Files
felhom.eu/documentation
admin a103b62330
gates / gates (push) Successful in 20s
CHAOS NIGHT round 7: the block works, and "vzdump procs: 2" was my own command
Mid-cut measurements, asked of the box while its network was blocked:
  from the box: internet blocked (ping 1.1.1.1 fails), LAN reachable
  26 containers still running - the apps do not care the internet is gone
  free / unchanged at 7573M; diskguard active with zero log lines
  from DooPlex: LAN 301, public 502

The two paths separate cleanly, and the public failure code differs from round
4's on purpose: 530 when cloudflared was dead (Cloudflare had no tunnel at all),
502 now (the tunnel lives but can reach nothing). Two different failures of the
same journey, reported differently without being asked to.

And the twelfth self-inflicted reading of the night, corrected: every
"vzdump procs: 2" was MY OWN COMMAND. The [v]zdump bracket trick stops the
pattern matching itself, but the label I echoed - "vzdump procs:" - contains the
word, so ps listed my own shell and the grep counted it. No second backup was
ever running; the box has been idle since the off-site leg finished at 22:08:27Z.
Same family as the pkill -f that killed my own watcher earlier: a pattern that
matches the hand holding it. The cure that worked: ask for command lines, not a
count.

The disk guard stays regardless - the local tier really did announce a retry with
backoff, that retry is still due, and the guard has cost nothing.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_0159rPz1ZhFKsS53msqPYxtS
2026-09-17 00:13:17 +02:00
..

Felhom — Documentation

Felhom is a managed home-server service for Hungarian households, built on a three-component model over Proxmox:

  • Hub — operator backend on k3s (hub.felhom.eu). Repo: felhom.eu/hub/.
  • Host agent — one per Proxmox host; operator-tier; owns all Proxmox interaction. Repo: felhom-agent/.
  • In-guest controller — one per customer LXC; Docker-only; manages the customer's apps. Repo: felhom-controller/.

This directory is the central, code-verified documentation home for all three components plus the platform and the security-audit record.

Sections

Controller (in-guest) — controller/

The Docker-only app-domain controller. Full per-area docs grounded in current source (v0.59.0). → controller/README.md: module map, deploy & stack lifecycle, backup architecture, storage/monitoring/metrics, auth/hub/sync/integrations.

Where we stand — architecture/where-felhom-stands.*

The operator's one-page picture of what is proven, built, partial and missing.

Host agent & platform — architecture/, proxmox-platform.md

The operator-tier agent and the Proxmox platform.

Hub (operator backend) — architecture/05

Security audits & remediation — audits/

Spike & test findings — tests/

Per-slice spike/validation findings (phases 0–5, slices 7–10). See tests/.

Conventions

  • Code-verified, not memory-derived. Architectural claims here are checked against the actual current source; if a claim can't be verified it is omitted and flagged, not guessed.
  • Per-repo operational working files (CLAUDE.md, CONTEXT.md, CHANGELOG.md, BUGHUNT.md, REPORT.md, TASK.md) live in their own repos — they are operational, not published docs.
  • Authoritative versions at last refresh: controller v0.59.0, agent v0.29.1, hub v0.11.0.