docs: add node infrastructure concept page (Batch 2)#210
docs: add node infrastructure concept page (Batch 2)#210marc0olo merged 9 commits intoinfra/learn-hub-migration-prepfrom
Conversation
|
Review notes Content and links look good. One soft dependency to note: Dependency on #209: The "Further reading" section links to No other issues: no banned patterns, frontmatter complete, Learn Hub TEE link correctly replaced with the internal |
|
Two items to address before merging: 1. Em-dash on line 89 (banned project-wide) The "Further reading" bullet uses an em-dash, which is banned per project style rules: Fix: 2. Soft dependency on PR #209 The link to |
|
Brand voice audit applied. The following fixes were committed in 7fe7c79: Fixed automatically:
No other brand issues found: no blockchain comparisons, no em-dashes, no "reverse gas model", no DAO, no "on-chain"/"cross-chain"/"full-stack" with hyphens, no "token" used as a primary descriptor. |
dabad66 to
d191270
Compare
30ded57 to
20c2520
Compare
|
After PR #209 merges:
|
Migrates two Learn Hub articles from the "Node Infrastructure" section into a single docs/concepts/node-infrastructure.md page covering the IC-OS stack (SetupOS, HostOS, GuestOS) and TEE fundamentals (SEV-SNP memory encryption, VM launch measurements, attestation, and sealing keys). Updates docs/concepts/https-outcalls.md: replaces Learn Hub TEE link with the new internal path and removes a stale Learn Hub further-reading entry.
- Expand NNS to "Network Nervous System (NNS)" on first occurrence - Replace "untrusted workload" with "untrusted process" (workload is banned vocabulary)
…m Learn Hub Adds three missing images (TEE overview, attestation report, key derivation diagrams). Restores content dropped during initial migration: node-to-node and external attestation paths, encrypted partition names (var/store vs boot/root/config), HKDF/LUKS key derivation, detailed GuestOS upgrade process with Upgrade VM and mutual attestation, and the full emergency recovery section covering manual rollback and the governance-gated Recovery-GuestOS mechanism.
… encryption history, and full recovery steps Adds the disk partition layout table (showing which partitions are encrypted and why), the upgrade-vs-recovery-image comparison table, the traditional-vs-sealing-key disk encryption context, the full 7-step manual rollback and Recovery-GuestOS numbered processes, and the four-feature overview list. Completes the full Learn Hub TEE article migration.
f5c8839 to
bcbf7f3
Compare
…urther reading link Adds node-infrastructure after app-architecture in the explicit Concepts sidebar (now that PR #209 has merged). Restores the Protocol Stack further reading link that was blocked during cross-branch validation.
Summary
docs/concepts/node-infrastructure.mdwith full migration of two Learn Hub articles: IC-OS overview (SetupOS, HostOS, GuestOS) and Trusted Execution Environmentstee-overview.jpg), SEV-SNP attestation report diagram (tee-attestation-report.svg), SEV-SNP key derivation diagram (tee-key-derivation.svg)concepts/node-infrastructureto the explicit Concepts sidebar afterapp-architecturedocs/concepts/https-outcalls.md: replaces the Learn Hub TEE link with the new internal path; removes a stale Learn Hub further-reading link for the skipped HTTPS Outcalls articleStaging files deleted
.migration/learn-hub/how-does-icp-work/node-infrastructure/overview.md→docs/concepts/node-infrastructure.md.migration/learn-hub/how-does-icp-work/node-infrastructure/trusted-execution-environments.md→docs/concepts/node-infrastructure.md#trusted-execution-environmentsSync recommendation
hand-written