ConceptsSelf-healing
Shut down ferryd
A graceful shutdown stops the API, then the proxy, then the work in progress.
ferryd stopAPI. The API accepts no new request. It waits 10 seconds at most for the requests in progress.
1 / 4
A graceful shutdown starts with the first signal: SIGINT (Ctrl-C) or SIGTERM. ferryd stop sends SIGTERM.
Stop immediately
A second signal, or a second ferryd stop, makes ferryd exit immediately. The exit code is 130.
With systemd
ferryd stop waits 60 seconds at most for the server to release its data directory. Give the unit sufficient time to stop.
TimeoutStopSec=60- API. Log streams and the change feed end.
- Engine. Deploys in the queue fail. Ferry stops each deploy in progress and removes its new instances. The live deploy keeps its containers.
- Engine. Each job that runs gets 10 seconds to stop. Ferry records it as
failed, with the error "interrupted by server shutdown".