Maintenance
Routine update/upgrade procedures per deployment type.
Helper-script LXCs
- Primary: run
updatein the container console (the helper-script updater). - Fallback for some:
apt dist-upgrade.
QEMU VMs
apt dist-upgradeinside the guest.
Before risky upgrades
Snapshot-first for anything stateful:
- Fresh vzdump to the
backupsstorage (Datacenter → Backup → run now). - Run the upgrade.
- Verify service-specific extras (e.g. OIDC plugin).
Host (Proxmox VE)
- PVE updates via
apton the host; check the forum/release notes for major version jumps. - Tailscale on the host keeps management access during network changes — but have lockout-recovery handy anyway.
Scheduled jobs
- Automated backups exist since 2026-09: two Datacenter → Backup jobs
(
lxc-suspend+vm-snapshotpools, Mon/Thu,backupsstorage, keep-last=5) — details in storage. Remaining gap is an offsite copy, tracked in TODO.