[Init] Initial commit - NetMesh terminal manager
Some checks failed
build-packages / resolve bundled mosh-client (push) Has been cancelled
build-packages / resolve bundled et-client (push) Has been cancelled
build-packages / build-macos (push) Has been cancelled
build-packages / build-windows (push) Has been cancelled
build-packages / build-linux-x64 (push) Has been cancelled
build-packages / build-linux-arm64 (push) Has been cancelled
build-packages / release (push) Has been cancelled
build-packages / update Nix release metadata (push) Has been cancelled
build-packages / bump homebrew tap (push) Has been cancelled
test / lint-and-test (push) Has been cancelled
AI automation / Route event (push) Has been cancelled
AI automation / Hand reopened issue to maintainers (push) Has been cancelled
AI automation / Clean source issue state (push) Has been cancelled
AI automation / Reconcile handoffs (push) Has been cancelled
AI automation / Classify issue (push) Has been cancelled
AI automation / Claude Code smoke (push) Has been cancelled
AI automation / Review issue follow-up (push) Has been cancelled
AI automation / Publish issue follow-up (push) Has been cancelled
AI automation / Implement with Claude Code (push) Has been cancelled
AI automation / Publish implement PR (push) Has been cancelled
AI automation / Continue queued issue comments (push) Has been cancelled
AI automation / Codex review loop (push) Has been cancelled
AI automation / Publish Codex fix (push) Has been cancelled
AI automation / Clear Codex dispatch marker (push) Has been cancelled
AI automation / Own PR re-request Codex (push) Has been cancelled
AI automation / External PR re-request Codex (push) Has been cancelled
AI automation / Poll Codex reaction / retry (push) Has been cancelled
build-et-binaries / build-linux-x64 (push) Has been cancelled
build-et-binaries / build-linux-arm64 (push) Has been cancelled
build-et-binaries / build-macos-universal (push) Has been cancelled
build-et-binaries / build-windows-x64 (push) Has been cancelled
build-et-binaries / release (push) Has been cancelled

This commit is contained in:
2026-09-13 18:24:01 +08:00
commit 3c72efcb7f
3255 changed files with 907009 additions and 0 deletions

View File

@@ -0,0 +1,101 @@
"use strict";
// Characterization test pinning the property that `startSession.cjs` relies on
// after the connection-startup optimization: the single preferred default key
// equals `findAllDefaultPrivateKeys()[0]`, so the connect path can derive it
// from the (already-needed) full list instead of scanning ~/.ssh a second time.
//
// These are the *local* sshBridge functions actually wired into startSession via
// `with(ctx)` (sshBridge.cjs passes its own findDefaultPrivateKey /
// findAllDefaultPrivateKeys into createStartSessionApi), exposed here as
// `_findDefaultPrivateKey` / `_findAllDefaultPrivateKeys`. Testing the helper's
// copy would prove nothing about the path the change runs on.
const test = require("node:test");
const assert = require("node:assert");
const fs = require("node:fs");
const os = require("node:os");
const path = require("node:path");
const {
_findDefaultPrivateKey: findDefaultPrivateKey,
_findAllDefaultPrivateKeys: findAllDefaultPrivateKeys,
} = require("./sshBridge.cjs");
const UNENCRYPTED = (tag) =>
`-----BEGIN RSA PRIVATE KEY-----\nMIIBOgIBAAJBAK${tag}fakebody\n-----END RSA PRIVATE KEY-----\n`;
const ENCRYPTED =
"-----BEGIN ENCRYPTED PRIVATE KEY-----\nMIIBfake\n-----END ENCRYPTED PRIVATE KEY-----\n";
async function withFakeSshDir(files, run) {
const home = fs.mkdtempSync(path.join(os.tmpdir(), "netcatty-default-key-"));
const sshDir = path.join(home, ".ssh");
fs.mkdirSync(sshDir);
for (const [name, content] of Object.entries(files)) {
fs.writeFileSync(path.join(sshDir, name), content);
}
const originalHomedir = os.homedir;
os.homedir = () => home;
try {
return await run();
} finally {
os.homedir = originalHomedir;
fs.rmSync(home, { recursive: true, force: true });
}
}
// The refactor replaces `await findDefaultPrivateKey()` with `allDefaultKeys[0] ?? null`.
async function assertEquivalent() {
const single = await findDefaultPrivateKey();
const all = await findAllDefaultPrivateKeys();
assert.deepStrictEqual(single, all[0] ?? null);
return { single, all };
}
test("default key equals first of all default keys with mixed key files", async () => {
await withFakeSshDir(
{
id_ed25519: UNENCRYPTED("ed"),
id_ecdsa: ENCRYPTED, // preferred but encrypted -> skipped by both
id_rsa: UNENCRYPTED("rsa"),
id_custom: UNENCRYPTED("custom"),
id_notakey: "this is not a private key",
config: "Host *\n", // does not match id_* pattern -> ignored
},
async () => {
const { single, all } = await assertEquivalent();
// Preferred unencrypted key wins.
assert.strictEqual(single.keyName, "id_ed25519");
// Encrypted + non-key files are excluded from the full list.
assert.deepStrictEqual(
all.map((k) => k.keyName),
["id_ed25519", "id_rsa", "id_custom"],
);
// Returned shape is what the auth fallback consumes.
assert.deepStrictEqual(Object.keys(single).sort(), [
"keyName",
"keyPath",
"privateKey",
]);
},
);
});
test("both resolve to null/empty when only encrypted keys are present", async () => {
await withFakeSshDir({ id_ed25519: ENCRYPTED, id_rsa: ENCRYPTED }, async () => {
const { single, all } = await assertEquivalent();
assert.strictEqual(single, null);
assert.strictEqual(all.length, 0);
});
});
test("preferred ordering: a non-preferred key never wins over a preferred one", async () => {
await withFakeSshDir(
{ id_aaa_custom: UNENCRYPTED("aaa"), id_rsa: UNENCRYPTED("rsa") },
async () => {
const { single } = await assertEquivalent();
// id_rsa is in PREFERRED_KEY_NAMES; id_aaa_custom is not, despite sorting first.
assert.strictEqual(single.keyName, "id_rsa");
},
);
});