Salt SSH joins the image ✨
Run Salt commands and states over SSH without installing a salt-minion on every target. This release keeps Salt 3008.2 LTS and gives the image a new way to manage remote hosts.
What's Changed
- Add
salt-sshwith a configurable, read-only roster directory (SALT_SSH_DIR); keep SSH keys, known host keys and logs in their appropriate persistent locations. - Check SSH host keys by default. First-use options such as
-iand--key-deploystill require you to establish trust in the host key; see the README for safe onboarding. - Run Salt SSH through
salt-apiwithclient=ssh. - Support targets with other Python versions through
SALT_SSH_PYTHON_VERSIONSandssh_ext_alternatives, usinguvand dependencies pinned to Salt's lock files. - Refresh the Ubuntu base image to
resolute-20260912. - Fix startup when the image is built from a checkout with a restrictive
umask.
See #461 for the implementation and usage details.
Please refer to the Salt 3008.2 Release Notes for upstream Salt changes.
Full changelog: 3008.2_2...3008.2_3
Images
docker pull ghcr.io/cdalvaro/docker-salt-master:3008.2_3
docker pull ghcr.io/cdalvaro/docker-salt-master:3008.2_3-gui