mirror of
https://github.com/suitenumerique/messages.git
synced 2026-09-01 04:38:55 +02:00
Latest fixes in the stdlib make it a more solid alternative for strict composition than Flanker. We keep Flanker for now for lenient inbound parsing. We add stronger tests and fuzzing to validate we didn't regress.
18 lines
848 B
Bash
Executable File
18 lines
848 B
Bash
Executable File
#!/bin/sh
|
|
set -o errexit
|
|
|
|
# The script is pretty simple. It downloads the latest cacert.pem file from the certifi package and appends the root certificate from mkcert to it. Then it copies the updated cacert.pem file to the container.
|
|
# The script is executed with the following command:
|
|
# $ bin/update_app_cacert.sh docs-production-backend-1
|
|
|
|
CONTAINER_NAME=${1:-"st-messages-production-backend-1"}
|
|
|
|
echo "updating cacert.pem for certifi package in ${CONTAINER_NAME}"
|
|
|
|
|
|
curl --create-dirs https://raw.githubusercontent.com/certifi/python-certifi/refs/heads/master/certifi/cacert.pem -o /tmp/certifi/cacert.pem
|
|
cat "$(mkcert -CAROOT)/rootCA.pem" >> /tmp/certifi/cacert.pem
|
|
docker cp /tmp/certifi/cacert.pem ${CONTAINER_NAME}:/usr/local/lib/python3.14/site-packages/certifi/cacert.pem
|
|
|
|
echo "end patching cacert.pem in ${CONTAINER_NAME}"
|