diff --git a/runtime/history/GITEA-READER-ROUTE-DETAILS-281.json b/runtime/history/GITEA-READER-ROUTE-DETAILS-281.json new file mode 100644 index 0000000..b47939d --- /dev/null +++ b/runtime/history/GITEA-READER-ROUTE-DETAILS-281.json @@ -0,0 +1,30 @@ +{ + "schema_version": 1, + "channel": "homelab-runtime", + "command_id": "GITEA-READER-ROUTE-DETAILS-281", + "status": "OK", + "rc": 0, + "host": "pve01", + "mode": "read-only", + "component": "cluster-audit", + "started_at_utc": "2026-07-22T21:12:35Z", + "finished_at_utc": "2026-07-22T21:12:36Z", + "reference_register_checked": true, + "reference_sha256": "5763f2f8edc75fcf6f3951f8c95896d1cc112ceccb6cf5b64a383f540a4deb8e", + "error_register_checked": true, + "error_register_sha256": "08b3a769b8e38eaa1acec915352fb328180d70caa7ff6cd9d1ec0da426262752", + "command_sha256": "446bb6400ecfcb6fe7ea744e5252d957f6f1c2ab704af8b3ad50666ef9ea1ea6", + "duplicate_failed_command_blocked": false, + "block_reason": null, + "execution_started": true, + "changes_made": false, + "sanitized": true, + "secrets_included": false, + "private_addresses_included": false, + "raw_evidence_retained_locally": true, + "raw_evidence_sha256": "d2014828d163c0a0e592655cf227adf0465cd43cbe687810df7202097e857563", + "sanitized_output_sha256": "2224ca4e724d1491801dff54cf1c7d868edb6cc56fff6c6879758e67a1235879", + "output_truncated_in_json": false, + "full_sanitized_output_url": "https://git.gram1.ru/.well-known/homelab-runtime/latest.txt", + "output": "DETAIL=PVE01_IP=[PRIVATE_IP]\nDETAIL=# ----------------------------------------------------------------------\nDETAIL=# git.gram1.ru\nDETAIL=# DO NOT EDIT THIS FILE DIRECTLY, CHANGES WILL BE LOST WHEN UPDATING!\nDETAIL=# ----------------------------------------------------------------------\nDETAIL=\nDETAIL=\nDETAIL=upstream upstream_9 {\nDETAIL= zone upstream_9 128k;\nDETAIL= server [PRIVATE_IP]:3002;\nDETAIL=}\nDETAIL=\nDETAIL=\nDETAIL=server {\nDETAIL= server_name git.gram1.ru;\nDETAIL=\nDETAIL= listen unix:/run/nginx.sock;\nDETAIL=\nDETAIL=\nDETAIL= listen 0.0.0.0:80;\nDETAIL=\nDETAIL=\nDETAIL= listen 0.0.0.0:443 ssl;\nDETAIL=\nDETAIL=\nDETAIL= # Certbot TLS\nDETAIL= ssl_certificate /data/tls/certbot/live/npm-29/fullchain.pem;\nDETAIL= ssl_certificate_key /data/tls/certbot/live/npm-29/privkey.pem;\nDETAIL=\nDETAIL=\nDETAIL= if ($scheme = \"http\") {\nDETAIL= return 301 https://$host$is_request_port$request_port$request_uri;\nDETAIL= }\nDETAIL= if ($http_x_forwarded_proto = \"http\") {\nDETAIL= return 301 https://$host$is_request_port$request_port$request_uri;\nDETAIL= }\nDETAIL=\nDETAIL=\nDETAIL= location /.well-known/acme-challenge/ {\nDETAIL= root /data/tls/certbot/acme-challenge;\nDETAIL= fancyindex off;\nDETAIL= index off;\nDETAIL= allow all;\nDETAIL= auth_basic off;\nDETAIL= auth_request off;\nDETAIL= }\nDETAIL=\nDETAIL=\nDETAIL= location / {\nDETAIL=\nDETAIL=\nDETAIL=\nDETAIL=\nDETAIL= more_set_headers \"X-Frame-Options: SAMEORIGIN\";\nDETAIL=\nDETAIL=\nDETAIL= proxy_set_header Host $host$is_request_port$request_port;\nDETAIL=\nDETAIL= include proxy-headers.conf;\nDETAIL= proxy_set_header Accept-Encoding \"\";\nDETAIL=\nDETAIL=\nDETAIL= proxy_pass http://upstream_9;\nDETAIL=\nDETAIL=\nDETAIL= }\nDETAIL=\nDETAIL=\nDETAIL= # custom locations\nDETAIL= # Custom\nDETAIL= include /data/custom_nginx/server_http.conf;\nDETAIL= include /data/custom_nginx/server_proxy.conf;\nDETAIL=}\nDETAIL=\nDETAIL=\nDETAIL=\nDETAIL=GUEST_EXITCODE=0\nCHANGES_MADE=NO\n" +} diff --git a/runtime/history/GITEA-READER-ROUTE-DETAILS-281.txt b/runtime/history/GITEA-READER-ROUTE-DETAILS-281.txt new file mode 100644 index 0000000..715bd08 --- /dev/null +++ b/runtime/history/GITEA-READER-ROUTE-DETAILS-281.txt @@ -0,0 +1,102 @@ +CHAT_OUTPUT_BEGIN +COMMAND_ID=GITEA-READER-ROUTE-DETAILS-281 +STATUS=OK +RC=0 +HOST=pve01 +MODE=read-only +COMPONENT=cluster-audit +REFERENCE_REGISTER_CHECK=OK +REFERENCE_SHA256=5763f2f8edc75fcf6f3951f8c95896d1cc112ceccb6cf5b64a383f540a4deb8e +ERROR_REGISTER_CHECK=OK +ERROR_REGISTER_SHA256=08b3a769b8e38eaa1acec915352fb328180d70caa7ff6cd9d1ec0da426262752 +COMMAND_SHA256=446bb6400ecfcb6fe7ea744e5252d957f6f1c2ab704af8b3ad50666ef9ea1ea6 +DUPLICATE_FAILED_COMMAND_BLOCKED=false +EXECUTION_STARTED=true +CHANGES_MADE=false +SANITIZED=yes +SECRETS_INCLUDED=no +PRIVATE_ADDRESSES_INCLUDED=no +RAW_EVIDENCE_SHA256=d2014828d163c0a0e592655cf227adf0465cd43cbe687810df7202097e857563 +SANITIZED_OUTPUT_SHA256=2224ca4e724d1491801dff54cf1c7d868edb6cc56fff6c6879758e67a1235879 +OUTPUT_BEGIN +DETAIL=PVE01_IP=[PRIVATE_IP] +DETAIL=# ---------------------------------------------------------------------- +DETAIL=# git.gram1.ru +DETAIL=# DO NOT EDIT THIS FILE DIRECTLY, CHANGES WILL BE LOST WHEN UPDATING! +DETAIL=# ---------------------------------------------------------------------- +DETAIL= +DETAIL= +DETAIL=upstream upstream_9 { +DETAIL= zone upstream_9 128k; +DETAIL= server [PRIVATE_IP]:3002; +DETAIL=} +DETAIL= +DETAIL= +DETAIL=server { +DETAIL= server_name git.gram1.ru; +DETAIL= +DETAIL= listen unix:/run/nginx.sock; +DETAIL= +DETAIL= +DETAIL= listen 0.0.0.0:80; +DETAIL= +DETAIL= +DETAIL= listen 0.0.0.0:443 ssl; +DETAIL= +DETAIL= +DETAIL= # Certbot TLS +DETAIL= ssl_certificate /data/tls/certbot/live/npm-29/fullchain.pem; +DETAIL= ssl_certificate_key /data/tls/certbot/live/npm-29/privkey.pem; +DETAIL= +DETAIL= +DETAIL= if ($scheme = "http") { +DETAIL= return 301 https://$host$is_request_port$request_port$request_uri; +DETAIL= } +DETAIL= if ($http_x_forwarded_proto = "http") { +DETAIL= return 301 https://$host$is_request_port$request_port$request_uri; +DETAIL= } +DETAIL= +DETAIL= +DETAIL= location /.well-known/acme-challenge/ { +DETAIL= root /data/tls/certbot/acme-challenge; +DETAIL= fancyindex off; +DETAIL= index off; +DETAIL= allow all; +DETAIL= auth_basic off; +DETAIL= auth_request off; +DETAIL= } +DETAIL= +DETAIL= +DETAIL= location / { +DETAIL= +DETAIL= +DETAIL= +DETAIL= +DETAIL= more_set_headers "X-Frame-Options: SAMEORIGIN"; +DETAIL= +DETAIL= +DETAIL= proxy_set_header Host $host$is_request_port$request_port; +DETAIL= +DETAIL= include proxy-headers.conf; +DETAIL= proxy_set_header Accept-Encoding ""; +DETAIL= +DETAIL= +DETAIL= proxy_pass http://upstream_9; +DETAIL= +DETAIL= +DETAIL= } +DETAIL= +DETAIL= +DETAIL= # custom locations +DETAIL= # Custom +DETAIL= include /data/custom_nginx/server_http.conf; +DETAIL= include /data/custom_nginx/server_proxy.conf; +DETAIL=} +DETAIL= +DETAIL= +DETAIL= +DETAIL=GUEST_EXITCODE=0 +CHANGES_MADE=NO + +OUTPUT_END +CHAT_OUTPUT_END diff --git a/runtime/latest.json b/runtime/latest.json index 38567a0..b47939d 100644 --- a/runtime/latest.json +++ b/runtime/latest.json @@ -1,19 +1,19 @@ { "schema_version": 1, "channel": "homelab-runtime", - "command_id": "GITEA-READER-EDGE-ROUTE-FILE-280", + "command_id": "GITEA-READER-ROUTE-DETAILS-281", "status": "OK", "rc": 0, "host": "pve01", "mode": "read-only", "component": "cluster-audit", - "started_at_utc": "2026-07-22T21:11:43Z", - "finished_at_utc": "2026-07-22T21:11:44Z", + "started_at_utc": "2026-07-22T21:12:35Z", + "finished_at_utc": "2026-07-22T21:12:36Z", "reference_register_checked": true, "reference_sha256": "5763f2f8edc75fcf6f3951f8c95896d1cc112ceccb6cf5b64a383f540a4deb8e", "error_register_checked": true, "error_register_sha256": "08b3a769b8e38eaa1acec915352fb328180d70caa7ff6cd9d1ec0da426262752", - "command_sha256": "49ae09a5489cc2a957cef60d9807becb3dab79d42735f36ef07b32e52b9751fe", + "command_sha256": "446bb6400ecfcb6fe7ea744e5252d957f6f1c2ab704af8b3ad50666ef9ea1ea6", "duplicate_failed_command_blocked": false, "block_reason": null, "execution_started": true, @@ -22,9 +22,9 @@ "secrets_included": false, "private_addresses_included": false, "raw_evidence_retained_locally": true, - "raw_evidence_sha256": "c6fe5c39656514d1dd6c1c8e8364673e84c3bba0bcec3b90323e5327d287d435", - "sanitized_output_sha256": "c6fe5c39656514d1dd6c1c8e8364673e84c3bba0bcec3b90323e5327d287d435", + "raw_evidence_sha256": "d2014828d163c0a0e592655cf227adf0465cd43cbe687810df7202097e857563", + "sanitized_output_sha256": "2224ca4e724d1491801dff54cf1c7d868edb6cc56fff6c6879758e67a1235879", "output_truncated_in_json": false, "full_sanitized_output_url": "https://git.gram1.ru/.well-known/homelab-runtime/latest.txt", - "output": "DETAIL=/opt/npmplus/nginx/proxy_host/9.conf.bak-gitea-public-20260629200108\nDETAIL=/opt/npmplus/nginx/proxy_host/9.conf\nDETAIL=\nDETAIL=/usr/bin/grep: /data/nginx/proxy_host: No such file or directory\nDETAIL=\nDETAIL=GUEST_EXITCODE=2\nCHANGES_MADE=NO\n" + "output": "DETAIL=PVE01_IP=[PRIVATE_IP]\nDETAIL=# ----------------------------------------------------------------------\nDETAIL=# git.gram1.ru\nDETAIL=# DO NOT EDIT THIS FILE DIRECTLY, CHANGES WILL BE LOST WHEN UPDATING!\nDETAIL=# ----------------------------------------------------------------------\nDETAIL=\nDETAIL=\nDETAIL=upstream upstream_9 {\nDETAIL= zone upstream_9 128k;\nDETAIL= server [PRIVATE_IP]:3002;\nDETAIL=}\nDETAIL=\nDETAIL=\nDETAIL=server {\nDETAIL= server_name git.gram1.ru;\nDETAIL=\nDETAIL= listen unix:/run/nginx.sock;\nDETAIL=\nDETAIL=\nDETAIL= listen 0.0.0.0:80;\nDETAIL=\nDETAIL=\nDETAIL= listen 0.0.0.0:443 ssl;\nDETAIL=\nDETAIL=\nDETAIL= # Certbot TLS\nDETAIL= ssl_certificate /data/tls/certbot/live/npm-29/fullchain.pem;\nDETAIL= ssl_certificate_key /data/tls/certbot/live/npm-29/privkey.pem;\nDETAIL=\nDETAIL=\nDETAIL= if ($scheme = \"http\") {\nDETAIL= return 301 https://$host$is_request_port$request_port$request_uri;\nDETAIL= }\nDETAIL= if ($http_x_forwarded_proto = \"http\") {\nDETAIL= return 301 https://$host$is_request_port$request_port$request_uri;\nDETAIL= }\nDETAIL=\nDETAIL=\nDETAIL= location /.well-known/acme-challenge/ {\nDETAIL= root /data/tls/certbot/acme-challenge;\nDETAIL= fancyindex off;\nDETAIL= index off;\nDETAIL= allow all;\nDETAIL= auth_basic off;\nDETAIL= auth_request off;\nDETAIL= }\nDETAIL=\nDETAIL=\nDETAIL= location / {\nDETAIL=\nDETAIL=\nDETAIL=\nDETAIL=\nDETAIL= more_set_headers \"X-Frame-Options: SAMEORIGIN\";\nDETAIL=\nDETAIL=\nDETAIL= proxy_set_header Host $host$is_request_port$request_port;\nDETAIL=\nDETAIL= include proxy-headers.conf;\nDETAIL= proxy_set_header Accept-Encoding \"\";\nDETAIL=\nDETAIL=\nDETAIL= proxy_pass http://upstream_9;\nDETAIL=\nDETAIL=\nDETAIL= }\nDETAIL=\nDETAIL=\nDETAIL= # custom locations\nDETAIL= # Custom\nDETAIL= include /data/custom_nginx/server_http.conf;\nDETAIL= include /data/custom_nginx/server_proxy.conf;\nDETAIL=}\nDETAIL=\nDETAIL=\nDETAIL=\nDETAIL=GUEST_EXITCODE=0\nCHANGES_MADE=NO\n" } diff --git a/runtime/latest.txt b/runtime/latest.txt index e31c6a7..715bd08 100644 --- a/runtime/latest.txt +++ b/runtime/latest.txt @@ -1,5 +1,5 @@ CHAT_OUTPUT_BEGIN -COMMAND_ID=GITEA-READER-EDGE-ROUTE-FILE-280 +COMMAND_ID=GITEA-READER-ROUTE-DETAILS-281 STATUS=OK RC=0 HOST=pve01 @@ -9,22 +9,93 @@ REFERENCE_REGISTER_CHECK=OK REFERENCE_SHA256=5763f2f8edc75fcf6f3951f8c95896d1cc112ceccb6cf5b64a383f540a4deb8e ERROR_REGISTER_CHECK=OK ERROR_REGISTER_SHA256=08b3a769b8e38eaa1acec915352fb328180d70caa7ff6cd9d1ec0da426262752 -COMMAND_SHA256=49ae09a5489cc2a957cef60d9807becb3dab79d42735f36ef07b32e52b9751fe +COMMAND_SHA256=446bb6400ecfcb6fe7ea744e5252d957f6f1c2ab704af8b3ad50666ef9ea1ea6 DUPLICATE_FAILED_COMMAND_BLOCKED=false EXECUTION_STARTED=true CHANGES_MADE=false SANITIZED=yes SECRETS_INCLUDED=no PRIVATE_ADDRESSES_INCLUDED=no -RAW_EVIDENCE_SHA256=c6fe5c39656514d1dd6c1c8e8364673e84c3bba0bcec3b90323e5327d287d435 -SANITIZED_OUTPUT_SHA256=c6fe5c39656514d1dd6c1c8e8364673e84c3bba0bcec3b90323e5327d287d435 +RAW_EVIDENCE_SHA256=d2014828d163c0a0e592655cf227adf0465cd43cbe687810df7202097e857563 +SANITIZED_OUTPUT_SHA256=2224ca4e724d1491801dff54cf1c7d868edb6cc56fff6c6879758e67a1235879 OUTPUT_BEGIN -DETAIL=/opt/npmplus/nginx/proxy_host/9.conf.bak-gitea-public-20260629200108 -DETAIL=/opt/npmplus/nginx/proxy_host/9.conf +DETAIL=PVE01_IP=[PRIVATE_IP] +DETAIL=# ---------------------------------------------------------------------- +DETAIL=# git.gram1.ru +DETAIL=# DO NOT EDIT THIS FILE DIRECTLY, CHANGES WILL BE LOST WHEN UPDATING! +DETAIL=# ---------------------------------------------------------------------- DETAIL= -DETAIL=/usr/bin/grep: /data/nginx/proxy_host: No such file or directory DETAIL= -DETAIL=GUEST_EXITCODE=2 +DETAIL=upstream upstream_9 { +DETAIL= zone upstream_9 128k; +DETAIL= server [PRIVATE_IP]:3002; +DETAIL=} +DETAIL= +DETAIL= +DETAIL=server { +DETAIL= server_name git.gram1.ru; +DETAIL= +DETAIL= listen unix:/run/nginx.sock; +DETAIL= +DETAIL= +DETAIL= listen 0.0.0.0:80; +DETAIL= +DETAIL= +DETAIL= listen 0.0.0.0:443 ssl; +DETAIL= +DETAIL= +DETAIL= # Certbot TLS +DETAIL= ssl_certificate /data/tls/certbot/live/npm-29/fullchain.pem; +DETAIL= ssl_certificate_key /data/tls/certbot/live/npm-29/privkey.pem; +DETAIL= +DETAIL= +DETAIL= if ($scheme = "http") { +DETAIL= return 301 https://$host$is_request_port$request_port$request_uri; +DETAIL= } +DETAIL= if ($http_x_forwarded_proto = "http") { +DETAIL= return 301 https://$host$is_request_port$request_port$request_uri; +DETAIL= } +DETAIL= +DETAIL= +DETAIL= location /.well-known/acme-challenge/ { +DETAIL= root /data/tls/certbot/acme-challenge; +DETAIL= fancyindex off; +DETAIL= index off; +DETAIL= allow all; +DETAIL= auth_basic off; +DETAIL= auth_request off; +DETAIL= } +DETAIL= +DETAIL= +DETAIL= location / { +DETAIL= +DETAIL= +DETAIL= +DETAIL= +DETAIL= more_set_headers "X-Frame-Options: SAMEORIGIN"; +DETAIL= +DETAIL= +DETAIL= proxy_set_header Host $host$is_request_port$request_port; +DETAIL= +DETAIL= include proxy-headers.conf; +DETAIL= proxy_set_header Accept-Encoding ""; +DETAIL= +DETAIL= +DETAIL= proxy_pass http://upstream_9; +DETAIL= +DETAIL= +DETAIL= } +DETAIL= +DETAIL= +DETAIL= # custom locations +DETAIL= # Custom +DETAIL= include /data/custom_nginx/server_http.conf; +DETAIL= include /data/custom_nginx/server_proxy.conf; +DETAIL=} +DETAIL= +DETAIL= +DETAIL= +DETAIL=GUEST_EXITCODE=0 CHANGES_MADE=NO OUTPUT_END