The disable-firewall-prompts step in recipes/hydrabody-windows.yaml (lines 30-33: Set-NetFirewallProfile -Profile Domain,Public,Private -NotifyOnListen False) landed today (alongside the #123/124 setSunshineConfig fix). Bodies enrolled before this step ran did NOT pick it up — confirmed today by manually fixing cosmic-pretzel-98 to clear a Windows Firewall popup that blocked first-peer Sunshine pairing (#126).
Anyone enrolled before today's recipe update. Verified pre-bake at the time of writing:
node-4c2be4b0) — manually fixed today, no follow-up needednode-74f9fbf2, rupelmonde, currently offline) — reprovision flaggednode-5f8b7b59, bxl1-test, currently offline) — reprovision flaggedThe reprovision flag is set via POST /api/v1/nodes/{id}/reprovision and consumed on the next heartbeat after the body comes back online. No action needed when they boot up — they'll re-run the recipe automatically.
NotifyOnListen=False on all profiles (Get-NetFirewallProfile | Select-Object Name, NotifyOnListen).Once both bodies come online, re-curl Get-NetFirewallProfile -Profile Public | Select Name,NotifyOnListen via hydracluster exec — must return False.
setSunshineConfig from #123/124) — also fixed by reprovision; mention in the closing comment of this issue.hydraheadflatscreen-macos.yaml), no firewall step there.