This commit implements comprehensive production hardening across multiple layers to prepare StemeDB for enterprise pilot deployments: ## API Layer - Add rate limiting middleware with configurable limits per endpoint - Enhance error handling with detailed context and proper HTTP status codes - Add security hardening tests for input validation and boundary conditions - Create store_helpers module for defensive storage access patterns ## Storage & WAL - Optimize group commit batching for higher throughput - Add defensive error handling in hybrid backend with proper fallbacks - Enhance WAL journal durability guarantees with fsync validation - Improve index store query performance with better caching ## Operations & Deployment - Add comprehensive operations documentation (deployment, monitoring, DR) - Create systemd units for backup, WAL archival, and verification - Add monitoring configs (Prometheus alerts, metrics exporters) - Implement backup/restore scripts with verification and S3 archival - Add DR drill automation and runbook procedures - Create load balancer configs (nginx, envoy) with health checks ## Documentation - Update CLAUDE.md with operations and troubleshooting guides - Expand roadmap with production readiness milestones - Add pilot success criteria and deployment reference architecture - Document TLS setup, monitoring integration, and incident response ## Configuration - Add .env.example with all required environment variables - Document resource sizing for different deployment scales - Add configuration examples for various deployment topologies This positions StemeDB for successful enterprise pilots with proper operational discipline, monitoring, backup/DR, and security hardening. Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
26 lines
534 B
TOML
26 lines
534 B
TOML
[package]
|
|
name = "stemedb-wal"
|
|
version = "0.1.0"
|
|
edition = "2021"
|
|
description = "Write-Ahead Log (Quarantine Journal) for Episteme"
|
|
|
|
# Inherit workspace lints
|
|
[lints]
|
|
workspace = true
|
|
|
|
[dependencies]
|
|
fs2 = "0.4"
|
|
thiserror = "1.0"
|
|
tracing = "0.1"
|
|
byteorder = "1.5"
|
|
blake3 = "1.5"
|
|
crc32c = "0.6"
|
|
metrics = "0.23"
|
|
tokio = { version = "1", features = ["sync", "time", "rt"], optional = true }
|
|
|
|
[features]
|
|
group-commit = ["tokio"]
|
|
|
|
[dev-dependencies]
|
|
tempfile = "3.10"
|
|
tokio = { version = "1", features = ["sync", "time", "rt", "macros"] } |