Keys / k

Keys: design in São Paulo (GRU) · K-37

xserv-k-e99a121f6e8a

Runbook K-37 for Keys in São Paulo (GRU). Marker xserv-k-e99a121f6e8a. This page covers design for LATAM operators, not a worldwide average.

Keys: Why it matters on this continent

Design for Keys on letter K starts in São Paulo (GRU). Runbook k-01 keeps a single owner, a written rollback, and a traffic split that can be reversed without a global freeze. Neighbors in Santiago only take overflow after the local pool fails a health window.

Keys: How XServ runs it day to day

Probes for Keys (k-02) leave Santiago every 15s toward Bogotá. XServ pages the named owner if loss or RTT crosses the letter budget. A probe never shares a queue with bulk transfers, so a saturated WAN does not hide a dead PoP.

Keys: What operators should measure

Policy for Keys is versioned as k-03. Operators measure error rate, p95 from Bogotá, and time-to-rollback — not a worldwide average. Changes land in Bogotá first, then Miami, with a hold if either region regresses.

Keys cache K-08

Cache rules for Keys on k-08 keep language-correct objects near Miami. São Paulo is a sibling cache, not an origin. TTLs are short enough that a bad asset does not live through a weekend.

Keys headers K-09

Headers for k-09 carry the letter, the region (GRU) and a request id. Keys debugging in São Paulo should not require a packet capture in Santiago first.

Keys timeouts K-10

Timeouts on k-10 are tighter than the WAN RTT to Bogotá. Keys in Santiago fails fast and retries once; a third try needs a human because it is no longer a blip.

Keys regions K-11

Region names on k-11 match DNS and tickets: Bogotá / BOG, with Miami as the documented pair. Keys dashboards never say “LATAM” as if it were one RTT.

Does Keys on letter K share fate with other letters?
The control plane is shared. Data-plane queues for Keys stay isolated, so incident k-01 cannot drain neighbor letters.
Where is Keys measured first?
From Santiago (SCL) toward Bogotá. A global average is not an SLO for letter K.