The mint leaves the control plane's old-bus secret alone

The control plane is a module too, and its broker secret is the old bus's
credential it is still using while the mint runs. Writing the new bus's blob there
cut the mesh off from its own old bus mid-move. Its new-bus credential is the
controller principal's bus secret; the module principal is skipped.
This commit is contained in:
2026-09-28 01:08:11 +02:00
parent 386ae676ca
commit 4d62e6caf1
+8
View File
@@ -340,6 +340,14 @@ func rolloutMint(ctx context.Context, again bool) error {
machines++ machines++
case broker.KindModule: case broker.KindModule:
if p.Module == "mesh-controller" {
// The control plane is a module too, and its `broker` secret is the old bus's
// credential it is still using while this runs. Writing the new bus's blob there
// cut the mesh off from its own old bus mid-move (2026-09-28). Its new-bus credential
// is the controller principal's `bus` secret above; nothing else is needed here.
skipped++
continue
}
m, inShelf := shelf[p.Module] m, inShelf := shelf[p.Module]
if !inShelf { if !inShelf {
skipped++ skipped++