### hydra
+* [x] Deploy:
+ * [x] Automatically fix permission of (or delete) puppet's `devices`
+ folder: https://github.com/puppetlabs/puppet-specifications/blob/master/file_paths.md
* [x] Keys:
- * [x] Deprecate generating and deploying/import borg keys, since
- pre-generation is not a supported behavior right now:
- https://github.com/borgbackup/borg/issues/7047
- * [x] Document about how keys are encrypted and backed up in the server:
- https://borgbackup.readthedocs.io/en/latest/faq.html#how-important-is-the-home-config-borg-directory
+ * [x] Deprecate generating and deploying/import borg keys, since
+ pre-generation is not a supported behavior right now:
+ https://github.com/borgbackup/borg/issues/7047
+ * [x] Document about how keys are encrypted and backed up in the server:
+ https://borgbackup.readthedocs.io/en/latest/faq.html#how-important-is-the-home-config-borg-directory
### hydractl
Store somewhere under the `config/hardware` folder?
* [ ] Command line is broken for ansible when multiple nodes are provided.
* [ ] Use console-based GnuPG agent when calling `keyringer`.
- * [ ] Automatically fix permission of (or delete) puppet's `devices`
- folder: https://github.com/puppetlabs/puppet-specifications/blob/master/file_paths.md
* [ ] Mass:
* [ ] Support for [cumin][] ([Debian package](https://tracker.debian.org/pkg/cumin)).
# Fix ssl folder ownership
$SUDO chown -R `whoami`: $HYDRA_FOLDER/puppet/ssl
+ # Fix devices folder ownership
+ $SUDO chown -R `whoami`: $HYDRA_FOLDER/puppet/devices
+
# Import keys if needed
if ! $SUDO test -f /root/.ssh/id_rsa || \
! $SUDO test -f /root/.config/borg/hydra/key || \