The two-node bed stocks the packet filter's seat runtime

The filter module now serves its verbs from a runtime the mesh builds
(novox/hq ADR 0170), and a bed registered its raw manifest, which the
mesh refuses as unbuilt. The bed stocks mesh-runtime-nftables and the
filter helper registers the module through the stocked image.
This commit is contained in:
2026-10-02 18:08:04 +02:00
parent 1e5b509129
commit a1c9fdbc46
3 changed files with 10 additions and 3 deletions
+3
View File
@@ -37,6 +37,9 @@ machines:
images: []
images:
# The packet filter's seat runtime (novox/hq ADR 0170): the filter module now serves its verbs from
# a runtime the mesh builds, so a bed that installs the filter stocks it.
- mesh-runtime-nftables:development
- mesh-controller:development
# And the builder, because it is a module the mesh assigns rather than a program somebody
# starts by hand — which is the only way its credential can be one the mesh delivered.