rein-aharness/deploy/k8s/railiance/job-smoke.yaml
tegwick f6930ad115 Rename package, CLI, and deploy artifacts to rein-aharness (HARNESS-WP-0002-T02)
agent_harness -> rein_aharness (package + all imports), CLI command
agent-harness -> rein-aharness, Docker image tag, k8s namespace/labels/
names, Makefile targets, deploy script env var/paths. In-repo identity
strings (hub event source, metrics harness field, default assignee,
argparse prog name, commit author identity) updated to match.

Historical documents left untouched on purpose: docs/adr/ADR-001-agent-harness-architecture.md,
docs/architecture.md (dated v0.1 snapshot), workplans/HARNESS-WP-0001
(completed under the old name), and the SSH host alias
"forgejo-agent-harness" (external ~/.ssh/config entry, not owned here).

Verified: 47/47 tests pass, CLI runs correctly from a fresh venv,
`make image` builds and the resulting container runs correctly.

deploy/README.md gained an explicit rename cutover checklist for what
this session cannot safely do unattended -- moving the host-side
secrets dir and checkout on railiance01, and not deleting the old k8s
namespace until the new one is confirmed working. The actual live
cutover (running that checklist against the real Railiance deployment)
is not attempted here -- real production surgery on binky-control's
live automation, needs the operator present.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-07-26 14:22:18 +02:00

47 lines
1.3 KiB
YAML

# One-shot smoke Job. Prefer host-level smoke (deploy/scripts/railiance-smoke.sh)
# when deploy keys live on the host. This Job is for image/k8s path verification
# with --no-push (no deploy key in-cluster yet).
apiVersion: batch/v1
kind: Job
metadata:
name: rein-aharness-smoke
namespace: rein-aharness
labels:
app.kubernetes.io/name: rein-aharness
app.kubernetes.io/component: smoke
spec:
ttlSecondsAfterFinished: 600
backoffLimit: 1
template:
metadata:
labels:
app.kubernetes.io/name: rein-aharness
app.kubernetes.io/component: smoke
spec:
restartPolicy: Never
securityContext:
fsGroup: 10001
containers:
- name: smoke
image: rein-aharness:railiance01
imagePullPolicy: Never
args:
- "profiles"
envFrom:
- configMapRef:
name: rein-aharness-config
resources:
requests:
cpu: 50m
memory: 128Mi
limits:
cpu: 500m
memory: 512Mi
securityContext:
allowPrivilegeEscalation: false
capabilities:
drop: ["ALL"]
readOnlyRootFilesystem: true
runAsNonRoot: true
runAsUser: 10001
runAsGroup: 10001