diff --git a/Dockerfile b/Dockerfile index 8cdf206..4e398c0 100644 --- a/Dockerfile +++ b/Dockerfile @@ -1,6 +1,6 @@ # The control plane's image. # -# novox/hq ADR 0024: this image is pinned by digest in the bundle the host carries, fetched on a +# novox/hq ADR 0006: this image is pinned by digest in the bundle the host carries, fetched on a # machine where no mesh exists yet, and run before there is anything to check it against. So it # holds the program and nothing else — no shell, no package manager, no libc, nothing with a CVE # feed of its own. What a person has to audit before trusting a first node is one binary. diff --git a/Makefile b/Makefile index 7ab4b67..19a039f 100644 --- a/Makefile +++ b/Makefile @@ -1,4 +1,4 @@ -# novox/hq ADR 0024 — the control plane, in Go. +# novox/hq ADR 0006 — the control plane, in Go. # # The image the bundle pins holds the program and nothing else, so the build is static and the # container is built FROM scratch. That is not a size optimisation: this image is fetched by diff --git a/README.md b/README.md index 600c2cf..9d53866 100644 --- a/README.md +++ b/README.md @@ -121,7 +121,7 @@ the bundle and believed it. Everything in the image is something that person wou | | | |---|---| | what the control plane is | novox/hq ADR 0006 | -| what it takes to run one, and why Go | novox/hq ADR 0024 | +| what it takes to run one, and why Go | novox/hq ADR 0006 | | a context owns its store, exclusively | novox/hq ADR 0008 | | schema changes are numbered migrations | novox/hq ADR 0013 | | a test defends a decision | novox/hq ADR 0017 |