mirror of
https://github.com/hansjone/netx.git
synced 2026-10-09 02:00:46 +08:00
Frontend+backend start is enough; external worker remains an optional production split. Co-authored-by: Cursor <cursoragent@cursor.com>
1.9 KiB
1.9 KiB
netx Production Minimum Checklist
Security
- Prefer empty
NETX_AUTH_SECRETso each install auto-writesdata/auth/jwt_secret(do not commit that file). Set an explicit secret only for multi-node shared signing. - Leave
NETX_DOCS_ENABLEDunset/false so/docsand OpenAPI stay off (settrueonly in lab). - Keep
NETX_UME_VERIFY_TLS=true(or pin a CA); avoidfalseon non-lab hosts. - Binding
NETX_HOSTto a non-loopback address with lab defaults is refused unlessNETX_ALLOW_INSECURE_DEFAULTS=1. - Prefer scoped API tokens (MCP default excludes
webcrt:session/sql:query). - Keep
.envandoclaw/_local/system.envout of Git (already ignored). - Restrict access to
127.0.0.1or internal network only.
Runtime
- Ensure PostgreSQL backup policy exists (daily logical backup + retention).
- Schema: API auto-runs
alembic upgrade headon start (see docs/ALEMBIC.md). No manual migrate flag required for normal deploys. - Collectors: default inline with the API (normal frontend+backend start is enough). Optional split:
NETX_RUN_INLINE_SCHEDULERS=false+python -m netx_api.worker. Check/health/ready→schedulers.mode. - Run
oclawandnetxunder process managers (systemd/Windows service/pm2 equivalent). - Enable auto-restart and startup-at-boot for both services.
Observability
- Health checks:
oclaw:/admin/api/ops-ai/health(with Bearer token)netxliveness:/health/livenetxreadiness:/health/readynetxintegrations:/v1/integrations/status
- Alert when
oclaw_bridge.status != upfor more than 2 polling cycles. - Alert when
db.status != uporlatency_msexceeds threshold.
Operations
- Keep one documented restart order:
- PostgreSQL
oclawnetx(and worker if split)
- Validate after restart:
GET /v1/integrations/statusreturns all major components asup.
- Keep parser config and importer changes versioned and reviewed before release.