From e64d296c800c644dbfc47d2a31786867c030fdb6 Mon Sep 17 00:00:00 2001 From: jochen Date: Mon, 21 Sep 2026 22:54:09 +0200 Subject: [PATCH] whole-mesh-full: issue a module with an own-secret, not only one with a broker account --- test/integration/whole-mesh-full.test.ts | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/test/integration/whole-mesh-full.test.ts b/test/integration/whole-mesh-full.test.ts index a73493c..2d7e75f 100644 --- a/test/integration/whole-mesh-full.test.ts +++ b/test/integration/whole-mesh-full.test.ts @@ -800,7 +800,9 @@ test("the full mesh forms across the access point and both server sets converge" for (const { name } of mods) { try { const broker = await ensureAdded(name); - if (broker) await mesh(`module issue ${name} --node ${node}`); + // Issued when the module holds a broker account or an own-secret the mesh mints for it + // (step-ca's password, ADR 0098); a requirement kept in the vault needs no issue. + if (broker || /"secrets":\s*\[/.test(loadManifest(name).manifest)) await mesh(`module issue ${name} --node ${node}`); await mesh(`assign ${node} ${name}`); assigned[node]!.add(name); } catch (err) {