3159892fab
gates / gates (push) Successful in 27s
- Decision 52: catalog 6a3ead9 (re-test entries, gates, decoys, the monthly command); proven end to end on 9202 through the leg; runbook monthly-floating-retest.md; nothing to re-test on the engine lines today. - Decision 53 + R-741: controller v0.284.2 (0.284.0/0.284.1 never floored — two wiring faults found live on 9202); floor 0.284.2; one-time sweep 9202 26.6 -> 5.7 GB, demo-hp 24.3 -> 13.5 GB; the install hold proven as a stranger. - Golden 0.284.2 baked, round-trip identical, vouched (agent 0.138.0, min_agent 0.131.0); the gate prints OK. - Rows 377 -> 383: opened R-743..R-748, closed R-736, R-737, R-740, R-741, R-748; narrowed R-739, R-698, R-446. - register_shape_gate: a lettered id (R-88a) is a row too (R-748), with a decoy seen red. Evidence: documentation/audits/night-rulings-2026-09-30/, documentation/tests/golden-0.284.2-2026-09-30/. Report: REPORT-night-rulings-2026-09-30.md. Co-Authored-By: Claude Opus 5.5 (1M context) <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_0159rPz1ZhFKsS53msqPYxtS
61 lines
2.0 KiB
Python
61 lines
2.0 KiB
Python
#!/usr/bin/env python3
|
|
"""Point guest 9202 at the drill catalog (and a 90 s health timeout), or restore the saved config.
|
|
|
|
`09` §6.5: `git.repo_url` alone is INERT (R-615) — the cache dir must go too. The saved copy is
|
|
`controller.yaml.pre-rulings0930` (NOT the older `.pre-28`, which a restore must never pick up).
|
|
"""
|
|
import re, sys, io
|
|
sys.path.insert(0, '.')
|
|
import walk as w
|
|
|
|
VOL = "/var/lib/docker/volumes/felhom-controller-data/_data"
|
|
DRILL_REPO = "https://gitea.dooplex.hu/admin/app-catalog-drill.git"
|
|
|
|
|
|
def creds():
|
|
for l in io.open("/home/kisfenyo/.git-credentials").read().strip().split("\n"):
|
|
m = re.match(r'https://(admin):([^@]+)@gitea\.dooplex\.hu', l)
|
|
if m:
|
|
return m.group(1), m.group(2)
|
|
raise SystemExit("no admin credential")
|
|
|
|
|
|
def to_drill():
|
|
u, t = creds()
|
|
print(w.guest(f"""
|
|
set -e
|
|
test -f {VOL}/controller.yaml.pre-rulings0930 || cp -p {VOL}/controller.yaml {VOL}/controller.yaml.pre-rulings0930
|
|
python3 - <<'PY'
|
|
import re
|
|
p = "{VOL}/controller.yaml"
|
|
s = open(p).read()
|
|
s = re.sub(r'(^\\s+repo_url: ).*$', r'\\g<1>{DRILL_REPO}', s, count=1, flags=re.M)
|
|
s = re.sub(r'(^git:(?:\\n\\s+.*)*?\\n\\s+token: ).*$', r'\\g<1>"{t}"', s, count=1, flags=re.M)
|
|
s = re.sub(r'(^git:(?:\\n\\s+.*)*?\\n\\s+username: ).*$', r'\\g<1>"{u}"', s, count=1, flags=re.M)
|
|
if not re.search(r'^update:', s, re.M):
|
|
s += "update:\\n health_timeout: 90s\\n"
|
|
open(p, "w").write(s)
|
|
PY
|
|
rm -rf {VOL}/catalog-cache {VOL}/data/catalog-cache
|
|
docker restart felhom-controller >/dev/null
|
|
sleep 15
|
|
grep -A6 '^git:' {VOL}/controller.yaml | sed 's/token:.*/token: <redacted>/'
|
|
grep -A2 '^update:' {VOL}/controller.yaml
|
|
"""))
|
|
|
|
|
|
def restore():
|
|
print(w.guest(f"""
|
|
set -e
|
|
cp -p {VOL}/controller.yaml.pre-rulings0930 {VOL}/controller.yaml
|
|
rm -rf {VOL}/catalog-cache {VOL}/data/catalog-cache
|
|
docker restart felhom-controller >/dev/null
|
|
sleep 15
|
|
grep -A6 '^git:' {VOL}/controller.yaml | sed 's/token:.*/token: <redacted>/'
|
|
grep -c '^update:' {VOL}/controller.yaml || true
|
|
"""))
|
|
|
|
|
|
if __name__ == "__main__":
|
|
to_drill() if sys.argv[1] == "drill" else restore()
|