whole-mesh-full: serve the internal CA's image
ADR 0056 made `acme-ca` a requirement of route-proxy, and step-ca is what answers it. A scenario that does not stock the image cannot run the CA, the proxy does not resolve, and every routed module on the mesh goes with it. This was carried as an uncommitted edit through the first ADR 0056 raise. Kept, because it is right, and committed, because a fix that lives in somebody's working tree is a fix the next raise does not have.
This commit is contained in:
@@ -166,6 +166,9 @@ images:
|
||||
- mesh-runtime-verdaccio:development
|
||||
- mesh-runtime-mailu:development
|
||||
- mesh-route-proxy:development
|
||||
# ADR 0056: the internal ACME authority. route-proxy now REQUIRES an `acme-ca`, so a bed that does
|
||||
# not serve this image has an unresolvable proxy — and with it every routed module on the mesh.
|
||||
- smallstep/step-ca:latest
|
||||
- mesh-runtime-sonarr:development
|
||||
- mesh-runtime-radarr:development
|
||||
- mesh-runtime-lidarr:development
|
||||
|
||||
Reference in New Issue
Block a user