remove chown for TLS certificates in proxy container
This commit is contained in:
@@ -18,7 +18,6 @@ class Kamal::Cli::App::SslCertificates
|
||||
if key_content = role.proxy.private_key_pem_content
|
||||
execute *app.write_private_key_file(key_content)
|
||||
end
|
||||
execute *app.set_certificate_permissions
|
||||
end
|
||||
end
|
||||
|
||||
|
||||
@@ -33,10 +33,6 @@ module Kamal::Commands::App::Proxy
|
||||
[ :sh, "-c", Kamal::Utils.sensitive("cat > #{config.proxy_boot.tls_directory}/key.pem << 'KAMAL_KEY_EOF'\n#{content}\nKAMAL_KEY_EOF", redaction: "cat > #{config.proxy_boot.tls_directory}/key.pem << 'KAMAL_KEY_EOF'\n[PRIVATE KEY CONTENT REDACTED]\nKAMAL_KEY_EOF") ]
|
||||
end
|
||||
|
||||
def set_certificate_permissions
|
||||
[ :docker, :exec, "--user", "root", proxy_container_name, "chown", "-R", "kamal-proxy:kamal-proxy", config.proxy_boot.tls_container_directory ]
|
||||
end
|
||||
|
||||
private
|
||||
def proxy_exec(*command)
|
||||
docker :exec, proxy_container_name, "kamal-proxy", *command
|
||||
|
||||
Reference in New Issue
Block a user