whitehat-security/engagements/2026-08-22-audit-core-e2.md
tegwick 461554a749 Record operator approval of WH-ENG-20260822-AUDIT-E2-01
Owner acknowledgement remains pending. Offline admission stays fail-closed.
No credentials requested and no packets sent.

Assistant: grok
Assistant-Session: 01a02670-3345-76f2-a014-70fde8e2a2bb
2026-08-22 11:54:09 +02:00

26 lines
1.5 KiB
Markdown
Raw Blame History

This file contains ambiguous Unicode characters

This file contains Unicode characters that might be confused with other characters. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.

# WH-ENG-20260822-AUDIT-E2-01
Status: **operator-approved, awaiting target-owner acknowledgement**.
This is not yet authorization to send a packet or project credentials.
Operator approved `2026-08-22T09:52:55Z` in the coordinating session
(`operator-session-2026-08-22-e2-approval`). Audit-core acknowledgement is
still pending. The cancelled ID `WH-ENG-20260821-AUDIT-E2` remains terminal.
| Field | Value |
| --- | --- |
| Target | `audit-core.audit-core.svc.cluster.local:8080` |
| Registration | `targets/audit-core-e2.json` (`applicable`, `live-e2`) |
| Source | pod `whitehat/whitehat-e2-audit` with plane and target labels, SA `whitehat-runner`, no token |
| Image pin | `forgejo.coulomb.social/coulomb/audit-core@sha256:7febc28e8a828dbc245144a38e5728e0fbf496b594dd7591170b450a1265fb10` |
| Identities | two ordinary tenant-scoped `may_read`/`may_write` senders, `source=whitehat-security`, TTL ≤ 900s, mount-only |
| Routes | `GET /readyz`, `POST /v1/events`, `GET /v1/events/{event_id}`, `GET /v1/events?correlation_id=` |
| Ceiling | concurrency 1; 10/min; at most 30 requests |
| Window | 2026-08-22T18:00:00Z18:15:00Z |
| Cleanup | revoke both leases; delete only named synthetic fixtures; prove cleanup |
| Reporting | `risk-nexus`, no severity |
Offline preflight must fail closed until `target_owner_acknowledged_at` is
set. After acknowledgement, the live custody broker is still unconnected and
must fail closed until two identities are projected. Do not apply
`plane/runner-pod.yaml` before that.