Refresh TLSStore every loop so newly-issued certs get served

FixKlusterServices
Ya
8 Juni 2026, 02:44 UTC
Mwandishi
Kamo
Ahadi ya
d84bcc8

update_tls_store() only ran at startup and on shared-storage imports, so a cert freshly issued by cert-manager (HTTP-01) was Ready with a tls-* secret but never added to the TLSStore until the next auto-cert restart — Traefik kept serving the default self-signed cert for it (e.g. login.sign.pink). Call update_tls_store() each loop, with a cert-set signature guard so it only re-applies (and triggers a Traefik TLS reload) when the set changed.

Mabadiliko yote

Je, unaona nini kuhusu usafiri?

Kila moja ya hizi updates ardhi katika nafasi yako ya kazi moja kwa moja. Kuanza bure na kuangalia kukua wiki baada ya wiki.

Kuwa Huru MileleMtazamo wa bei