mirror of
https://github.com/awatertrevi/infisical.git
synced 2026-10-07 18:27:36 +00:00
Skip challenge verification
This commit is contained in:
@@ -43,6 +43,7 @@ import {
|
|||||||
} from "./acme-certificate-authority-types";
|
} from "./acme-certificate-authority-types";
|
||||||
import { cloudflareDeleteTxtRecord, cloudflareInsertTxtRecord } from "./dns-providers/cloudflare";
|
import { cloudflareDeleteTxtRecord, cloudflareInsertTxtRecord } from "./dns-providers/cloudflare";
|
||||||
import { route53DeleteTxtRecord, route53InsertTxtRecord } from "./dns-providers/route54";
|
import { route53DeleteTxtRecord, route53InsertTxtRecord } from "./dns-providers/route54";
|
||||||
|
import { getConfig } from "@app/lib/config/env";
|
||||||
|
|
||||||
type TAcmeCertificateAuthorityFnsDeps = {
|
type TAcmeCertificateAuthorityFnsDeps = {
|
||||||
appConnectionDAL: Pick<TAppConnectionDALFactory, "findById">;
|
appConnectionDAL: Pick<TAppConnectionDALFactory, "findById">;
|
||||||
@@ -240,6 +241,9 @@ export const orderCertificate = async (
|
|||||||
csr: certificateCsr,
|
csr: certificateCsr,
|
||||||
email: acmeCa.configuration.accountEmail,
|
email: acmeCa.configuration.accountEmail,
|
||||||
challengePriority: ["dns-01"],
|
challengePriority: ["dns-01"],
|
||||||
|
// For ACME development mode, we mock the DNS challenge API calls. So, no real DNS records are created.
|
||||||
|
// We need to disable the challenge verification to avoid errors.
|
||||||
|
skipChallengeVerification: getConfig().isAcmeDevelopmentMode,
|
||||||
termsOfServiceAgreed: true,
|
termsOfServiceAgreed: true,
|
||||||
|
|
||||||
challengeCreateFn: async (authz, challenge, keyAuthorization) => {
|
challengeCreateFn: async (authz, challenge, keyAuthorization) => {
|
||||||
|
|||||||
Reference in New Issue
Block a user