-
Notifications
You must be signed in to change notification settings - Fork 1k
Android certs: non-critical issues #36052
Copy link
Copy link
Labels
#g-supply-chainSupply Chain product groupSupply Chain product group~sub-taskA technical sub-task that is part of a story. (Not QA'd. Not estimated.)A technical sub-task that is part of a story. (Not QA'd. Not estimated.)
Milestone
Description
Activity
Metadata
Metadata
Assignees
Labels
#g-supply-chainSupply Chain product groupSupply Chain product group~sub-taskA technical sub-task that is part of a story. (Not QA'd. Not estimated.)A technical sub-task that is part of a story. (Not QA'd. Not estimated.)
Type
Projects
- StatusShow more project fieldsDone
Android agent gets enroll secrets
Address undefined enroll secret selection and inconsistent error handling.
Error handling: The code fails hard if no enroll secrets exist, but this pattern is inconsistent across the codebase. In server/service/microsoft_mdm.go:1358, missing secrets are logged as a warning and execution continues. Decide whether this should halt processing or continue gracefully for the Android agent flow.
Line 144 (secret selection): GetEnrollSecrets (in server/datastore/mysql/app_configs.go:231) has no ORDER BY clause, so enrollSecrets[0] returns an arbitrary/undefined secret, not a deterministic "first" one.
Migration for our base Android profile
Resending certs
node_key security
Dev experience
Consistency