audit-logger: the container names its image directly (a container has no artifact)
A container resource takes a digest-pinned image, not a build artifact — the host refuses 'artifact' on a container. Verified: the mesh assigns it and the host runs it in the lab.
This commit is contained in:
@@ -5,15 +5,6 @@
|
|||||||
"own-secrets": {
|
"own-secrets": {
|
||||||
"broker": "/var/lib/audit-logger/broker"
|
"broker": "/var/lib/audit-logger/broker"
|
||||||
},
|
},
|
||||||
"build": {
|
|
||||||
"artifacts": [
|
|
||||||
{
|
|
||||||
"name": "runtime",
|
|
||||||
"kind": "upstream",
|
|
||||||
"from": "registry.invalid/mesh-runtime-audit@sha256:0000000000000000000000000000000000000000000000000000000000000000"
|
|
||||||
}
|
|
||||||
]
|
|
||||||
},
|
|
||||||
"resources": [
|
"resources": [
|
||||||
{
|
{
|
||||||
"id": "state",
|
"id": "state",
|
||||||
@@ -31,7 +22,7 @@
|
|||||||
"id": "run",
|
"id": "run",
|
||||||
"type": "container",
|
"type": "container",
|
||||||
"name": "mesh-audit-logger",
|
"name": "mesh-audit-logger",
|
||||||
"artifact": "runtime",
|
"image": "mesh-runtime-audit@sha256:0000000000000000000000000000000000000000000000000000000000000000",
|
||||||
"network": "host",
|
"network": "host",
|
||||||
"volumes": [
|
"volumes": [
|
||||||
"/var/lib/audit-logger/broker:/run/secrets/broker:ro",
|
"/var/lib/audit-logger/broker:/run/secrets/broker:ro",
|
||||||
|
|||||||
Reference in New Issue
Block a user