4 ms·
In this case that seems like a safe assumption? The crash meant there was impact to all customers, not just the ones using the new feature.
by jsnell 1y ago
In this case that seems like a safe assumption? The crash meant there was impact to all customers, not just the ones using the new feature.
- Thaxll 1y agoOk so your Rust program exit gracefuly because of handled deserialization error, how does it helps?
- jsnell 1y agoWhy in the world would the program exit due to that? This is a server. I'd you're going to fail entirely due to the error, the natural scope of error propagation is to fail the request. Having the entire program quit would be insane. And when the failures are request-scoped, you're back to the outage not being global but affecting only the customers using this feature with a bad config.
- Thaxll 1y agoThey said it themself: We will modularize Service Control’s architecture, so the functionality is isolated and fails open. Thus, if a corresponding check fails, Service Control can still serve API requests. It's clear that they have issues in the service itself not related to language.