Load self-signed CA from file as described in the helm chart #5330
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
The helm chart supports
postgresql.cafor setting self-signed CA's for postgres connections, though when trying this i noticed that the servers database logic handles this differently.It would load a CA from a concatenated string, which i also tried, but this also didn't work, as it would still set
rejectUnauthorized: true, thereby disalllowing self-signed CA certificates.If your CA would be signed by a root CA, there would be no need to set a CA in the first place, so i guess this logic never worked?
With this pull request, the
DB_SSL_CAlogic now corresponds to the descriptions in the helm chart.