<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Reference on Barn</title>
    <link>https://barn.pgsty.com/docs/reference/</link>
    <description>Recent content in Reference on Barn</description>
    <generator>Hugo</generator>
    <language>en-US</language>
    
    
    
      <lastBuildDate>Mon, 01 Jan 0001 00:00:00 +0000</lastBuildDate>
    
    
      <atom:link href="https://barn.pgsty.com/docs/reference/index.xml" rel="self" type="application/rss+xml" />
    
    <item>
        <title>Configuration</title>
        <link>https://barn.pgsty.com/docs/reference/configuration/</link>
        <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
        
        <guid>https://barn.pgsty.com/docs/reference/configuration/</guid>
        <description>&lt;p&gt;This reference describes the &lt;strong&gt;Barn 0.9.0 release candidate&lt;/strong&gt;. Barn uses only&#xA;the new names and fresh Barn state; it has no compatibility or migration layer&#xA;for earlier development builds. Check &lt;code&gt;barn version&lt;/code&gt; before scripting against&#xA;these contracts. See the &lt;a href=&#34;../../about/status/#documentation-baseline&#34;&gt;release status&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;h2 id=&#34;discovery&#34;&gt;Discovery&#xA;&lt;/h2&gt;&#xA;&lt;p&gt;Configuration lookup order is explicit &lt;code&gt;-f&lt;/code&gt;, then &lt;code&gt;barn.yml&lt;/code&gt;,&#xA;&lt;code&gt;barn.yaml&lt;/code&gt;, &lt;code&gt;pigsty.yml&lt;/code&gt;, and &lt;code&gt;pigsty.yaml&lt;/code&gt; in the current directory. Every&#xA;name uses the same Pigsty-compatible YAML Inventory format.&lt;/p&gt;</description>
      </item>
    <item>
        <title>CLI</title>
        <link>https://barn.pgsty.com/docs/reference/cli/</link>
        <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
        
        <guid>https://barn.pgsty.com/docs/reference/cli/</guid>
        <description>&lt;p&gt;This reference describes the &lt;strong&gt;Barn 0.9.0 release candidate&lt;/strong&gt;. Barn uses only&#xA;the new names and fresh Barn state; it has no compatibility or migration layer&#xA;for earlier development builds. Check &lt;code&gt;barn version&lt;/code&gt; before scripting against&#xA;these contracts. See the &lt;a href=&#34;../../about/status/#documentation-baseline&#34;&gt;release status&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;div class=&#34;td-code td-code--untitled&#34; id=&#34;td-code-9455d335-fence-0&#34; data-td-code data-td-code-auto-id&#xA;     data-td-language=&#34;text&#34; data-td-line-count=&#34;1&#34;&gt;&#xA;  &lt;div class=&#34;td-code__viewport&#34; id=&#34;td-code-9455d335-fence-0-viewport&#34; data-td-code-viewport&gt;&lt;div class=&#34;highlight&#34;&gt;&lt;pre tabindex=&#34;0&#34; class=&#34;chroma&#34;&gt;&lt;code class=&#34;language-text&#34; data-lang=&#34;text&#34;&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;barn [--json|--yaml] [-v|--verbose] &amp;lt;command&amp;gt; [flags] [node...]&lt;/span&gt;&lt;/span&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/div&gt;&lt;/div&gt;&#xA;&lt;/div&gt;&#xA;&lt;p&gt;The installed binary is the authoritative reference for its own version. Every&#xA;visible command includes its operational boundary and copyable examples:&lt;/p&gt;</description>
      </item>
    <item>
        <title>Mac Commands</title>
        <link>https://barn.pgsty.com/docs/reference/mac/</link>
        <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
        
        <guid>https://barn.pgsty.com/docs/reference/mac/</guid>
        <description>&lt;div class=&#34;td-callout td-callout--important&#34; role=&#34;note&#34;&gt;&#xA;  &lt;div class=&#34;td-callout__title&#34;&gt;&lt;i class=&#34;td-callout__icon fa-solid fa-circle-exclamation&#34; aria-hidden=&#34;true&#34;&gt;&lt;/i&gt;&lt;span class=&#34;td-callout__label&#34;&gt;Important&lt;/span&gt;&lt;/div&gt;&#xA;  &lt;div class=&#34;td-callout__body&#34;&gt;&#xA;&lt;p&gt;&lt;strong&gt;Barn 0.9.0 release candidate; unreleased.&lt;/strong&gt; This page describes the renamed&#xA;&lt;code&gt;barn mac&lt;/code&gt;, which uses fresh Barn state and provides no development-state&#xA;migration. Earlier native records are retained in &lt;a href=&#34;../../about/status/#macos-guests&#34;&gt;Status&lt;/a&gt;&#xA;and do not establish the same acceptance for the renamed build. Check the&#xA;&lt;code&gt;barn mac --help&lt;/code&gt; of the binary you run.&lt;/p&gt;&#xA;  &lt;/div&gt;&#xA;&lt;/div&gt;&lt;div class=&#34;td-code td-code--untitled&#34; id=&#34;td-code-13c8229b-fence-0&#34; data-td-code data-td-code-auto-id&#xA;     data-td-language=&#34;text&#34; data-td-line-count=&#34;1&#34;&gt;&#xA;  &lt;div class=&#34;td-code__viewport&#34; id=&#34;td-code-13c8229b-fence-0-viewport&#34; data-td-code-viewport&gt;&lt;div class=&#34;highlight&#34;&gt;&lt;pre tabindex=&#34;0&#34; class=&#34;chroma&#34;&gt;&lt;code class=&#34;language-text&#34; data-lang=&#34;text&#34;&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;barn [--json|--yaml] [-v|--verbose] mac &amp;lt;command&amp;gt; [flags] [name...]&lt;/span&gt;&lt;/span&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/div&gt;&lt;/div&gt;&#xA;&lt;/div&gt;&#xA;&lt;p&gt;&lt;code&gt;barn mac&lt;/code&gt; requires Apple Silicon and macOS 27 or later, and runs as the&#xA;logged-in user; it refuses to run as root. On other hosts the command is&#xA;hidden, and commands that need the Mac component fail with&#xA;&lt;code&gt;mac_host_unsupported&lt;/code&gt;. Bare &lt;code&gt;barn mac&lt;/code&gt; is &lt;code&gt;barn mac ls&lt;/code&gt;.&lt;/p&gt;</description>
      </item>
    <item>
        <title>Images</title>
        <link>https://barn.pgsty.com/docs/reference/images/</link>
        <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
        
        <guid>https://barn.pgsty.com/docs/reference/images/</guid>
        <description>&lt;p&gt;Barn uses a materialized static-file Catalog plus immutable qcow2 artifacts.&#xA;Official and HTTP Catalogs are signed; explicitly selected local and HTTPS&#xA;repositories may be unsigned. A Catalog update does not require a new Barn&#xA;binary, but the binary decides which signing keys and image safety rules are&#xA;trusted.&lt;/p&gt;&#xA;&lt;div class=&#34;td-callout td-callout--warning&#34; role=&#34;note&#34;&gt;&#xA;  &lt;div class=&#34;td-callout__title&#34;&gt;&lt;i class=&#34;td-callout__icon fa-solid fa-triangle-exclamation&#34; aria-hidden=&#34;true&#34;&gt;&lt;/i&gt;&lt;span class=&#34;td-callout__label&#34;&gt;Warning&lt;/span&gt;&lt;/div&gt;&#xA;  &lt;div class=&#34;td-callout__body&#34;&gt;&#xA;&lt;p&gt;EL7, EL9 9.3/9.6, and EL10 10.0 are &lt;code&gt;deprecated&lt;/code&gt; compatibility images. All&#xA;other built-in versions are &lt;code&gt;supported&lt;/code&gt;.&lt;/p&gt;&#xA;  &lt;/div&gt;&#xA;&lt;/div&gt;&lt;h2 id=&#34;aliases-and-pull-order&#34;&gt;Aliases and pull order&#xA;&lt;/h2&gt;&#xA;&lt;p&gt;Barn 0.9.0 embeds Catalog &lt;code&gt;2026092001&lt;/code&gt;: 9 families and 37 artifacts, retaining&#xA;all 27 artifacts from the previous Catalog. &lt;code&gt;el7&lt;/code&gt; is amd64-only; every other&#xA;family has amd64 and arm64 artifacts. EL9 includes 9.3, 9.6, 9.7, and 9.8;&#xA;EL10 includes 10.0, 10.1, and 10.2. &lt;code&gt;u24:stable&lt;/code&gt; (Ubuntu 24.04) on the native&#xA;architecture is the default request.&lt;/p&gt;</description>
      </item>
    <item>
        <title>Image Pipeline</title>
        <link>https://barn.pgsty.com/docs/reference/image-pipeline/</link>
        <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
        
        <guid>https://barn.pgsty.com/docs/reference/image-pipeline/</guid>
        <description>&lt;p&gt;The low-level &lt;code&gt;packaging/image-pipeline/build.sh&lt;/code&gt; accepts one already-downloaded&#xA;immutable qcow2 and an independently obtained SHA-256. It never downloads,&#xA;uploads, touches Barn runtime/network state, reads signing keys, or marks an&#xA;image &lt;code&gt;supported&lt;/code&gt;.&lt;/p&gt;&#xA;&lt;p&gt;Run these commands from the Barn source checkout. Python 3 and &lt;code&gt;qemu-img&lt;/code&gt;&#xA;are required; &lt;code&gt;offline&lt;/code&gt; additionally needs working &lt;code&gt;virt-customize&lt;/code&gt; and&#xA;&lt;code&gt;virt-cat&lt;/code&gt; tools from libguestfs. These are build-host dependencies, separate&#xA;from the dependencies that &lt;code&gt;barn setup&lt;/code&gt; installs for running VMs.&lt;/p&gt;&#xA;&lt;h2 id=&#34;modes&#34;&gt;Modes&#xA;&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;code&gt;validate&lt;/code&gt;: copy/re-hash, force qcow2 inspection, validate the single backing&#xA;chain, run &lt;code&gt;qemu-img check&lt;/code&gt;, and emit an explicitly unpublishable evidence&#xA;bundle. Guest credentials are not changed.&lt;/li&gt;&#xA;&lt;li&gt;&lt;code&gt;offline&lt;/code&gt;: additionally use libguestfs &lt;code&gt;virt-customize --no-network&lt;/code&gt; and&#xA;&lt;code&gt;virt-cat&lt;/code&gt; on the staged copy. It rejects unrelated UID/GID 88 occupants,&#xA;normalizes the locked &lt;code&gt;dba&lt;/code&gt;/&lt;code&gt;admin&lt;/code&gt; identity, disables password/root SSH,&#xA;removes keys/history/host identity/cloud-init cache, restores targeted SELinux&#xA;labels, and reads back a deterministic marker.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;h2 id=&#34;official-candidate-matrix&#34;&gt;Official candidate matrix&#xA;&lt;/h2&gt;&#xA;&lt;p&gt;&lt;code&gt;build-official.py&lt;/code&gt; wraps the same offline boundary for a fixed eight-target&#xA;matrix: Debian 12/13 and Rocky Linux 8/9, each on amd64 and arm64. Every&#xA;upstream qcow2, RPM/DEB input, release name, digest, and source epoch is pinned&#xA;in &lt;code&gt;official-v1.json&lt;/code&gt;.&lt;/p&gt;</description>
      </item>
    
  </channel>
</rss>
