Fix ARM canary boot and worker kernel features #276

Merged
binjovi-bot merged 1 commit from codex/arm-canary-boot-fix-20260910 into trunk 2026-09-10 14:36:03 +00:00
Owner

The ARM canary boots, but Cilium cannot start without built-in WireGuard. Use the successful audited ARM kernel from Linux PR #70, and reject kernel inputs without WireGuard. Disable the cloud-init generator so SSH host keys can be created. Notify the kernel after creating the tank partition and require its block device before recording completion.

Validation: the shell guard test fails without the guard and passes with it; git diff --check passes. The image build validates the kernel and ZFS inputs. This image is for the single cordoned ARM canary.

The ARM canary boots, but Cilium cannot start without built-in WireGuard. Use the successful audited ARM kernel from Linux PR #70, and reject kernel inputs without WireGuard. Disable the cloud-init generator so SSH host keys can be created. Notify the kernel after creating the tank partition and require its block device before recording completion. Validation: the shell guard test fails without the guard and passes with it; git diff --check passes. The image build validates the kernel and ZFS inputs. This image is for the single cordoned ARM canary.
Fix ARM canary boot and enable the audited worker kernel
All checks were successful
binjovi/ci Binjovi completed the frozen plan
95452d09ea
binjovi-bot deleted branch codex/arm-canary-boot-fix-20260910 2026-09-10 14:36:03 +00:00
Sign in to join this conversation.
No reviewers
No labels
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set

Reference
sean/builder-images!276
No description provided.