Advanced signer operations
These public reference pages describe TSS and Visor operations for approved operators. Publishing the procedures does not open validator or signer membership to everyone, or provide a complete deployment package.
Before using a procedure, obtain the approved service releases, source access where required, ZEL configuration, party membership, and recovery runbook.
Prepare the service
- Obtain the TSS binary.
- Prepare secrets storage and the database.
- Prepare the Core account.
- Configure service settings, TLS, and Vault material.
Coordinated operations
- Key generation
- Signing prerequisites and administrator setup
- Signing mode or Docker deployment
- Key rotation and resharing requirements
- Visor supervisor
Protect signing material
Do not print private keys, shares, recovery material, or service tokens. Follow the approved custody procedure before generating or replacing keys. A local service restart is not authorization to rotate bridge keys or migrate funds.