Surmount Services

surmount.systemsOperator console
Stalwart OK

System

Host posture

Technical detail for this management edge. Overview is the package home; this page holds setup residual, hostnames, and env wiring.

Hostnames

Primary
surmount.systems
Mail
mail.surmount.systems
Services
services.surmount.systems

Auth

Directory

Mail directory offline (source: unavailable). Accounts API stays empty until SURMOUNT_DIRECTORY=stalwart + host token. Domains are config inventory only. No invent live mailboxes; no HTML create form.

Configuration

Runbooks: docs/OPS.md · auth-failure ban matrix in docs/SECURITY.md.

Servicesurmount-management-ui
Version0.1.0
Listen mode0.0.0.0:443 · https (rustls)
Rate limit120 req / 60s (max keys 50000)
Ban enforcementoff
Stalwart URLhttp://127.0.0.1:8080
OnionNot provisioned on this host. Enable surmount.artiHiddenService (HS keys under onionServiceStateDir; startDaemon when ready). See docs/deploy-host-local.md (B3). Address is never invented.
VaultwardenNot configured. Host enable: surmount.vaultwarden + admin token EnvironmentFile under /run/surmount-secrets/vaultwarden/ (never in git). Console link via SURMOUNT_VAULTWARDEN_URL. Optional Axum path proxy: SURMOUNT_VAULTWARDEN_PROXY=1 under /vault/. Domain C human password manager only; not Bitwarden Secrets Manager; not deploy-secret activation.
Auth modeoff

Health and JSON