fix(security): LAPI-only engine boot, import via stdin, correct compose service
Gitea Actions Runner Test / test-job (push) Successful in 1s
CI / check (push) Successful in 29s
CI / tests-integration (push) Successful in 1m46s
CI / tests-unit (push) Successful in 1m59s
CI / tests-ui (push) Successful in 2m53s
CI / preflight (push) Skipped
CI / deploy (push) Failing after 1m54s

This commit is contained in:
openhands committed 2026-09-24 18:59:13 +02:00
1 parent 9562a75378
commit 7392b843ad
5 files changed
+24 -14

No files matched your search

+2 -2
View File
@@ -79,7 +79,7 @@ container_running() {
}
cscli_exec() {
compose_cmd exec -T "$CONTAINER_NAME" cscli "$@"
compose_cmd exec -T crowdsec cscli "$@"
}
fetch_sources() {
@@ -205,6 +205,6 @@ cscli_exec decisions delete --origin cscli-import >/dev/null 2>&1 || true
} > "$work/import.csv"
printf 'Importing %s decisions into the local LAPI (duration %s)...\n' "$count_total" "$duration"
cscli_exec decisions import -i "$work/import.csv" --format csv --batch 1000
cscli_exec decisions import -i - --format csv --batch 1000 < "$work/import.csv"
printf 'Done. The app bouncer picks these up within a few seconds.\n'
+1 -1
View File
@@ -147,7 +147,7 @@ while ! health_probe "http://127.0.0.1:$port/health"; do
sleep 2
done
printf 'CrowdSec engine running on 127.0.0.1:%s (container %s), reading %s/access.log.\n' "$port" "$CONTAINER_NAME" "$log_dir"
printf 'CrowdSec engine running in LAPI-only mode on 127.0.0.1:%s (container %s).\n' "$port" "$CONTAINER_NAME"
compose_cmd exec -T crowdsec cscli bouncers list >/dev/null 2>&1 \
&& printf 'Bouncer "cms" was registered against the local LAPI.\n' \
|| printf 'Warning: could not list bouncers. Diagnose with: docker compose exec -T %s cscli bouncers list\n' "$CONTAINER_NAME"