Skip to content

Add auto-healing SCM options with progressive cooling off - #696

Merged
markgalvan-intel merged 1 commit into
mainfrom
feature/auto-regen-service
Oct 5, 2026
Merged

markgalvan-intel merged 1 commit into
mainfrom
feature/auto-regen-service

Conversation

@planetchili

Copy link
Copy Markdown
Collaborator

No description provided.

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot review overview

🟢 Approval recommended

The recovery configuration, argument handling, diagnostics, and documentation are consistent and complete.

Review effort: Balanced
Findings: None

What changed in this PR

Adds Windows SCM crash recovery with progressive restart delays and recovery diagnostics.

Changes:

  • Configures four delayed recovery attempts before remaining stopped.
  • Passes and logs the SCM failure count.
  • Corrects reset-event creation validation and documents recovery behavior.
File Description
README-Service.md Documents recovery timing and client behavior.
ServiceMain.cpp Logs recovery failure counts.
Service.cpp Corrects event-handle validation.
CliOptions.h Adds the recovery-count option.
Library.wxs Configures SCM recovery actions.

💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.

@markgalvan-intel markgalvan-intel left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Nice robustness improvement! Great stuff.

@markgalvan-intel
markgalvan-intel merged commit 38ec4a7 into main Oct 5, 2026
1 check passed
@markgalvan-intel
markgalvan-intel deleted the feature/auto-regen-service branch October 5, 2026 22:26
markgalvan-intel added a commit that referenced this pull request Oct 9, 2026
Brings in #692 (CETCOMPAT), #694 (service unavailable crash), #696 (SCM
auto-healing), #697 (IGCL ctlPowerTelemetryGetV2) and #698 (action pipe
hardening). #698 was written against the two-pipe transport that this
branch replaces, so its changes are carried over by intent:

- Service control pipe DACL (SY full, AU connect mask only): kept, with the
  mandatory label raised from LW to ME so processes below medium integrity
  cannot connect. AU in the DACL does not imply an integrity level.
- Exact client connect access mask: kept unchanged.
- Private control pipe DACL and --control-pipe-allow-au-clients: kept.
- Shared service identity verification in the middleware: kept.
  ResolveConnectedServerProcessId reads the single pipe instead of comparing
  two legs; the middleware uses the client's existing SessionConnector_.
  The middleware contexts move to MiddlewareExecutionContext.h with this
  branch's remotePid-only session context.
- Accept loop robustness: this branch already replaces a listener after
  every accept. Ported the retry: a listener that cannot be created, or that
  fails to accept for a reason other than a vanished client, is replaced
  after 200 ms instead of shrinking the pool or spinning the io thread.
- Removed the SecurityMode::Service and SecurityMode::Child strings, which
  no longer have users.
- Fixed helpers that auto-merged into SymmetricActionClient.h referring to
  members of the old client.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants