Reach every host of a site, select nodes with ClusterShell node set syntax,
run commands on them in parallel, drive their service processors,
reinstall them and administer Slurm.
ClusterShell syntax, groups from node attributes, the workload manager or a table, and set operations that mean what they say.
An argument vector is quoted once and reassembled by the remote shell. A glob is not expanded on your laptop, and an apostrophe does not break anything.
Every command that changes something previews it, asks first, refuses protected hosts, and understands –dry-run.
Layered YAML with a schema, validated where it was written, and a command that says which layer set each value.
Passwords never reach a remote argument vector. age and sops encrypted secrets are decrypted into memory and streamed to the node.
No interpreter, no virtual environment, no agent on the nodes. Copy one file and run it.