Record isolated clean deployment evidence
This commit is contained in:
parent
71510a2ab4
commit
591384f2b7
|
|
@ -641,15 +641,18 @@ independent one-run PostgreSQL, Phoenix, handover, BEAM-cookie, and metrics
|
|||
secrets with mode `0600`; optional GitHub OAuth and push delivery stay
|
||||
disabled.
|
||||
|
||||
The drill uses a unique Compose project, application image, router/service
|
||||
name, internal network, PostgreSQL volume, database, and dynamic host ports.
|
||||
The drill uses a unique Compose project, application image, Docker socket
|
||||
proxy image, PostGIS image, Traefik image, router/service name, internal
|
||||
network, PostgreSQL volume, database, and dynamic host ports.
|
||||
It requires exactly two healthy web and two running worker replicas, all
|
||||
tracked migrations, seeded categories, an idempotent repeated migration,
|
||||
working readiness/home/registration/Mailpit routes, four connected BEAM
|
||||
nodes, and a cross-replica PubSub message. It then removes the exact project
|
||||
including volumes, its one-run image, and the temporary archive, and verifies
|
||||
that those scoped resources are absent. Evidence is retained under
|
||||
`output/portability/<run-id>/`.
|
||||
including volumes, all four one-run images, and the temporary archive, and
|
||||
verifies that every scoped resource is absent. If Compose validation fails
|
||||
before project creation, cleanup avoids invoking an unrenderable Compose
|
||||
configuration and still verifies that the generated scope is absent. Evidence
|
||||
is retained under `output/portability/<run-id>/`.
|
||||
|
||||
This is a local Docker portability observation. It does not establish
|
||||
production SMTP, OAuth, push-provider, TLS, database-HA, storage, capacity, or
|
||||
|
|
|
|||
|
|
@ -64,6 +64,18 @@ edit, branch, or tag was made during this audit.
|
|||
checks on two web and two worker replicas. Evidence is
|
||||
`output/upgrade-rehearsal/20260723195143-1759181`; the exact rehearsal
|
||||
containers, networks, volume, database, and image were absent afterward.
|
||||
- A clean deployment from the tracked archive at commit
|
||||
`71510a2ab4fb5e2fb2aa65bdf05a358e5045923b` passed on Docker Engine
|
||||
29.6.2 and Compose 5.3.1. It independently built the application, Docker
|
||||
socket proxy, PostGIS, and Traefik images, applied all 18 migrations twice
|
||||
without changing the 14 seeded categories, started two healthy web and two
|
||||
healthy worker replicas, formed a four-node BEAM cluster, passed a
|
||||
cross-node PubSub probe, and returned ready HTTP plus working home,
|
||||
registration, and Mailpit responses. Evidence is
|
||||
`output/portability/20260723195646-1902488-616f83`. After the run, exact
|
||||
checks found zero project containers, networks, volumes, and one-run images;
|
||||
the temporary tracked-archive workspace was absent, while both local and
|
||||
public DEV readiness remained HTTP 200.
|
||||
- Two web and two worker replicas, PostGIS, Mailpit, Traefik, and the scoped
|
||||
Docker socket proxy were running after the audit. Both web replicas and both
|
||||
workers were healthy; public liveness and readiness returned `ok` and
|
||||
|
|
|
|||
Loading…
Reference in New Issue
Block a user