mirror of
https://github.com/CyberMind-FR/secubox-deb.git
synced 2026-07-29 13:59:40 +00:00
Wires the scale-to-zero services into debian/ packaging: secubox-wakectl entry point (/usr/sbin), templates/waking.html now ships, secubox-waker and secubox-sleeper systemd units registered via dh_installsystemd --name=, enabled/restarted (try-restart, preserving runtime state) in postinst alongside secubox-profiles.service. postinst now also runs secubox-wakectl waf-sync/health-sync so sbxwaf and the health monitor have their lists from first install (nginx-sync stays unwired per the 2026-07-20 pivot). Hardens secubox-sleeper.service with ProtectSystem=strict and an explicit ReadWritePaths covering the actuator's real write set, traced through api/actuate.py/snapshot.py/audit.py: /run/secubox, /var/lib/secubox/profiles/rollback, /var/log/secubox, /data/lxc, and /etc/secubox/waf (haproxy-routes.json, written on a routed module's STOP — missed by a naive reading of the write set). Documents the lifecycle/wake_class policy, the waker/sleeper mechanism and a pilot procedure in README.md, wiki/Architecture.md and .claude/MODULE-COMPLIANCE.md. Bumps changelog to 0.8.0. Co-Authored-By: Gerald KERMA <devel@cybermind.fr> |
||
|---|---|---|
| .. | ||
| images | ||
| _Footer.md | ||
| _Sidebar.md | ||
| Acknowledgments.md | ||
| Android-ToolBox.md | ||
| Anti-Track.md | ||
| API-Reference-DE.md | ||
| API-Reference-FR.md | ||
| API-Reference-ZH.md | ||
| API-Reference.md | ||
| Architecture.md | ||
| ARM-Installation-DE.md | ||
| ARM-Installation-FR.md | ||
| ARM-Installation-ZH.md | ||
| ARM-Installation.md | ||
| Billets.md | ||
| Browser-Extension.md | ||
| CATEGORIES-DE.md | ||
| CATEGORIES-EN.md | ||
| CATEGORIES-FR.md | ||
| CATEGORIES-ZH.md | ||
| Configuration-DE.md | ||
| Configuration-FR.md | ||
| Configuration-ZH.md | ||
| Configuration.md | ||
| CTL-Grammar.md | ||
| Device-Categories.md | ||
| ESPRESSObin-DE.md | ||
| ESPRESSObin-FR.md | ||
| ESPRESSObin-ZH.md | ||
| ESPRESSObin.md | ||
| Eye-Remote.md | ||
| FAQ-Troubleshooting.md | ||
| Financing-Model.md | ||
| Fiscal-Notes.md | ||
| Hardware-Matrix.md | ||
| Home-DE.md | ||
| Home-FR.md | ||
| Home-ZH.md | ||
| Home.md | ||
| Installation-DE.md | ||
| Installation-FR.md | ||
| Installation-ZH.md | ||
| Installation.md | ||
| Live-USB-DE.md | ||
| Live-USB-FR.md | ||
| Live-USB-QEMU.md | ||
| Live-USB-VirtualBox.md | ||
| Live-USB-ZH.md | ||
| Live-USB.md | ||
| Metalogue.md | ||
| MODULES-DE.md | ||
| MODULES-EN.md | ||
| MODULES-FR.md | ||
| MODULES-ZH.md | ||
| Multi-Agent-Worktree.md | ||
| Multiboot.md | ||
| Netboot-Install.md | ||
| QEMU-ARM64.md | ||
| Roadmap.md | ||
| Smart-Strip.md | ||
| Sponsor-a-Port.md | ||
| Support.md | ||
| ThreatMesh-FR.md | ||
| ThreatMesh.md | ||
| ToolBox.md | ||
| Troubleshooting-DE.md | ||
| Troubleshooting-FR.md | ||
| Troubleshooting-ZH.md | ||
| Troubleshooting.md | ||
| UI-COMPARISON.md | ||
| VirtualBox-Setup.md | ||