- Centralized sequencer with explicit authorization.
sequencer.p2p_enabled = falseandsequencer.l1_confs = 0inconfig/chain-config.tomlfor devnet.
- Add a secondary sequencer key.
- Use
setSequencerAuthorizationto allow multiple sequencers. - Monitor for failover and publish operational runbooks.
- Enable P2P (
sequencer.p2p_enabled = true). - Require L1 confirmations for safety (
sequencer.l1_confs >= 1). - Publish node operation guidance and hardware requirements.
- Publish sequencer admission rules and on-chain governance.
- Move upgrades and authorization to timelock governance.
- Formalize incentives and dispute resolution.
- Ensure multiple sequencers are authorized.
- Track L1 confirmation depth and safe head lag.
- Validate P2P settings before production cutover.
docs/fault-proofs.mddocs/security.mddocs/runbook.mddocs/node-operators.md