Skip to content

feat(iot-client): add APP-confirmed OTA flow - #21

Merged
sedawwk merged 2 commits into
masterfrom
feat/app-ota
Aug 21, 2026
Merged

feat(iot-client): add APP-confirmed OTA flow#21
sedawwk merged 2 commits into
masterfrom
feat/app-ota

Conversation

@gaosq856

Copy link
Copy Markdown
Collaborator

Summary

  • Parse MQTT protocol 15 as an APP-confirmed OTA notice and expose a lightweight ota_confirm_callback to applications
  • Copy the callback config through direct initialization and both onboarding paths
  • Consume protocol 15 only when the callback is registered; otherwise preserve raw-message compatibility
  • Add a POSIX/macOS demo that uses activated credentials, waits for APP confirmation, then calls iot_ota_check_upgrade()
  • Do not add silent-upgrade scheduling; the SDK only reports the confirmation and the application performs OTA work

Testing

  • cmake --build build --target iot_message_test iot_ota_verify_test iot_ota_test
  • New protocol-15 callback/config unit tests pass (target name is iot_message_test)
  • iot_ota_verify_test passes
  • iot_ota_test compiles; runtime mock requires local pycryptodome, which was unavailable
  • Existing MQTT/TLS mock CONNECT failures remain unrelated and reproducible before this change
  • Built and ran examples/posix/ota-confirm/ota_confirm_demo on macOS against a cloud task configured for APP confirmation; received channel 0 and successfully fetched firmware metadata via upgrade.get

@sedawwk
sedawwk merged commit 75545c6 into master Aug 21, 2026
4 checks passed
@heshaoqiong-tuya
heshaoqiong-tuya deleted the feat/app-ota branch August 24, 2026 12:42
heshaoqiong-tuya added a commit that referenced this pull request Aug 27, 2026
Applies convention 6 to the section that motivated it: 619 lines down to 139.

The entries were commit bodies pasted under a heading — motivation, rejected
alternatives, test counts and internal reasoning, several running past fifty
lines for one change. All of that is still in the commits, which is where a
reader who wants it looks. What is left here is what a reader acts on: the
symbol, the behaviour change, the migration step.

Most entries now carry a PR number. They could not be recovered from git
history because these landed as squash or rebase merges, which leave no
"Merge pull request #N" commit; the closed-PR list on GitHub has them, and each
attribution was confirmed against that PR's own commit list rather than
inferred from a branch name. Four entries carry none because they were pushed
straight to master with no PR to cite.

Two merged PRs turned out to have no entry at all, and are added:

- #21, the APP-confirmed OTA (protocol 15) callback — a public callback on both
  config structs.
- #23, the sizable ATOP response buffer — user-visible, since the sizes are set
  with -D.

Three defects the rewrite surfaced, all from entries being appended rather than
amended as the work continued:

- Added and Fixed each appeared twice, and the second Fixed held Added-type
  material (the generic ATOP call). Merged into one of each, in the order Keep
  a Changelog defines, since release notes are generated from those headings.
- The auto-connect default was documented both ways: Changed said it is now on
  by default, while the connect/disconnect entry still said "The default stays
  false". The later change never revisited the earlier entry.
- The music-play demo was credited to #15, which is the region-wire-codes fix.
  It is #12.

Two entries are dropped rather than shortened: the mqtt_abort_connect()
extraction and a test-only over-read fix. Convention 2 scopes the CHANGELOG to
what SDK users see, and neither is visible outside the repo.

Rebased onto five commits that landed meanwhile, whose entries are folded in at
the new length: the session-token-reason API (#29), the reset scope (#28), the
POSIX binary renaming, and audio_chat_demo's header-shadowing and device-VAD
fixes.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
@heshaoqiong-tuya heshaoqiong-tuya mentioned this pull request Aug 27, 2026
heshaoqiong-tuya added a commit that referenced this pull request Aug 27, 2026
Applies convention 6 to the section that motivated it: 619 lines down to 139.

The entries were commit bodies pasted under a heading — motivation, rejected
alternatives, test counts and internal reasoning, several running past fifty
lines for one change. All of that is still in the commits, which is where a
reader who wants it looks. What is left here is what a reader acts on: the
symbol, the behaviour change, the migration step.

Most entries now carry a PR number. They could not be recovered from git
history because these landed as squash or rebase merges, which leave no
"Merge pull request #N" commit; the closed-PR list on GitHub has them, and each
attribution was confirmed against that PR's own commit list rather than
inferred from a branch name. Four entries carry none because they were pushed
straight to master with no PR to cite.

Two merged PRs turned out to have no entry at all, and are added:

- #21, the APP-confirmed OTA (protocol 15) callback — a public callback on both
  config structs.
- #23, the sizable ATOP response buffer — user-visible, since the sizes are set
  with -D.

Three defects the rewrite surfaced, all from entries being appended rather than
amended as the work continued:

- Added and Fixed each appeared twice, and the second Fixed held Added-type
  material (the generic ATOP call). Merged into one of each, in the order Keep
  a Changelog defines, since release notes are generated from those headings.
- The auto-connect default was documented both ways: Changed said it is now on
  by default, while the connect/disconnect entry still said "The default stays
  false". The later change never revisited the earlier entry.
- The music-play demo was credited to #15, which is the region-wire-codes fix.
  It is #12.

Two entries are dropped rather than shortened: the mqtt_abort_connect()
extraction and a test-only over-read fix. Convention 2 scopes the CHANGELOG to
what SDK users see, and neither is visible outside the repo.

Rebased onto five commits that landed meanwhile, whose entries are folded in at
the new length: the session-token-reason API (#29), the reset scope (#28), the
POSIX binary renaming, and audio_chat_demo's header-shadowing and device-VAD
fixes.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
heshaoqiong-tuya added a commit that referenced this pull request Aug 27, 2026
Applies convention 6 to the section that motivated it: 619 lines down to 139.

The entries were commit bodies pasted under a heading — motivation, rejected
alternatives, test counts and internal reasoning, several running past fifty
lines for one change. All of that is still in the commits, which is where a
reader who wants it looks. What is left here is what a reader acts on: the
symbol, the behaviour change, the migration step.

Most entries now carry a PR number. They could not be recovered from git
history because these landed as squash or rebase merges, which leave no
"Merge pull request #N" commit; the closed-PR list on GitHub has them, and each
attribution was confirmed against that PR's own commit list rather than
inferred from a branch name. Four entries carry none because they were pushed
straight to master with no PR to cite.

Two merged PRs turned out to have no entry at all, and are added:

- #21, the APP-confirmed OTA (protocol 15) callback — a public callback on both
  config structs.
- #23, the sizable ATOP response buffer — user-visible, since the sizes are set
  with -D.

Three defects the rewrite surfaced, all from entries being appended rather than
amended as the work continued:

- Added and Fixed each appeared twice, and the second Fixed held Added-type
  material (the generic ATOP call). Merged into one of each, in the order Keep
  a Changelog defines, since release notes are generated from those headings.
- The auto-connect default was documented both ways: Changed said it is now on
  by default, while the connect/disconnect entry still said "The default stays
  false". The later change never revisited the earlier entry.
- The music-play demo was credited to #15, which is the region-wire-codes fix.
  It is #12.

Two entries are dropped rather than shortened: the mqtt_abort_connect()
extraction and a test-only over-read fix. Convention 2 scopes the CHANGELOG to
what SDK users see, and neither is visible outside the repo.

Rebased onto five commits that landed meanwhile, whose entries are folded in at
the new length: the session-token-reason API (#29), the reset scope (#28), the
POSIX binary renaming, and audio_chat_demo's header-shadowing and device-VAD
fixes.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
sedawwk pushed a commit that referenced this pull request Aug 27, 2026
* docs: require terse CHANGELOG entries with a PR number

The Unreleased section had drifted into commit bodies pasted under a heading:
single entries running fifteen-plus lines through motivation, rejected
alternatives and test counts. That is the right material, in the wrong file --
release notes are skimmed, and a reader who wants the reasoning goes to the
commit.

Convention 2 already said *when* an entry is needed; this says what it should
look like. `## [0.3.0]` is named as the reference because it is the last section
written that way: one line per change, sub-bullets only for specifics a reader
acts on.

Two things the section had also been losing: the PR number, which is the only
link from a one-line summary back to the reasoning, and the Added / Changed /
Fixed split, which release notes are generated from -- a fix landing under Added
is published as a feature.

No CHANGELOG entry for this commit, per convention 2: repo-internal, and this
file is explicitly excluded.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>

* docs(changelog): condense Unreleased to the new convention

Applies convention 6 to the section that motivated it: 619 lines down to 139.

The entries were commit bodies pasted under a heading — motivation, rejected
alternatives, test counts and internal reasoning, several running past fifty
lines for one change. All of that is still in the commits, which is where a
reader who wants it looks. What is left here is what a reader acts on: the
symbol, the behaviour change, the migration step.

Most entries now carry a PR number. They could not be recovered from git
history because these landed as squash or rebase merges, which leave no
"Merge pull request #N" commit; the closed-PR list on GitHub has them, and each
attribution was confirmed against that PR's own commit list rather than
inferred from a branch name. Four entries carry none because they were pushed
straight to master with no PR to cite.

Two merged PRs turned out to have no entry at all, and are added:

- #21, the APP-confirmed OTA (protocol 15) callback — a public callback on both
  config structs.
- #23, the sizable ATOP response buffer — user-visible, since the sizes are set
  with -D.

Three defects the rewrite surfaced, all from entries being appended rather than
amended as the work continued:

- Added and Fixed each appeared twice, and the second Fixed held Added-type
  material (the generic ATOP call). Merged into one of each, in the order Keep
  a Changelog defines, since release notes are generated from those headings.
- The auto-connect default was documented both ways: Changed said it is now on
  by default, while the connect/disconnect entry still said "The default stays
  false". The later change never revisited the earlier entry.
- The music-play demo was credited to #15, which is the region-wire-codes fix.
  It is #12.

Two entries are dropped rather than shortened: the mqtt_abort_connect()
extraction and a test-only over-read fix. Convention 2 scopes the CHANGELOG to
what SDK users see, and neither is visible outside the repo.

Rebased onto five commits that landed meanwhile, whose entries are folded in at
the new length: the session-token-reason API (#29), the reset scope (#28), the
POSIX binary renaming, and audio_chat_demo's header-shadowing and device-VAD
fixes.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>

---------

Co-authored-by: Claude Opus 5 (1M context) <noreply@anthropic.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants