Skip to content

Install the Almide release binary; add ConoHa VPS Terraform - #2

Merged
O6lvl4 merged 2 commits into
mainfrom
feat/conoha-terraform
Oct 4, 2026
Merged

O6lvl4 merged 2 commits into
mainfrom
feat/conoha-terraform

Conversation

@O6lvl4

@O6lvl4 O6lvl4 commented Oct 4, 2026 •

Copy link
Copy Markdown
Contributor

Summary

  • Faster builds: pin the official Almide v0.66.0 release instead of building the compiler from source. install-almide.sh downloads the platform archive and installs it only if its sha256 matches .almide-checksums.sha256.
    • Compiler install: about 7.5 min → 2.4 s (macOS arm64)
    • docker compose build on a 4-core ConoHa VPS: 7m18s → 91 s including base-image pulls, 24 s with --no-cache
    • The release binary needs glibc 2.39+, so the Dockerfile moves to Debian trixie. Native almide build still runs cargo, so Rust stays in the build stage.
  • ConoHa Terraform: providers/conoha/terraform creates one disposable Docker VPS with the Aid-On conohavps provider fork. Its security group admits only TCP 22 from the operator's CIDRs. Credentials come only from CONOHAVPS_*.
  • Verification recorded: the ConoHa VPS run (x86_64, 18 cases over an SSH tunnel, port 8080 not public, destroyed afterwards) and the re-verification with the release binary are in docs/verification.md.

Test plan

  • npm test 117/117, test:workers 19/19, test:google-framework 39/39, test:staged-functions 38/38 with the release binary
  • Installer tests: matching checksum installs; wrong checksum installs nothing; malformed tag refused
  • Docker/Compose on macOS arm64 and on the ConoHa VPS (x86_64): 18 cases passed
  • terraform plan/apply/destroy against ConoHa; existing resources untouched
  • GitHub Actions on this PR (58 s, previously about 7 min)
  • Cloudflare and Google deployments were not repeated with the release binary

🤖 Generated with Claude Code

O6lvl4 and others added 2 commits October 4, 2026 17:00
Pin the official v0.66.0 release and commit its archive checksums. The
installer downloads the platform archive, refuses it unless the sha256
matches, and installs almide and almide-verify. This replaces a full
cargo build of the compiler (about 7.5 minutes locally, 5m46s of a 7m18s
image build on a 4-core VPS) with a download of a few seconds.

The release binary needs glibc 2.39+, so the Dockerfile moves to Debian
trixie. Native almide build still emits Rust and runs cargo, so the build
stage keeps the pinned Rust image.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
providers/conoha/terraform creates one disposable Docker VPS with the
Aid-On conohavps provider fork: server, boot volume, key pair, and a
security group admitting only TCP 22 from the operator's CIDRs (ConoHa's
IPv4v6-SSH group admits SSH from anywhere, so it is not used). Credentials
come only from CONOHAVPS_* in the environment; state, tfvars and the lock
file are ignored. A static test guards the SSH-only shape.

The VPS was created, the Compose example built and passed the shared
18-case contract over an SSH tunnel with both the source-build installer
(7m18s) and the release installer (91s, 24s rebuilt), and it was
destroyed. Docs now describe the v0.66.0 release pin.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
@O6lvl4
O6lvl4 merged commit 916f22c into main Oct 4, 2026
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant