Add support for instance age check in GCP.

Fixes smallstep/step#164
This commit is contained in:
Mariano Cano 2019-06-04 15:57:15 -07:00
parent 4cef086c00
commit c431538ff2
5 changed files with 60 additions and 9 deletions

View file

@ -513,7 +513,7 @@ func generateGCPToken(sub, iss, aud, instanceID, instanceName, projectID, zone s
ComputeEngine: gcpComputeEnginePayload{
InstanceID: instanceID,
InstanceName: instanceName,
InstanceCreationTimestamp: jose.NewNumericDate(iat.Add(-24 * time.Hour)),
InstanceCreationTimestamp: jose.NewNumericDate(iat),
ProjectID: projectID,
ProjectNumber: 1234567890,
Zone: zone,