Switch all MinIO communication from HTTP to HTTPS across the entire stack: - MinIO deployment: mount TLS secret, tcpSocket probes, HTTPS init-buckets - 11 service YAMLs: HTTPS rclone endpoint + CA cert volume mount - Training job template + train.sh: HTTPS for fetch-binaries and uploader - CI pipeline (.gitlab-ci.yml): all 7 rclone exports use HTTPS + CA cert - GitLab runner values: minio-ca-cert ConfigMap volume for CI pods - Rust: CA cert loading via MINIO_CA_CERT_PATH in training_uploader, storage backend, data_acquisition uploader, and k8s_dispatcher - Cert generation script (infra/scripts/generate-minio-tls.sh) Fixes training uploader S3 upload failures caused by with_allow_http(false) connecting to an HTTP endpoint. Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
2.9 KiB
Executable File
2.9 KiB
Executable File