mirror of
https://github.com/Sea-Haven-Industries/seahaven-org-baseline.git
synced 2026-10-06 22:41:58 +00:00
chore(backup): drop the missing file-share volume from phase 2 (PLAT-77) (#167)
* chore(backup): drop retired file-share volumes from phase 2 (PLAT-77) The 20 GiB volume is already gone and the 500 GiB volume is only a rollback hold, so the backup selection should not include either one. * fix(backup): keep the file-share rollback volume in phase 2 (PLAT-77) The 500 GiB disk is the rollback hold until 2026-10-06, so it stays in the offsite selection. Only the missing 20 GiB volume comes out.
This commit is contained in:
parent
7e706aef2f
commit
78e4bcf128
1 changed files with 10 additions and 9 deletions
|
|
@ -253,13 +253,15 @@ export class BackupStack extends cdk.Stack {
|
||||||
// the locked offsite vault ("offsite for everything"). Same role and rule
|
// the locked offsite vault ("offsite for everything"). Same role and rule
|
||||||
// as phase-1; a separate selection keeps the phase-1 critical set readable.
|
// as phase-1; a separate selection keeps the phase-1 critical set readable.
|
||||||
//
|
//
|
||||||
// Still EXPLICIT-ARN (not tag-based) on purpose: the file-share volumes are
|
// Still EXPLICIT-ARN (not tag-based) on purpose: the DynamoDB tables are
|
||||||
// standalone CDK-managed (RETAIN) and the DynamoDB tables are owned by other
|
// owned by other stacks, so tagging them here would drift those stacks.
|
||||||
// stacks, so tagging them here would drift those stacks — the same reason
|
// vol-054cf918f227d88f6 (file-share, 20 GiB) no longer exists and is out of
|
||||||
// phase-1 avoided tags. Tradeoff: if a volume is replaced (new vol-id) it
|
// this selection. vol-04d951cccacc435b5 stays through the PLAT-77 rollback
|
||||||
// silently drops from this selection; scheduled drift detection + the audit
|
// hold (RetainUntil 2026-10-06) so that disk keeps its offsite copy. Remove
|
||||||
// re-run are the backstop. Identifiers verified against the live account
|
// it when the hold ends. Tradeoff: if a volume is replaced (new vol-id) it
|
||||||
// 2026-06-03.
|
// silently drops from this selection; scheduled drift detection and the
|
||||||
|
// audit re-run are the backstop. Identifiers verified against the live
|
||||||
|
// account 2026-06-03.
|
||||||
//
|
//
|
||||||
// Excluded by intent: the ledgerflow tables — the whole LedgerFlow stack
|
// Excluded by intent: the ledgerflow tables — the whole LedgerFlow stack
|
||||||
// was decommissioned 2026-06-03 (audit Day 4), so they no longer exist.
|
// was decommissioned 2026-06-03 (audit Day 4), so they no longer exist.
|
||||||
|
|
@ -290,9 +292,8 @@ export class BackupStack extends cdk.Stack {
|
||||||
// the vault CMK, as the C-7 database-1 smoke-test confirmed)
|
// the vault CMK, as the C-7 database-1 smoke-test confirmed)
|
||||||
...[
|
...[
|
||||||
"vol-05cb0eb5c145d799b", // SeaHavenIndustries-dev
|
"vol-05cb0eb5c145d799b", // SeaHavenIndustries-dev
|
||||||
"vol-054cf918f227d88f6", // file-share (20 GiB)
|
|
||||||
"vol-00f05a5a809697ce5", // forgejo
|
"vol-00f05a5a809697ce5", // forgejo
|
||||||
"vol-04d951cccacc435b5", // file-share NAS (500 GiB)
|
"vol-04d951cccacc435b5", // file-share NAS rollback hold until 2026-10-06
|
||||||
"vol-07094902194638fff", // syslog-server
|
"vol-07094902194638fff", // syslog-server
|
||||||
"vol-0c2cbe9e71517a517", // Mutual Aid Data
|
"vol-0c2cbe9e71517a517", // Mutual Aid Data
|
||||||
"vol-0fe224f13812f47e7", // jump box
|
"vol-0fe224f13812f47e7", // jump box
|
||||||
|
|
|
||||||
Loading…
Add table
Reference in a new issue