Hello Kudu Jenkins, I'd like you to reexamine a change. Please visit
http://gerrit.cloudera.org:8080/3393 to look at the new patch set (#2). Change subject: docs: design for handling permanent master failures ...................................................................... docs: design for handling permanent master failures Here's a design doc that describes how we might address permanent master failures. It presents a hacky way to handle some permanent failures without implementing full master config change, then describes how config change might be implemented. The most important question I'd like to discuss first is: should master config change support be implemented? As the doc describes (though not in great detail), config change would be expensive to implement, and we're running out of time for 1.0. We might decide that permanent failure is out of scope for 1.0 (or at least permanent failures that also take out the disk), and push config change out to a different release. If we do that, we could handle migration of one node to three nodes with a script, or not at all (i.e. this is beta software). Change-Id: I2f05c319c89cf37e2d71fdc4b7ec951b2932a2b2 --- M docs/design-docs/README.md A docs/design-docs/master-perm-failure-1.0.md 2 files changed, 194 insertions(+), 0 deletions(-) git pull ssh://gerrit.cloudera.org:29418/kudu refs/changes/93/3393/2 -- To view, visit http://gerrit.cloudera.org:8080/3393 To unsubscribe, visit http://gerrit.cloudera.org:8080/settings Gerrit-MessageType: newpatchset Gerrit-Change-Id: I2f05c319c89cf37e2d71fdc4b7ec951b2932a2b2 Gerrit-PatchSet: 2 Gerrit-Project: kudu Gerrit-Branch: master Gerrit-Owner: Adar Dembo <a...@cloudera.com> Gerrit-Reviewer: Adar Dembo <a...@cloudera.com> Gerrit-Reviewer: David Ribeiro Alves <dral...@apache.org> Gerrit-Reviewer: Kudu Jenkins Gerrit-Reviewer: Mike Percy <mpe...@apache.org> Gerrit-Reviewer: Todd Lipcon <t...@apache.org>