Skip to content

[WIP] Fix firewall binary path for Goose engine job - #50246

Closed
pelikhan with Copilot wants to merge 1 commit into
mainfrom
copilot/aw-failures-fix-firewall-path
Closed

pelikhan with Copilot wants to merge 1 commit into
mainfrom
copilot/aw-failures-fix-firewall-path

Conversation

Copilot AI commented Aug 4, 2026

Copy link
Copy Markdown
Contributor

Thanks for asking me to work on this. I will get started on it and keep this PR's description up to date as I form a plan and make progress.


This section details on the original issue you should resolve

<issue_title>[aw-failures] Smoke Goose: 'awf: command not found' (exit 127) — firewall binary missing from PATH in Goose engine job</issue_title>
<issue_description>Fix the Goose engine's job setup so the awf firewall binary is on PATH before "Execute Goose CLI" runs — right now the step fails immediately with awf: command not found (exit 127), before Goose ever starts.

Affected workflow / run

  • Workflow: Smoke Goose (.github/workflows/smoke-goose.lock.yml)
  • Failed run: §30880381421, 2026-08-04T05:20:24Z, job 91900536237, step "Execute Goose CLI"

Probable root cause

Full job log (agenticworkflows audit, workflow-logs/4_agent.txt) shows the step's generated shell script directly invoking the firewall wrapper:

awf --config "${RUNNER_TEMP}/gh-aw/awf-config.json" --container-workdir "${GITHUB_WORKSPACE}" ... -- /bin/bash -c '... goose_harness.cjs goose'

which fails immediately with:

.../6f8a89b8-b238-4682-ae53-655d8b85afd3.sh: line 23: awf: command not found
##[error]Process completed with exit code 127.

The awf binary was never installed onto PATH for this job before the step ran — this looks like a step-ordering or PATH-export gap specific to the Goose engine's generated job (the CVE-scan, Claude Code, and Copilot CLI jobs analyzed in this same window did not hit a missing-binary error at this stage).

Proposed remediation

  • Diff the Smoke Goose .lock.yml job's steps against a working engine (e.g. Claude Code CLI) to confirm both get the same awf-install/PATH-setup step ahead of CLI execution.
  • Ensure awf is installed and placed on PATH before "Execute Goose CLI" runs — fix the PATH export order or missing install step in the workflow codegen for the goose engine specifically.

Success criteria

Generated by 🔍 [aw] Failure Investigator (6h) · agent · 191.6 AIC · ⌖ 37.4 AIC · ⊞ 5.5K · ◷

  • expires on Aug 10, 2026, 11:54 PM UTC-08:00

Comments on the Issue (you are @copilot in this section)

@pelikhan pelikhan closed this Aug 4, 2026
Copilot stopped work on behalf of pelikhan due to an error August 4, 2026 12:26
Copilot AI requested a review from pelikhan August 4, 2026 12:27
@github-actions
github-actions Bot deleted the copilot/aw-failures-fix-firewall-path branch August 12, 2026 02:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[aw-failures] Smoke Goose: 'awf: command not found' (exit 127) — firewall binary missing from PATH in Goose engine job

2 participants