README day-2: regenerate the cc-ci lock on the host; plan: steps 8 + lint follow-ups done

Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01FqkQq3CDmFWcQ7u1LzoyRz
This commit is contained in:
2026-09-07 21:20:11 +00:00
co-authored by Claude Fable 5.1
parent 841f8a9d1f
commit 01caa90e76
2 changed files with 9 additions and 2 deletions
+4 -1
View File
@@ -329,7 +329,10 @@ stopped on the new host while its directory is copied:
this flake's nixpkgs, so the CI server is rebuilt on the same nixpkgs.
- **Update only cc-ci's code** (harness/tests/modules): merge in the cc-ci repo, then
`nix flake update cc-ci` here and rebuild; also `git -C /etc/cc-ci pull --recurse-submodules`
so the deployed checkout the sweep runs from matches.
so the deployed checkout the sweep runs from matches. Run the lock update **on this host**: a
lock written by a newer Nix elsewhere once failed here with `NAR hash mismatch in input
git+https://…cc-ci.git…&shallow=1`; re-running `nix flake update cc-ci` on the host fetched the
input properly and the rebuild went through.
- **Something is down**: `systemctl --failed`, `journalctl -u deploy-<x>`, `docker service ps <svc>`;
the cc-ci repo's `docs/runbook.md`. Host unreachable: Hetzner console → reboot lands on the last
`switch`ed generation; rescue mode + `nixos-enter` for anything worse (skill