Repository navigation
Conversation
Add deterministic workflow inventory, synthetic corruption tests, a reviewed CI-sprawl budget, and a lightweight workflow-integrity guard. No existing workflow is retired and no IEC 61850, physical-evidence, release, or runtime semantics are changed.
Introduce conservative source change classification, a reusable exact-SHA engine resolver, and an opt-in Windows restore/build/full-test shadow with typed provenance and fail-closed TRX evidence. Preserve all legacy CI, physical acceptance and release authorities. 10/10 triggered workflow checks passed on the PR merge tree.
Consume immutable successful Build ARSAS test artifact with exact PR merge SHA, pinned engine SHA, run/attempt and all-pass TRX digest checks instead of rerunning one Windows restore/build/test lane. Preserve P0-5h source contract, read-only access, manual reusable fallback and historical R10/P141 physical authority. All 10 triggering workflows passed.
…ssion Eliminate duplicate ARSAS restore/build/full-test invocation from R10 Mainline Readiness; preserve independent 988/988 engine tests and physical convergence predicates. Require exact PR synthetic merge SHA/pinned engine/run-attested 1320/1320 canonical ARSAS TRX before readiness can pass. Manual reusable tests retained. All 12 PR checks passed.
Reuse exact merge-SHA and immutable engine canonical Build ARSAS all-pass evidence instead of a third independent ARSAS restore/build/test. Preserve source-route verification, SHA256 immutability, physical R10 authority, manual full tests and production protections. All ten PR workflow checks passed.
Allow selected canonical regression consumers to finish as soon as the exact all-pass manifest/TRX artifact is available, while keeping strict verifier mode as default and Build ARSAS packaging/smoke as an independent check. Ten of ten PR workflows passed; observed savings were about five runner-minutes on the validation PR.
Keep independent R10 engine regression and physical assertions, but reuse exact push/main Build ARSAS canonical regression evidence for the application suite. Preserve schema-compatible post-merge attestation with explicit verification state. All ten PR workflows passed.
…ckaging Reuse exact merge-SHA and integration-engine canonical ARSAS regression evidence for Field Capture while preserving P0-5c/P0-5d checks, physical baseline evidence, independent publish, portable smoke and package authority. Binary artifact reuse remains explicitly forbidden because reproducible byte identity has not been proven. All ten PR workflows passed.
Make the pinned ArdIrec bridge reproducible with MSVC /Brepro, make managed publish determinism explicit, emit hash-bound portable build identities and fail early on packaging PowerShell syntax. Independent Build ARSAS and Field Capture runners produced identical bridge and portable SHA-256 values. All triggered workflows passed.
Build and test the Windows application once, seal exact portable/installer-input/test-runtime bytes with source, engine, ArdIrec, run, TRX and per-file SHA-256 evidence, and make installer PR/main validate and consume those bytes instead of rebuilding the application. Preserve P3A reproducibility, physical Smart Discovery authority, independent installer/runtime smoke and manual fallback. Harden package materialization against Windows path aliases. Stable release promotion remains unchanged and the sealed artifact explicitly has no release authority. All eleven PR workflows passed.
Retry only transient artifact archive HTTP 404 while preserving the existing bounded wait and all exact source/engine/ArdIrec/hash authority checks. Persistent 404 times out fail-closed and all other download failures remain hard errors. All ten PR workflows passed.
Use the same hash-complete ARSAS-windows-package-input as installer and Field Capture promotion substrate. Seal and verify portable build identity, promote exact canonical portable bytes, retain field-specific checks/runtime smoke, and keep workflow_dispatch independent publish fallback. All twelve triggered workflows passed and exact-byte parity was verified.
Complete CI-P3 build-once/package-many for Windows production release. Main/tag release paths now require the exact successful Build ARSAS push/main sealed package for the same source, ARIEC61850 and ArdIrec SHAs, promote exact portable and installer-input bytes, and retain release-owned native verification, installer compile/install smoke, checksum, SBOM, provenance, attestations and immutable publication. Manual workflow_dispatch keeps the local rebuild fallback. All twelve triggered PR workflows passed.
Seal installed-smoke-tested installer authority and make production release promote those exact installer bytes from the same canonical package. Preserve release-specific installed runtime verification, supply-chain evidence, stable-release immutability, and manual local Inno fallback. All twelve PR workflows passed.
Use a metadata-only ubuntu gate to wait for the exact Build ARSAS canonical package before allocating the Windows installer runner. Full sealed-package verification, installer compile, silent install/runtime smoke, validated-installer sealing and manual fallback remain intact. Latest PR validation reduced Windows installer occupancy from about 500s to 103s while all 11 workflows passed.
Move production release dependency polling to a metadata-only Ubuntu gate and allocate the Windows release runner only after the exact canonical package and completed-success validated installer metadata exist. Keep all byte-level package/installer verification, runtime smoke, SBOM, provenance, attestations, publication policy and manual fallback unchanged. Retry only transient validated-installer archive HTTP 404 within the existing bounded verifier deadline. All twelve triggered PR workflows passed.
Cancel stale Windows-heavy pull-request runs when a newer PR revision arrives while keeping every push/main, tag and workflow_dispatch run isolated by unique run_id. Real synchronize validation proved older PR heads are cancelled and the latest head completes all checks successfully. No build, test, package, installer or release authority is weakened.
Reuse exact canonical Build ARSAS TRX evidence for specialized SV and IO PR checks, require explicit domain test-family presence/pass, keep stable check names, and retain focused Windows diagnostics for manual dispatch. Consolidate domain evidence uploads and lower the P0 artifact ceiling. All twelve triggered PR workflows passed.
ci(p3i): preserve exact main and manual verification evidence
…RADE ci(p3j-a): seal canonical native ArdIrec CTest evidence without retiring COMTRADE
ci(p3j-b): verify sealed native CTest proof before installer and Field Capture reuse
…y without waiving COMTRADE
…ort chronology ring
…rsor relation, security, immutability
P10.8B milestone — bounded BRCB decoder-metadata chronology (2026-10-11)Current staging: Engineering scope: only three consumer files changed: Exact candidate CI: 10/10 green, full Windows solution/regression, pinned engine identity/canonical SCL, ArdIrec native CTest, portable single EXE smoke, CI guards; Build ARSAS run #38120012150, portable artifact #11695130540 (not expired when checked). Nine new deterministic tests verify ring 60 frames and omitted interval, boundary lengths, warning retention with repeat SqNum/EntryID, raw OptionFields rejection, no raw cursor leakage, URCB no history, frozen snapshot, unknown timestamps and stream isolation. At stage promotion exact SHA/baseline preflight passed. Auto-triggered 16 post-fast-forward workflows started, not manually dispatched. Protected physical simulator truth: Operator previously verified BCUGE with original SHA-pinned Safety: ARIEC stage and pinned lock remain |
…oss omitted chronology middle
… head/tail chronology
…gy and preserve immutable snapshots
… record assumption
P10.8C — completed isolated milestone (2026-10-11)Verified latest staging was P10.8B Root-cause-quality observability gap: P10.8B retains first 32 + latest 8 BRCB decoder report metadata frames. In a long BRCB stream, genuine BufOvfl/SqNum anomaly at frame #46 of 70 is lost from the detailed head/tail evidence, despite existing aggregate counters. A long-running gateway needs to preserve intermittent anomaly evidence with bounded memory. Implemented PR #523: new lazy fixed ring of the last 8 anomalous BRCB frames, independent of unchanged existing first32/last8 chronology; copies in receive order into immutable snapshot; bounded Exact PR head Invariant: ARSAS and ARIEC main unchanged, ARIEC engine lock unchanged. Absolutely no changes to IEC 61850 decoder, RCB setup/selection, static DataSets, control, polling or GOOSE. SOE lossless physical qualification still NOT VERIFIED; BRCB BufOvfl=3 historical user logs remain genuine and must not be hidden. Device/protocol root cause still requires same-slot on-wire capture per Issue #520; Smart MMS 6400/64 partial NameList remains ARIEC #162. |
… semantic source parity
…ne and identity equivalence
…res in canonical Windows build
P10.8C checkpoint + P10.8D exact BRCB-slot comparator integrated (2026-10-11)Baseline audit: Existing staged HEAD had already advanced beyond P10.8A to P10.8D: ARSAS PR #524 adds read-only offline comparator Exact PR head Protected field milestone: #518 P10.6 BCUGE High verified identity, seven-row fingerprint |
CROSS-THREAD STATE SYNC — Canonical P10.8D handoff (2026-10-11)Authoritative detailed handoff: ARSAS #525. Follow it as a snapshot; re-read GitHub branches before doing anything. Verified ACTIVE ARSAS staged HEAD P10.8D adds offline fail-closed BRCB exact-slot comparator Repo-only documentation action: #525 and these linked issue/PR comments; no runtime code or branch ref movement and no redundant 16-workflow Actions churn in this sync. |
P10.8E COMPLETE — guarded staging promotion (2026-10-11)
|
…iability comparison
P10.9A merged — exact SHA and field-evidence guard (2026-10-11)
|
P10.9B integrated / checkpoint and canonical artifact (2026-10-11)
|
…anging SCL bindings
P10.9C integrated on staging: smart Discovery IP/port defaultExact staging SHA
GUI acceptance: launch new artifact, choose Discovery IP, enter |
|
P10.9D–E actual source fixes completed in ARIEC engine (#163, #164; both exact Windows .NET CI green, engine staging fa93c9fd). Simulator per-association FIFO fixes per-report async send overtaking; core MMS report RptID vs domain-qualified DatSet guard prevents incorrect SCADA member projection. Caution: ARSAS does not package Simulation code; neither patch proves BCUGE external BufOvfl/SqNum cause. Attempted consumer engine pin change ARSAS PR #530 is explicitly BLOCKED by protected physical/CodeVerified provenance gates (14 CI: 4 green/10 fail; Windows app 1590/1593 tests pass, 3 authority guards fail). No promotion or usable ARSAS artifact. Issue #531 is the narrow, additive qualification path. P10.9C staging stays |
Purpose
Operator's physical BCUGE screenshot shows a tall, stretched event-count badge and misaligned GOOSE event header controls. This is layout-only, based on validated PR #511; preserve all capture/event/filter, badge, and static reporting behaviors.
Changes
Operator diagnostic review (not fixed in this UX patch)
Both physical Open SCL and Discovery routes report static DataSet=8, members=124/124, 67 runtime points, 6/6 report RCB traffic, unresolved=0, polling disabled. Parity remains formally incomplete because sessions were separate, physical RCB instances differ, IED identity for live Discovery is fallback low, and 6400-name enumeration cap records incomplete chain. Report continuity warnings (BufOvfl/sequence anomalies) also require separate scoped investigation; never claim complete model/continuity parity from displayed=67/67.
One automatic CI validation of this exact commit; preserve the draft PR and physical guard. No mainline merge, no public release.