wiki: sync 2026-07-20 18:52 UTC — 2 file(s) updated
This commit is contained in:
@@ -0,0 +1,67 @@
|
|||||||
|
# Gitea Repository Operations
|
||||||
|
|
||||||
|
_Last verified: 2026-07-20 18:30 UTC_
|
||||||
|
|
||||||
|
## Status
|
||||||
|
|
||||||
|
✅ Hermes has a reusable local skill for general Gitea repository work:
|
||||||
|
|
||||||
|
- Skill: `gitea-repository-operations`
|
||||||
|
- Path: `/opt/data/skills/software-development/gitea-repository-operations/SKILL.md`
|
||||||
|
- Scope: any organization or repository on `gitea.lego-cloud.eu`, not only Docusaurus projects
|
||||||
|
|
||||||
|
The existing `gitea-docusaurus-projects` skill remains the specialist extension for Docusaurus, pnpm, sharp-corner UI conventions, and documentation CI/CD.
|
||||||
|
|
||||||
|
## Instance baseline
|
||||||
|
|
||||||
|
| Capability | Configuration | Status |
|
||||||
|
|---|---|---|
|
||||||
|
| Web UI | `https://gitea.lego-cloud.eu` | ✅ |
|
||||||
|
| REST API | `https://gitea.lego-cloud.eu/api/v1` | ✅ |
|
||||||
|
| API credential | `/opt/data/.env` → `GITHUB_TOKEN` | ✅ |
|
||||||
|
| SSH endpoint | `ssh://git@gitea.lego-cloud.eu:30009/ORG/REPO.git` | ✅ |
|
||||||
|
| SSH identity | `/opt/data/home/.ssh/id_ed25519` | ✅ |
|
||||||
|
| Git identity | `Jarvis Jr Hermes <jarvis.at.skic@gmail.com>` | ✅ |
|
||||||
|
|
||||||
|
Never publish the API token, embed it in a Git remote, or commit it to a repository.
|
||||||
|
|
||||||
|
## Standard workflow
|
||||||
|
|
||||||
|
1. Authenticate with `GET /api/v1/user` and confirm the account is active.
|
||||||
|
2. Discover organization/repository metadata before mutation.
|
||||||
|
3. Clone via SSH with the explicit identity and `BatchMode=yes`.
|
||||||
|
4. Fetch and inspect branch divergence before editing an existing clone.
|
||||||
|
5. Preserve remote work; no force-push or history rewrite without explicit direction.
|
||||||
|
6. Run repository-specific validation and `git diff --cached --check`.
|
||||||
|
7. Commit only intended files and push through SSH.
|
||||||
|
8. Verify local/remote branch SHAs.
|
||||||
|
9. Read back a distinctive file through the authenticated Gitea API.
|
||||||
|
10. Report repository URL, branch, commit SHA, validation, and caveats.
|
||||||
|
|
||||||
|
## Skill coverage
|
||||||
|
|
||||||
|
- Organization and repository discovery/creation
|
||||||
|
- Safe clone, fetch, branch, commit, and push workflow
|
||||||
|
- Pagination and authenticated API usage
|
||||||
|
- Collaborators with `read`, `write`, or `admin` permission
|
||||||
|
- Issues, pull requests, releases, and tags
|
||||||
|
- Gitea Actions under `.gitea/workflows/`
|
||||||
|
- Automated no-op Git synchronization
|
||||||
|
- Private-repository raw-file verification
|
||||||
|
- Troubleshooting disabled accounts, SSH keys, API authorization, divergence, and CI runners
|
||||||
|
|
||||||
|
## Known operational lessons
|
||||||
|
|
||||||
|
- API and SSH access must be tested independently.
|
||||||
|
- A successful push is not complete verification; read back the requested artifact.
|
||||||
|
- Repository-level `admin` is not the same as organization ownership.
|
||||||
|
- Private raw web links may return `404`; use the authenticated API endpoint.
|
||||||
|
- Gitea account disablement can break both previously valid tokens and SSH keys without requiring key/token replacement after re-enablement.
|
||||||
|
- Scheduled syncs must not silently accumulate unpushed commits.
|
||||||
|
|
||||||
|
## Current Gitea repositories referenced by the wiki
|
||||||
|
|
||||||
|
- `skic-v1-playground/knowledge-wiki` — automated wiki mirror
|
||||||
|
- `world-v1/network-v1` — global network address book and investigation repository
|
||||||
|
|
||||||
|
Add future repository-specific details to their project documentation; keep this page focused on reusable operations.
|
||||||
@@ -0,0 +1,41 @@
|
|||||||
|
# world-v1/network-v1
|
||||||
|
|
||||||
|
_Last updated: 2026-07-20 18:49 UTC_
|
||||||
|
|
||||||
|
## Status
|
||||||
|
|
||||||
|
✅ Public Gitea repository: https://gitea.lego-cloud.eu/world-v1/network-v1
|
||||||
|
|
||||||
|
The repository is a source-backed address book and evolving map of the global Internet ecosystem.
|
||||||
|
|
||||||
|
## Repository baseline
|
||||||
|
|
||||||
|
- 25 ecosystem entities across governance, standards, RIRs, DNS, interconnection, routing, incident response, physical infrastructure, and operator communities.
|
||||||
|
- Human-readable pages under `address-book/`.
|
||||||
|
- Canonical CSV datasets under `data/`.
|
||||||
|
- Methodology and taxonomy under `docs/`.
|
||||||
|
- Research backlog under `research/`.
|
||||||
|
- Dependency-free validation through `make validate`.
|
||||||
|
|
||||||
|
## IP-network direction
|
||||||
|
|
||||||
|
Lego directed Hermes to extend the project from ecosystem organizations into an IP-level network map, beginning with `0.0.0.0` and `1.1.1.1`.
|
||||||
|
|
||||||
|
The project must not use one ambiguous `owner` field. Every IP investigation separates:
|
||||||
|
|
||||||
|
1. IANA special-purpose classification;
|
||||||
|
2. registry and registered resource holder;
|
||||||
|
3. current announced prefix and origin ASN;
|
||||||
|
4. network/service operator;
|
||||||
|
5. exact service or function;
|
||||||
|
6. infrastructure relationships;
|
||||||
|
7. authoritative sources and verification date.
|
||||||
|
|
||||||
|
### Initial findings
|
||||||
|
|
||||||
|
- `0.0.0.0` — IANA special-purpose protocol address, not organizationally assigned, not forwardable or globally reachable.
|
||||||
|
- `1.1.1.1` — covering prefix `1.1.1.0/24` is registered in APNIC RDAP as `APNIC-LABS` to APNIC Research and Development; RIPEstat observes origin `AS13335` Cloudflare; Cloudflare operates the 1.1.1.1 recursive DNS service. APNIC RDAP documents the APNIC–Cloudflare resolver project.
|
||||||
|
|
||||||
|
## Next scope
|
||||||
|
|
||||||
|
🔲 Add important special-purpose ranges, public resolvers, DNS root identities, RIR exemplars, RPKI evidence, ASN relationships, IXPs/facilities, and selected global networks using explicit criteria rather than blindly enumerating IPv4 space.
|
||||||
Reference in New Issue
Block a user