System
Host posture
Technical detail for this management edge. Overview is the package home; this page holds setup residual, hostnames, and env wiring.
Hostnames
- Primary
surmount.systemsmail.surmount.systems- Services
services.surmount.systems
Auth
Directory
Mail directory offline (source: unavailable). Accounts API stays empty until SURMOUNT_DIRECTORY=stalwart + host token. Domains are config inventory only. No invent live mailboxes; no HTML create form.
Configuration
Runbooks: docs/OPS.md · auth-failure ban matrix in docs/SECURITY.md.
| Service | surmount-management-ui |
|---|---|
| Version | 0.1.0 |
| Listen mode | 0.0.0.0:443 · https (rustls) |
| Rate limit | 120 req / 60s (max keys 50000) |
| Ban enforcement | off |
| Stalwart URL | http://127.0.0.1:8080 |
| Onion | Not provisioned on this host. Enable surmount.artiHiddenService (HS keys under onionServiceStateDir; startDaemon when ready). See docs/deploy-host-local.md (B3). Address is never invented. |
| Vaultwarden | Not configured. Host enable: surmount.vaultwarden + admin token EnvironmentFile under /run/surmount-secrets/vaultwarden/ (never in git). Console link via SURMOUNT_VAULTWARDEN_URL. Optional Axum path proxy: SURMOUNT_VAULTWARDEN_PROXY=1 under /vault/. Domain C human password manager only; not Bitwarden Secrets Manager; not deploy-secret activation. |
| Auth mode | off |
Health and JSON
GET /healthlivenessGET /api/v1/systemsystem status (onion + vaultwarden when set; no secrets)GET /api/v1/stalwart/statusGET /api/v1/domainsGET /api/v1/accounts