The keycloak project ended with four open questions that design could not
settle. A two-VM lab was built to answer them by measurement, and this is
that material: 26 experiments, 125 raw command outputs, 22 browser captures.
Follows the import procedure in README.md.
source/ the originating repository verbatim — 78 documents, 28 SVGs,
8 manifests, plus .source-revision recording the commit
final/ the SSOT
document.md 729 lines written from the 29 experiment documents, not
concatenated: what was predicted, what was measured, and
where the measurement itself was wrong
evidence/raw 125 outputs, flattened to <experiment>__<file> because
the originals collided (01-baseline.txt appeared three
times) and the audit only globs the top level
evidence/meta one per raw file; command and exitCode are null and the
README says why rather than inventing them
evidence/browser 22 captures
assets/ three diagrams through techviz
.techviz/ their VizSpecs
A separate project rather than an addition to keycloak: the B-layer answers
that project's four questions, but the A, C and D layers are about cluster
failure, SSO and operations, and one document.md should hold one subject.
The four question records there can point here through 관계.
Recorded rather than papered over: only three of the 28 diagrams were
remade. The repository forbids hand-drawn SVG and forbids titles inside the
canvas; all 28 originals carry both, so converting them is redrawing, not
reformatting. They stay in source/ and the gap is written into the document.
verify-pipeline.py passes. audit-records.py reports no issues.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
53 lines
2.9 KiB
Plaintext
53 lines
2.9 KiB
Plaintext
Notification reachability / test-gap snapshot
|
|
revision=a24ece9cf797f7ea647e33bf846b115208ed1ba5
|
|
generatedAt=2026-08-29T12:15:33Z
|
|
|
|
=== dispatch post-provider call path ===
|
|
161: if (!leases.stillHeld(lease)) {
|
|
169: submitOutsideTransaction(attempt, profile, contactPoint, content, work);
|
|
173: () -> recorder.record(attempt, work.recipient(), result, clock.instant()));
|
|
176: applyNextAction(work, recorded, next, clock.instant(), lease);
|
|
198: private ProviderSubmissionResult submitOutsideTransaction(
|
|
412: private void applyNextAction(
|
|
135: recipients.save(updated);
|
|
|
|
=== fenced repository predicates ===
|
|
59: * <p>The counterpart of {@link #renewLease}, for the write that happens *after* the provider
|
|
82: int saveProjectionHeldBy(
|
|
107: int transitionHeldBy(
|
|
134: + "AND lease_until > :now",
|
|
136: int renewLease(
|
|
154: + "AND lease_until > :now",
|
|
156: long countHeldBy(
|
|
|
|
=== reconciliation runtime transaction shape ===
|
|
81: List<ReconciliationJob> due = jobs.claimDue(batchSize, clock.instant());
|
|
83: for (ReconciliationJob job : due) {
|
|
91: jobs.reschedule(
|
|
103: jobs.reschedule(job, "MAX_ATTEMPTS", clock.instant().plus(retryBackoff));
|
|
104: jobs.complete(job);
|
|
107: ReconciliationResult result = reconciler.apply(job.attemptId());
|
|
110: jobs.complete(job);
|
|
115: jobs.complete(job);
|
|
119: jobs.reschedule(job, "STILL_UNKNOWN", stillUnknown.nextCheckAt());
|
|
124: jobs.reschedule(job, failed.code(), clock.instant().plus(retryBackoff));
|
|
127: jobs.complete(job);
|
|
25: * <p>Claiming is {@code FOR UPDATE SKIP LOCKED} inside the select, for the same reason the delivery
|
|
50: FOR UPDATE SKIP LOCKED
|
|
113: public List<ReconciliationJob> claimDue(int limit, Instant now) {
|
|
|
|
=== admin atomic-claim production calls ===
|
|
=== admin actual read/save calls ===
|
|
94: Optional<AdminOperationResult> replayed = operations.findByOperationId(command.operationId());
|
|
145: return operations.save(result, actor, "ADMIN_REDRIVE");
|
|
154: Optional<AdminOperationResult> replayed = operations.findByOperationId(command.operationId());
|
|
194: return operations.save(result, actor, "ADMIN_RECONCILE");
|
|
203: Optional<AdminOperationResult> replayed = operations.findByOperationId(command.operationId());
|
|
272: return operations.save(
|
|
282: Optional<AdminOperationResult> replayed = operations.findByOperationId(command.operationId());
|
|
328: return operations.save(result, actor, "ADMIN_PROVIDER_STATE");
|
|
|
|
=== schema revision writes after V4 ===
|
|
src/adapter/outbound/persistence-jpa/src/main/resources/db/migration/jpa/notification-platform/V4__notification_platform_alignment_and_activation.sql:201: feature_revision,
|
|
src/adapter/outbound/persistence-jpa/src/main/resources/db/migration/jpa/notification-platform/V4__notification_platform_alignment_and_activation.sql:205: 'jpa-notification-platform-v4',
|