From aad2f1481fef336b5aec6ad026d8b329dbb6accd Mon Sep 17 00:00:00 2001 From: goldsquid Date: Fri, 14 Nov 2025 11:09:50 +0700 Subject: [PATCH] update + hoodi --- ...-hoodi-geth-pruned-pebble-path--nimbus.yml | 200 +++++++++++++++++ ...ethereum-hoodi-geth-pruned-pebble-path.yml | 201 ++++++++++++++++++ ...ereum-mainnet-geth-minimal-pebble-path.yml | 2 +- ...ainnet-geth-pruned-pebble-path--nimbus.yml | 2 +- ...hereum-mainnet-geth-pruned-pebble-path.yml | 2 +- ...epolia-geth-pruned-pebble-path--nimbus.yml | 2 +- ...hereum-sepolia-geth-pruned-pebble-path.yml | 2 +- 7 files changed, 406 insertions(+), 5 deletions(-) create mode 100644 ethereum/geth/ethereum-hoodi-geth-pruned-pebble-path--nimbus.yml create mode 100644 ethereum/geth/ethereum-hoodi-geth-pruned-pebble-path.yml diff --git a/ethereum/geth/ethereum-hoodi-geth-pruned-pebble-path--nimbus.yml b/ethereum/geth/ethereum-hoodi-geth-pruned-pebble-path--nimbus.yml new file mode 100644 index 00000000..da471fa6 --- /dev/null +++ b/ethereum/geth/ethereum-hoodi-geth-pruned-pebble-path--nimbus.yml @@ -0,0 +1,200 @@ +--- +x-logging-defaults: &logging-defaults + driver: json-file + options: + max-size: "10m" + max-file: "3" + +# Usage: +# +# mkdir rpc && cd rpc +# +# git init +# git remote add origin https://github.com/StakeSquid/ethereum-rpc-docker.git +# git fetch origin vibe +# git checkout origin/vibe +# +# docker run --rm alpine sh -c "printf '0x'; head -c32 /dev/urandom | xxd -p -c 64" > .jwtsecret +# +# env +# ... +# IP=$(curl ipinfo.io/ip) +# DOMAIN=${IP}.traefik.me +# COMPOSE_FILE=base.yml:rpc.yml:ethereum/geth/ethereum-hoodi-geth-pruned-pebble-path--nimbus.yml +# +# docker compose up -d +# +# curl -X POST https://${IP}.traefik.me/ethereum-hoodi-geth \ +# -H "Content-Type: application/json" \ +# --data '{"jsonrpc":"2.0","method":"eth_blockNumber","params":[],"id":1}' + +services: + ethereum-hoodi-geth: + image: ${ETHEREUM_GETH_IMAGE:-ethereum/client-go}:${ETHEREUM_HOODI_GETH_VERSION:-v1.16.7} + sysctls: + # TCP Performance + net.ipv4.tcp_slow_start_after_idle: 0 # Disable slow start after idle + net.ipv4.tcp_no_metrics_save: 1 # Disable metrics cache + net.ipv4.tcp_rmem: 4096 87380 16777216 # Increase TCP read buffers + net.ipv4.tcp_wmem: 4096 87380 16777216 # Increase TCP write buffers + net.core.somaxconn: 32768 # Higher connection queue + # Memory/Connection Management + # net.core.netdev_max_backlog: 50000 # Increase network buffer + net.ipv4.tcp_max_syn_backlog: 30000 # More SYN requests + net.ipv4.tcp_max_tw_buckets: 2000000 # Allow more TIME_WAIT sockets + ulimits: + nofile: 1048576 # Max open files (for RPC/WS connections) + user: root + ports: + - 11917:11917 + - 11917:11917/udp + expose: + - 8545 + - 6060 + - 8551 + command: + - --datadir=/root/.ethereum + - --db.engine=pebble + - --gcmode=full + - --hoodi + - --maxpeers=50 + - --metrics + - --metrics.addr=0.0.0.0 + - --metrics.port=6060 + - --nat=extip:${IP} + - --port=11917 + - --rpc.gascap=600000000 + - --rpc.txfeecap=0 + - --state.scheme=path + - --syncmode=snap + - --http + - --http.addr=0.0.0.0 + - --http.api=eth,net,web3,debug,admin,txpool,engine + - --http.port=8545 + - --http.vhosts=* + - --ws + - --ws.addr=0.0.0.0 + - --ws.api=eth,net,web3,debug,admin,txpool,engine + - --ws.origins=* + - --ws.port=8545 + - --authrpc.addr=0.0.0.0 + - --authrpc.jwtsecret=/jwtsecret + - --authrpc.vhosts=* + restart: unless-stopped + stop_grace_period: 5m + networks: + - chains + volumes: + - ${ETHEREUM_HOODI_GETH_PRUNED_PEBBLE_PATH_DATA:-ethereum-hoodi-geth-pruned-pebble-path}:/root/.ethereum + - .jwtsecret:/jwtsecret:ro + - /slowdisk:/slowdisk + logging: *logging-defaults + labels: + - prometheus-scrape.enabled=true + - prometheus-scrape.port=6060 + - prometheus-scrape.path=/debug/metrics/prometheus + - traefik.enable=true + - traefik.http.middlewares.ethereum-hoodi-geth-pruned-pebble-path-stripprefix.stripprefix.prefixes=/ethereum-hoodi-geth + - traefik.http.services.ethereum-hoodi-geth-pruned-pebble-path.loadbalancer.server.port=8545 + - ${NO_SSL:-traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path.entrypoints=websecure} + - ${NO_SSL:-traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path.tls.certresolver=myresolver} + - ${NO_SSL:-traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path.rule=Host(`$DOMAIN`) && (Path(`/ethereum-hoodi-geth`) || Path(`/ethereum-hoodi-geth/`))} + - ${NO_SSL:+traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path.rule=Path(`/ethereum-hoodi-geth`) || Path(`/ethereum-hoodi-geth/`)} + - traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path.middlewares=ethereum-hoodi-geth-pruned-pebble-path-stripprefix, ipallowlist + + ethereum-hoodi-geth-node: + image: ${ETHEREUM_NIMBUS_IMAGE:-statusim/nimbus-eth2}:${ETHEREUM_HOODI_NIMBUS_VERSION:-amd64-v25.7.1} + user: root + ports: + - 16917:16917 + - 16917:16917/udp + expose: + - 3500 + entrypoint: /bin/sh -c '/home/user/nimbus-eth2/build/nimbus_beacon_node trustedNodeSync --network=hoodi --trusted-node-url= --backfill=false; exec /home/user/nimbus-eth2/build/nimbus_beacon_node "$@"' -- + command: + - --history=prune + - --jwt-secret=/jwtsecret + - --metrics-address=0.0.0.0 + - --metrics-port=8008 + - --nat=extip:${IP} + - --network=hoodi + - --rest + - --rest-address=0.0.0.0 + - --rest-port=3500 + - --tcp-port=16917 + - --udp-port=16917 + - --web3-url=http://ethereum-hoodi-geth:8551 + restart: unless-stopped + depends_on: + - ethereum-hoodi-geth + networks: + - chains + volumes: + - ${ETHEREUM_HOODI_GETH_PRUNED_PEBBLE_PATH__NIMBUS_DATA:-ethereum-hoodi-geth-pruned-pebble-path_nimbus}:/root/.cache/nimbus/BeaconNode + - .jwtsecret:/jwtsecret:ro + logging: *logging-defaults + labels: + - prometheus-scrape.enabled=true + - prometheus-scrape.port=8008 + - prometheus-scrape.path=/metrics + - traefik.enable=true + - traefik.http.middlewares.ethereum-hoodi-geth-pruned-pebble-path-node-stripprefix.stripprefix.prefixes=/ethereum-hoodi-geth + - traefik.http.services.ethereum-hoodi-geth-pruned-pebble-path-node.loadbalancer.server.port=3500 + - ${NO_SSL:-traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path-node.entrypoints=websecure} + - ${NO_SSL:-traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path-node.tls.certresolver=myresolver} + - ${NO_SSL:-traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path-node.rule=Host(`$DOMAIN`) && PathPrefix(`/ethereum-hoodi-geth/eth`)} + - ${NO_SSL:+traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path-node.rule=PathPrefix(`/ethereum-hoodi-geth/eth`)} + - traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path-node.middlewares=ethereum-hoodi-geth-pruned-pebble-path-node-stripprefix, ipallowlist + +volumes: + ethereum-hoodi-geth-pruned-pebble-path: + ethereum-hoodi-geth-pruned-pebble-path_nimbus: + +x-upstreams: + - id: $${ID} + labels: + provider: $${PROVIDER} + connection: + generic: + rpc: + url: $${RPC_URL} + ws: + frameSize: 20Mb + msgSize: 50Mb + url: $${WS_URL} + chain: ethereum + method-groups: + enabled: + - debug + - filter + methods: + disabled: + # not compatible with path state scheme + - name: debug_traceBlockByHash + enabled: + - name: txpool_content # TODO: should be disabled for rollup nodes + # standard geth only + - name: debug_getRawBlock + - name: debug_getRawTransaction + - name: debug_getRawReceipts + - name: debug_getRawHeader + - name: debug_getBadBlocks + # non standard geth only slightly dangerous + - name: debug_intermediateRoots + - name: debug_dumpBlock + # standard geth and erigon + - name: debug_accountRange + - name: debug_getModifiedAccountsByNumber + - name: debug_getModifiedAccountsByHash + # non standard geth and erigon + - name: eth_getRawTransactionByHash + - name: eth_getRawTransactionByBlockHashAndIndex + - id: $${ID}-beacon-chain + chain: eth-beacon-chain-hoodi + labels: + provider: $${PROVIDER}-beacon-chain + connection: + generic: + rpc: + url: $${RPC_URL} +... \ No newline at end of file diff --git a/ethereum/geth/ethereum-hoodi-geth-pruned-pebble-path.yml b/ethereum/geth/ethereum-hoodi-geth-pruned-pebble-path.yml new file mode 100644 index 00000000..c36d183e --- /dev/null +++ b/ethereum/geth/ethereum-hoodi-geth-pruned-pebble-path.yml @@ -0,0 +1,201 @@ +--- +x-logging-defaults: &logging-defaults + driver: json-file + options: + max-size: "10m" + max-file: "3" + +# Usage: +# +# mkdir rpc && cd rpc +# +# git init +# git remote add origin https://github.com/StakeSquid/ethereum-rpc-docker.git +# git fetch origin vibe +# git checkout origin/vibe +# +# docker run --rm alpine sh -c "printf '0x'; head -c32 /dev/urandom | xxd -p -c 64" > .jwtsecret +# +# env +# ... +# IP=$(curl ipinfo.io/ip) +# DOMAIN=${IP}.traefik.me +# COMPOSE_FILE=base.yml:rpc.yml:ethereum/geth/ethereum-hoodi-geth-pruned-pebble-path.yml +# +# docker compose up -d +# +# curl -X POST https://${IP}.traefik.me/ethereum-hoodi-geth \ +# -H "Content-Type: application/json" \ +# --data '{"jsonrpc":"2.0","method":"eth_blockNumber","params":[],"id":1}' + +services: + ethereum-hoodi-geth: + image: ${ETHEREUM_GETH_IMAGE:-ethereum/client-go}:${ETHEREUM_HOODI_GETH_VERSION:-v1.16.7} + sysctls: + # TCP Performance + net.ipv4.tcp_slow_start_after_idle: 0 # Disable slow start after idle + net.ipv4.tcp_no_metrics_save: 1 # Disable metrics cache + net.ipv4.tcp_rmem: 4096 87380 16777216 # Increase TCP read buffers + net.ipv4.tcp_wmem: 4096 87380 16777216 # Increase TCP write buffers + net.core.somaxconn: 32768 # Higher connection queue + # Memory/Connection Management + # net.core.netdev_max_backlog: 50000 # Increase network buffer + net.ipv4.tcp_max_syn_backlog: 30000 # More SYN requests + net.ipv4.tcp_max_tw_buckets: 2000000 # Allow more TIME_WAIT sockets + ulimits: + nofile: 1048576 # Max open files (for RPC/WS connections) + user: root + ports: + - 11917:11917 + - 11917:11917/udp + expose: + - 8545 + - 6060 + - 8551 + command: + - --datadir=/root/.ethereum + - --db.engine=pebble + - --gcmode=full + - --hoodi + - --maxpeers=50 + - --metrics + - --metrics.addr=0.0.0.0 + - --metrics.port=6060 + - --nat=extip:${IP} + - --port=11917 + - --rpc.gascap=600000000 + - --rpc.txfeecap=0 + - --state.scheme=path + - --syncmode=snap + - --http + - --http.addr=0.0.0.0 + - --http.api=eth,net,web3,debug,admin,txpool,engine + - --http.port=8545 + - --http.vhosts=* + - --ws + - --ws.addr=0.0.0.0 + - --ws.api=eth,net,web3,debug,admin,txpool,engine + - --ws.origins=* + - --ws.port=8545 + - --authrpc.addr=0.0.0.0 + - --authrpc.jwtsecret=/jwtsecret + - --authrpc.vhosts=* + restart: unless-stopped + stop_grace_period: 5m + networks: + - chains + volumes: + - ${ETHEREUM_HOODI_GETH_PRUNED_PEBBLE_PATH_DATA:-ethereum-hoodi-geth-pruned-pebble-path}:/root/.ethereum + - .jwtsecret:/jwtsecret:ro + - /slowdisk:/slowdisk + logging: *logging-defaults + labels: + - prometheus-scrape.enabled=true + - prometheus-scrape.port=6060 + - prometheus-scrape.path=/debug/metrics/prometheus + - traefik.enable=true + - traefik.http.middlewares.ethereum-hoodi-geth-pruned-pebble-path-stripprefix.stripprefix.prefixes=/ethereum-hoodi-geth + - traefik.http.services.ethereum-hoodi-geth-pruned-pebble-path.loadbalancer.server.port=8545 + - ${NO_SSL:-traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path.entrypoints=websecure} + - ${NO_SSL:-traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path.tls.certresolver=myresolver} + - ${NO_SSL:-traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path.rule=Host(`$DOMAIN`) && (Path(`/ethereum-hoodi-geth`) || Path(`/ethereum-hoodi-geth/`))} + - ${NO_SSL:+traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path.rule=Path(`/ethereum-hoodi-geth`) || Path(`/ethereum-hoodi-geth/`)} + - traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path.middlewares=ethereum-hoodi-geth-pruned-pebble-path-stripprefix, ipallowlist + + ethereum-hoodi-geth-node: + image: ${ETHEREUM_PRYSM_IMAGE:-prysmaticlabs/prysm-beacon-chain}:${ETHEREUM_HOODI_PRYSM_VERSION:-v6.0.4} + ports: + - 16917:16917 + - 16917:16917/udp + expose: + - 3500 + command: + - --accept-terms-of-use + - --beacon-db-pruning + - --checkpoint-sync-url= + - --datadir=/data + - --enable-historical-state-representation=false + - --execution-endpoint=http://ethereum-hoodi-geth:8551 + - --grpc-gateway-host=0.0.0.0 + - --hoodi + - --jwt-secret=/jwtsecret + - --monitoring-host=0.0.0.0 + - --monitoring-host=0.0.0.0 + - --monitoring-port=8080 + - --p2p-tcp-port=16917 + - --p2p-udp-port=16917 + - --rpc-host=0.0.0.0 + restart: unless-stopped + depends_on: + - ethereum-hoodi-geth + networks: + - chains + volumes: + - ${ETHEREUM_HOODI_GETH_PRUNED_PEBBLE_PATH__PRYSM_DATA:-ethereum-hoodi-geth-pruned-pebble-path_prysm}:/data + - .jwtsecret:/jwtsecret:ro + logging: *logging-defaults + labels: + - prometheus-scrape.enabled=true + - prometheus-scrape.port=8080 + - prometheus-scrape.path=/metrics + - traefik.enable=true + - traefik.http.middlewares.ethereum-hoodi-geth-pruned-pebble-path-node-stripprefix.stripprefix.prefixes=/ethereum-hoodi-geth + - traefik.http.services.ethereum-hoodi-geth-pruned-pebble-path-node.loadbalancer.server.port=3500 + - ${NO_SSL:-traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path-node.entrypoints=websecure} + - ${NO_SSL:-traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path-node.tls.certresolver=myresolver} + - ${NO_SSL:-traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path-node.rule=Host(`$DOMAIN`) && PathPrefix(`/ethereum-hoodi-geth/eth`)} + - ${NO_SSL:+traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path-node.rule=PathPrefix(`/ethereum-hoodi-geth/eth`)} + - traefik.http.routers.ethereum-hoodi-geth-pruned-pebble-path-node.middlewares=ethereum-hoodi-geth-pruned-pebble-path-node-stripprefix, ipallowlist + +volumes: + ethereum-hoodi-geth-pruned-pebble-path: + ethereum-hoodi-geth-pruned-pebble-path_prysm: + +x-upstreams: + - id: $${ID} + labels: + provider: $${PROVIDER} + connection: + generic: + rpc: + url: $${RPC_URL} + ws: + frameSize: 20Mb + msgSize: 50Mb + url: $${WS_URL} + chain: ethereum + method-groups: + enabled: + - debug + - filter + methods: + disabled: + # not compatible with path state scheme + - name: debug_traceBlockByHash + enabled: + - name: txpool_content # TODO: should be disabled for rollup nodes + # standard geth only + - name: debug_getRawBlock + - name: debug_getRawTransaction + - name: debug_getRawReceipts + - name: debug_getRawHeader + - name: debug_getBadBlocks + # non standard geth only slightly dangerous + - name: debug_intermediateRoots + - name: debug_dumpBlock + # standard geth and erigon + - name: debug_accountRange + - name: debug_getModifiedAccountsByNumber + - name: debug_getModifiedAccountsByHash + # non standard geth and erigon + - name: eth_getRawTransactionByHash + - name: eth_getRawTransactionByBlockHashAndIndex + - id: $${ID}-beacon-chain + chain: eth-beacon-chain-hoodi + labels: + provider: $${PROVIDER}-beacon-chain + connection: + generic: + rpc: + url: $${RPC_URL} +... \ No newline at end of file diff --git a/ethereum/geth/ethereum-mainnet-geth-minimal-pebble-path.yml b/ethereum/geth/ethereum-mainnet-geth-minimal-pebble-path.yml index b19b0ecd..9f392c5c 100644 --- a/ethereum/geth/ethereum-mainnet-geth-minimal-pebble-path.yml +++ b/ethereum/geth/ethereum-mainnet-geth-minimal-pebble-path.yml @@ -30,7 +30,7 @@ x-logging-defaults: &logging-defaults services: ethereum-mainnet-geth-minimal: - image: ${ETHEREUM_GETH_IMAGE:-ethereum/client-go}:${ETHEREUM_MAINNET_GETH_VERSION:-v1.16.5} + image: ${ETHEREUM_GETH_IMAGE:-ethereum/client-go}:${ETHEREUM_MAINNET_GETH_VERSION:-v1.16.7} sysctls: # TCP Performance net.ipv4.tcp_slow_start_after_idle: 0 # Disable slow start after idle diff --git a/ethereum/geth/ethereum-mainnet-geth-pruned-pebble-path--nimbus.yml b/ethereum/geth/ethereum-mainnet-geth-pruned-pebble-path--nimbus.yml index 95a14b2e..75459fb1 100644 --- a/ethereum/geth/ethereum-mainnet-geth-pruned-pebble-path--nimbus.yml +++ b/ethereum/geth/ethereum-mainnet-geth-pruned-pebble-path--nimbus.yml @@ -30,7 +30,7 @@ x-logging-defaults: &logging-defaults services: ethereum-mainnet-geth: - image: ${ETHEREUM_GETH_IMAGE:-ethereum/client-go}:${ETHEREUM_MAINNET_GETH_VERSION:-v1.16.5} + image: ${ETHEREUM_GETH_IMAGE:-ethereum/client-go}:${ETHEREUM_MAINNET_GETH_VERSION:-v1.16.7} sysctls: # TCP Performance net.ipv4.tcp_slow_start_after_idle: 0 # Disable slow start after idle diff --git a/ethereum/geth/ethereum-mainnet-geth-pruned-pebble-path.yml b/ethereum/geth/ethereum-mainnet-geth-pruned-pebble-path.yml index 2fc1ef1d..74afc7cc 100644 --- a/ethereum/geth/ethereum-mainnet-geth-pruned-pebble-path.yml +++ b/ethereum/geth/ethereum-mainnet-geth-pruned-pebble-path.yml @@ -30,7 +30,7 @@ x-logging-defaults: &logging-defaults services: ethereum-mainnet-geth: - image: ${ETHEREUM_GETH_IMAGE:-ethereum/client-go}:${ETHEREUM_MAINNET_GETH_VERSION:-v1.16.5} + image: ${ETHEREUM_GETH_IMAGE:-ethereum/client-go}:${ETHEREUM_MAINNET_GETH_VERSION:-v1.16.7} sysctls: # TCP Performance net.ipv4.tcp_slow_start_after_idle: 0 # Disable slow start after idle diff --git a/ethereum/geth/ethereum-sepolia-geth-pruned-pebble-path--nimbus.yml b/ethereum/geth/ethereum-sepolia-geth-pruned-pebble-path--nimbus.yml index d06fd6b6..ead56bfa 100644 --- a/ethereum/geth/ethereum-sepolia-geth-pruned-pebble-path--nimbus.yml +++ b/ethereum/geth/ethereum-sepolia-geth-pruned-pebble-path--nimbus.yml @@ -30,7 +30,7 @@ x-logging-defaults: &logging-defaults services: ethereum-sepolia-geth: - image: ${ETHEREUM_GETH_IMAGE:-ethereum/client-go}:${ETHEREUM_SEPOLIA_GETH_VERSION:-v1.16.5} + image: ${ETHEREUM_GETH_IMAGE:-ethereum/client-go}:${ETHEREUM_SEPOLIA_GETH_VERSION:-v1.16.7} sysctls: # TCP Performance net.ipv4.tcp_slow_start_after_idle: 0 # Disable slow start after idle diff --git a/ethereum/geth/ethereum-sepolia-geth-pruned-pebble-path.yml b/ethereum/geth/ethereum-sepolia-geth-pruned-pebble-path.yml index 448a2e89..f6500ea4 100644 --- a/ethereum/geth/ethereum-sepolia-geth-pruned-pebble-path.yml +++ b/ethereum/geth/ethereum-sepolia-geth-pruned-pebble-path.yml @@ -30,7 +30,7 @@ x-logging-defaults: &logging-defaults services: ethereum-sepolia-geth: - image: ${ETHEREUM_GETH_IMAGE:-ethereum/client-go}:${ETHEREUM_SEPOLIA_GETH_VERSION:-v1.16.5} + image: ${ETHEREUM_GETH_IMAGE:-ethereum/client-go}:${ETHEREUM_SEPOLIA_GETH_VERSION:-v1.16.7} sysctls: # TCP Performance net.ipv4.tcp_slow_start_after_idle: 0 # Disable slow start after idle