Skip to content

Add bounded passive Gateway connection inspection - #156

Merged
Pigbibi merged 1 commit into
mainfrom
codex/gateway-passive-connectivity-20261001
Sep 30, 2026
Merged

Pigbibi merged 1 commit into
mainfrom
codex/gateway-passive-connectivity-20261001

Conversation

@Pigbibi

@Pigbibi Pigbibi commented Sep 30, 2026

Copy link
Copy Markdown
Collaborator

Changes

  • Add a default-off passive connection inspection for the uniquely matched protected Gateway target.
  • Preserve the normal metadata diagnostic path and existing per-target cloud identities.
  • Inspect container state and API socket counts through one bounded SSH session over IAP, with no broker request or configuration mutation.
  • Use a structured protected index, clean temporary keys on failure, and filter diagnostic authentication errors.

Validation

  • Existing metadata tests and matcher tests passed.
  • Passive socket, key cleanup, protected index, action log filter, and isolated workflow resolution checks passed.
  • Actionlint, JavaScript and shell syntax checks, and diff checks passed.
  • Independent review passed.

Runtime status

  • No live connection inspection has been run from this change yet.
  • Container and socket observations do not assert broker authentication, account health, or absence of pending orders.

Co-Authored-By: Codex <noreply@openai.com>
@Pigbibi
Pigbibi merged commit 547b74d into main Sep 30, 2026
2 checks passed
@Pigbibi
Pigbibi deleted the codex/gateway-passive-connectivity-20261001 branch September 30, 2026 21:00
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant