Files
windmill/backend
Ruben Fiszel c69dd024e4 test(sandbox_setup): add nsjail integration tests, fix overlay mount ordering
Add 6 nsjail integration tests that verify actual sandbox execution:
- basic bash execution
- volume read (bind-mount data into sandbox)
- volume write-back (sandbox writes to bind-mounted volume)
- overlay root (snapshot rootfs as sandbox root)
- overlay root + volume mount combined
- result.json output from sandbox

Fix a bug in finalize_nsjail_config where the overlay root mount
(dst: "/") was placed last in the config (via {SHARED_MOUNT}). nsjail
applies mounts in order, so a root bind mount after tmpfs/bind mounts
would overwrite them. The root mount is now moved to be the first mount
block, ensuring subsequent mounts layer correctly on top.

Also add 2 #[ignore] tests for mount_overlay (needs root) and
build_snapshot (needs crane CLI).

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
2026-02-17 19:01:57 +00:00
..
2026-02-16 23:36:41 +00:00
2026-01-09 07:29:07 +00:00
2026-02-12 12:16:23 +00:00
2026-02-05 14:24:29 +00:00
2026-02-10 23:34:15 +00:00
2026-02-16 16:39:59 +00:00
2026-02-16 23:36:41 +00:00
2025-10-23 20:15:34 +00:00
2026-02-12 18:49:50 +00:00
2026-02-12 13:19:05 +00:00

Windmill Backend

This folder holds all backend components, the src/ folder only contains files used to build the "root" binary.

Components

name description
windmill-api The API server, exposing functionality to other components and the frontend
windmill-audit Contains audit functionality, allowing different components to record important actions
windmill-common Common code shared by all crates
windmill-queue Contains job & flow queuing functionality, commonly written to by the API server and read from by workers
windmill-worker The worker. Used to process and execute flows & jobs.
parsers Contains code to parse signatures in different langauges.

Compile sqlx for offline ci

cargo sqlx prepare --workspace -- --bin windmill --features enterprise