Skip to content

Restore signed Nest production releases after the namespace change - #11

Merged
DigitalPals merged 2 commits into
mainfrom
fix/tiaris-production-recovery
Sep 29, 2026
Merged

DigitalPals merged 2 commits into
mainfrom
fix/tiaris-production-recovery

Conversation

@DigitalPals

Copy link
Copy Markdown
Collaborator

The breaking Nest rename left production release jobs pointing at nonexistent GitHub credentials, runner labels, and a renamed repository. Preserve those existing infrastructure identities while passing the new Tiaris process inputs.

Authenticate the immutable James 0.2.41 descriptors under their original signature domain and an exact, current-authority namespace-transition authorization for Nest 0.2.42. This history is reinstall-only; a separately signed Nest predecessor and the existing warm/cold qualification gates remain mandatory. Publication also verifies production origin, advancing runtime identity, and nondecreasing compatibility/state versions. Original signed artifacts and the earlier recovery authorization remain unchanged.

Validation: 398 release-tool tests passed (11 skipped), 23 appliance contract tests passed, shell syntax/ShellCheck and Nix parsing passed. The cache eviction test now specifies its LRU ordering instead of relying on distinct filesystem timestamps. Recovery media build and qualification are in progress; neither production lab VM has been modified.

@DigitalPals
DigitalPals merged commit 4707c58 into main Sep 29, 2026
11 checks passed
@DigitalPals
DigitalPals deleted the fix/tiaris-production-recovery branch September 30, 2026 12:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant