inventory_targets: - name: Blackmoon hostname: blackmoon.localdomain ip: 192.168.5.1 notes: Core OpnSense gateway; ping only - name: Supermicro-BMC hostname: 192.168.5.30 ip: 192.168.5.30 ports: - 22 - 80 notes: "Supermicro IPMI (ATEN login portal on 80\u2192443) for rack chassis" - name: Jet-Alone hostname: jet-alone.localdomain ip: 192.168.5.31 ports: - 22 notes: GPU/LLM server - name: Wille hostname: wille.localdomain ip: 192.168.5.33 ports: - 22 - 80 - 443 notes: TrueNAS SCALE primary storage (iXsystems /ui interface) - name: Core hostname: core.localdomain ip: 192.168.5.34 ports: - 22 - 80 - 443 notes: Production Docker swarm (Traefik, Gitea, Authentik, Immich, etc.) - name: NERV-III hostname: NERV-III ip: 192.168.5.35 ports: - 22 notes: 'Standalone Proxmox host (Fedora CoreOS VMs: container-dev VM110 plus Ramiel containers)' - name: TP-Link-AP-1 hostname: 192.168.5.36 ip: 192.168.5.36 ports: - 22 - 80 notes: TP-Link EAP/Omada AP web UI (login page on HTTP) - name: TP-Link-AP-2 hostname: 192.168.5.39 ip: 192.168.5.39 ports: - 22 - 80 notes: TP-Link EAP/Omada AP web UI (login page on HTTP) - name: Subspace-Mote-1 hostname: subspace-mote-1.localdomain ip: 192.168.5.41 ports: - 22 notes: SBC cluster member - name: BirdNET-GO hostname: 192.168.5.71 ip: 192.168.5.71 ports: - 22 - 8080 notes: Armbian (rz3w-02) running birdnet-go container (port 8080) - name: rz3w-02 hostname: rz3w-02.localdomain ports: - 22 notes: Subspace node with metrics/logging - name: Arael hostname: arael.localdomain ip: 192.168.5.44 ports: - 22 notes: Debian host, purpose TBD - name: Synology-NAS hostname: 192.168.5.45 ip: 192.168.5.45 ports: - 22 - 80 - 443 - 5000 notes: Synology DSM primary NAS (HTTP redirect to DSM on 5000/5001) - name: Docker-Public hostname: docker-public.localdomain ip: 192.168.5.46 ports: - 22 notes: Traefik/Docker public host (Traefik on 8080; hosts Invidious, Matomo, FreshRSS, etc.) - name: Frigate hostname: frigate.localdomain ip: 192.168.5.47 ports: - 22 - 5000 notes: NVR VM - name: HomeAssistant hostname: homeassistant.localdomain ip: 192.168.5.48 ports: - 22 - 8123 notes: Home automation host - name: Casper hostname: casper.localdomain ip: 192.168.5.50 ports: - 22 notes: Logging/Metrics VM - name: Ramiel hostname: ramiel.localdomain ip: 192.168.5.51 ports: - 22 - 6443 notes: Cluster node - name: Ramiel-III hostname: ramiel-iii.localdomain ip: 192.168.5.230 ports: - 22 notes: Additional Ramiel host - name: NERV hostname: nerv.localdomain ip: 192.168.5.203 ports: - 22 - 8006 notes: Proxmox host - name: Magi2 hostname: magi2.localdomain ip: 192.168.5.202 ports: - 22 - 8006 notes: Proxmox host (JSON listed as Magi) - name: JHCI hostname: jhci.localdomain ip: 192.168.5.201 ports: - 22 - 8006 notes: Proxmox host - name: Balthasar hostname: balthasar.localdomain ip: 192.168.5.237 ports: - 22 - 80 notes: Technitium DNS server (hosts DoH UI) - name: Unit-00 hostname: unit-00.localdomain ip: 192.168.5.222 ports: - 22 notes: Client that connects to docker-dev - name: TrueNAS-Backup hostname: ARKII.localdomain ip: 192.168.5.32 ports: - 22 - 80 - 443 notes: "TrueNAS SCALE backup NAS (ARKII chassis) \u2013 HTTPS /ui, SSH pending credentials" - name: Mokerlink-POE hostname: 192.168.5.226 ip: 192.168.5.226 ports: - 80 notes: Mokerlink POE-2G08110GSM switch (web login only) - name: EtherNetIP-Controller hostname: 192.168.5.17 ip: 192.168.5.17 ports: - 2222 notes: CNC/3D printer controller interface - name: P1S-Printer hostname: P1S ip: 192.168.5.42 notes: Bambu Lab P1S (LLMNR responder only; no TCP services) - name: Container-Dev hostname: container-dev ip: 192.168.5.236 ports: - 22 - 5355 notes: Fedora CoreOS VM (NERV-III VM110) for container dev; only key-based SSH + LLMNR - name: VPS-TransparentProxy-19222713430 hostname: 192.227.134.30 ip: 192.227.134.30 ports: - 22 - 80 - 443 notes: Transparent HAProxy node (Debian 10) running haproxy + zerotier-one + telegraf - name: VPS-TransparentProxy-1071722798 hostname: 107.172.27.98 ip: 107.172.27.98 ports: - 22 - 80 - 443 notes: Transparent HAProxy node (Debian 12) running haproxy + tailscale + zerotier-one + telegraf/filebeat - name: VPS-TransparentProxy-10717425061 hostname: 107.174.250.61 ip: 107.174.250.61 ports: - 22 - 80 - 443 notes: Transparent HAProxy (Debian 12) with haproxy, docker/containerd, iperf3, filebeat, tailscale, zerotier - name: VPS-Headscale hostname: 198.46.218.8 ip: 198.46.218.8 ports: - 22 - 80 - 443 notes: Headscale coordination server (Ubuntu 20.04) running headscale, HAProxy, Uptime Kuma, tailscale, zerotier - name: VPS-MailInABox hostname: 198.23.146.170 ip: 198.23.146.170 ports: - 22 - 80 - 443 notes: mail.uplink.tel Mail-in-a-Box (Postfix, Dovecot, BIND, NSD, nginx, SpamPD, Filebeat, Tailscale) - name: VPS-FriendServer hostname: 172.245.88.186 ip: 172.245.88.186 ports: - 22 - 80 - 443 notes: '"Friend server managed" (Debian 12) hosting Apache, InspIRCd, MariaDB, Gitea (docker), Tor, Tailscale' - name: VPS-Meow hostname: 107.174.64.22 ip: 107.174.64.22 ports: - 22 - 80 - 443 notes: '"Meow" VPS (Debian 12) running Docker stack: traefik, wg-easy, wordpress/mysql, nginx, filebrowser' - name: VPS-Lukes hostname: 23.94.206.75 ip: 23.94.206.75 ports: - 22 - 80 - 443 notes: "Luke's VPS (Debian 12) \u2013 running Docker (Traefik, Caddy, GoatCounter,\ \ TTRSS stack, Radicale, filebrowser, ssh-tunnel)" - name: VPS-Tailscale-Edge hostname: 100.64.0.14 ip: 100.64.0.14 ports: - 22 - 80 - 443 notes: 'Tailscale interface into mail.uplink.tel (Mail-in-a-Box stack: Postfix/Dovecot/BIND/nginx)' - name: BirdNET-Pi hostname: orangepizero2.localdomain ip: 192.168.5.18 ports: - 22 - 80 notes: Orangepi Zero2 running BirdNET-Pi (Caddy on port 80)