A database upgrade will be applied to Cerbos Hub. The maintenance window opens at 08:00 BST and is expected to last up to 1 hour.
Unaffected during the window
Policy decision evaluation. PDPs continue to serve decisions from their currently loaded bundles.
PDP startup. PDPs that start or restart during the window will not connect to Hub. They will retrieve the last successful build for their assigned deployment ID from the existing CDN serving infrastructure.
Unavailable during the window
hub.cerbos.cloud interface. Users will not be able to log in to hub.cerbos.cloud.
Cerbos Hub API. All API access is affected, including cerbosctl and CI integrations. Requests to the Hub API during the window will fail.
Policy builds. Policy changes committed during the window will not be built or deployed.
Audit log ingestion. Audit logs are buffered locally on the PDP and are not queryable in Hub until the window closes.
On completion
UI and API access are restored.
PDPs reconnect to Hub.
The build pipeline resumes and processes any new policy changes.
PDPs resend their buffered audit logs.
Policy changes that must be live before the window closes should be deployed in advance. CI pipelines that call the Hub API during the window will fail and should be rerun after the window closes.