cockroachdb / cockroachdb/cockroach

roachprod: centralized api - full cluster lifecycle management

Open
#156,765 1 comment 0 reactions 1 assignee Claimed by @golgeek View on GitHub
A-testeng-infra A-testing C-enhancement T-testeng
Dominant language
Go
Stars
32.5k
Forks
4.1k
PR merge metrics
PR metrics pending

Description

Problem: Currently, users must have cloud credentials locally to create, modify, or destroy clusters. This limits who can perform these operations and makes it difficult to enforce policies, track changes, or implement approval workflows. The centralized service can see cluster state but cannot manage it.

Solution: Extend the API to support full CRUD operations for clusters:
- Create clusters by specifying cloud provider, machine types, cluster size, and configuration
- Update cluster properties (resize, modify settings)
- Destroy clusters when no longer needed
- Execute these operations via a distributed task system for reliability

Operations should respect user permissions (scoped by cloud provider and account), queue as background tasks with progress tracking, and maintain audit logs.
This enables centralized enforcement of resource policies while removing the need for widespread cloud credential distribution.

Jira issue: CRDB-56181

Epic CRDB-49123

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.