Add cryptography dependency for MySQL 8 auth
Some checks failed
CI / backend (push) Successful in 1m44s
CI / naming (push) Successful in 2s
CI / frontend (push) Successful in 8s
CI / migrations-mysql (push) Failing after 8s

pymysql needs the cryptography package to speak MySQL 8's default
caching_sha2_password, so 'flask db upgrade' against a stock MySQL 8
failed with 'cryptography package is required'. Make it a real
dependency (dev, prod, CI all connect cleanly) and drop the CI
native-auth workaround that stood in for it.
This commit is contained in:
cproudlock
2026-07-17 19:41:42 -04:00
parent 9deb194580
commit 804c066de4
3 changed files with 7 additions and 8 deletions

View File

@@ -75,16 +75,13 @@ jobs:
python-version: '3.13'
cache: pip
- run: pip install -r requirements.txt
- name: Prime the CI database (utf8mb4 + native auth for pymysql)
# MySQL 8 defaults root to caching_sha2_password, which pymysql can
# only speak with the 'cryptography' package. Rather than add that
# dependency (and its offline wheel), switch root to native auth here
# via the mysql CLI, so the app's pymysql connections work as-is.
- name: Force utf8mb4 on the CI database
# pymysql speaks MySQL 8's caching_sha2_password via the cryptography
# package (a requirements.txt dependency), so no auth-plugin change
# is needed here.
run: |
mysql -h 127.0.0.1 -uroot -proot -e \
"ALTER DATABASE shopdb_ci CHARACTER SET utf8mb4 COLLATE utf8mb4_unicode_ci; \
ALTER USER 'root'@'%' IDENTIFIED WITH mysql_native_password BY 'root'; \
FLUSH PRIVILEGES;"
"ALTER DATABASE shopdb_ci CHARACTER SET utf8mb4 COLLATE utf8mb4_unicode_ci;"
- name: Fresh core upgrade from empty
run: flask db upgrade
- name: Install every bundled plugin (runs its chain)

View File

@@ -11,6 +11,7 @@ marshmallow-sqlalchemy>=0.29
# Database
mysql-connector-python>=8.0
pymysql>=1.1
cryptography>=42.0 # pymysql needs it for MySQL 8 caching_sha2_password auth
# CLI and utilities
click>=8.1

View File

@@ -83,6 +83,7 @@ pygments==2.20.0
pyjwt==2.12.1
# via flask-jwt-extended
pymysql==1.1.3
cryptography>=42.0
# via -r requirements.in
pytest==9.0.3
# via