diff --git a/docs/decisions/016-mesh-vpn.md b/docs/decisions/016-mesh-vpn.md index 02c2a70..0a9de27 100644 --- a/docs/decisions/016-mesh-vpn.md +++ b/docs/decisions/016-mesh-vpn.md @@ -85,8 +85,9 @@ allocated for it. - **Bootstrap order:** stand up the coordinator on `askari` → enroll `ubongo` → `base` enrolls the fleet. - **Coordinator survival:** off-site on `askari` ⇒ mesh survives a homelab outage. - NetBird's management datastore is backed up encrypted off `askari` (synced to - `ubongo`/`mamba`); peers keep last-known config through a brief coordinator outage. + NetBird's management datastore is **intended** to be backed up encrypted off `askari` + (synced to `ubongo`/`mamba`; not yet built — see the Availability amendment / R8); peers + keep last-known config through a brief coordinator outage. - **`askari` is Ansible-managed:** its own inventory group `offsite_hosts` — provisioned as **Terraform IaC** (`hetznercloud/hcloud`), managed independently of the Proxmox cluster (its own provider + local state). Ansible configuration: `base` role, plus a