Revert write file permision

Signed-off-by: z1cheng <imchench@gmail.com>
This commit is contained in:
z1cheng 2023-08-31 06:16:34 +00:00
parent 131099f243
commit fe3dae9501
2 changed files with 8 additions and 4 deletions

View file

@ -208,7 +208,8 @@ func ConfigureCACertWithCertAndKey(_ string, ca []byte, sslCert *ingress.SSLCert
return fmt.Errorf("could not write ca data to cert file %v: %v", sslCert.CAFileName, err)
}
return os.WriteFile(sslCert.CAFileName, buffer.Bytes(), 0o600)
//nolint:gosec // Not change permission to avoid possible issues
return os.WriteFile(sslCert.CAFileName, buffer.Bytes(), 0o644)
}
// ConfigureCRL creates a CRL file and append it into the SSLCert
@ -230,7 +231,8 @@ func ConfigureCRL(name string, crl []byte, sslCert *ingress.SSLCert) error {
return err
}
err = os.WriteFile(crlFileName, crl, 0o600)
//nolint:gosec // Not change permission to avoid possible issues
err = os.WriteFile(crlFileName, crl, 0o644)
if err != nil {
return fmt.Errorf("could not write CRL file %v: %v", crlFileName, err)
}
@ -247,7 +249,8 @@ func ConfigureCACert(name string, ca []byte, sslCert *ingress.SSLCert) error {
caName := fmt.Sprintf("ca-%v.pem", name)
fileName := fmt.Sprintf("%v/%v", file.DefaultSSLDirectory, caName)
err := os.WriteFile(fileName, ca, 0o600)
//nolint:gosec // Not change permission to avoid possible issues
err := os.WriteFile(fileName, ca, 0o644)
if err != nil {
return fmt.Errorf("could not write CA file %v: %v", fileName, err)
}

View file

@ -195,7 +195,8 @@ const configTemplate = `
func prepareCertificates(namespace string) error {
config := fmt.Sprintf(configTemplate, namespace)
err := os.WriteFile("cfssl_config.json", []byte(config), 0o600)
//nolint:gosec // Not change permission to avoid possible issues
err := os.WriteFile("cfssl_config.json", []byte(config), 0o644)
if err != nil {
return fmt.Errorf("creating cfssl_config.json file: %v", err)
}