remove chown for TLS certificates in proxy container

This commit is contained in:
acidtib
2025-04-29 19:57:41 -06:00
parent 1f847299c0
commit 9219b87630
4 changed files with 0 additions and 12 deletions

View File

@@ -18,7 +18,6 @@ class Kamal::Cli::App::SslCertificates
if key_content = role.proxy.private_key_pem_content
execute *app.write_private_key_file(key_content)
end
execute *app.set_certificate_permissions
end
end

View File

@@ -33,10 +33,6 @@ module Kamal::Commands::App::Proxy
[ :sh, "-c", Kamal::Utils.sensitive("cat > #{config.proxy_boot.tls_directory}/key.pem << 'KAMAL_KEY_EOF'\n#{content}\nKAMAL_KEY_EOF", redaction: "cat > #{config.proxy_boot.tls_directory}/key.pem << 'KAMAL_KEY_EOF'\n[PRIVATE KEY CONTENT REDACTED]\nKAMAL_KEY_EOF") ]
end
def set_certificate_permissions
[ :docker, :exec, "--user", "root", proxy_container_name, "chown", "-R", "kamal-proxy:kamal-proxy", config.proxy_boot.tls_container_directory ]
end
private
def proxy_exec(*command)
docker :exec, proxy_container_name, "kamal-proxy", *command