v26.1-Alpha.7 — Audit identity + log filtering
Pre-release
Pre-release
·
4 commits
to v26.1
since this release
BCDebugJavaAgent v26.1-Alpha.7
Pre-Release — Alpha builds are functional but unstable. Do not run in production environments.
Highlights
Audit & observability hardening:
- Audit records now carry the caller address (
remote), and failed
authorizations are audited asop=auth-failwith the probed path — every
unauthorized touch of the control plane leaves a trace. /exportis audited (op=export) on both frontends./logsgains filters on both frontends:level(severity floor),
contains(message substring),limit— newest-first output./statusnow exposesmutedPrefixescount andtokenEnabledvisibility.
Validation
Live on MC 1.21.1 dedicated server with httpToken=tokA7:
| Check | Result |
|---|---|
| No token | 401 |
| Bad token | 401 |
| Good token | 200 + tokenEnabled:true, mutedPrefixes:0 |
| Auth-fail audit | 31 records with remote:"/127.0.0.1:xxxxx" |
/logs?level=INFO&contains=mappings |
mapping chain rows returned |
/logs?level=WARN&contains=mappings |
0 rows (correct severity floor) |
/logs?contains=tick |
DEBUG ServerLevel tick rows |
54 unit tests green.
Build Information
| Item | Value |
|---|---|
| Artifact | bcdebug-javaagent-v26.1-Alpha.7.jar (bytecode 52 — JDK 8+) |
| Commit | 5070464 (SSH-signed, Verified) |
| Tag | v26.1-Alpha.7 (SSH-signed, Verified) |
安装说明(中文)
- 下载
bcdebug-javaagent-v26.1-Alpha.7.jar。 - 令牌请求示例:
/status?token=<secret>或头X-BCDebug-Token: <secret>。 - 鉴权失败将进入审计(含来源地址);
/logs支持level/contains/limit。 - Alpha 版本不稳定,请勿用于生产环境。
MIT License — Copyright (c) 2026 BlockConnect