This website requires JavaScript.
Explore
Help
Sign In
titan
/
atlas-iac
Watch
3
Star
0
Fork
0
You've already forked atlas-iac
Code
Issues
Pull Requests
9
Actions
Packages
Projects
Releases
Wiki
Activity
atlas-iac
/
knowledge
/
catalog
/
atlas-summary.json
9 lines
123 B
JSON
Raw
Normal View
History
Unescape
Escape
atlasbot: add KB + read-only tools
2026-01-06 14:46:36 -03:00
{
"counts"
:
{
hermes: grant owner agent union access
2026-08-10 17:05:14 -03:00
"helmrelease_host_hints"
:
23
,
refactor(hermes): rename the owner agent host to worker.bstein.dev Introduce worker.bstein.dev as the canonical hostname for the owner-only Hermes coordinator, previously agent.hermes.bstein.dev. The rename is additive, matching the shape #38 restored for chat and triage. CoreDNS, both agent Ingresses and the hermes-sites certificate now serve BOTH names, so merging this cannot take away the endpoint the operator uses to reach the coordinator. Retiring agent.hermes.bstein.dev is a separate, separately scheduled change. No redirect middleware is added. What switches to the new host: - HERMES_DASHBOARD_PUBLIC_URL and the oauth2-proxy --redirect-url - the Keycloak agent proxy rootUrl - operator docs, skills, the ZAP baseline target and the triage monitor default What stays dual-homed until retirement: - CoreDNS hosts entry, both agent Ingress rules, certificate SANs - API_SERVER_CORS_ORIGINS (now a comma-separated pair) - the Keycloak redirect URIs, web origins and post-logout origins, so a rollback only needs the oauth2-proxy --redirect-url reverted and does not require re-running the ensure job The agent client passes its legacy origin through the optional fourth argument #38 added to ensure_proxy_client, so no second mechanism is introduced. The immutable ensure Job goes -11 -> -12 because #38 already consumed -11 and that run has completed; without a further bump this change would never be applied. Login on the new host fails until the -12 Job completes. Because the session and CSRF cookies use the __Host- prefix they are bound to one origin, so a fresh login must start on worker.bstein.dev and existing sessions do not carry over -- re-login is required after rollout. #38's public-host continuity test now covers the agent proxy's dual origins rather than asserting the agent surface was untouched by the rename. Knowledge catalogs and diagrams regenerated with `make knowledge`.
2026-08-21 10:29:46 +00:00
"http_endpoints"
:
65
,
chore(knowledge): regenerate stale Atlas catalogs `make knowledge` output on main no longer matched the manifests it renders from. The legacy chat/triage hosts restored by #38 were missing from the committed HTTP catalogs and diagrams, along with Flux kustomizations and Grafana panels added since the last regeneration. Pure `make knowledge` run against unmodified main, separated into its own commit so the hostname rename that follows reviews as a hostname rename and nothing else. No hand edits.
2026-08-21 10:24:46 +00:00
"services"
:
98
,
"workloads"
:
130
atlasbot: add KB + read-only tools
2026-01-06 14:46:36 -03:00
}
}
Reference in New Issue
Copy Permalink