mirror of
https://github.com/matter-labs/ansible-en-role.git
synced 2025-12-06 10:59:56 +00:00
Compare commits
16 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
| 17d9ecd1ce | |||
| 5071bb3423 | |||
| fa4f00a62d | |||
| f3ce6ce204 | |||
| cd5df40065 | |||
| 4bd3805af1 | |||
| 8006ed9328 | |||
| c497fc0982 | |||
| 57f3fb74e4 | |||
| aa018348d8 | |||
| b8e3b89cf5 | |||
| d276d7b290 | |||
| 60333c40da | |||
| 2eb2b1f6d4 | |||
| 69777ac4e8 | |||
| 46e2a6e0e4 |
@ -99,10 +99,10 @@ Basic auth secret can be generated by `htpasswd` and `sed` for interpolation:
|
|||||||
2. Prepare the latest database backup on your host. you can download it from our public GCS buckets:
|
2. Prepare the latest database backup on your host. you can download it from our public GCS buckets:
|
||||||
Skip this step if you are recovering from a snapshot!
|
Skip this step if you are recovering from a snapshot!
|
||||||
|
|
||||||
* [Era Mainnet latest dump](https://storage.googleapis.com/zksync-era-mainnet-external-node-backups/external_node_latest.pgdump)
|
* [Era Mainnet latest dump](https://en-backups.matterlabs.dev/)
|
||||||
* [Era Sepolia Testnet latest dump](https://storage.googleapis.com/zksync-era-testnet-sepolia-external-node-backups/external_node_latest.pgdump)
|
* [Era Sepolia Testnet latest dump](https://storage.googleapis.com/zksync-era-testnet-sepolia-external-node-backups/external_node_latest.pgdump)
|
||||||
|
|
||||||
Downloaded dump file should be placed into `{{ storage_directory }}/pg_backups` directory (`/usr/src/en/pg_backups` by default)
|
Downloaded dump, if needed, should be unarchived and named `external_node_latest.pgdump`. File should be placed into `{{ storage_directory }}/pg_backups` directory (`/usr/src/en/pg_backups` by default).
|
||||||
|
|
||||||
3. **OPTIONAL**: If you already have running node, you can copy its tree and state directory to a new host's `{{ storage_directory }}/db`. (`/usr/src/en/db` by default)
|
3. **OPTIONAL**: If you already have running node, you can copy its tree and state directory to a new host's `{{ storage_directory }}/db`. (`/usr/src/en/db` by default)
|
||||||
Skip this step if you are recovering from a snapshot!
|
Skip this step if you are recovering from a snapshot!
|
||||||
|
|||||||
@ -11,7 +11,7 @@ docker_compose_version: "v2.23.0"
|
|||||||
# Versions of External Node and 3rd party components
|
# Versions of External Node and 3rd party components
|
||||||
traefik_version: 2.11
|
traefik_version: 2.11
|
||||||
postgres_version: 14
|
postgres_version: 14
|
||||||
external_node_version: 24.26.0
|
external_node_version: 27.2.0
|
||||||
external_node_raw_docker_tag: ""
|
external_node_raw_docker_tag: ""
|
||||||
vmagent_version: 1.100.1
|
vmagent_version: 1.100.1
|
||||||
cadvisor_version: 0.47.2
|
cadvisor_version: 0.47.2
|
||||||
@ -64,6 +64,9 @@ postgres_replica_user_password: ""
|
|||||||
postgres_replica_auth_method: "scram-sha-256"
|
postgres_replica_auth_method: "scram-sha-256"
|
||||||
postgres_replication_bind_address: ""
|
postgres_replication_bind_address: ""
|
||||||
postgres_replica_address: ""
|
postgres_replica_address: ""
|
||||||
|
backup_db_user: ""
|
||||||
|
backup_db_password: ""
|
||||||
|
backup_db_name: ""
|
||||||
|
|
||||||
# Enable TLS for traefik
|
# Enable TLS for traefik
|
||||||
enable_tls: false
|
enable_tls: false
|
||||||
@ -85,6 +88,8 @@ snapshots_bucket_base_url: ""
|
|||||||
enable_consensus: false
|
enable_consensus: false
|
||||||
consensus_secrets_file: ""
|
consensus_secrets_file: ""
|
||||||
consensus_port: 3054
|
consensus_port: 3054
|
||||||
|
consensus_debug_port_enabled: false
|
||||||
|
consensus_debug_port: 5000
|
||||||
consensus_outbound: []
|
consensus_outbound: []
|
||||||
|
|
||||||
# External Node and database options
|
# External Node and database options
|
||||||
|
|||||||
@ -8,16 +8,16 @@ To run this playbook, first install dependencies
|
|||||||
|
|
||||||
```shell
|
```shell
|
||||||
ansible-galaxy install -r requirements.yml
|
ansible-galaxy install -r requirements.yml
|
||||||
```
|
```
|
||||||
|
|
||||||
and then you can run the playbook using
|
and then you can run the playbook using
|
||||||
|
|
||||||
```shell
|
```shell
|
||||||
ansible-playbook playbook.yml -i hosts.ini -K
|
ansible-playbook playbook.yml -i hosts.ini -K
|
||||||
```
|
```
|
||||||
|
|
||||||
To see logs you can use
|
To see logs you can use
|
||||||
|
|
||||||
```shell
|
```shell
|
||||||
docker logs en-external_node-1
|
docker logs en-external_node-1
|
||||||
```
|
```
|
||||||
|
|||||||
@ -40,3 +40,21 @@
|
|||||||
login_user: "{{ database_username }}"
|
login_user: "{{ database_username }}"
|
||||||
login_password: "{{ database_password }}"
|
login_password: "{{ database_password }}"
|
||||||
query: "SELECT pg_reload_conf()"
|
query: "SELECT pg_reload_conf()"
|
||||||
|
|
||||||
|
- name: Create postgres backup user
|
||||||
|
community.postgresql.postgresql_user:
|
||||||
|
login_host: "{{ postgres_replication_bind_address }}"
|
||||||
|
login_user: "{{ database_username }}"
|
||||||
|
login_password: "{{ database_password }}"
|
||||||
|
name: "{{ backup_db_user }}"
|
||||||
|
password: "{{ backup_db_password }}"
|
||||||
|
|
||||||
|
- name: Grant role pg_read_all_data to backup user
|
||||||
|
community.postgresql.postgresql_membership:
|
||||||
|
login_host: "{{ postgres_replication_bind_address }}"
|
||||||
|
login_user: "{{ database_username }}"
|
||||||
|
login_password: "{{ database_password }}"
|
||||||
|
group: pg_read_all_data
|
||||||
|
target_roles:
|
||||||
|
- "{{ backup_db_user }}"
|
||||||
|
state: present
|
||||||
|
|||||||
@ -1,9 +1,13 @@
|
|||||||
server_addr: '0.0.0.0:3054'
|
server_addr: '0.0.0.0:3054'
|
||||||
public_addr: '{{ ansible_default_ipv4.address }}:{{ consensus_port }}'
|
public_addr: '{{ ansible_default_ipv4.address }}:{{ consensus_port }}'
|
||||||
max_payload_size: 5000000
|
max_payload_size: 5000000
|
||||||
gossip_dynamic_inbound_limit: 100
|
gossip_dynamic_inbound_limit: 200
|
||||||
gossip_static_outbound:
|
{% if consensus_debug_port_enabled %}
|
||||||
{% for item in consensus_outbound %}
|
debug_page_addr: "0.0.0.0:{{ consensus_debug_port }}"
|
||||||
- key: {{ item.key }}
|
{% endif %}
|
||||||
addr: {{ item.addr }}
|
rpc_config:
|
||||||
{% endfor %}
|
get_block_rate:
|
||||||
|
burst: 5
|
||||||
|
refresh: # 0.2s
|
||||||
|
seconds: 0
|
||||||
|
nanos: 200000000
|
||||||
|
|||||||
Reference in New Issue
Block a user