boot

package
v1.6.13 Latest Latest
Warning

This package is not in the latest version of its module.

Go to latest
Published: Jun 2, 2026 License: MIT Imports: 2 Imported by: 0

Documentation

Overview

Package boot wires the shared dependencies notifyd needs at startup.

In particular the KMS client: notifyd reads per-tenant provider credentials out of Hanzo KMS, but it does NOT speak kmsclient directly — instead it borrows the platform plugin's KMS facade (github.com/hanzoai/base/plugins/platform.KMSClient) which already handles the IAM client_credentials exchange, transport selection (HTTP vs. ZAP), and a thin secret cache.

Boot is intentionally tiny: one constructor + an env reader. The rest of the wiring lives in main.go.

Index

Constants

This section is empty.

Variables

This section is empty.

Functions

func KMSAuthToken

func KMSAuthToken() string

KMSAuthToken returns the optional static bearer token for KMS. In production this stays empty and kmsclient runs the IAM client_credentials exchange via the platform plugin's IAM configuration. Tests use a static token to short-circuit IAM.

func KMSEndpoint

func KMSEndpoint() string

KMSEndpoint returns the configured KMS endpoint or the canonical in-cluster default. The platform plugin treats an empty endpoint as "KMS disabled" — the resolver then falls back to env-var credentials.

func NewKMSClient

func NewKMSClient() *platform.KMSClient

NewKMSClient is a thin wrapper over platform.NewKMSClient. Returns nil when KMS_ENDPOINT is unset — callers must handle that case (nil is the well-defined "no KMS" mode, not an error).

Types

This section is empty.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL