route-proxy: the trust gate names the binding it reads and runs again when the authority moved; the server follows it (ADR 0099)

This commit is contained in:
2026-09-21 23:25:06 +02:00
parent 64d62978f6
commit 6fb2003b8d
+8 -1
View File
@@ -86,6 +86,9 @@
"sh", "sh",
"-c", "-c",
"for i in $(seq 1 60); do wget -q -T 10 --no-check-certificate -O /ca/root.crt \"$ACME_ROOTS\" && grep -q 'BEGIN CERTIFICATE' /ca/root.crt && exit 0; sleep 2; done; echo \"the authority at $ACME_ROOTS did not serve its roots within two minutes\" >&2; exit 1" "for i in $(seq 1 60); do wget -q -T 10 --no-check-certificate -O /ca/root.crt \"$ACME_ROOTS\" && grep -q 'BEGIN CERTIFICATE' /ca/root.crt && exit 0; sleep 2; done; echo \"the authority at $ACME_ROOTS did not serve its roots within two minutes\" >&2; exit 1"
],
"restart-on": [
"acme-env"
] ]
}, },
{ {
@@ -108,7 +111,11 @@
"TLS_LISTEN": ":443", "TLS_LISTEN": ":443",
"ACME_CACHE": "/acme", "ACME_CACHE": "/acme",
"ACME_CA_BUNDLE": "/ca/root.crt" "ACME_CA_BUNDLE": "/ca/root.crt"
} },
"restart-on": [
"trust",
"acme-env"
]
} }
], ],
"build": { "build": {