# Copy to terraform.tfvars and fill in. terraform.tfvars is gitignored — # never commit real secrets. # Default (qemu:///system) assumes you're running tofu on the T630 itself # as the 'k8s' user - see docs/01-bootstrap.md step 2. Leave commented out # unless you're running Terraform from a separate workstation instead. # libvirt_uri = "qemu+ssh://k8s@t630.lan/system?keyfile=/home/you/.ssh/id_ed25519" ssh_public_key = "ssh-ed25519 AAAA... you@workstation" k3s_token = "generate-with: openssl rand -hex 32" # Defaults in variables.tf (network_cidr, gateway_ip, node IPs/sizing) are # fine as-is for a first apply — override here only if they clash with # something else on the T630.