Bascule shell runtime workspace — governed shell access layer for Substrate/Guildhouse FFC deployments. Crates: - bascule-agent: node agent with SSH server + command filtering - bascule-core: audit, grant engine, ceremony types, session - bascule-filter-core: log line filtering (stdio protocol) - bascule-gateway: OIDC auth, session management, SAT validation - bascule-node-agent: k8s DaemonSet agent (pod watcher, BPF manager) - bascule-proto: protobuf definitions - bascule-shell: governed SSH shell (commands, elevation, REPL) - bascule-tail: chronicle log tail + fanout - ceremony-engine: ceremony lifecycle (6 types + request/resolution) 172 tests passing. Implements SBS-SPEC-0001 shell model. Reference impl for SPEC-SHELLOPS-0001 Layer 1 (root shell).
12 lines
250 B
TOML
12 lines
250 B
TOML
# Test config for E2E verification — Python SDK ↔ Rust bascule-agent
|
|
[agent]
|
|
socket_path = "/tmp/bascule-agent-e2e.sock"
|
|
|
|
[agent.ssh]
|
|
enabled = false
|
|
|
|
[agent.namespaces]
|
|
backend = "soft"
|
|
|
|
[agent.namespaces.attestation]
|
|
default_posture = "normal"
|