Skip to content

Commit d366fc6

Browse files
[codex] chore: add live-safe OSS readiness pass (#14)
* chore: add live-safe OSS readiness pass * fix(node): verify optional peer signatures during rollout * docs: rewrite README for node roadmap
1 parent b12c6bc commit d366fc6

19 files changed

Lines changed: 876 additions & 152 deletions

‎.env.example‎

Lines changed: 16 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -63,13 +63,27 @@ POSTGRES_PASSWORD=changeme
6363

6464
# ── P2P networking ────────────────────────────────────────────────────────
6565
GITLAWB_P2P_PORT=7546
66-
# Comma-separated multiaddrs of bootstrap peers
66+
# Comma-separated HTTP peer URLs to announce to on startup.
67+
# The binary also ships with bootstrap-peers.json; set
68+
# GITLAWB_BOOTSTRAP_DISABLE_SEEDS=true for isolated dev/test networks.
6769
GITLAWB_BOOTSTRAP_PEERS=
70+
GITLAWB_BOOTSTRAP_DISABLE_SEEDS=false
71+
# Require signatures on peer announce/sync write routes. Keep false during
72+
# rolling upgrades so existing live nodes can still communicate.
73+
GITLAWB_REQUIRE_SIGNED_PEER_WRITES=false
74+
75+
# Comma-separated libp2p multiaddrs.
76+
# Example: /ip4/1.2.3.4/tcp/7546/p2p/12D3KooW...
77+
GITLAWB_P2P_BOOTSTRAP=
6878

6979
# ── Access control ────────────────────────────────────────────────────────
70-
# Set to false to require auth on all read endpoints
80+
# Reserved for private-read mode. Public/private repo read enforcement is not
81+
# wired in the current live release; do not rely on this for private repositories.
7182
GITLAWB_PUBLIC_READ=true
7283

84+
# Maximum git smart-HTTP pack request size, in bytes.
85+
GITLAWB_MAX_PACK_BYTES=2147483648
86+
7387
# ── Sync ─────────────────────────────────────────────────────────────────
7488
# Enable automatic background sync from known peers
7589
GITLAWB_AUTO_SYNC=false

0 commit comments

Comments
 (0)