Repository navigation
chore: update oracle allowlist for EDF and bump validator-ejector to 2.2.1 - #330
Merged
Merged
Conversation
…2.2.1 Lido oracle members move to EDF (LIP-37) DelegationContracts. The ejector verifies the delegate EOA that signs the report, so the allowlist has to hold delegate keys, and only ejector 2.2.0+ can verify EDF reports. Mainnet (vote ObolNetwork#205, not yet enacted): current oracle EOAs plus the EDF delegate EOAs, so the ejector verifies reports from before and after enactment. Also picks up the Chorus One and Stakefish key rotations from April that never landed here. Hoodi (EDF already active): replaced with the ten delegate EOAs. Default validator-ejector image 1.9.0 -> 2.2.1.
Same shape as Hoodi. Avoids a follow-up PR to drop the pre-EDF oracle EOAs after vote ObolNetwork#205 is enacted.
KaloyanTanev
approved these changes
Sep 16, 2026
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Lido oracle members are moving to EDF (LIP-37) DelegationContracts. Oracle reports are then submitted through the delegation contract, signed by a delegate EOA. The ejector verifies that delegate key, so
VE_ORACLE_ADDRESSES_ALLOWLISThas to hold delegate EOAs, and only validator-ejector 2.2.0+ can verify EDF reports.Guide: https://hackmd.io/P95OOWJ0QZSfvguSbRp5HA
Proposal: https://research.lido.fi/t/lip-37-execution-delegation-framework-edf/11746
Changes
docker-compose.yml: defaultVALIDATOR_EJECTOR_VERSION1.9.0 -> 2.2.1 (release)..env.sample.mainnet: allowlist replaced with the 9 EDF delegate EOAs (vote 205)..env.sample.hoodi: allowlist replaced with the 10 EDF delegate EOAs. EDF is already active on Hoodi.Verification
getDelegate()on each of the 9 DelegationContracts from the vote description returns the 9 addresses in the sample.getMembers()on the VEBO HashConsensus (0x30308CD8844fb2DB3ec4D056F1d475a802DCA07c) returns 10 DelegationContracts whosegetDelegate()values are the 10 addresses in the sample.Supersedes #318.