> This whole "don't have your salt master exposed to the internet" thing has me annoyed.
The whole point of salt is to manage boxes all over the place.
I manage around 500 machines. Most of them are behind the firewalls of incompetent admins who have spent hours in the past trying to set up port forwards when salt-minion crashed so I could access the box again.
I'm about to test binding salt-master to localhost and salt-minion to localhost and then setting up spiped to wrap the traffic...
Some companies need better DevOps apparently