Mariano Cano
38fb92452f
Merge pull request #993 from smallstep/ra-ids
...
RA provisioner IDs
2022-08-04 11:26:59 -07:00
Mariano Cano
22337da18c
Merge pull request #990 from qbit/master
...
Update deps to bring in support for OpenBSD
2022-08-04 11:26:37 -07:00
Mariano Cano
821743f71e
Upgrade newrelic to v3
2022-08-04 11:16:11 -07:00
Aaron Bieber
135c481893
Update deps to bring in support for OpenBSD
...
OpenBSD support was added to the following deps:
- github.com/go-piv/piv-go in https://github.com/go-piv/piv-go/pull/101
- github.com/newrelic/go-agent in https://github.com/newrelic/go-agent/pull/455
- github.com/miekg/pkcs11 in https://github.com/miekg/pkcs11/pull/140
With these deps bumped, tests all pass on OpenBSD amd64.
2022-08-04 11:38:15 -06:00
Mariano Cano
a2f7766943
Use released version of linkedca
2022-08-04 10:31:57 -07:00
Mariano Cano
c5c7c30cc2
Fix typo in ProvisionerInfo
2022-08-04 10:07:20 -07:00
Mariano Cano
64744562c6
Send RA provisioner to linkedca.
2022-08-03 18:44:25 -07:00
Mariano Cano
6b5d3dca95
Add provisioner name to RA info
2022-08-03 18:44:04 -07:00
Mariano Cano
9648fe6b4c
Remove debug statement
2022-08-03 15:32:39 -07:00
Mariano Cano
a1f54921d2
Rename internal field
2022-08-03 12:07:45 -07:00
Mariano Cano
f9df8ac05f
Remove unused interface
2022-08-03 12:03:49 -07:00
Mariano Cano
7a1e6a0e1f
Fix and extend stepcas unit tests
2022-08-03 11:57:42 -07:00
Mariano Cano
9408d0f24b
Send RA provisioner information to the CA
2022-08-02 19:28:49 -07:00
Mariano Cano
a8819376d3
Remove empty lines on debug information
...
At the start of step-ca some information about the CA is displayed,
this change remove extra lines when displaying the ssh public keys.
2022-08-02 16:05:04 -07:00
Max
87f28a7ec9
Create codeql-analysis.yml
2022-08-01 11:16:08 -07:00
Max
0efaf514d7
Create SECURITY.md
2022-07-29 15:17:05 -07:00
max furman
fb7f57a8df
Add attribute to disable SSH Hosts list API
2022-07-27 23:30:00 -07:00
max furman
01423e36c9
[action] combine label and triage project add in one workflow
2022-07-24 22:38:34 -07:00
Raal Goff
9fa5f46213
add minor doco, Test_CRLGeneration(), fix some issues from merge
2022-07-13 08:56:47 +08:00
Raal Goff
60671b07d7
Merge branch 'master' into crl-support
...
# Conflicts:
# api/api.go
# authority/config/config.go
# cas/softcas/softcas.go
# db/db.go
2022-07-13 08:52:58 +08:00
max furman
ffe7c00a10
Add changelog template
2022-07-06 15:04:55 -07:00
Carl Tashian
6814b7f5dd
Update README.md
2022-06-30 11:27:05 -06:00
Mariano Cano
f140874e42
Merge pull request #958 from smallstep/rsa-signature-algorithm
...
Sign certificates with the issuer signature algorithm
2022-06-16 15:08:10 -07:00
Mariano Cano
7ecb8c32aa
Update CHANGELOG.md
...
Co-authored-by: Herman Slatman <hslatman@users.noreply.github.com>
2022-06-16 14:41:55 -07:00
Mariano Cano
dab2f7918d
Merge pull request #960 from smallstep/uri-1.19
...
Split Go 1.19 problematic with build tags
2022-06-16 11:22:23 -07:00
Mariano Cano
68a89fbb02
Split Go 1.19 problematic with build tags
2022-06-16 10:58:45 -07:00
Mariano Cano
ed778b7fc1
Merge pull request #956 from shuLhan/kms-uri-test-go119
...
kms/uri: fix test on Parse for the next Go release
2022-06-16 10:45:27 -07:00
Shulhan
0e7257a236
kms/uri: fix test on Parse for the next Go release
...
The next Go release add field OmitHost to url.URL [1] which cause the
TestParse fail.
Since the CI supports two consecutive Go versions at the same times, we
copy the uri_test.go to uri_119_test.go for testing with Go 1.19.
While at it, print the got and want object using the same format
(%#v) and type (*URL) for consistency.
[1] https://go-review.googlesource.com/c/go/+/391294
2022-06-17 00:32:08 +07:00
Mariano Cano
31af1efa48
Sign certificates with the issuer signature algorithm
...
An RSA key can sign another certificates using the RSA PKCS#1
and the RSA-PSS scheme, this change will keep the signature
algorithm used in the issuer in the signed certificates instead
of using PKCS#1 by default.
2022-06-15 19:10:58 -07:00
Mariano Cano
34f926804d
Merge pull request #954 from shuLhan/shulhan-gofmt
...
all: reformat all go files with the next gofmt (Go 1.19)
2022-06-15 18:11:51 -07:00
Mariano Cano
0b748f2d03
Merge pull request #955 from shuLhan/cas-cloudcas-test-go119
...
cas/cloudcas: update test on createPublicKey for the next Go release
2022-06-15 17:17:04 -07:00
Shulhan
ee53530d1f
cas/cloudcas: update test on createPublicKey for the next Go release
...
The next Go release call panic on elliptic.Marshal [1][2], which
affect the test case fail_ec_marshal on createPublicKey.
This changes fix this by initializing the P and B in test case
PublicKey CurveParams to prevent panic.
[1] https://github.com/golang/go/issues/50975
[2] a218b3520a
2022-06-16 03:01:38 +07:00
Shulhan
fe04f93d7f
all: reformat all go files with the next gofmt (Go 1.19)
...
There are some changes that manually edited, for example using '-' as
default list and grouping imports.
2022-06-16 01:28:59 +07:00
Mariano Cano
304cc5a70f
Merge pull request #950 from gdbelvin/pinsrc
...
step-pkcs11-init pin-file support
2022-06-09 14:41:11 -07:00
Gary Belvin
fed09047f9
pinfile
2022-06-09 13:51:14 -04:00
Max
34d141e4d5
Merge pull request #945 from smallstep/changelog-update
...
Update changelog
2022-05-26 11:06:30 -07:00
max furman
5e56a7b4ec
Changelog update for 0.20.0
...
- added line for new WithOptions on authority Init
2022-05-26 10:57:05 -07:00
Herman Slatman
b4b9893fcd
Update changelog
2022-05-26 10:57:03 -07:00
Mariano Cano
6d580a69e8
Update changelog
2022-05-26 10:56:24 -07:00
Mariano Cano
de00e01f1b
Merge pull request #947 from smallstep/fix-ssh-revocation
...
Fix SSH certificate revocation
2022-05-25 17:24:45 -07:00
Mariano Cano
2adf8caac7
Fix Dependabot warning on an indirect dependency
2022-05-25 17:11:45 -07:00
Mariano Cano
9c049eec5a
Add revoke ssh unit test
2022-05-25 17:10:07 -07:00
Mariano Cano
ce9a23a0f7
Fix SSH certificate revocation
2022-05-25 16:55:22 -07:00
Herman Slatman
abfbbc8d49
Merge pull request #946 from smallstep/herman/acme-csr-padding
...
Strip base64-url padding from ACME CSR
2022-05-25 23:25:34 +02:00
Herman Slatman
fd546287ac
Strip base64-url padding from ACME CSR
...
This commit strips the padding from a base64-url encoded CSR
submitted by a client that doesn't use raw base64-url encoding.
2022-05-25 22:46:26 +02:00
Herman Slatman
a564b4f32e
Merge pull request #944 from smallstep/herman/tls-wasm-client
...
Set nil dial context for js/wasm runtime
2022-05-25 22:35:18 +02:00
Herman Slatman
a7dd3a986f
Set nil dial context for js/wasm runtime
2022-05-25 16:51:26 +02:00
Mariano Cano
911cec21da
Merge pull request #943 from smallstep/ssh-renew-provisioner
...
Add provisioner to SSH renewals
2022-05-23 17:21:55 -07:00
Mariano Cano
94f5b92513
Use proper context in authority package
2022-05-23 15:31:43 -07:00
Mariano Cano
1be74eca62
Merge branch 'master' into ssh-renew-provisioner
2022-05-23 14:31:15 -07:00