fix(slave): serve encrypted thumbnails on slave nodes (#3164)
The slave thumb endpoint only received a filesystem path, so entities encrypted at rest were served as raw ciphertext. The master now appends the entity ID (eid) to the signed slave thumb URL; the slave resolves the entity from the shared DB, recovering EncryptMetadata for decryption. Thumbnail-type IDs serve the blob directly; other IDs become the source for on-demand generation. Path-only URLs keep working as a fallback. Authored By: TDvorak <info@tdvorak.dev> Generated with [Devin](https://devin.ai) Co-Authored-By: Devin <158243242+devin-ai-integration[bot]@users.noreply.github.com>pull/3582/head
parent
03d6d49243
commit
5b206ceecc
Loading…
Reference in new issue