mirror of
https://github.com/hansjone/netx.git
synced 2026-10-09 00:50:46 +08:00
Default UME TLS verify off for lab self-signed certs.
Restore ume_verify_tls=false so onsite UME login works without a .env override; production should set NETX_UME_VERIFY_TLS=true or pin a CA. Co-authored-by: Cursor <cursoragent@cursor.com>
This commit is contained in:
parent
0ebf137776
commit
6eeaa457b8
5 changed files with 6 additions and 16 deletions
|
|
@ -37,7 +37,7 @@ def assert_secure_defaults_or_exit() -> None:
|
|||
pwd = str(settings.bootstrap_admin_password or "").strip()
|
||||
if pwd in {"", "admin123"}:
|
||||
problems.append("NETX_BOOTSTRAP_ADMIN_PASSWORD is still the lab default (admin123)")
|
||||
if not bool(getattr(settings, "ume_verify_tls", True)):
|
||||
if not bool(getattr(settings, "ume_verify_tls", False)):
|
||||
problems.append("NETX_UME_VERIFY_TLS=false while binding on a non-loopback interface")
|
||||
if problems:
|
||||
for p in problems:
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue