mount CA bundle at Debian trust path
This commit is contained in:
@@ -37,8 +37,9 @@ checks its SHA-256, and stores it in the POC appdata directory. Subsequent
|
||||
starts only verify the existing binary. It also copies the CA bundle from the
|
||||
pinned fetch image so the slim runtime can download local embedding model
|
||||
artifacts over verified HTTPS. Both OpenSSL-style clients and the bundled Bun
|
||||
runtime are pointed at that bundle; TLS verification remains enabled. No
|
||||
custom image build is required.
|
||||
runtime are pointed at that bundle, which is also mounted at Debian's standard
|
||||
CA path for embedding workers. TLS verification remains enabled. No custom
|
||||
image build is required.
|
||||
|
||||
## First boot and authentication
|
||||
|
||||
|
||||
Reference in New Issue
Block a user