docs(ops): cutover runbook drift found during the real cutover
Nobody has claimed this yet.
Assessment
- Difficulty
- 2/5
- Estimated time
- 1-3 hours
- Newbie friendliness
- 84/100
- Issue type
- Documentation
- Clarity
- Clearly specified
- Activity status
- Active
- Tech stack
- kubernetes
- Domain
- documentation, infrastructure
Research direction
Read docs/operations/cutover.md and compare its T-1 and T-0 steps with the 2026-09-17 cutover details in this issue. Update the runbook to cover pre-issued Certificates, the required kubectl rollout restart, delta spam evaluation, and post-flip Certificate cleanup tracked in cfp-live-cluster. Done means the documented procedure matches the observed cutover.
Written by the indexing model from the issue text.
Description
Things the 2026-09-17 cutover did differently from `docs/operations/cutover.md`, to fold back in:
- Certs are pre-issued, not issued at the flip. `mergeGateways: true` allows a hostname on one :443 listener cluster-wide, so we declared explicit `Certificate`s in `codeforphilly-ng` (cfp-live-cluster #195) before moving the listeners and the flip was instant. T-0 step 2 still says "allow a minute or two for ACME".
- The ConfigMap change does not roll the pod. `CFP_SITE_HOST` comes via `envFrom` on a static ConfigMap; a `kubectl rollout restart` was needed after the apply. T-0 step 2 says the change "rolls the pod (Recreate strategy)".
- The T-1 data refresh needs a spam-evaluation step for the delta (see the sibling issue), otherwise unevaluated signups reach `published`.
- Post-flip: drop the explicit Certificate declarations so cert-manager's gateway-shim adopts the existing Secrets (tracked in cfp-live-cluster).
🤖 Generated with Claude Code
- Dominant language
- TypeScript
- Stars
- 1
- Forks
- 1
- Avg merge
- 1d 20h
- Merged PRs (30d)
- 25
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
More from CodeForPhilly/codeforphilly-ng
-
MarkdownEditor toolbar: use Radix Toolbar from radix-ui instead of the hand-rolled roving tabindex Openenhancement
Difficulty 2/5 1-3 hours Newbie friendliness 82/100
-
Difficulty 2/5 1-3 hours Newbie friendliness 76/100
-
Difficulty 2/5 1-3 hours Newbie friendliness 88/100
-
Difficulty 2/5 1-3 hours Newbie friendliness 74/100
-
Difficulty 1/5 Under an hour Newbie friendliness 82/100
All issues in CodeForPhilly/codeforphilly-ng
Similar issues
-
calcite-components needs triage refactor
Difficulty 2/5 1-3 hours Newbie friendliness 75/100
Esri/calcite-design-system#15203 ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 91/100
-
community first-timers-only good first issue hacktoberfest help wanted low hanging fruit up-for-grabs
Difficulty 1/5 Under an hour Newbie friendliness 95/100
-
Difficulty 2/5 1-3 hours Newbie friendliness 78/100
Automattic/studio#4908 ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 90/100