Skip to content
Cosmopediaby Unity Nodes
DiscussionsSoftware Upgrade[PROPOSAL 854][PASSED] Gaia v14.1 UpgradeForum ↗

[PROPOSAL 854][PASSED] Gaia v14.1 Upgrade

Software Upgrade29 posts4,183 views21 likesLast activity Nov 2023
BT
btruaxOP
Nov 2023 4

[PROPOSAL 854][PASSED] Gaia v14.1 Upgrade Change log: • 2023-11-08 Created initial post • 2023-11-15 Clarified FAQ on retroactive tombstoning • 2023-11-17 Updated text to reflect v14.1 and outlined reasoning for changes • 2023-11-28 Updated title for on-chain proposal • 2023-11-30 Updated to add link to release An Important Note for Validators tl;dr • Never reuse keys between chains, including testnet chains. • If you are not sure where you have used your current keys, do a key reassignment ASAP. • Here are the docs on how to do a reassignment. For the purposes of this post, we’re referring to double signing as when there are two signatures from the same key on the same block height , on the same `chain-id` . “Equivocation” covers other misbehaviour but there has been very little confusion about how the cryptographic equivocation applies to anything but double-signing. In order for double-signing on a consumer chain to be punished by the Hub, all of following must be true: • Same `chain-id` • Same block height • Same keys on both signatures If any of the above are not true, there will be no automatic punishment via the cryptographic…

Excerpt (1191 of 7926 characters). Read the whole post on the forum ↗

JA
jagachu
Nov 2023

Hello
The proposal to adjust the validator commission by a minimum of 5% has been approved. Has it been adjusted in conjunction with this upgrade?

LE
lexa
Nov 2023 2

Prop #826 Set Minimum Commission to 5% has spawned a GH issue for implementing this feature: Minimum Commission for proposal 826 · Issue #2768 · cosmos/gaia · GitHub.

It won’t be in v14, but looks like it might go into v15, which is scheduled for 2 months from now.

MP
mpoke
Nov 2023 3

More context on the decision to push the Minimum Commission feature to v15

Due to the timeline of the v14 release (a proposal is expected to be submitted on the Hub by Nov 17), this feature will go into Gaia v15. Since we want to avoid releases around the winter holidays, v15 is scheduled for January 2024. Also, v15 will most likely update SDK to 0.47, which enables setting the minimum commission through a gov param. Therefore, in v15 we’ll just set the default of this param to 5%.

Note though that just setting the param to 5% will not change the commission of existing validators. The param affects only the MsgEditValidator and MsgCreateValidator messages. To enforce the existing validators to have a minimum commission, migration code needs to be written. This code would enforce all validators to have at least 5% commission.

CO
Cosmic_Validator
Nov 2023

btruax: As testnet coordinators going forward, we will work with incoming chains to make sure their testnet chains always have ‘test’ (e.g., ‘consumername-test-1’) in the name (which is unlikely to be reused as a name) but this was not always the case so it remains a risk for any older chains. So far there are only two consumer chains, Neutron and Stride. @lexa @jtremback you don’t have the information about all testnet names for Neutron and Stride before joining as consumer chains? With this information there can be certainty whether some old Neutron or Stride testnets had the same chain-id and whether there is risk about this or not, and if there was indeed some old testnet with same chain-id then all validators should be informed/reminded about this immediately. btruax: If your validator has ever double-signed with the same keys on that consumer chain, it is at risk of being tombstoned after the upgrade. Does this only affect @serejandmyself and @pupmos ? Because so far there was only one consumer chain double sign equivocation proposal on the Cosmos Hub. btruax: So validators could get retroactively tombstoned for equivocation that…

Excerpt (1195 of 2603 characters). Read the whole post on the forum ↗

LE
lexa
Nov 2023 2

Cosmic_Validator: So far there are only two consumer chains, Neutron and Stride. @lexa @jtremback you don’t have the information about all testnet names for Neutron and Stride before joining as consumer chains? With this information there can be certainty whether some old Neutron or Stride testnets had the same chain-id and whether there is risk about this or not, and if there was indeed some old testnet with same chain-id then all validators should be informed/reminded about this immediately. Neutron and Stride have not had replicated security testnets with the same chain-id as mainnet. But while Hypha administers the Cosmos Hub testnet system, this concern applies to any cosmos sdk testnet. I can’t confidently say there has never been a testnet with the chain-id `neutron-1` or `stride-1` so we give the warning just in case. However, long before this feature was developed, we did host Game of Chains and had a Noble testnet called `noble-1`, which is the same mainnet ID that the Noble chain uses. We expect Noble to put up a proposal to join the AEZ soon, so any participants from Game of Chains need to be absolutely sure they’re not reusing a key from that chain. The…

Excerpt (1196 of 2866 characters). Read the whole post on the forum ↗

SE
serejandmyself
Nov 2023 1

@lexa would be good to hear something. for now it just seems that this might be the end for our validator node

PS. (Possibly ((since there is no clear understanding)) feels a bit like being punished for a crime, for which the law was passed after the crime was committed - i thought this didnt hold heh)

LE
lexa
Nov 2023

Hey!

You’re on my to-do list for getting in touch with on Monday :slight_smile:

No, it won’t be the end of your validator node. There is a very clear understanding, which is that you should assign a new key for your Neutron node ASAP if you haven’t done it already. Once you assign a new key, it begins the 21 day period in which your old key is held in state and equivocation can still be punished.

The v14 upgrade is not expected to take place within 21 days, so by the time this feature is online, your old key will be cleared and there should be no risk of punishment for past equivocation. We are absolutely keeping your situation in mind as we schedule this upgrade.

Hope this clears things up, and please reach out to me on Discord or Telegram (@lexamichaelides for both) if you have questions or concerns.

Edit to add: Jehan has already spoken with Pupmos about this, so I consider both validators to have been informed now :pray:

MR
mrlp4
Nov 2023 2

@lexa @btruax i guess this should not go live on chain until 100% confirmed that past case (voted in prop 818) is completely worked out by affected validators, e.g. until confirmed that pumpos and citizencosmos have changed their affected keys and cool-down period of 21 days is complete before the upgrade block. Otherwise it will repeat one of the worst case on humanity practices of punishing the actions that took place before those actions was recognized as prohibited by whatever law :confused:

LE
lexa
Nov 2023

The forum post is the first step in a process that generally takes three weeks at a minimum (1 week on the forum, 2 weeks voting, + whatever buffer time is involved for feedback and reaching a Wednesday upgrade height).

Pupmos is confirmed to have changed keys already, and I’m waiting to hear back from Citizen Cosmos now. But it is a weekend, and there’s plenty of time before this goes on chain and we have to pick an upgrade height.

SE
serejandmyself
Nov 2023 1

No stress Lexa. Its just sometimes things move fast. And in theory, as @Cosmic_Validator pointed out, it could happen. That kinda shocked me. @mrlp4 already described perfect my feelings about it. Maybe its the way it was worded…

PS. @lexa i can confirm too now

CO
Cosmic_Validator
Nov 2023
btruax:

If you’re using old keys on consumer chains, you can eliminate all risk by doing a consumer key reassignment. Here are the docs on how to do a reassignment. You should do this ASAP.

lexa:

No, it won’t be the end of your validator node. There is a very clear understanding, which is that you should assign a new key for your Neutron node ASAP if you haven’t done it already. Once you assign a new key, it begins the 21 day period in which your old key is held in state and equivocation can still be punished.

lexa:

Pupmos is confirmed to have changed keys already, and I’m waiting to hear back from Citizen Cosmos now. But it is a weekend, and there’s plenty of time before this goes on chain and we have to pick an upgrade height.

Since Pupmos changed keys already, it seems the wording then is incorrect here in the documentation?:

Some validators seemed to be concerned that key reassignment was not possible now for Stride or Neutron.

FR
freak12techno
Nov 2023

I have a question not related to the upgrade, but related to equivocations and double signs on consumer chains. What concerns me is that on Neutron we are currently having the quite inconsistent situation: there are 2 validators who are marked as tombstoned (as they double-signed on Neutron chain), yet they are in fact not (as they weren’t tombstoned on Cosmos Hub chain and as Neutron takes the validators set out of Cosmos Hub, and the governance voted against slashing them). That might cause inconvenience, for example, on explorers when listing validators, some explorers might not display a validator in the active validators list as it’s tombstoned, while actually it is active and signs and produces blocks.

Are there any plans to resolve this inconsistency, for example, by having a Neutron chain upgrade that reverts these two tombstones (as the governance voted against slashing these validators)?

Not sure who to address this question to though, @lexa maybe you can answer?

SE
serejandmyself
Nov 2023 1

It really isn’t about that for me for example. It is really about much larger, and way more important things than running A node, or being slashed. Tried to express my thoughts here

Also, C.C. has reassigned keys too since yesterday

SE
serejandmyself
Nov 2023

There are other interesting things to go here. For example on Stride, it wont allow you to delegate LSM to Citizen Cosmos, as it states that the validator was “slashed” recently (there is only one occasion where the double sign occurred for us). There is a lot more related to that, but this is one of those weird occurrences that dont match the whole puzzle together.

FR
freak12techno
Nov 2023

Agree, also quite a valid example. I am pretty sure there are more cases like that I do not know about, that’s why I raised this concern here, this inconsistency makes it difficult to work with.

LE
lexa
Nov 2023 1

@serejandmyself – can you TG or Discord me (@lexamichaelides) so we can investigate some of this stuff and talk about the Neutron keys? I’m talking to the dev team and want to make sure we’re all 100% on the same page.

FL
Flo
Nov 2023

If 5% commission isnt enforced we shouldnt set this parameter to 5% at all. It would be a disadvantage in competetion for every validator that is joining after that change and secure a low commission monopole for earlier validators.

Actually I think this is a design flaw that should not be part of the v15 upgrade.

MP
mpoke
Nov 2023 1

@Flo We do plan to write for the v15 upgrade the migration code that will enforce the 5% minimum commission.

FL
Flo
Nov 2023

Okay thank you for the clarification.

But in case we increase the min commission in the future via governance we would have to enforce it again during a upgrade?

MP
mpoke
Nov 2023

Yes as the gov param only affects newly created validators and validators that are editing their settings.

SE
serejandmyself
Nov 2023

Would be interesting to see some polling results of a public opinion on some of the proposed features in v15, e.g. “enforcement of 5% min commission” before they are implemented. I have the deepest belief that it would save a hell of a lot of time to dev teams and improve design efficiency =)

TK
tknox35
Nov 2023
serejandmyself:

public opinion on some of the proposed features in v15, e.g. “enforcement of 5% min commission”

This was already put to a vote.

FL
Flo
Nov 2023

Then in my opinion there is no advantage of it being a gov paramter since it needs to be enforced to be fair for everyone.

LE
lexa
Nov 2023 1

Some big updates to the cryptographic equivocation feature are being included in a new release that will go through testing next week. This is to address concerns about: • Past equivocation on the Hub that has already been addressed via governance (e.g., Prop 818) • Multiple valid chains with the same `chain-id`, such as prior testnets, on which validators may have used their mainnet keys. A feature has been added that does the following: • For new consumer chains: • Records the consumer chain block height at the time it enters the Hub’s security. • Filters out equivocation evidence that occurred prior to that block height. • For existing consumer chains: • Records the consumer chain block height at a specified time: • Neutron: block height `4552189` • Stride: block height `6375035` • Filters out equivocation evidence that occurred prior to that block height. In effect, this means equivocation on consumer chains prior to entering the Hub’s security will not be punished by the Hub. For existing consumer chains which are already within the Hub’s security, any equivocation prior to today will not be punished. I had raised some concerns…

Excerpt (1188 of 1613 characters). Read the whole post on the forum ↗

SE
serejandmyself
Nov 2023

Thats the issue. Instead of understanding the opinion on something, its proposed for voting.

WA
waqarmmirza
Nov 2023

Does this upgrade have the implementation of min 5% commission?

LE
lexa
Nov 2023 1

No, that is expected for v15. See Marius’s comment above.

WA
waqarmmirza
Nov 2023 1

Thanks, and apologies for the laziness.

← Back to Discussions