fix: detect service-managed local gateways on Linux - #984
Open
JaimeMarques wants to merge 2 commits into
Open
JaimeMarques wants to merge 2 commits into
JaimeMarques wants to merge 2 commits into
Conversation
Use the running Linux gateway state and process fingerprint for default-profile status. Probe its API listener, preserve named-profile port configuration, and refuse unsupported controls or API-key rotation on externally managed gateways.
Contributor
|
Use the default profile’s explicit API port, canonicalize equivalent Hermes home paths, and guard the platform API key config path for service-owned gateways.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
gateway.pid, validating its home, state, PID, and/procstart-time fingerprint./health, while leaving named-profile status read-only (port resolution can mutate their configs).Scope
The new fallback is Linux/default-profile-only. Named profiles still need a dedicated Local API listener; existing behavior on macOS/Windows is unchanged. This does not restart or modify a running service.
Verification
LANG=C.UTF-8 LC_ALL=C.UTF-8 npm test: 2,316 passed (222 files).npm run lint,npm run typecheck,npm run build,lat check,git diff --check: pass.true, named/unservedfalse; local default/health: HTTP 200.npm run audit:prod: passes with one pre-existing moderatefflateadvisory (unrelated to this change).