Open mythmon opened 5 years ago
@mythmon where does the normandy dev autograph config live?
OK so the planned fix is:
http://
or https://
X5Uslocalhost/static/
. This might require changes to https://github.com/mozilla-services/autograph/blob/master/tools/genpki/genpki.go too.@mythmon where does the normandy dev autograph config live?
The default autograph config includes the Normandy development config.
I missed the conversation on Slack, but I share this need :)
This is what devs have to do when setting up a local Remote Settings server: https://remote-settings.readthedocs.io/en/latest/tutorial-local-server.html#configure-multi-signoff
Where are we on this? I remember the conversation but not the resolution. Is that still blocking normandy and kinto?
It makes local development setup quite tedious, it would be nice to fix. But it's not blocking per-se
STR
docker run mozilla/autograph
curl -XPOST -d '{...}' https://localhost:8765/sign/data
Expected results
The x5u URL is accessible without additional, undocumented configuration.
Actual results
The x5u URL is a
file://
URL that is inaccessible in the documented configuration.This makes it impossible to use Normandy and Autograph in development, making Normandy development significantly harder to get right.