Record verified Backup account activation and consumer refresh
Assistant: codex Assistant-Model: gpt-6-astra Assistant-Session: 01a06ecb-456a-71c2-b41e-0755d336e883
This commit is contained in:
parent
b6d648bfbe
commit
cb6396caab
7 changed files with 160 additions and 6 deletions
|
|
@ -4,7 +4,7 @@ type: workplan
|
|||
title: "Remove backup credential default and verify governed replacement"
|
||||
domain: financials
|
||||
repo: railiance-platform
|
||||
status: active
|
||||
status: blocked
|
||||
owner: codex
|
||||
created: "2026-09-05"
|
||||
updated: "2026-09-05"
|
||||
|
|
@ -44,11 +44,12 @@ state_hub_task_id: "b3f3402f-890b-5781-9b3e-1c9c0d28cea8"
|
|||
Provider-side invalidation and replacement custody need the attended provider owner and CCR-2026-0004 lifecycle procedure. Record only non-secret invalidation, encrypted upload and restore receipts. No provider authority or replacement receipt was available; source removal alone does not close the reported exposure. Never record the predecessor value, fingerprint, length, or shape.
|
||||
|
||||
Prepared owner execution procedure: `docs/backup-credential-recovery.md`.
|
||||
Awaiting the Nextcloud share owner/account and replacement custody coordinates;
|
||||
OpenBao authority is not provider share-management authority. Activity-core is
|
||||
The dedicated Backup account cutover is complete under T03. Awaiting owner
|
||||
authority for invalidating the old Bernd-owned share and a real offsite restore. Activity-core is
|
||||
also a consumer of this upload lane. Preserve AGE_PRIVATE_KEY and historical
|
||||
exposure evidence; upload-token rotation cannot clear recovery-key taint.
|
||||
No provider mutation, backup upload or restore has been run in this continuation.
|
||||
T03 proves encrypted fixture transport and decryption; full application restore
|
||||
and historical predecessor invalidation remain open.
|
||||
|
||||
## Portfolio review — 2026-09-05
|
||||
|
||||
|
|
@ -64,7 +65,7 @@ here until its evidence is accepted. No rotation was executed in this review.
|
|||
|
||||
```task
|
||||
id: RPF-WP-0029-T03
|
||||
status: progress
|
||||
status: done
|
||||
priority: high
|
||||
state_hub_task_id: "f85b1b4e-9a20-56e2-9e7d-d1d6f1c77bd9"
|
||||
```
|
||||
|
|
@ -78,3 +79,10 @@ for workload delivery, and preserve the existing age escrow and retained data.
|
|||
Prove encrypted upload/download/decryption and workload delivery. No automatic
|
||||
pruning or personal-account revocation is inferred from this account change.
|
||||
The historical predecessor invalidation obligation in T02 remains separate.
|
||||
|
||||
Completed 2026-09-05: Backup-owned share permissions 4; upload HTTP 201,
|
||||
owner download/decryption passed, runtime GET/DELETE denied with HTTP 405.
|
||||
Workload KV CAS 2→3 preserved age escrow. ExternalSecret delivery and all three
|
||||
activity-core deployments verified ready with new credentials loaded. All test
|
||||
fixtures removed. Account quota is enforced by Nextcloud; no automatic pruning.
|
||||
Evidence: `docs/evidence/RPF-WP-0029-backup-account-2026-09-05.json`.
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue