Resync hq ADR references 0044-0054 -> 0039-0049 after the hq record reconciliation
This commit is contained in:
@@ -1,13 +1,13 @@
|
||||
// minio's provisioner — the adapter that makes minio a provider of the mesh `s3-bucket` interface
|
||||
// (the name in module.json's `provides`). The reconcile loop, the contributions file, and reading
|
||||
// the mesh's minted secret are the sdk harness's; this writes only the per-service half: how minio
|
||||
// creates and removes a consumer's bucket and its scoped access key (novox/hq ADR 0044/0045/0053).
|
||||
// creates and removes a consumer's bucket and its scoped access key (novox/hq ADR 0039/0040/0048).
|
||||
//
|
||||
// The `s3-bucket` interface: a consumer connects to an S3 endpoint with an access key confined to
|
||||
// its own bucket. It depends on `s3-bucket`, not on minio, so any S3-compatible provider could serve
|
||||
// it.
|
||||
//
|
||||
// **The access key and its secret are the mesh's, not the provisioner's (ADR 0053).** The mesh
|
||||
// **The access key and its secret are the mesh's, not the provisioner's (ADR 0048).** The mesh
|
||||
// derives the login (the access-key id) and hands it to both ends, and mints the secret key. minio
|
||||
// creates the service account under exactly that access key with exactly that secret — a credential
|
||||
// the provisioner invented is one the consumer could never present. The bucket is derived from the
|
||||
|
||||
Reference in New Issue
Block a user