Build the production image where the Erlang VM can actually run `ops/deploy/build-image.sh` builds the amd64 image and then runs it to check that its packaged revision equals the Git SHA. On an Apple Silicon machine that run happens under amd64 emulation, and the Erlang VM cannot start there — it dies at kernel start with `failed_to_start_child,user,nouser`, reproducible on the bare `hexpm/elixir` base image and unaffected by `-noinput` or `TERM=dumb`. So the local path cannot produce a production image on such a machine at all. Earlier builds only appeared to work because the layer was cached; a Docker restart cleared the cache and the wall appeared. Cloud Build workers are native amd64, so the build and the check run for real. The check is kept rather than dropped to get past the wall. The three refusals before the build exist because skipping them cost a deploy. The first attempt ran `gcloud builds submit .` after a `cd` that had silently failed, so it uploaded a checkout one commit behind with untracked files, and tagged the result with the SHA that was asked for. The packaged-revision check did not catch it: the revision is passed in as a build argument, so it reported the SHA it was told regardless of the source. A build argument can only confirm what it was handed — what the source actually is has to be checked before a build is spent on it. This registry has tag immutability, so the wrong image could not be replaced and that SHA is unusable forever. Hence the third check: refuse when the tag already exists, rather than discovering it at push time.
Build the production image where the Erlang VM can actually run
Deploy story
What this commit did to the running system — joined from the forge receipt chain, the part a commit page elsewhere cannot show.
- pushed
- by user · WAL seq 443 · 2026-08-26T09:12:11.405000Z
- built
- 8 modules in 39.3 s
- deployed
- live · 8 modules on 3 nodes · push→live —
- deployed
- needs_rolling_replace · 8 modules on 0 nodes · push→live —
Changed files
-
added
ops/deploy/build-image-cloud.sh
Diff
1 file changed, +157 -0
ops/deploy/build-image-cloud.sh added +157
@@ -0,0 +1,157 @@
| 1 |
|
|
| 2 |
|
|
| 3 |
|
|
| 4 |
|
|
| 5 |
|
|
| 6 |
|
|
| 7 |
|
|
| 8 |
|
|
| 9 |
|
|
| 10 |
|
|
| 11 |
|
|
| 12 |
|
|
| 13 |
|
|
| 14 |
|
|
| 15 |
|
|
| 16 |
|
|
| 17 |
|
|
| 18 |
|
|
| 19 |
|
|
| 20 |
|
|
| 21 |
|
|
| 22 |
|
|
| 23 |
|
|
| 24 |
|
|
| 25 |
|
|
| 26 |
|
|
| 27 |
|
|
| 28 |
|
|
| 29 |
|
|
| 30 |
|
|
| 31 |
|
|
| 32 |
|
|
| 33 |
|
|
| 34 |
|
|
| 35 |
|
|
| 36 |
|
|
| 37 |
|
|
| 38 |
|
|
| 39 |
|
|
| 40 |
|
|
| 41 |
|
|
| 42 |
|
|
| 43 |
|
|
| 44 |
|
|
| 45 |
|
|
| 46 |
|
|
| 47 |
|
|
| 48 |
|
|
| 49 |
|
|
| 50 |
|
|
| 51 |
|
|
| 52 |
|
|
| 53 |
|
|
| 54 |
|
|
| 55 |
|
|
| 56 |
|
|
| 57 |
|
|
| 58 |
|
|
| 59 |
|
|
| 60 |
|
|
| 61 |
|
|
| 62 |
|
|
| 63 |
|
|
| 64 |
|
|
| 65 |
|
|
| 66 |
|
|
| 67 |
|
|
| 68 |
|
|
| 69 |
|
|
| 70 |
|
|
| 71 |
|
|
| 72 |
|
|
| 73 |
|
|
| 74 |
|
|
| 75 |
|
|
| 76 |
|
|
| 77 |
|
|
| 78 |
|
|
| 79 |
|
|
| 80 |
|
|
| 81 |
|
|
| 82 |
|
|
| 83 |
|
|
| 84 |
|
|
| 85 |
|
|
| 86 |
|
|
| 87 |
|
|
| 88 |
|
|
| 89 |
|
|
| 90 |
|
|
| 91 |
|
|
| 92 |
|
|
| 93 |
|
|
| 94 |
|
|
| 95 |
|
|
| 96 |
|
|
| 97 |
|
|
| 98 |
|
|
| 99 |
|
|
| 100 |
|
|
| 101 |
|
|
| 102 |
|
|
| 103 |
|
|
| 104 |
|
|
| 105 |
|
|
| 106 |
|
|
| 107 |
|
|
| 108 |
|
|
| 109 |
|
|
| 110 |
|
|
| 111 |
|
|
| 112 |
|
|
| 113 |
|
|
| 114 |
|
|
| 115 |
|
|
| 116 |
|
|
| 117 |
|
|
| 118 |
|
|
| 119 |
|
|
| 120 |
|
|
| 121 |
|
|
| 122 |
|
|
| 123 |
|
|
| 124 |
|
|
| 125 |
|
|
| 126 |
|
|
| 127 |
|
|
| 128 |
|
|
| 129 |
|
|
| 130 |
|
|
| 131 |
|
|
| 132 |
|
|
| 133 |
|
|
| 134 |
|
|
| 135 |
|
|
| 136 |
|
|
| 137 |
|
|
| 138 |
|
|
| 139 |
|
|
| 140 |
|
|
| 141 |
|
|
| 142 |
|
|
| 143 |
|
|
| 144 |
|
|
| 145 |
|
|
| 146 |
|
|
| 147 |
|
|
| 148 |
|
|
| 149 |
|
|
| 150 |
|
|
| 151 |
|
|
| 152 |
|
|
| 153 |
|
|
| 154 |
|
|
| 155 |
|
|
| 156 |
|
|
| 157 |
|