Skip to main content

Module servers

Module servers 

Source
Expand description

Remote servers (P5.1, P5.2): a control plane places orgs on other hosts, each running incus and isb serve --agent, and forwards their calls over mutual TLS. Federation, not incus clustering: every server is a whole isb (controller, ingress, registry, builds, secrets) for the orgs on it. See docs/guides/servers.md.

Re-exports§

pub use client::AgentClient;
pub use store::ServerRecord;

Modules§

bootstrap
isb server add: make a fresh Linux box an isb agent over SSH.
client
The control plane’s side of the wire to an agent: HTTPS with its client certificate, one request per connection (the agent’s server closes after answering), and the terminal websocket.
health
Heartbeats: the control plane asks each agent how it is every INTERVAL; FAILURES misses in a row make the server unreachable (server.unreachable), and the first answer after that recovers it (server.recovered).
merge
Cross-org reads on a control plane: its own answer plus each server’s, merged into one. Every item from a server carries "server": NAME; a server that did not answer is listed under unreachable rather than failing the call.
pki
The control plane’s CA for its agents (P5.1).
provision
Progress of a server being added: over SSH (server_add) or as a dedicated VM this control plane makes itself (org_create with placement: {vm: ...}). Each run is a fixed list of steps, the lines it logged and how it ended, kept in memory so the web UI and the CLI can follow one that runs in the background (server_provision_get, and provisions in server_list). Nothing secret goes in: the SSH key never reaches a log line.
store
What the control plane keeps about its servers and where orgs live: <state>/servers/servers.json and <state>/servers/placement.json (0600). Routing metadata only: no workload state, no secrets.
upgrade
Upgrading agents: isb server upgrade (docs/guides/servers.md#upgrading-servers).
vm
Dedicated VMs: an org of its own kernel, one click away.
wire
What the control plane tells an agent about the caller it forwards.

Structs§

Servers
The control plane’s servers: their records, placement, CA, health, and the threads that watch them.

Constants§

CALL_TIMEOUT
How long a forwarded tool call may take (deploys with wait, exec).