Customizable .gnupg folder location #186
No reviewers
Labels
No Label
has
backport
in progress
invalid
kind
breaking
kind
bug
kind
build
kind
dependency
kind
deployment
kind
docs
kind
enhancement
kind
feature
kind
lint
kind
proposal
kind
question
kind
refactor
kind
security
kind
testing
kind
translation
kind
ui
need
backport
priority
critical
priority
low
priority
maybe
priority
medium
reviewed
duplicate
reviewed
invalid
reviewed
wontfix
skip-changelog
status
blocked
status
needs-feedback
status
needs-reviews
status
wip
upstream
gitea
upstream
other
No Milestone
No Assignees
3 Participants
Notifications
Due Date
No due date set.
Dependencies
No dependencies set.
Reference: gitea/helm-chart#186
Loading…
Reference in New Issue
Block a user
No description provided.
Delete Branch "justusbunsi/helm-chart:persistent-signing-keys-in-rootless"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
The
HOME
path is not persistent when using the rootless image, so the.gnupg
folder isn't either. Since the chart always used/data/...
asmount point for storage of all kinds, it is a minimal impact to just
relocate the dynamic
$HOME/.gnupg
folder location to the persistent/data/git/.gnupg
. This is where the signing keys are stored whenrunning root based environments. Doing so will
Fixes: #155
I thi
@ -121,2 +121,4 @@
- name: TMPDIR
value: /tmp/gitea
- name: GNUPGHOME
value: /data/git/.gnupg
It might be better, if we're going to set the GNUPGHOME via values.
If, for example, someone already has the keys imported to the default location, they will most likely get an error when using the new default.
By providing this via values, they would be able to configure it by hand (If neccessary).
Good catch.
signing
configuration objectI've added a new
signing
configuration object invalues.yaml
to allow customization and wrote a small section in the docs.Standardize .gnupg folder locationto Customizable .gnupg folder location