Expand description
Observability facade: Prometheus metrics + structured audit log.
Every recording function here is a thin wrapper that compiles to a no-op
unless the metrics feature is enabled. This keeps instrumentation call
sites in the OCSP hot path free of #[cfg] noise and imposes zero cost on
the default build. The audit log (audit!) is always active — it is a
tracing event on the dedicated audit target, which existing subscribers
can route to their own sink.
Design reference: hoike-design.md §9 (metric surface).
Macros§
- audit
- Emit a structured audit event on the
audittracing target.
Functions§
- install
- load_
failure_ reason - Classify a bundle load/reload error into a stable
reasonlabel for thehoike_bundle_load_failures_totalcounter. Anti-rollback and continuity violations are the operationally interesting cases; everything else collapses to coarse buckets. Always available (no metrics dep) so call sites can classify even in the default build. - record_
bundle_ load_ failure - record_
certid_ alg - record_
gossip_ members - record_
nonce - record_
request - record_
request_ duration - record_
signer_ generation - render
- update_
bundle_ gauges