diff options
| author | Craig Jennings <c@cjennings.net> | 2026-07-11 01:20:56 -0500 |
|---|---|---|
| committer | Craig Jennings <c@cjennings.net> | 2026-07-11 01:20:56 -0500 |
| commit | b56d14690e69bc304ab4bb4d8ef176b67874edec (patch) | |
| tree | 84de6dc1216c1698c9695003110f59a3a5dd37aa /tests | |
| parent | 0f7c166e1383286ee4117d16b5810814266ca02b (diff) | |
| download | archsetup-b56d14690e69bc304ab4bb4d8ef176b67874edec.tar.gz archsetup-b56d14690e69bc304ab4bb4d8ef176b67874edec.zip | |
docs: record spec-review findings on net + bt doctor specs
Reviewed both DRAFT expansion specs against the live engines. Both stay Not ready: three open decisions apiece plus one blocking finding each.
Net: the Security dimension claims connection names are already redacted, but redact.py covers only SSID, MAC, IP, secret-keys, and portal_url, so the new keyfile-perms and rival-manager verdicts would leak a connection name into the wall and --json. Four non-blocking fixes alongside it: nm-restart's scope was overstated, is-enabled isn't used yet, some message text was listed as classifier verdicts, and the priv.py dispatch integration wants naming.
Bt: the doctor has no named-verdict layer to hang the proposed no-adapter-firmware and powered-off-persistent verdicts on. A step carries a pass/fail/warn/info status and the run an ok/warn/fail overall, nothing more. How each new verdict is represented has to be settled before Phase 1. Three non-blocking notes cover the widening sudoers surface, the real diagnostic surface, and the bounded journalctl precedent.
Both designs are sound and target verified-real gaps: neither engine reads the config or logs the specs propose to add.
Diffstat (limited to 'tests')
0 files changed, 0 insertions, 0 deletions
