# One machine that becomes a mesh and grants a consumer an S3 bucket from an assigned minio provider. # # The postgres bed proves the provider/consumer contract for a database; this proves it for object # storage (novox/hq ADR 0052/0053), on a provider whose code drives the `mc` CLI (so the runtime image # carries it): minio is assigned, a consumer that requires s3-bucket is assigned, and the mesh mints # one secret key; minio's provisioner creates a bucket and a service account under the access key the # mesh derived with the secret it minted, and the consumer reaches its bucket with only that. scenario: minio-node segments: hosting: kind: public cidr: [192.0.2.0/24] machines: anchor: at: { segment: hosting, address: [192.0.2.10] } egress: true inbound: allow memory: 3GiB cpus: 2 images: - mesh-controller:development # minio's runtime, built by scripts/build-module-runtime.sh minio (it carries mc), loaded onto # the machine. - mesh-runtime-minio:development place: all: [host, runtime]