-
-
Notifications
You must be signed in to change notification settings - Fork 3.9k
feat(nix/docker/aio/ssl): support for adhoc certs #10666
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
📝 WalkthroughWalkthroughThe change introduces a new conditional branch in the Changes
Sequence Diagram(s)sequenceDiagram
participant Script
participant FS as File System
participant CertCheck as Certificate Management
Script->>FS: Check for /var/lib/acme/"$aio_ssl_domain"/adhoc file
alt File exists
FS-->>Script: File found
Script->>Script: Output "Certificate managed by user"
Script-->>Script: Exit with status 0
else File not found
FS-->>Script: No file found
Script->>FS: Check for certificates/"$aio_ssl_domain".crt file
FS-->>Script: Return certificate file status
Script->>CertCheck: Continue with certificate management logic
end
✨ Finishing Touches
Thank you for using CodeRabbit. We offer it for free to the OSS community and would appreciate your support in helping us grow. If you find it useful, would you consider giving us a shout-out on your favorite social media? 🪧 TipsChatThere are 3 ways to chat with CodeRabbit:
Note: Be mindful of the bot's finite context window. It's strongly recommended to break down tasks such as reading entire modules into smaller chunks. For a focused discussion, use review comments to chat about specific files and their changes, instead of using the PR comments. CodeRabbit Commands (Invoked using PR comments)
Other keywords and placeholders
CodeRabbit Configuration File (
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Actionable comments posted: 0
🧹 Nitpick comments (1)
nix/docker/all_in_one/init/s6-services/services/acme-srv/shell_up.sh (1)
57-61
: Ad-hoc Certificate Management Block Addition
The new conditional block correctly checks for the existence of the adhoc file and exits early, which aligns with the PR objective to support user-managed certificates. This early exit prevents the script from performing unnecessary certificate processing when an adhoc certificate is in place.Suggestion: For enhanced robustness against unexpected whitespace or special characters in the domain variable, consider wrapping the entire file path in quotes. For example:
-if [ -f /var/lib/acme/"$aio_ssl_domain"/adhoc ]; then +if [ -f "/var/lib/acme/$aio_ssl_domain/adhoc" ]; thenThis small change improves the safety and readability of the file check.
Change Summary
Provide summary of changes with issue number if any.
Change type
Test/ Verification
Provide summary of changes.
Additional information / screenshots (optional)
Anything for maintainers to be made aware of