whole-mesh-full: issue a module with an own-secret, not only one with a broker account

This commit is contained in:
2026-09-21 22:54:09 +02:00
parent acb8d3da88
commit e64d296c80
+3 -1
View File
@@ -800,7 +800,9 @@ test("the full mesh forms across the access point and both server sets converge"
for (const { name } of mods) { for (const { name } of mods) {
try { try {
const broker = await ensureAdded(name); const broker = await ensureAdded(name);
if (broker) await mesh(`module issue ${name} --node ${node}`); // Issued when the module holds a broker account or an own-secret the mesh mints for it
// (step-ca's password, ADR 0098); a requirement kept in the vault needs no issue.
if (broker || /"secrets":\s*\[/.test(loadManifest(name).manifest)) await mesh(`module issue ${name} --node ${node}`);
await mesh(`assign ${node} ${name}`); await mesh(`assign ${node} ${name}`);
assigned[node]!.add(name); assigned[node]!.add(name);
} catch (err) { } catch (err) {