Skip to content

qwen babysitter - #13647

Closed
gunbai-bot[bot] wants to merge 4 commits into
mainfrom
integration/qwen-argv
Closed

gunbai-bot[bot] wants to merge 4 commits into
mainfrom
integration/qwen-argv

Conversation

@gunbai-bot

@gunbai-bot gunbai-bot Bot commented Oct 9, 2026

Copy link
Copy Markdown
Contributor

Auto-opened by session-dashboard for session stern-boar-596.
Pushing to integration/qwen-argv advances this PR.

Worker attestation

Before flipping this PR to ready for review, confirm each item:

  • Title describes the change (not the session id or branch).
  • PR body summarises what and why (replace the TODO below).
  • Tests run: name the command (e.g. npm test, cargo test) and the result.
  • If this closes a work item, the body contains a Closes #N directive.
  • No commits on this branch are surprises (no fork/cherry-pick I did not make).
  • No secrets / credentials / large binaries staged.

Summary

TODO: replace this paragraph with one or two sentences naming the change and its motivation. Reviewers read this first.

Test plan

  • TODO: list the commands that ran (or "no tests changed; relied on CI") and the outcome.

Brian Searls and others added 4 commits October 9, 2026 11:06
…s tool module, not hand-typed

Replace the two hand argv literals in the fleet reach/identity probe with
home-module builders, dissolving the last hand argv in that module (roadmap
shell-dag-host-reach-identity-probe; Lane B of the transport-argv anemia
dissolution).

- extdeps.tools.id: id_user_name_argv() -> [id, -un] (login name, no operand:
  id(1) with no operand answers from the calling process's own credentials,
  which is exactly the account the SSH session IS).
- extdeps.tools.hostname: hostname_read_argv() -> [hostname] (bare, full
  configured name). The -s decision the row's first_slice names resolves to
  the bare read: the probe compares its output for exact equality against the
  enrolled short slot label, so -s (first label) would re-derive a label.
- host_reach_identity_probe: probe_reachable_with_principal and
  probe_ready_target_once now call id_user_name_argv() and hostname_read_argv()
  instead of the literal [id,-un] and [hostname].
- witness: the_probe_argv_is_spelled_by_its_tool_module_builders pins each
  builder's materialized argv to the exact words the probe has always executed,
  so the flags cannot drift out from under the builder.
…ote-jq path (Lane B)

Migrates the 15 raw sshpass-jq operations in openbmc_password_ssh_transport.dag
(13 fan-config scalar reads + FanConfigValidate + FanConfigVerify) onto the
semantic JqInvocation remote-jq path (openbmc_remote_jq_execute +
jq_classify_observation), following the StepwiseCount precedent (#10148).

- openbmc_password_ssh_transport.dag: the 15 raw ops deleted at the root; every
  fan-config site now routes through the semantic jq layer.
- openbmc_operation.dag: the 3 OpenBmcOperation variants
  (OpenBmcFanConfigScalar/Validate/Verify) deleted with their ops.
- openbmc_fan_control.dag: 15 data String program rows (byte-identical to the old
  argv program words); closed query -> JqProgram/bindings/invocation/label;
  JqOutcome decodes (integer/string/validate/verify, no success:Bool);
  openbmc_fan_config_integer/string/validate/verify re-driven through the remote
  path with public signatures preserved; openbmc_fan_config_raw and the 3
  openbmc_execute arms deleted.

State: WIP, pre-integration. Corpus verified green with this exact diff:
self-host instrument (gunbc test //gunbc/instruments:self-host) exit 0, 0
warnings. The revised acceptance contract from review (pure production request
seam, end-to-end validate/verify deletion, stronger jq shape admission) is NOT
implemented here. Wound down per operator directive.
@briansrls
briansrls marked this pull request as ready for review October 9, 2026 18:01
@chatgpt-codex-connector

chatgpt-codex-connector Bot commented Oct 9, 2026 •

Copy link
Copy Markdown

Codex Review Summary

This comment shows the latest Codex review activity on this pull request.

Review Status Commit Review trigger
📝 Code Review ✅ Completed 2026-10-09T18:06:34.036281Z 7ec54ac Draft marked ready
ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review" or "@codex security review".

Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings.

@gunbai-bot

gunbai-bot Bot commented Oct 9, 2026

Copy link
Copy Markdown
Contributor Author

Closing in the v1 closeout. This branch adds only #13632 on top of #13626, and #13626 is already in the mega branch #13641. #13632 is left out: its lane checked against a real run that jq length/count on a null or wrong-typed value yields 0 rather than refusing (DESIGN §5). That covers counts, not the null-name case this review checked. If it's revived, the fix is select(type==...) before length/floor. Branch kept. — sent from neat-wolf-604

@gunbai-bot gunbai-bot Bot closed this Oct 9, 2026

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: 7ec54ac94e

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Rejected { diagnostics: _ } =>
OpenBmcBoolRefused { reason: "OpenBMC fan config verification could not be lowered to a jq invocation" }
Accepted { value: plan, diagnostics: _ } =>
match openbmc_remote_jq_execute(session: session, plan: plan) {

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

P1 Badge Keep fan verification executable until interpretation is confirmed

For every OpenBMC readback in the current repository, remote_exec_command_live_confirmation is fixed to RemoteExecCommandLiveConfirmationUnexecuted; openbmc_remote_jq_interpretation consequently returns Unknown, so this call returns OpenBmcRemoteJqRefused before PasswordSshTransport.RunCommand can execute. Because this commit also deletes the previous FanConfigVerify transport operation and openbmc_fan_converge_route names this function as its readback, even a healthy BMC can no longer complete post-write verification. Keep the working transport path until the confirmation is recorded, or otherwise provide a confirmed interpretation for this route.

Useful? React with 👍 / 👎.

@gunbai-bot gunbai-bot Bot mentioned this pull request Oct 10, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants