Skip to content

From Google Cloud SQL

Tested with: Generic connection-string flow · zb migrate 0.1 · no Google Cloud SQL preset yet

Cloud SQL for PostgreSQL and MySQL move to the matching Databasezy engine, with continuous sync for both.

Google Cloud SQL migration at a glance, from the migration source catalogue
Status Coming soon · phase 3
Target engines PostgreSQL , MySQL
How we read it Connection string
Continuous sync Yes, for PostgreSQL and MySQL
Provider preset None yet (generic)
  • A Databasezy instance of the matching engine, or use --create.
  • A database user with a password and read access.
  • A public IP on the instance, or the Cloud SQL Auth Proxy on a machine you control.

In the Google Cloud console, open the Cloud SQL instance and note its public IP address. Add the egress addresses as authorized networks on the instance’s connections settings, and build the URL from the IP, your user and the database name.

  • Add our egress IPs as authorized networks, or run zb migrate --from local through the Cloud SQL Auth Proxy.

Without a public IP, run the Cloud SQL Auth Proxy locally and use zb migrate --from local; it streams a dump and needs no inbound access, but cannot sync.

shell
cloud-sql-proxy my-project:us-central1:my-instance --port 15432 &
PGHOST=localhost PGPORT=15432 PGUSER=migrator PGPASSWORD=pw \
zb migrate --from local --engine postgres --db app --create
  1. Open the target PostgreSQL instance (create one first if you need to) and choose the Migrate in tab.
  2. Under Source, pick Connection string and paste the URL.
  3. Choose Copy and sync to keep the target current until cutover, or Copy for a one-off copy.
  4. Run Preflight and work through the checklist. Blocking items must be fixed before the copy starts.
  5. Start the copy and follow Copy and Verify. Mismatches are listed per table or collection.
  6. When the sync lag is low, stop writes and choose Cut over. The Report step keeps the timings and verification results.

For PostgreSQL sync, set the cloudsql.logical_decoding flag to on (the instance restarts) and give the user the REPLICATION attribute. For MySQL sync, the binary log must be on and the user needs REPLICATION SLAVE and REPLICATION CLIENT. Preflight checks each setting.

Verification runs automatically after the copy and compares source and target: row counts per table, sequence or AUTO_INCREMENT values, the number of indexes and a schema hash. A missing table or a short row count fails the migration and lists what differs. Check the result with zb migrate status <mig_id> or the Verify step in the portal, then run your application’s own smoke tests against the new instance before you switch traffic.

With copy and sync, the target keeps receiving changes after the copy. When zb migrate status reports ready_for_cutover (two lag samples in a row under 5 seconds):

  1. Stop writes to the source: maintenance mode, scale writers to zero, or revoke the application user.
  2. Run zb migrate cutover <mig_id> (or Cut over in the portal). The agent drains the last changes, copies sequence values (PostgreSQL), verifies again and stops replication. If the target cannot catch up in time, the cutover is abandoned and sync keeps running; nothing changes on either side.
  3. Point the application at the Databasezy connection string and resume writes. zb migrate status shows the measured downtime.

Schema changes are not replicated, so freeze migrations between the copy and cutover. Details: what happens at cutover.

A migration never deletes anything on the source. Until you decommission it, rolling back means pointing the application back at the source.

  • Before cutover: cancel with zb migrate cancel <mig_id>. The publication, replication slot or replication channel the migration created is removed.
  • After cutover: writes made on Databasezy are not on the source. For PostgreSQL, start the migration with --reverse-sync so the old database keeps receiving them after cutover and stays a valid fallback. Without it, copy the new data back with a migration in the other direction before you switch.

The cloudsql.logical_decoding flag is off. Turn it on and wait for the restart.

Check that the source accepts connections from the egress addresses preflight prints, that the host is the public one and that the password has not been rotated. zb migrate --dry-run shows the exact URL that will be used after any rewrites.

Each item has a machine code and a fix. Nothing is written to the target until every blocking item is resolved; warnings do not block.

The source uses an extension Databasezy does not ship. Drop it on the source if it is unused, or exclude the objects that depend on it with --exclude.

Sync is blocked with pg.wal_level or pg.replica_identity

Section titled “Sync is blocked with pg.wal_level or pg.replica_identity”

Logical replication needs wal_level=logical on the source and a primary key (or REPLICA IDENTITY FULL) on every published table. Preflight lists the tables.

Sync is blocked on binlog or GTID settings

Section titled “Sync is blocked on binlog or GTID settings”

Continuous sync needs binlog_format=ROW, gtid_mode=ON, enforce_gtid_consistency=ON and a user with REPLICATION SLAVE and REPLICATION CLIENT. Preflight names whichever is missing.

For anything else, zb migrate status <mig_id> shows the failing step and its message. How migrations work describes every step.