SlingshotWebhook testing platform
Loading...
View server and client environment variables
| Variable Name | Value | Actions |
|---|---|---|
AWS_DEFAULT_REGION | us-east-2 | |
AWS_REGION | us-east-2 | |
LANG | en_US.UTF-8 | |
LD_LIBRARY_PATH | /var/lang/lib:/lib64:/usr/lib64:/var/runtime:/var/runtime/lib:/var/task:/var/task/lib:/opt/lib | |
LD_PRELOAD | /opt/rust/connect_guard.so | |
NODE_ENV | production | |
NODE_PATH | /opt/nodejs/node24/node_modules:/opt/nodejs/node_modules:/var/runtime/node_modules:/var/runtime:/var/task | |
NOW_REGION | cle1 | |
NX_DAEMON | false | |
OPENSSL_CONF | /var/runtime/openssl_conf/openssl.cnf | |
PATH | /var/lang/bin:/usr/local/bin:/usr/bin/:/bin:/opt/bin | |
PWD | /var/task | |
SHLVL | 0 | |
TURBO_CACHE | remote:rw | |
TURBO_DOWNLOAD_LOCAL_ENABLED | true | |
TURBO_PLATFORM_ENV | (empty) | |
TURBO_REMOTE_ONLY | true | |
TURBO_RUN_SUMMARY | true | |
TURBOPACK | 1 | |
TZ | :UTC | |
VERCELSystem | 1 | |
VERCEL_BRANCH_URLSystem | slingshot-git-main-jonpulsifer.vercel.app | |
VERCEL_CACHE_HANDLER_MEMORY_CACHESystem | 0 | |
VERCEL_DEPLOYMENT_IDSystem | dpl_HoGNtYBSQazsU2mv44jbX9XdrX9S | |
VERCEL_DEPLOYMENT_KEYSystem | [redacted] | |
VERCEL_ENVSystem | production | |
VERCEL_FLUIDSystem | 1 | |
VERCEL_GIT_COMMIT_AUTHOR_LOGINSystem | jonpulsifer | |
VERCEL_GIT_COMMIT_AUTHOR_NAMESystem | jonpulsifer | |
VERCEL_GIT_COMMIT_MESSAGESystem | fix(spindrift): two silent failures between a Target and a routed App (#1646)
* fix(spindrift): admit the gateway a routed App's policy was denying
A Component with `reach: private` deployed clean and answered 503. Every signal
read correct — HTTPRoute `Accepted`, endpoint `ready`, the A record published
and resolving to the gateway's address, TLS verifying, the pod serving 200 on a
port-forward — and the gateway still could not reach it.
The App chart's NetworkPolicy is default-deny with an exception list whose names
are Target configuration, and `allowedNamespaces` carries the gateway's
namespace precisely so that a route can be served. It never did. A gateway's
data plane is not a pod in the gateway's namespace: Cilium terminates a listener
in the host-networked `cilium-envoy` DaemonSet, so the connection arrives
carrying the `ingress` identity, and no `podSelector` or `namespaceSelector`
matches an identity. Hubble names the sender exactly:
10.101.1.36:32889 (ingress) <> spindrift-apps/sdd-private | |
VERCEL_GIT_COMMIT_REFSystem | main | |
VERCEL_GIT_COMMIT_SHASystem | acd2536f793baa8112a6dee5488ce9144d4c6c28 | |
VERCEL_GIT_PREVIOUS_SHASystem | (empty) | |
VERCEL_GIT_PROVIDERSystem | github | |
VERCEL_GIT_PULL_REQUEST_IDSystem | (empty) | |
VERCEL_GIT_REPO_IDSystem | 952814997 | |
VERCEL_GIT_REPO_OWNERSystem | jonpulsifer | |
VERCEL_GIT_REPO_SLUGSystem | infra | |
VERCEL_HANDLERSystem | /var/task/apps/slingshot/___next_launcher.cjs | |
VERCEL_IPC_PATHSystem | /tmp/vercel-2471288230.sock | |
VERCEL_PARENT_SPAN_IDSystem | 37b68535add6761e | |
VERCEL_PROJECT_IDSystem | prj_oDbXXjdXRFzrmAqbbwb2kOp0HCNe | |
VERCEL_PROJECT_NAMESystem | slingshot | |
VERCEL_PROJECT_PRODUCTION_URLSystem | next.lolwtf.ca | |
VERCEL_REGIONSystem | cle1 | |
VERCEL_TARGET_ENVSystem | production | |
VERCEL_URLSystem | slingshot-4k7sn7qd8-jonpulsifer.vercel.app | |
VERCEL_VDC_REMOTE_CACHE_ENABLEDSystem | 1 |