whole-mesh-full: serve the internal CA's image

ADR 0056 made `acme-ca` a requirement of route-proxy, and step-ca is what
answers it. A scenario that does not stock the image cannot run the CA, the
proxy does not resolve, and every routed module on the mesh goes with it.

This was carried as an uncommitted edit through the first ADR 0056 raise. Kept,
because it is right, and committed, because a fix that lives in somebody's
working tree is a fix the next raise does not have.
This commit is contained in:
2026-09-10 21:05:30 +02:00
parent 80b0670ebe
commit d9bf178546
+3
View File
@@ -166,6 +166,9 @@ images:
- mesh-runtime-verdaccio:development
- mesh-runtime-mailu:development
- mesh-route-proxy:development
# ADR 0056: the internal ACME authority. route-proxy now REQUIRES an `acme-ca`, so a bed that does
# not serve this image has an unresolvable proxy — and with it every routed module on the mesh.
- smallstep/step-ca:latest
- mesh-runtime-sonarr:development
- mesh-runtime-radarr:development
- mesh-runtime-lidarr:development