Abstract
A replicated state machine maintains a quorum-attested committed-state shadow in addition to a consensus-replicated durable log. The shadow is organized into serviceable units (e.g., ranges, shards, or object groups) and includes, per unit, a log term/index through which the unit is safe and a deterministic digest of unit state, optionally with predecessor linkage, coverage metadata, and replica attestations. After leader failover, a replacement leader exchanges shadow records or attestations with followers and computes certified recovery frontiers per unit. In partial-recovery mode, a request gate permits reads from the shadow for certified units and may admit writes for certified units into a recovery overlay while continuing normal consensus replication. Background canonical recovery loads snapshots and replays the log, verifying reconstructed digests against shadow digests to promote units to canonical readiness or downgrade units upon mismatch.
Creative Commons License

This work is licensed under a Creative Commons Attribution 4.0 License.
Recommended Citation
Anonymous, "Quorum-Certified Partial State Recovery in Replicated Distributed Systems", Technical Disclosure Commons, ()
https://www.tdcommons.org/dpubs_series/10620