Expand description
Remote servers (P5.1, P5.2): a control plane places orgs on other hosts,
each running incus and isb serve --agent, and forwards their calls over
mutual TLS. Federation, not incus clustering: every server is a whole
isb (controller, ingress, registry, builds, secrets) for the orgs on it.
See docs/guides/servers.md.
Re-exports§
pub use client::AgentClient;pub use store::ServerRecord;
Modules§
- bootstrap
isb server add: make a fresh Linux box an isb agent over SSH.- client
- The control plane’s side of the wire to an agent: HTTPS with its client certificate, one request per connection (the agent’s server closes after answering), and the terminal websocket.
- health
- Heartbeats: the control plane asks each agent how it is every
INTERVAL;FAILURESmisses in a row make the server unreachable (server.unreachable), and the first answer after that recovers it (server.recovered). - merge
- Cross-org reads on a control plane: its own answer plus each server’s,
merged into one. Every item from a server carries
"server": NAME; a server that did not answer is listed underunreachablerather than failing the call. - pki
- The control plane’s CA for its agents (P5.1).
- provision
- Progress of a server being added: over SSH (
server_add) or as a dedicated VM this control plane makes itself (org_createwithplacement: {vm: ...}). Each run is a fixed list of steps, the lines it logged and how it ended, kept in memory so the web UI and the CLI can follow one that runs in the background (server_provision_get, andprovisionsinserver_list). Nothing secret goes in: the SSH key never reaches a log line. - store
- What the control plane keeps about its servers and where orgs live:
<state>/servers/servers.jsonand<state>/servers/placement.json(0600). Routing metadata only: no workload state, no secrets. - upgrade
- Upgrading agents:
isb server upgrade(docs/guides/servers.md#upgrading-servers). - vm
- Dedicated VMs: an org of its own kernel, one click away.
- wire
- What the control plane tells an agent about the caller it forwards.
Structs§
- Servers
- The control plane’s servers: their records, placement, CA, health, and the threads that watch them.
Constants§
- CALL_
TIMEOUT - How long a forwarded tool call may take (deploys with
wait, exec).