Admit E3 and capacity on the test plane
Register in-process E3 and capacity fixtures, keep live database and substrate targets pending, and ask ops-mason for namespace-only provision. No packets, no credentials, no cancelled engagement IDs. Assistant: grok Assistant-Session: 01a02670-3345-76f2-a014-70fde8e2a2bb
This commit is contained in:
parent
4882c2d47a
commit
7e83a66573
22 changed files with 501 additions and 74 deletions
|
|
@ -144,11 +144,13 @@ Live runs are admitted only through the test plane documented in
|
|||
projected short-lived identities, registered target, kill switch, rate watcher
|
||||
and lease cleanup. The plane is a control, not authorization.
|
||||
|
||||
`fixture-e2` is the in-process class already permitted by §1. `live-e2` still
|
||||
requires the dated engagement record, target-owner acknowledgement and
|
||||
technique-specific operator approval required by §1, plus plane admission.
|
||||
`e3`, recovery, saturation and destructive techniques keep separate explicit
|
||||
approval classes and are not admitted by the E2 plane.
|
||||
`fixture-e2`, `fixture-e3` and `fixture-capacity` are in-process classes
|
||||
already permitted by §1. `live-e2` still requires the dated engagement
|
||||
record, target-owner acknowledgement and technique-specific operator approval
|
||||
required by §1, plus plane admission. Live `e3` additionally names the
|
||||
database and uses one ordinary runtime role with no `BYPASSRLS`. Live
|
||||
`capacity` additionally names an aggressor ceiling and a substrate window.
|
||||
Recovery and destructive techniques remain outside this plane.
|
||||
|
||||
Cancelled engagement identifiers are terminal and must not be reused.
|
||||
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue