nominal

Consensus witness node

An extra vote that lives somewhere else

Clusters with an even number of voters cannot break a tie by themselves, and clusters in one datacentre cannot survive losing it. This node participates in elections as a non-storing member, so a quorum survives the loss of any single site.

Raft Multi-Paxos lease arbitration region: eu-central no replica data
Live

Attached clusters

6 clusters · heartbeat 500 ms · registry
ClusterLast heartbeatLeaseTermRole
atlas-euPrimary ledger, 3 voters4 s ago
4 471arbiter
ledger-fraTransaction log, 4 voters6 s ago
8 830arbiter
meridianConfiguration store, 3 voters5 s ago
1 204arbiter
parcel-nlRouting table, 2 voters9 s ago
19 077tie-break
vaultlineKey custody, 5 voters5 s ago
612arbiter
stillwaterArchive index, 3 voters12 s ago
88standby
Heartbeat continuity · last 48 windows
24 h agonow

Endpoints

/v1/health

Node liveness, clock skew and attached cluster count. Try it.

/v1/vote

Pre-vote and vote responses for an election in a given term. Rules.

/v1/arbitrate

Tie-breaking decision for a partitioned cluster, binding for one lease period.

Registration

A cluster registers once and receives a member identifier. From then on the witness answers votes for that cluster and nothing else; there is no shared identity between registrations.

The node never receives, stores or forwards replica data. It sees member identifiers, terms and log indices, which is the minimum required to decide an election honestly.

Requests from unregistered clusters are refused rather than answered with a neutral vote, because a neutral vote is indistinguishable from a partition to the caller.

ops@quorumpraesens.dev

Operating limits

Heartbeat interval500 ms
Lease TTL5 s
Election timeout1.5–3 s randomised
Max clusters per node32
Clock disciplineNTP, skew < 50 ms
Decision retention90 d