Skip to content

Infrastructure for the Blockchain-based Tree Tracking Hyperledger Fabric-Network - #279

Open
imos64 wants to merge 15 commits into
Greenstand:masterfrom
imos64:master
Open

imos64 wants to merge 15 commits into
Greenstand:masterfrom
imos64:master

Conversation

@imos64

@imos64 imos64 commented Sep 17, 2025

Copy link
Copy Markdown
Member

Certificate Authority infrastructure for the Hyperledger Fabric network, including Root CA, Intermediate CAs, deployment scripts, and management tools.

@imos64

imos64 commented Sep 17, 2025

Copy link
Copy Markdown
Member Author

Hi @dadiorchen your approval is required for my Infrastructure for the Blockchain-based Tree Tracking Hyperledger Fabric-Network pull request

@mckornfield mckornfield left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

is this already deployed? jumping back in so mostly asking questions

Comment thread hyperledger-fabric-network/ca/helm-charts/greenstand-ca/templates/deployment.yaml Outdated
Comment thread hyperledger-fabric-network/ca/helm-charts/greenstand-ca/Chart.yaml Outdated
Comment thread hyperledger-fabric-network/ca/helm-charts/investor-ca/Chart.yaml Outdated
Comment thread hyperledger-fabric-network/ca/helm-charts/verifier-ca/values.yaml Outdated
Comment thread hyperledger-fabric-network/ca/scripts/create-ca-secrets.sh Outdated
Comment thread hyperledger-fabric-network/ca/scripts/notes-guide.sh Outdated
Comment thread hyperledger-fabric-network/ca/scripts/restore-ca.sh Outdated
@imos64
imos64 requested a review from mckornfield September 6, 2026 07:59
@imos64 imos64 closed this Sep 6, 2026
@imos64 imos64 reopened this Sep 6, 2026
@imos64

imos64 commented Sep 6, 2026

Copy link
Copy Markdown
Member Author

Hi @dadiorchen and @mckornfield This PR establishes an enterprise-oriented Hyperledger Fabric integration foundation for the Greenstand TreeTracker platform, supporting auditable tree-tracking records and traceability across capture, verification, and token workflows.

🌳 Hyperledger Fabric Integration Foundation — TreeTracker

The deployment introduces a production-grade blockchain network topology, along with modular Helm charts, Kubernetes configuration, deployment/lifecycle scripts, and comprehensive documentation covering architecture, microservice integration, identity management, persistent storage, and operational recovery.


📊 Network Topology Summary

Component Count Notes
Certificate Authorities (CAs) 5 Identity & MSP management
Orderers 10 Split across 2 independent Raft groups (5 each)
Peers 8 Endorsement & ledger maintenance
CouchDB Instances 8 State database, 1:1 with peers
Chaincode Services 2 Capture/verification + token logic
Persistent Volume Claims 39 Durable storage across all stateful components

🏗️ High-Level Architecture

flowchart TB
    APP[TreeTracker Microservices - Capture, Verification, Token]

    CA1[Orderer Org CA] -.-> O1
    CA1 -.-> O6
    CA2[Org 1 CA] -.-> P1
    CA3[Org 2 CA] -.-> P3
    CA4[Org 3 CA] -.-> P5
    CA5[Org 4 CA] -.-> P7

    O1[Orderer 1, Raft Group 1] --> P1
    P1 --> O1
    O6[Orderer 6, Raft Group 2] --> P8
    P8 --> O6

    APP --> P1
    APP --> P4
    APP --> P8

    P1[Peer 1] --- DB1[(CouchDB 1)]
    P2[Peer 2] --- DB2[(CouchDB 2)]
    P3[Peer 3] --- DB3[(CouchDB 3)]
    P4[Peer 4] --- DB4[(CouchDB 4)]
    P5[Peer 5] --- DB5[(CouchDB 5)]
    P6[Peer 6] --- DB6[(CouchDB 6)]
    P7[Peer 7] --- DB7[(CouchDB 7)]
    P8[Peer 8] --- DB8[(CouchDB 8)]

    P1 --> CC1[Capture and Verification Chaincode]
    P4 --> CC1
    P5 --> CC2[Token and Traceability Chaincode]
    P8 --> CC2

    O1 --- STORAGE[39 Persistent Volume Claims]
    P1 --- STORAGE
    CA1 --- STORAGE
Loading

Network summary: 5 Certificate Authorities, 10 Orderers across 2 Raft groups, 8 Peers, 8 CouchDB instances, 2 Chaincode services, 39 Persistent Volume Claims.


📦 What's Included

  • Helm Charts — modular, per-component charts for CAs, orderers, peers, CouchDB, and chaincode
  • Kubernetes Configuration — manifests for networking, service discovery, and secrets/config management
  • Deployment & Lifecycle Scripts — bootstrap, channel creation, chaincode install/approve/commit, and teardown
  • Documentation — architecture overview, microservice integration guide, identity/MSP management, persistent storage design, and operational recovery runbooks

✅ Outcome

This establishes a structured, maintainable foundation for blockchain-backed transparency and accountability across the TreeTracker ecosystem — enabling auditable, tamper-evident records for every tree capture, verification, and token event.

@mckornfield

Copy link
Copy Markdown
Collaborator

[bot] Nice — the new scripts/lib/ orchestration is careful here: no shell=True, secrets never get printed, overwrite protection on identity creation, and validate() hard-fails on unpinned images / missing probes / privilege escalation. No concerns.

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants