2022-09-16 Indy Container Meeting #44

2022-09-16 Indy Container Meeting #44

  • IP Tables scripts

  • Node Controlle

  • Container build from smaller images

  • Ubuntu20 Indy node test image



Hyperledger is committed to creating a safe and welcoming

community for all. For more information

please visit the Hyperledger Code of Conduct.

Hyperledger is committed to creating a safe and welcoming

community for all. For more information

please visit the Hyperledger Code of Conduct.

Attendance

  • @Sebastian Schmittner (EECC)

  • @Christian Bormann (Robert Bosch GmbH)

  • @Philipp Schlarb (esatus AG)  <p.schlarb@esatus.com>

  • @Franz, Marquart (FT RPD SSP) (Deactivated)

  • Christian Fries (EECC)

  • Cristian Kubis

In Progress

IP Tables script:

Indy Node Controller

  • Current problem: Podman dependency removed since `apt-get install -y podman` requires `dbus-user-session` which then requires `systemd`

  • The Upgrade Prozess in Indy needs to be improved in order to propperly support upgrading containers

  • The principal Controller solution mounting the host docker socket into the controller container might be re-discussed as well

Tagging of Container releases

  • Include indy node version

  • For upgrade!

  • Release less flavours

Container

Stale

Issues

Network connectivity test script

Idea: Script to test that IP Tables rules are as they should be

  • At least check that node can connect (TCP lvl) to all other nodes

  • Bonus: Check that connection from outside is not possible

Still 2do

Load Test Script by @Christian Bormann

  • on hold

Alerting

  • Sebastian Z finished work on slack alerting action.

  • Send webhook to @Sebastian Schmittner → Forward to @Stephen Curranto add to github repo, then MR github action

  • Replace scan → github security alerts or do both?

    • BOTH

    • @Sebastian Schmittner

Logging

Metrics

Security

The node keys handling is currently sub optimal (env variable). Should be improved to e.g. file based setup: https://github.com/IDunion/indy-node-container/issues/52

Indy-Test-Automation

Support for non-docker setup

Next Meeting

  • Next meeting: 2022-09-30 9:15 (Berlin time)