diff --git a/docs/swarm/credentials.md b/docs/swarm/credentials.md index 7e14abea..e1ecfbcf 100644 --- a/docs/swarm/credentials.md +++ b/docs/swarm/credentials.md @@ -2,7 +2,7 @@ Where [`secrets.md`](secrets.md) is a map of every file a swarm holds, this page is the **direction of travel**: what the credential shape is today, what -it's on track to become, and the test a change has to pass to count as movement +it should become, and the test a change has to pass to count as movement toward it rather than away. It's the thing a discussion should point at. **When the migration @@ -75,8 +75,7 @@ not credentials this page governs. Their absence isn't an oversight. ⚠️ **This section describes what the swarm is moving toward — not what exists today.** Read the current-state table above for that. In particular, the first -line below is the one most often misread as a statement of fact, so it's -stated as a target twice. +line below states intent, not current state, so it's stated as a target twice. **Every host needs a store mTLS certificate. Everything else is done through the store.** That's the target. Today only the host running the store itself