feat(booter): POSIX/P2P kernel roadmap — sockets, disk.os, VFS, docs
- Bump bareOsCtxApiVersion to 1.46.0 and POSIX profile 1.0.10; sync syscalls example, process table, compatibility matrix, CHANGELOGs. - Socket FD bridge: passive SOCK_DGRAM bind/connect/send path, poll readiness; bareOsPosixPoll monotonic timeouts via bare-hrtime. - disk.os: replication_operator_sketch schema 2; cap-gated replication_operator_intent + audit; enrich protomux proc JSON. - VFS: route /.bare/** to personal drive; optional BARE_OS_PERSONAL_VAULT_INDEX_CACHE_MS readdir TTL cache. - Boot policy: p2pAdmission (peerAllowlistHex, hyperswarmBootstrap) in schema + kernel init merge into ctx.env when unset. - Coreutils/booter getconf: expand _SC_* coverage; shell wait -n under BARE_OS_SHELL_POSIX_MODE; seeder multisig verify → security_posture. - Tests: vfs /.bare routing; test.bare-smoke + test:bare; bench schema 2. - Docs: syscall-socket-contract, handbook/env/kernel-extensions, holepunch drift pretest note, vault threat model multisig section. - Drop hyperbee from bare-os-booter package.json dependencies (if that change is part of this commit).
This commit is contained in:
@@ -26,7 +26,7 @@ After replication, the booter records **`vfs`** → **`ctx`** → **`repl`** →
|
||||
|
||||
### Swarm `disk.os` bridge (post-`initd`)
|
||||
|
||||
[`createBareOsDiskOsBridge`](../../packages/bare-os-booter/lib/bare-os-disk-os-bridge.js) is assigned to **`disk.os`**. Peer **`searchLocal`** aggregates path substring matches from the **system** Hyperdrive and every **`SwarmDisk.auxiliaryDrives`** entry (read-only mirrors under **`/mirror/aux*`**), dedupes, and caps results. Optional host env **`BARE_OS_DISK_OS_SEARCH_THROTTLE_MS`** (0–500) yields between per-drive scans for large images. Whitelisted RPC **`bare_os.disk_os_hints`** exposes advisory **`mirrorDriveHintV2`** and **`httpDhtProxyHint`** objects when the booter populated them from seed RPCs — operators only; guests do not auto-apply them.
|
||||
[`createBareOsDiskOsBridge`](../../packages/bare-os-booter/lib/bare-os-disk-os-bridge.js) is assigned to **`disk.os`**. Peer **`searchLocal`** aggregates path substring matches from the **system** Hyperdrive and every **`SwarmDisk.auxiliaryDrives`** entry (read-only mirrors under **`/mirror/aux*`**), dedupes, and caps results. Optional host env **`BARE_OS_DISK_OS_SEARCH_THROTTLE_MS`** (0–500) yields between per-drive scans for large images. Whitelisted RPC **`bare_os.disk_os_hints`** exposes advisory **`mirrorDriveHintV2`** and **`httpDhtProxyHint`** objects when the booter populated them from seed RPCs — operators only; guests do not auto-apply them. **`bare_os.replication_operator_sketch`** returns **schema 2** JSON (seed replication status, **`swarmPeerCount`**, env mirrors for pause/backpressure sketches). **`bare_os.replication_operator_intent`** appends an audit row when **`BARE_OS_DISK_OS_OPERATOR_INTENT_RPC=1`** and the booter wires **`auditBatch`**.
|
||||
|
||||
```mermaid
|
||||
flowchart TB
|
||||
|
||||
Reference in New Issue
Block a user