Remove ansible.nodejs.org
维护者通常 2 天内回复
还没有人认领这个 Issue。
评估
- 难度
- 5/5
- 预计耗时
- 一周以上
- 新手友好度
- 35/100
- Issue 类型
- 重构
- 描述清晰度
- 基本清楚
- 活跃度
- 活跃
- 技术栈
- ansible, docker, docker-compose
- 领域
- cloud, devops, infrastructure, security
调研方向
Start by reviewing ansible/inventory.yml, the ~/.ssh/config conventions, and the secrets repository for references to ansible.nodejs.org, infra-ibm-ubuntu2004-x64-1, and awx_password. Confirm that no credentials, scheduled jobs, webhooks, or workflows depend on the AWX host, then coordinate decommissioning the host and removing its DNS and Cloudflare configuration. Done means the host and related references are safely removed and exclusive credentials are rotated.
由索引模型根据 Issue 内容生成。
描述
Summary
ansible.nodejs.org (IBM host infra-ibm-ubuntu2004-x64-1, 169.60.150.91) is an unmanaged, unwatched AWX (open-source Ansible Tower) instance that has been effectively dead for years and should be decommissioned rather than repaired.
What's running there
- AWX 17.1.0 (
ansible/awx:17.1.0), deployed via docker-compose, containers created ~5 years ago. awx_web,awx_task,awx_rediscontainers, plusawx_postgres.- No nginx/reverse proxy — the AWX web container binds host ports 80/443 directly.
Key detail: it's been idle for years, then crashed
The last time this AWX instance did anything at all was around 2023-09-29 (a project sync attempt), and the last time there's evidence of actually running a job against current code was back when the checkout was at the Feb 2022 commit. Either way, it's been sitting completely idle for roughly 2.5+ years before postgres even died in Dec 2025 — the disk-full crash-loop just finished off something that was already effectively unused.
Supporting evidence:
awx_postgreshas been crash-looping since 2025-12-29 (no space left on device, 605+ restart attempts logged), because the host's root disk is 100% full (99G/99G).- The AWX-synced checkout of
nodejs/buildunder/var/lib/awx/projectsis pinned at commit472b2953("Update README.md", #2874, merged 2022-02-21). - The project's
.git/FETCH_HEAD(updated on each pre-job sync) has an mtime of 2023-09-29 11:56 UTC, and picked up no newer commits — the last sync attempt, whatever triggered it, did nothing useful. - The host's origin TLS cert (served directly by the AWX container, not through Cloudflare) is self-signed and expired 2024-04-09. The only reason
https://ansible.nodejs.orgstill shows a valid cert to browsers is that Cloudflare is terminating TLS at the edge with the shared*.nodejs.orgwildcard cert and not validating the origin connection.
Why this should be removed, not fixed
- It's a privileged automation platform (AWX manages Ansible credentials/inventory) that nobody has been watching for 2.5+ years.
- Disk exhaustion took down its database in Dec 2025 and nobody noticed for ~9 months — reinforcing that it has no active owner.
- The AWX release (17.1.0) is multiple years out of date.
- No current build/infra workflow appears to depend on it (last real activity predates most current infra automation, which now runs through this
ansible/repo directly).
Suggested next steps
- Confirm nothing currently depends on this AWX instance (credentials stored only here, scheduled jobs, webhooks pointing at it, etc.)
- Decommission the host (
infra-ibm-ubuntu2004-x64-1/ansible.nodejs.org, IBM, 169.60.150.91) - Remove its DNS record and Cloudflare configuration
- Remove/rotate any credentials that were only ever exposed to this box (e.g.
awx_passwordin the secrets repo) - Remove references to it from
ansible/inventory.ymland~/.ssh/configconventions once decommissioned
🤖 Generated with Claude Code
- 主要语言
- Jinja
- 星标
- 541
- 派生
- 185
- 平均合并
- 2 天 19 小时
- 30 天内合并 PR
- 6
环境准备
从这里开始
- 先读完整个 Issue,再读项目的贡献指南。
- 在 Issue 下留言说明你要接手 —— 这能避免两个人做同样的事。
- Fork 仓库,在一个分支上完成修改。
- 提交 Pull Request,并在描述里引用这个 Issue 编号。
nodejs/build 的其他 Issue
-
难度 2/5 1-3 小时 新手友好度 70/100
维护者通常 2 天内回复
-
platform:ppc
难度 1/5 1 小时以内 新手友好度 65/100
维护者通常 2 天内回复
-
难度 2/5 1-3 小时 新手友好度 72/100
维护者通常 2 天内回复
-
难度 5/5 一周以上 新手友好度 35/100
维护者通常 2 天内回复
-
难度 4/5 3-5 天 新手友好度 45/100
维护者通常 2 天内回复
相似的 Issue
-
Team: SCM
难度 2/5 1-3 小时 新手友好度 78/100
microsoft/BCApps#12012 · 1 条评论 ·
维护者通常 1 天内回复
-
developer-experience documentation high
难度 2/5 1-3 小时 新手友好度 76/100
anchapin/staging-studio#1117 ·
维护者通常 1 天内回复
-
enhancement
难度 2/5 1-3 小时 新手友好度 78/100
pydantic/pydantic-ai#8935 ·
维护者通常 1 天内回复
-
Language: Terraform :globe_with_meridians: Needs: Triage :mag: Type: Bug :bug:
难度 2/5 1-3 小时 新手友好度 74/100
Azure/terraform-azurerm-avm-res-web-site#408 · 1 条评论 ·
维护者通常 1 天内回复
-
Language: Terraform :globe_with_meridians: Needs: More Evidence :balance_scale: Needs: Triage :mag: Type: Bug :bug:
难度 2/5 1-3 小时 新手友好度 78/100
Azure/terraform-azurerm-avm-res-sql-managedinstance#152 ·
维护者通常 1 天内回复