WP-40/41/42: dashboard, security hardening, deployment and operations docs

Dashboard endpoint and page aggregating inventory, vulnerabilities, cluster
health, backups and recent jobs. Security headers (CSP, nosniff, DENY,
referrer policy), 1 MB body limit, configurable login rate limit, audit
steps in CI. Installer script, systemd unit, install/architecture docs.

Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
This commit is contained in:
Dennis Nemec
2026-09-02 23:26:01 +02:00
parent a89395ae18
commit 9234e1ba47
29 changed files with 851 additions and 21 deletions

View File

@ -21,6 +21,7 @@ export default defineConfig({
JWT_SECRET: 'e2e-test-secret-do-not-use-in-production',
MASTER_KEY: '000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f',
FAKE_HOST: 'true',
LOGIN_RATE_LIMIT: '1000',
BOOTSTRAP_ADMIN_EMAIL: 'admin@example.com',
BOOTSTRAP_ADMIN_PASSWORD: 'admin-password-123',
BIND: '127.0.0.1:8080',