Rotate Fleet Passwords

Set one unified OS-account password across many hosts over SSH (and optionally the in-band iDRAC/BMC user), verifying each and reporting a per-host summary. Use when the user wants to rotate/unify/change login passwords across a fleet, set a shared recovery credential, onboard hosts to a common password, or rotate BMC passwords. Triggers: "rotate passwords", "unified password across hosts", "change my password everywhere", "set a shared console password", "rotate the OpenBao agent-apps-rw token". Do NOT use for SSH key distribution (use ssh-bootstrap), arbitrary app/secret-store secrets (use secret-vault-manager), or single-host one-off passwd.

Knuckles-Team Updated

File contents

Knuckles-Team/universal-skills/tree/main/universal_skills/infrastructure/rotate-fleet-passwords commit 3d0995f2c0

Frequently asked questions

npx skillmds@latest add knuckles-team/rotate-fleet-passwords