LaserData Cloud
Deployments

Snapshots

Collect node diagnostics and download a searchable HTML report

A snapshot records diagnostic information from a deployment node. Warden collects 30 or more categories, including system state, runtime health, certificates, and network configuration. It packages the results in a self-contained HTML report that you can search and share.

See it in action

Open an example report from a live deployment to see the diagnostic output.

Warden Snapshot report - light theme

What Is Captured

Warden runs diagnostic commands in parallel and limits how long each command can run. It removes secrets from the output. The HTML report groups the results into these categories.

System & Hardware

CategoryWhat's Collected
System InformationOS version, kernel, hostname, cloud metadata (AWS/GCP)
CPUPer-core usage, load average, CPU count, architecture
MemoryUsage breakdown, huge pages, NUMA, top consumers, OOM activity
Disk & StorageFilesystem usage, inodes, NVMe health, DRBD status, I/O stats
NetworkInterfaces, routes, listening ports, iptables, traffic shaping, TCP states
ProcessesTop consumers by CPU/memory, LaserData process details (PID, threads, FDs, uptime)

Runtimes & Services

CategoryWhat's Collected
Installed VersionsWarden, Iggy, Connectors, Prober binary versions and capabilities
Runtime TelemetryPer-runtime heartbeats, CPU, memory, uptime, connector sources/sinks
Iggy Server HealthAuthenticated stats - messages, streams, topics, clients, partitions, consumer groups
Systemd ServicesService states, failed units, restart history (24h), timers
Warden Process MetricsCPU/memory/disk/network I/O, file descriptors, thread count

Security & Certificates

CategoryWhat's Collected
Certificates & TLSFull chain validation, expiry warnings, CA trust, Let's Encrypt status, ACME renewal
Credentials StatusFile permissions, ages, PAT freshness (values redacted)
Security ContextAppArmor/SELinux, ASLR, entropy, kernel hardening

Kernel & Stability

CategoryWhat's Collected
Sysctl & TuningTCP buffer sizes, memory settings, mimalloc overrides
Kernel ModulesLoaded modules, interrupts, softirqs, ECC memory errors
System StabilityReboot history, vmstat, swap activity, zombie detection
Coredump HistoryCrash records (last 30 days) with binary identification

Logs & Connectivity

CategoryWhat's Collected
Service LogsLast 2000 lines per runtime (Warden, Iggy, Connectors, Prober) + errors filtered
System LogsKernel errors, dmesg, boot log errors, journal storage
Outbound ConnectivityACME endpoint, port 80/443 reachability
Time SynchronizationNTP/chrony status, time drift

Interactive Report

The report includes these tools:

  • A dashboard with CPU, memory, disk, I/O throughput, and Iggy statistics.
  • Search across sections, with matching text highlighted.
  • Dark and light themes, selected in the header.
  • Controls to expand or collapse sections and find errors.
  • A copy button for each entry.
  • A layout for printing.

How It Works

A snapshot follows this sequence:

  1. You request it through the Console or API.
  2. The Supervisor sends a snapshot task to each node.
  3. Warden runs diagnostic commands in parallel, with a 30s timeout for each command.
  4. Warden removes secrets from the output.
  5. Warden creates the HTML report.
  6. If requested, it includes an Iggy snapshot of the data directory as a ZIP.
  7. It uploads the report to encrypted cloud storage.
  8. You download the ZIP with the report and optional Iggy snapshot.

Creating a Snapshot

From the Console

  1. Open your deployment in the Console.
  2. Open the Snapshots tab.
  3. Click Create Snapshot.

The status changes from Processing to Completed after all nodes finish.

Options

OptionDefaultDescription
redact_secretstrueMask sensitive values (passwords, keys, tokens) in the report
include_iggytrueInclude Iggy server data snapshot as a separate ZIP

Snapshot Status

StatusMeaning
ProcessingSnapshot tasks dispatched, waiting for nodes to complete
CompletedAll nodes have uploaded their reports - ready to download

Only one snapshot can run for a deployment at a time.

Plan Limits

ResourceBasicProEnterprise
Snapshots per deployment3520
Snapshot retention7 days14 days90 days

Reading and downloading snapshots require deployment:read. Creating or deleting them requires deployment:manage.

API Reference

Create a Snapshot

curl -X POST {supervisor_url}/deployments/{deployment_id}/snapshots \
  -H "ld-api-key: YOUR_API_KEY" \
  -H "Content-Type: application/json" \
  -d '{
    "redact_secrets": true,
    "include_iggy": true
  }'

Both fields are optional and default to true. A successful request returns 204 No Content.

List Snapshots

curl "{supervisor_url}/deployments/{deployment_id}/snapshots?page=1&results=10" \
  -H "ld-api-key: YOUR_API_KEY"
{
  "items": [
    {
      "id": 1,
      "tenant_id": 1,
      "division_id": 1,
      "environment_id": 1,
      "deployment_id": 1,
      "node_id": 610809900976570889,
      "deployment_name": "my-cluster",
      "name": "snapshot-20260601-103000",
      "status": "completed",
      "created_at": "2026-06-01T10:30:00Z",
      "completed_at": "2026-06-01T10:31:00Z"
    }
  ],
  "page": 1,
  "total_results": 1,
  "total_pages": 1
}

Download a Snapshot

curl {supervisor_url}/deployments/{deployment_id}/snapshots/{snapshot_id}/download \
  -H "ld-api-key: YOUR_API_KEY"
{
  "url": "https://storage.example.com/snapshots/...?signature=..."
}

The response contains a presigned URL, a temporary authorized download link, for the snapshot ZIP.

Delete a Snapshot

curl -X DELETE {supervisor_url}/deployments/{deployment_id}/snapshots/{snapshot_id} \
  -H "ld-api-key: YOUR_API_KEY"

A successful request returns 204 No Content.

On this page