GoogleCloudPlatform / GoogleCloudPlatform/cloud-sql-python-connector

Recover gracefully from sleep

Open
#941 1 comment 1 reaction 1 assignee Assigned to @hessjcg View on GitHub
priority: p2 type: feature request
Dominant language
Python
Stars
344
Forks
89
Avg merge
5h 33m
Merged PRs (30d)
2

Description

### Feature Description

When a Connector is running on a machine that goes to sleep for more than 1 hour, when the machine awakes, it will have an expired certificate. Given how TLS 1.3 works, the Connector will not see a failed handshake and will force users to restart the process to fix the problem.

Instead, we should check if the certificate retrieved from the cache is invalid. If it is, we should block on a force refresh attempt until we get a refresh cert.

See https://github.com/GoogleCloudPlatform/cloud-sql-proxy/issues/1788 and https://github.com/GoogleCloudPlatform/cloud-sql-go-connector/pull/686 for details.

This should be ported to AlloyDB Python as well.

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.