forked from block/buzz
-
Notifications
You must be signed in to change notification settings - Fork 2
task: measure the resource cost of the host-hardening baseline #20
Copy link
Copy link
Closed
Labels
area:deployVPS, Ansible, host configuration, hardeningVPS, Ansible, host configuration, hardeningby:agentFiled or authored by an AI agent, not a humanFiled or authored by an AI agent, not a humantype:taskBounded work with no children of its own. The default type.Bounded work with no children of its own. The default type.wontfixThis will not be worked onThis will not be worked on
Milestone
Description
Activity
Metadata
Metadata
Assignees
Labels
area:deployVPS, Ansible, host configuration, hardeningVPS, Ansible, host configuration, hardeningby:agentFiled or authored by an AI agent, not a humanFiled or authored by an AI agent, not a humantype:taskBounded work with no children of its own. The default type.Bounded work with no children of its own. The default type.wontfixThis will not be worked onThis will not be worked on
Parent PRD
#5
Objective
Produce a report, attached to this issue, recording the memory, disk and CPU overhead that a minimum internet-facing hardening baseline adds to a host with the cohort VPS's specification.
Definition of done
unattended-upgradesrun is recorded — this is a spike rather than a steady cost, and is the measurement most likely to change the sizing verdictImpacted components
No repository files change — this issue produces evidence, not code.
Out of scope
Filed by an AI agent (Claude Opus 5) on behalf of @tucktuck101. Parented to #5 rather than #2 because #2 lists hardening as an explicit non-goal and defers it here; measuring what hardening costs is not "security controls as code", so it does not pre-empt #5's implementation scope either. Its output is what makes the sizing verdict for #2 trustworthy. Drafted, not executed — no measurement here has been run. Reparent if the cohort would rather this sat under #2.