Files
document-haness/docs/keycloak-session-store/final/.techviz/d4a-hook-effect/spec.json
T
DongHyeonkaandClaude Opus 5 95c0e680b5 docs(keycloak-session-store): take the sentences out of the diagram canvases
The skill says drawings carry names and sentences go in <desc> and the
paragraph beside the figure. I put sentences in node details and edge labels
instead, and 27 of the 28 diagrams shipped with prose inside the canvas —
"예측 다섯 개가 틀렸다", "아홉 번 조용히 실패했다", "막혀서 닿지 않는다".

Only label and details render on the canvas; description does not. So every
sentence moved to a noun phrase and the meaning stays in description, which
was already carrying it.

  막혀서 닿지 않는다              -> 차단
  아홉 번 조용히 실패했다         -> 조용한 실패 9건
  예측 다섯 개가 틀렸다           -> 틀린 예측 5건
  로그아웃이 정리하지 않는다      -> 로그아웃 미정리
  볼륨이 없으면 여기까지다        -> 볼륨 없음

Three node labels were sentences too and became names: 세션 스냅샷, 예측
선기록, 대조군 확보.

What stays is what the rules protect — identifiers, commands and measured
values: PRIMARY KEY (client_registration_id, principal_name),
ValidationFailedException: 1 changesets check sum, nginx -t && nginx -s
reload, SET LOCAL synchronous_commit TO OFF. Those are names of things, not
prose about them.

294 canvas strings across 28 diagrams, none matching a sentence ending,
average 11 characters. All 28 still lint clean and re-rendered.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
2026-09-05 11:50:33 +09:00

152 lines
4.4 KiB
JSON

{
"version": "1.1",
"id": "d4a-hook-effect",
"title": "훅 하나가 만드는 차이",
"question": "갱신을 서빙으로 잇는 자리는 무엇인가",
"type": "architecture",
"direction": "TB",
"audience": [
"인증서 자동 갱신을 운영하는 엔지니어"
],
"summary": "deploy 훅이 없으면 사람이 reload 할 때까지 옛 인증서를 서빙한다. 훅 하나로 그 구간이 1~2초가 된다.",
"alt": "certbot 이 갱신에 성공한 뒤 deploy 훅이 nginx 를 reload 하는 경로와, 그 훅이 없어 사람이 개입해야 하는 경로가 갈리는 구성.",
"long_description": "훅이 없을 때 새 인증서가 디스크에 기록된 08:20:27 과 실제로 서빙된 08:58:52 사이가 2305초였고, 그것도 사람이 nginx -s reload 를 쳤기 때문이다. deploy 훅을 넣자 발급에서 서빙까지 1~2초가 됐다. 판정은 문구가 아니라 워커 PID 로 한다. certbot 이 Hook 'deploy-hook' ran with error output 이라고 찍지만 실패가 아니며 nginx 의 types_hash 경고가 stderr 로 나갔을 뿐이다. 로그에서 error 를 grep 하는 감시는 성공한 훅을 실패로 오독한다.",
"source_context": {
"document": "docs/keycloak-session-store/final/document.md",
"document_sha256": "1d44cba1905544d92f1d26ae36a8deb64a3db3914d6b488fd30d6ae7f8cfbabe",
"anchor": {
"kind": "heading",
"value": "D-4 · D-4a — 인증서, 그리고 이 실험대 최대의 발견",
"line": 509
}
},
"composition": {
"profile": "component-flow",
"diagram_only": true,
"reference_ids": [
"payment-event-flow"
],
"rationale": "갱신과 서빙을 잇는 자리가 있는가 없는가가 지배적 질문이다. 경로의 유무이므로 component-flow 를 골랐다."
},
"groups": [],
"nodes": [
{
"id": "renew",
"label": "certbot 갱신 성공",
"kind": "process",
"role": "source",
"emphasis": "primary",
"description": "archive 에 쓰고 live 링크를 옮긴다.",
"details": [],
"evidence": [
{
"start_line": 560,
"end_line": 570
}
],
"assumption": false
},
{
"id": "hook",
"label": "deploy 훅",
"kind": "process",
"role": "control",
"emphasis": "primary",
"description": "갱신이 실제로 일어났을 때만 실행된다.",
"details": [
"nginx -t && nginx -s reload"
],
"evidence": [
{
"start_line": 560,
"end_line": 575
}
],
"assumption": false
},
{
"id": "worker",
"label": "nginx 워커 교체",
"kind": "process",
"role": "control",
"emphasis": "primary",
"description": "마스터는 유지되고 워커만 새로 뜬다.",
"details": [
"28829 → 37252"
],
"evidence": [
{
"start_line": 571,
"end_line": 580
}
],
"assumption": false
},
{
"id": "serving",
"label": "새 인증서 서빙",
"kind": "service",
"role": "target",
"emphasis": "primary",
"description": "훅이 없으면 사람이 칠 때까지 옛 것이다.",
"details": [
"훅 없음 2305초 · 훅 있음 1~2초"
],
"evidence": [
{
"start_line": 560,
"end_line": 580
}
],
"assumption": false
}
],
"edges": [
{
"id": "r-h",
"from": "renew",
"to": "hook",
"label": "갱신 성공 시 호출",
"kind": "request",
"evidence": [
{
"start_line": 560,
"end_line": 575
}
],
"assumption": false
},
{
"id": "h-w",
"from": "hook",
"to": "worker",
"label": "reload 신호",
"kind": "request",
"evidence": [
{
"start_line": 560,
"end_line": 580
}
],
"assumption": false
},
{
"id": "w-s",
"from": "worker",
"to": "serving",
"label": "새 인증서 적재",
"kind": "request",
"evidence": [
{
"start_line": 571,
"end_line": 580
}
],
"assumption": false
}
],
"legend": [],
"metadata": {
"rationale": "훅의 유무를 한 축에 놓고, 판정 신호를 워커 PID 로 명시했다. 로그 문구로 판정하면 틀린다."
}
}