kiwix / kiwix/operations

Anticipate mirrors TLS certificate expiration

Open
#679 3 comments 0 reactions 0 assignees View on GitHub
enhancement
Dominant language
Python
Stars
15
Forks
5
PR merge metrics
No merged PRs in 30d

Description

We do monitor our certificatea and therefore are warned of an oncoming problem when certificates will soon expire.

We have nothing of that kind for mirrors. Therefore, we go straight in the downtime (until mirrorbrain realises and remove rhe mirror).

We should be better.

Contributor guide

Open the contributing guide

Research direction

Start by tracing the existing certificate monitoring and the MirrorBrain mirror-removal path described in the issue. Determine how mirror certificate expiration should be detected and reported before downtime, then verify that an expiring mirror is surfaced early enough for removal or remediation.

Written by the indexing model from the issue text.

Assessment

Tech stack
kubernetes, python
Domain
infrastructure, observability, security
Issue type
Feature
Difficulty
4/5
Estimated time
3-5 days
Activity status
Quiet
Clarity
Needs clarification
Newbie friendliness
45/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.