31 runs were queued on igneum-build-1's one runner at 13:15 UK on 7 October 2026 and nothing had concluded since 13:03Z, so no lane could read a conclusion. - ci.yml: a `changes` job (ubuntu-latest) classifies the push with tools/ci/docs-only-check.sh (docs/, site/, *.md only = code=false; a new branch, a pull request, a force push or an API error = code=true); pow and sims need it and run only on code=true. The site job is unchanged on ubuntu-latest for every push. The classifier's self-test is in the gate. - provision.sh and runner/register.sh: `--host <ip>` registers another box, forwarding BOX_HOSTNAME, RUNNER_NAME, RUNNER_LABELS, RUNNER_CPUS and RUNNER_JOBS (plain words only); RUNNER_CPUS writes AllowedCPUs into the service drop-in beside Nice=10, so igneum-build-2's runner is bounded like a suite (32 cores). The pool label is igneum-build-1 (both boxes carry it); ci-red marks the box with the record file and the poster, the default labels carry it, and igneum-build-1 got it through the runners API today. - ci-red.yml runs on the ci-red label, so the red line always lands where the poster reads it. - CLAUDE.md: the rule reads "read the conclusion when it lands, own a red before the next push"; pushes are never held. Co-Authored-By: Claude Fable 5.1 <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| capacity | ||
| ci-red | ||
| discord-hooks | ||
| hands | ||
| night | ||
| prover | ||
| repro | ||
| runner | ||
| workers | ||
| lib.sh | ||
| provision.sh | ||
| README.md | ||
| remote-run.sh | ||
| run-from-mac.sh | ||
The build boxes (infra/build-server)
Three Hetzner dedicated servers in Falkenstein run everything the Mac must not: builds, test suites, benchmarks, CPU proving, the devnet hands and the observer. The Mac keeps macOS binaries, the DMG and Metal tests (CLAUDE.md, "Running agents on this Mac").
No mining on any Hetzner box, ever
the project lead's rule through main, 7 October 2026: Hetzner's policies forbid crypto mining. The boxes run nodes, builds, tests, benchmarks and
CPU proving only. The pool's fast-time network runs its miners on rented GPU pods (tools/fleet), never on a box; a box may run the
network's nodes. The capacity layer refuses a job that would start igneum-miner mine or a GPU worker (capacity/run.sh), and no
hands unit carries a miner. A node started with --enable-unsynced-mining is a node flag, not a miner; nothing feeds it blocks here.
The boxes and the kind map
| Box | Host file on the Mac | Takes | Never |
|---|---|---|---|
| igneum-build-1 (188.40.146.49, AX162-1-LTD) | ~/.config/igneum/build-server |
release gates (--priority gate), builds and cross-builds, checks, the GPU workers' host side, the devnet hands (node 1, the observer node, the observer), the Devnet 2 seed, the CI runner, the dashboard feed |
suites and benches once box 2 exists |
| igneum-build-2 (AX162-1, on order) | ~/.config/igneum/build-server-2 |
suites (cargo test), benches (cargo bench), the attack rows (--box 2) |
gates, hands |
| igneum-build-3 (AX102-1, on order) | ~/.config/igneum/build-server-3 |
proving and aggregation CPU work (proving/igneum-prove builds and suites), the second prover's shadow runner, the pool's fast-time NETWORK (nodes only, --box 3) |
miners of any kind |
tools/build-remote.sh routes by class (lib.sh bs_route): suite and bench to box 2, the proving crate to box 3, everything else
to box 1; --box N overrides; a class whose box has no host file yet falls back to box 1 and says so. --priority gate always runs
on box 1. Each box has its own mirrors, slots, locks and JSONL log under /srv; run-from-mac.sh --box N <ip> provisions a box and
writes its host file; the dashboard collector reads every box it is told about.
Files
| File | What |
|---|---|
provision.sh |
the box itself: install mode (rescue system, Ubuntu 24.04, RAID 1, no swap) and provision mode (user build, toolchains, the pin, sccache, zig, CUDA headers, docker, Caddy, mirrors, slots, sshd, ufw) |
run-from-mac.sh |
ships provision.sh, writes the host file, wires the build remotes and pushes every branch |
lib.sh, remote-run.sh |
the Mac and box halves of a remote run: sync, checkout, slots, scheduling classes, the JSONL line |
hands/ |
the devnet hands' units, the mover and the restart read-backs |
capacity/ |
the capacity layer (the box-work lane's): background jobs under the build slots, never a miner |
repro/, night/, prover/, runner/, workers/ |
other lanes' pieces that live on the boxes |
Plan, numbers and the gotchas: docs/plans/build-server.md; the hands: docs/plans/hands-on-build-1.md.