same password on Proxmox / LXCs / caddy root (if you use one shared admin password) # PROXMOX_PASSWORD= # LXC_ROOT_PASSWORD= # Per-mailbox: MAILBOX_notify_PASSWORD=