Skip to content

Fix LXC schema drift guard - #1323

Closed
Huzaifa Danish (huzaifa-d) wants to merge 1 commit into
mainfrom
user/modanish/fix-lxc-schema-drift
Closed

Huzaifa Danish (huzaifa-d) wants to merge 1 commit into
mainfrom
user/modanish/fix-lxc-schema-drift

Conversation

@huzaifa-d

@huzaifa-d Huzaifa Danish (huzaifa-d) commented Sep 29, 2026 •

Copy link
Copy Markdown
Contributor

Ignore version-derived $schema metadata in the LXC legacy v0.8 fixture drift check.

Microsoft Reviewers: Open in CodeFlow

Copilot AI balanced review requested due to automatic review settings September 29, 2026 16:59
@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines:
There may be pipelines that require an authorized user to comment /azp run to run.

Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com>
@huzaifa-d
Huzaifa Danish (huzaifa-d) force-pushed the user/modanish/fix-lxc-schema-drift branch from 7570fb5 to ba5b649 Compare September 29, 2026 17:00

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot review overview

🔵 Needs a closer look

The Hyperlight fallback can miss denied dangling symlinks, and the security-sensitive work is outside the documented PR scope.

Review effort: Balanced
Findings: None

What changed in this PR

Updates the LXC v0.8 fixture drift guard, while also introducing an undocumented Hyperlight policy change.

Changes:

  • Ignores version-derived $schema metadata during fixture comparison.
  • Adds cross-platform Hyperlight denied-path overlap detection and tests.
  • Introduces a non-Windows dangling-symlink enforcement gap.
File Description
tests/​scripts/​run_lxc_network_legacy_v08_compat_test.sh Excludes $schema from fixture drift checks.
src/​backends/​hyperlight/​common/​src/​lib.rs Expands denied-path overlap validation and coverage.

💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.

@huzaifa-d
Huzaifa Danish (huzaifa-d) marked this pull request as ready for review September 29, 2026 17:02
Copilot AI review requested due to automatic review settings September 29, 2026 17:02
@huzaifa-d
Huzaifa Danish (huzaifa-d) requested a review from a team as a code owner September 29, 2026 17:02

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot review overview

🟢 Approval recommended

The normalization correctly isolates behavioral fixture differences while ignoring version-derived metadata.

Review effort: Balanced
Findings: None

@theelliotm

Copy link
Copy Markdown
Contributor

Resolved in #1316

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants