Problem: "Hermes" collides with Nous Researchs unrelated product; unclear identity for the resident agent. Change: Rename the live service identity across 39 files: - cmd/hermes/ → cmd/nomos/ (binary, env vars NOMOS_*) - internal/config/ server.go (NomosAgentSlug, nomosAgentID) - compose/hermes/ → compose/nomos/ (Dockerfile, service name) - hermes/ → nomos/ (SOUL.md, config.yaml, skills/) - .agents/HERMES.md → NOMOS.md (persona) - tools/setup-hermes-soul.sh → setup-nomos-soul.sh - seeds/inventory.yaml (agent:hermes → agent:nomos) - migrations/014_rename_agent_hermes_to_nomos.up.sql - Caddy vhost hermes.hubris.network → nomos.hubris.network - All referencing docs, scripts, ADR notes History preserved: archive/, plans/done/, ADRs not rewritten. Matrix @hermes notifier account and Legacy bin/hermes on LXC 129 intentionally untouched (out of scope). Risk: N0 is identity-only rename; zero behavioral changes. Verification: go build ./... passes; docker compose --profile full resolves nomos service; grep -ri hermes (excluding archive/plans) returns only intentional refs (LLM model name, Matrix user).
29 lines
822 B
Caddyfile
29 lines
822 B
Caddyfile
# Caddy reverse-proxy snippet for Oikos — Phase 6 cutover
|
|
# Lives in dtoro/caddy-conf repo; auto-deploys to caddy (LXC 121).
|
|
# Replaces the old MCP server on apps/105 with the Docker stack on mac-mini.
|
|
|
|
# Oikos REST API (operator) — enrollment endpoint bypasses Authentik
|
|
oikos.hubris.network {
|
|
tls {
|
|
dns ionos {env.IONOS_AUTH_API_TOKEN}
|
|
}
|
|
@enroll path /api/v1/clients/enroll
|
|
handle @enroll {
|
|
reverse_proxy <mac-mini-mesh-ip>:8090
|
|
}
|
|
handle {
|
|
import authentik
|
|
reverse_proxy <mac-mini-mesh-ip>:8090
|
|
}
|
|
}
|
|
|
|
# Oikos MCP endpoint (agents) — no auth required
|
|
mcp.hubris.network {
|
|
reverse_proxy <mac-mini-mesh-ip>:8090
|
|
}
|
|
|
|
# Nomos gateway (workstation access) — formerly hermes.hubris.network
|
|
nomos.hubris.network {
|
|
reverse_proxy <mac-mini-mesh-ip>:8092
|
|
}
|