chahinebrini
|
db7875fb34
|
feat(ops/mdm): AdGuard ClientID handshake — nginx + watcher
End-to-end DoH-to-backend wiring for Mac auto-activation:
Mac → dns.rebreak.org/dns-query/<token> → nginx → AdGuard
→ querylog.json (CP field) → watcher.py → POST /handshake → backend
- ops/nginx/dns.rebreak.org.conf: vhost with `location ^~ /dns-query`
prefix-match (not exact). proxy_pass without trailing slash preserves
the full path so AdGuard parses the ClientID natively.
- watcher.py: NDJSON tail with inode-based rotation safety, per-token
60s in-memory cooldown, urllib (no external deps), graceful 401/404/5xx
- rebreak-handshake-watcher.service: systemd unit, EnvironmentFile with
chmod 600 (HANDSHAKE_SECRET never in git), NoNewPrivileges + PrivateTmp
- DOH_CLIENTID_HANDSHAKE.md: architecture + flow diagram + risk table
- RUNBOOK.md: status/logs/restart commands + deploy ordering
Not yet deployed. Verify-checklist before `nginx -s reload`:
1. confirm AdGuard DoH port (config assumes 127.0.0.1:3000)
2. confirm TLS cert exists for dns.rebreak.org
3. snapshot current nginx config
4. `nginx -t` dry-run
5. functional curl + grep CP in querylog before starting watcher
|
2026-05-15 22:41:38 +02:00 |
|
chahinebrini
|
5d6c322129
|
wip: KeyboardAwareSheet migrations + Snake/Tetris UI + iron.png + useMe live-update
Sheets via neuer KeyboardAwareSheet-Composable (in Modal pattern, auto-grow
mit Tastatur, paddingBottom-Lift): EditMail, AddDomain, CreateRoom, ConnectMail.
GameOverScreen behält Spring-Slide-In, nutzt RN Keyboard.addListener für Lift.
- KeyboardAwareSheet.tsx — universal modal with sheet-grow + keyboard-padding
- react-native-keyboard-controller installiert + KeyboardProvider in Root
- Snake: time + ScoreProgressBar + useSnakeSounds (haptic, audio TODO)
- Tetris: title weg, Buttons zentriert, kein Pressable mit style-fn
- DPad-Buttons 60→48, more bg, no scale
- useMe: pub-sub listener pattern für app-weite avatar/nickname-Updates
- dm.tsx: resolveAvatar wrap (iron.png-Warning)
- Mail-error-humanizer + locales
Recovery-Doc-Update in docs/internal/RECOVERY_LOG_2026-05-10.md
Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
|
2026-05-10 23:59:25 +02:00 |
|