fedora-cosmic: allow seeding the Kanidm unixd token from a CI secret
build.sh writes KANIDM_UNIXD_TOKEN to /etc/kanidm/unixd_token (0600) when the secret is set, via a generated add-files include. Without the secret the image is built unchanged and the token must be provisioned on the host.
This commit is contained in:
@@ -30,3 +30,5 @@ include:
|
||||
- custom.yaml
|
||||
# Generated by build.sh from upstream-exclude.txt (exclude-packages list).
|
||||
- hardware-exclude.yaml
|
||||
# Generated by build.sh; adds the Kanidm unixd token when provided.
|
||||
- kanidm-token.yaml
|
||||
|
||||
Reference in New Issue
Block a user