Commit graph

  • 6452a89e29 Flip default for certificate restriction to namespace to false Sebastian Tiedtke 2019-04-11 10:11:25 -0700
  • b3196d74dd final cli bump max furman 2019-04-10 14:09:30 -0700
  • 110e07706f update cli dep max furman 2019-04-10 14:05:33 -0700
  • 9977eff153 bump cli dep and fix text error msg max furman 2019-04-10 14:00:36 -0700
  • ff20d9f5af Fix composite literal uses unkeyed field max furman 2019-04-08 22:46:57 -0700
  • ab4d569f36 Add /revoke API with interface db backend max furman 2019-03-05 00:07:13 -0800
  • f1cd493ae9 Merge branch 'master' into step-sds Mariano Cano 2019-04-10 13:34:38 -0700
  • 07ff7d9807 Update cli dependency. v0.9.2 Mariano Cano 2019-04-10 11:04:13 -0700
  • ba640234db Use master branch. Mariano Cano 2019-04-10 11:02:18 -0700
  • 27eddbff2a
    Merge pull request #59 from smallstep/update-go-jose Mariano Cano 2019-04-10 10:59:13 -0700
  • b489687245
    Merge pull request #57 from smallstep/update-docker Mariano Cano 2019-04-09 12:24:46 -0700
  • 572bf0de96
    Merge branch 'master' into update-docker Mariano Cano 2019-04-09 12:18:56 -0700
  • b171e57c86 Use github.com/maraino/go-jose fork. Mariano Cano 2019-04-09 12:00:33 -0700
  • ee9069a32d Fix typos. Mariano Cano 2019-04-08 15:11:00 -0700
  • 730433fca0 docs: docker bit of grammar adjustment. max furman 2019-04-08 15:02:19 -0700
  • 82aa425d15
    link step certificates Max 2019-04-08 14:36:38 -0700
  • 840916ae1b
    Note about usage instructions Sebastian Tiedtke 2019-04-08 12:37:56 -0700
  • 351c01cf7e Do not allow pods in one namespace to create certificates for hostnames from another namespace. (#54) Justin 2019-04-08 12:24:31 -0700
  • 89b25bfb90 Use update-go-jose branch of smallstep/cli Mariano Cano 2019-04-05 13:04:44 -0700
  • 1812c0619a Update go-jose to 2.3.0. Mariano Cano 2019-04-05 12:54:23 -0700
  • d85a083ce2 Add version to git archive name v0.9.2-rc.1 max furman 2019-04-05 11:38:43 -0700
  • 8c5b14b88c docs: Update distribution artifacts max furman 2019-04-05 10:45:40 -0700
  • 888ef147fa Expose a way to update the transport. Mariano Cano 2019-04-03 19:37:12 -0700
  • c42265972a Add the autocert provisioner to the ca package. Mariano Cano 2019-04-03 12:37:17 -0700
  • 7800f5960a Add test for GetCertificateRenewer Mariano Cano 2019-04-03 11:53:04 -0700
  • 8d2de64811 Add method to get a certificate renewer. Mariano Cano 2019-04-03 11:08:09 -0700
  • 27b6ac0a58 Add INT and TERM signal handler. Mariano Cano 2019-04-03 11:07:11 -0700
  • 47eed2b914 forgot to add make target v0.9.1-rc.2 v0.9.1 max furman 2019-03-29 12:53:09 -0700
  • 464d1d4255 cli update v0.9.1-rc.1 max furman 2019-03-29 12:39:48 -0700
  • 54af415d60 Add make archive for uploading source code tarball max furman 2019-03-29 12:37:58 -0700
  • 760117adf6 Fix links and typos. Mariano Cano 2019-03-28 16:35:20 -0700
  • 3b2518a106 Update kubectl version. Mariano Cano 2019-03-28 12:29:01 -0700
  • efb2a725a8 Add controller missing dependencies Mariano Cano 2019-03-28 12:21:07 -0700
  • c099795122 Revert use latest version as it does not yet exists. Mariano Cano 2019-03-28 11:28:39 -0700
  • 72eb069baf Fix typo Mariano Cano 2019-03-28 11:00:30 -0700
  • 35d09faaa0 Add link to docker.md Mariano Cano 2019-03-27 13:05:58 -0700
  • ce54927dab Use latest tag. Mariano Cano 2019-03-27 12:02:27 -0700
  • 620abc538f Fix comment. Mariano Cano 2019-03-27 12:02:18 -0700
  • 1d022f1f6b Add latest tag to release builds Mariano Cano 2019-03-27 11:35:17 -0700
  • f1dacc6b57 Remove deprecated script. Mariano Cano 2019-03-27 11:04:51 -0700
  • b5d67ab129 Remove exposed port, it depends on the configuration. Mariano Cano 2019-03-27 11:02:33 -0700
  • 1579a87cc6 Remove unnecessary file. Mariano Cano 2019-03-27 10:49:46 -0700
  • 8b2de42e9c
    Merge pull request #58 from smallstep/seb/oidc-docs Max 2019-03-27 09:36:55 -0700
  • 2f661c0941 Update docker images and add docs on how to run step-ca on docker. Mariano Cano 2019-03-26 19:00:13 -0700
  • 1bb25b5171 update cli dep | update release docs v0.9.0 max furman 2019-03-26 15:06:38 -0700
  • fab5f01cc5 Use personal cert Sebastian Tiedtke 2019-03-26 15:01:59 -0700
  • f75a52d55b A few fixes to the OIDC provisioner docs max furman 2019-03-26 14:43:06 -0700
  • 52f09605f4 Typo Sebastian Tiedtke 2019-03-26 14:04:34 -0700
  • bf9bb7f9a1 Add closing note Sebastian Tiedtke 2019-03-26 13:47:01 -0700
  • 725db1e127 Add docs for OIDC with Gsuite Sebastian Tiedtke 2019-03-26 13:44:31 -0700
  • 9fe6add69e Appease the gometalinter. Justin Barrick 2019-03-25 21:54:13 -0700
  • c9051f7933 Return certificate hostname validation errors in the admission webhook response. Justin Barrick 2019-03-25 21:51:33 -0700
  • 0f6af68c6e Make cluster domain configurable, clean up shouldMutate() logic, and make namespace restrictions configurable with restrictCertificatesToNamespace. Justin Barrick 2019-03-25 21:32:39 -0700
  • 2f2e748aca Use Go 1.12 Mariano Cano 2019-03-25 16:19:33 -0700
  • eacd2122d0 Use cli master dependency v0.9.0-rc.1 Mariano Cano 2019-03-25 15:58:22 -0700
  • 04da00d716
    Merge pull request #55 from smallstep/x509util-real-x509 Mariano Cano 2019-03-25 15:50:57 -0700
  • 5b8b9ff768
    Merge pull request #56 from smallstep/time-duration Mariano Cano 2019-03-25 14:31:46 -0700
  • 7b9e08bcfa Fix comment. Mariano Cano 2019-03-25 14:18:46 -0700
  • 64f2615864 Fix tests. Mariano Cano 2019-03-25 12:35:21 -0700
  • 6d92ba75b9 Don't use pointer in TimeDuration.MarshalJSON Mariano Cano 2019-03-25 12:34:01 -0700
  • 698058baa9 Add tests for TimeDuration. Mariano Cano 2019-03-25 12:05:34 -0700
  • 00fed1c538 Add initial version of time duration support in sign requests. Mariano Cano 2019-03-22 18:55:28 -0700
  • 7b1f4a43cf
    Added example for custom claims (#39) Sebastian Tiedtke 2019-03-22 12:16:56 -0700
  • 4763603bd7 Requested changes Sebastian Tiedtke 2019-03-21 14:04:16 -0700
  • 8c8547bf65 Remove unnecessary parse and improve tests. Mariano Cano 2019-03-20 18:11:45 -0700
  • da7360e445 Use x509util-real-x509 branch of cli Mariano Cano 2019-03-20 17:44:59 -0700
  • b9530909a4 Fix tests. Mariano Cano 2019-03-20 17:41:37 -0700
  • a3e2b4a552 Move certificate check to the right place. Mariano Cano 2019-03-20 17:36:45 -0700
  • 30a6889d1f Use standard x509 instead of step one. Mariano Cano 2019-03-20 17:12:52 -0700
  • 5c781f76f4 Do not allow pods in one namespace to create certificates for hostnames from another namespace. Justin Barrick 2019-03-19 23:36:20 -0700
  • 6b6d61df65
    Merge pull request #53 from smallstep/claims-omitempty Mariano Cano 2019-03-19 18:44:37 -0700
  • 68ff077ea9 Improve tests. Mariano Cano 2019-03-19 15:31:14 -0700
  • 76618558ae Improve unit tests. Mariano Cano 2019-03-19 15:27:41 -0700
  • 7378ed27ac Refactor claims so they can be totally omitted if only the parent is set. Mariano Cano 2019-03-19 15:10:52 -0700
  • 095ab891e7
    Merge pull request #51 from smallstep/oidc-provisioner Mariano Cano 2019-03-19 11:56:48 -0700
  • 5d5f03f963 Set omitempty to admins and domains. Mariano Cano 2019-03-19 11:23:18 -0700
  • 6592c4784b Fix flag parsing after the configuration file Mariano Cano 2019-03-18 12:38:19 -0700
  • 8a05cdde52 Add audience in the error v2 Mariano Cano 2019-03-18 10:59:36 -0700
  • f8fba4df6b Add audience in error. Mariano Cano 2019-03-18 10:57:29 -0700
  • 60880d1f0a Add domains and check emails properly. Mariano Cano 2019-03-15 13:49:50 -0700
  • 5edbce017f Set docs for client secret as mandatory, but it can be blank. Mariano Cano 2019-03-15 11:10:52 -0700
  • 2c0c0112c6 Add an optional client secret field. Mariano Cano 2019-03-14 18:00:11 -0700
  • 945a1371f1 Fix tests. Mariano Cano 2019-03-13 16:46:12 -0700
  • e3096c989e Address review's feedback points Sebastian Tiedtke 2019-03-13 15:36:06 -0700
  • 0b4cde1ad3 Move type to the first position of the struct. Mariano Cano 2019-03-13 15:33:52 -0700
  • 23e6de57a2 Address comments in code review. Mariano Cano 2019-03-13 11:26:18 -0700
  • 07cdc1021c Use OIDC nonce as the reuse key. Mariano Cano 2019-03-12 15:47:18 -0700
  • 50a88d3265 Merge branch 'certificate-transparency' into seb/ct-local seb/ct-local Sebastian Tiedtke 2019-03-12 13:04:59 -0700
  • 600b1db302 Update cli dependency to add the extensions properly Mariano Cano 2019-03-12 12:51:50 -0700
  • 80beb34628 Add simple custom claims example for certificate validity Sebastian Tiedtke 2019-03-11 13:45:24 -0700
  • 3e234427ed Merge branch 'master' into oidc-provisioner Mariano Cano 2019-03-11 19:02:13 -0700
  • 7fd737cbb1 Fix lint warnings. Mariano Cano 2019-03-11 18:47:57 -0700
  • 1f5ff5c899 Fix sign and renew tests. Mariano Cano 2019-03-11 18:15:24 -0700
  • 2fb77b8a4d Truncate to seconds the startTime to simplify tests. Mariano Cano 2019-03-11 18:14:20 -0700
  • 1a9e8bad74 Truncate to seconds instead of rounding. Mariano Cano 2019-03-11 18:13:20 -0700
  • b77621675c Fix and simplify authorize tests. Mariano Cano 2019-03-11 16:38:48 -0700
  • ef4d809ee6 Move matchesAudience and stripPort tests to provisioner package. Mariano Cano 2019-03-11 15:47:57 -0700
  • 636d92b19b Add missing files. Mariano Cano 2019-03-11 14:55:42 -0700
  • a8d03c39bb Move Duration to a new file and move tests to provisioner package. Mariano Cano 2019-03-11 14:54:25 -0700
  • c6f8a9bb2a Move Custom Claims description Sebastian Tiedtke 2019-03-11 13:44:42 -0700