whole-mesh-full: issue a module with an own-secret, not only one with a broker account
This commit is contained in:
@@ -800,7 +800,9 @@ test("the full mesh forms across the access point and both server sets converge"
|
||||
for (const { name } of mods) {
|
||||
try {
|
||||
const broker = await ensureAdded(name);
|
||||
if (broker) await mesh(`module issue ${name} --node ${node}`);
|
||||
// Issued when the module holds a broker account or an own-secret the mesh mints for it
|
||||
// (step-ca's password, ADR 0098); a requirement kept in the vault needs no issue.
|
||||
if (broker || /"secrets":\s*\[/.test(loadManifest(name).manifest)) await mesh(`module issue ${name} --node ${node}`);
|
||||
await mesh(`assign ${node} ${name}`);
|
||||
assigned[node]!.add(name);
|
||||
} catch (err) {
|
||||
|
||||
Reference in New Issue
Block a user