Carl Tashian
05daf22a1e
Add SystemCallArchitectures=native
2021-02-01 13:07:52 -08:00
Carl Tashian
73fc350b84
Add note about PKCS#11
2021-02-01 11:56:24 -08:00
Carl Tashian
9fd0964e1c
Add SystemCallFilter=@system-service
2021-01-28 09:45:20 -08:00
Carl Tashian
2af73881d7
Add ProtectHome=true
2021-01-28 07:48:21 -08:00
Carl Tashian
82f82d438c
Add systemd files
2021-01-27 17:29:29 -08:00
Mariano Cano
1feb4fcb26
Merge branch 'glance--sshagentkms'
2020-11-18 17:53:15 -08:00
Mariano Cano
ccc403cf89
Fix comments, and return an error instead of fatal.
2020-11-18 17:50:21 -08:00
Mariano Cano
7d9997618f
Upgrade crypto to v0.7.1
...
Add basic constraints extensions if defined.
2020-11-18 16:57:24 -08:00
max furman
19a3cd10a1
[docs] provisioners fix attr dupe and give warning about stale docs
2020-11-18 16:57:24 -08:00
Mariano Cano
2c164f39cc
Fix rebase.
2020-11-18 16:57:24 -08:00
Mariano Cano
317a6b6aca
Fix mispell.
2020-11-18 16:57:24 -08:00
Mariano Cano
0fcf9f8bc4
Use test/bufconn instead of a real listener.
2020-11-18 16:57:24 -08:00
Mariano Cano
a0171c221e
Add missing docs.
2020-11-18 16:57:24 -08:00
Mariano Cano
74111d4432
Enable default cas implementation.
2020-11-18 16:57:24 -08:00
Mariano Cano
dfdbf493ac
Add some extra tests.
2020-11-18 16:57:24 -08:00
Mariano Cano
b4795fcd28
Complete tests for softCAS.
2020-11-18 16:57:24 -08:00
Mariano Cano
1c77538d48
Fix lint error.
2020-11-18 16:57:24 -08:00
Mariano Cano
a01c3defc0
Complete CloudCAS tests.
...
Upgrade cloud.google.com/go
2020-11-18 16:57:24 -08:00
Mariano Cano
fb1f37648f
Add missing files, mocks created using mockgen.
2020-11-18 16:57:24 -08:00
Mariano Cano
2611fc04d4
Add initial tests for CreateCertificateAuthority.
2020-11-18 16:57:24 -08:00
Mariano Cano
062edcdfb4
Fix unexpected error.
2020-11-18 16:57:24 -08:00
Mariano Cano
9607eddd6a
Remove unused code.
2020-11-18 16:57:24 -08:00
Mariano Cano
fcaaab94a4
Add method to create a CertificateAuthorityResponse.
2020-11-18 16:57:24 -08:00
Mariano Cano
a3f729fc28
Add support for local signing or cloudCAS intermediates.
2020-11-18 16:57:24 -08:00
Mariano Cano
fe7db340b0
Update go.step.sm/crypto dependency.
2020-11-18 16:57:24 -08:00
Mariano Cano
5deca85b14
Add initial support for step ca init
with cloud cas.
...
Fixes smallstep/cli#363
2020-11-18 16:57:24 -08:00
Mariano Cano
921de7e07f
Upgrade crypto to v0.7.1
...
Add basic constraints extensions if defined.
2020-11-17 11:43:12 -08:00
max furman
2799ef9626
[docs] provisioners fix attr dupe and give warning about stale docs
2020-11-16 12:30:41 -05:00
Anton Lundin
3e6137110b
Add support for using ssh-agent as a KMS
...
This adds a new KMS, SSHAgentKMS, which is a KMS to provide signing keys
for issuing ssh certificates signed by a key managed by a ssh-agent. It
uses the golang.org/x/crypto package to get a native Go implementation
to talk to a ssh-agent.
This was primarly written to be able to use gpg-agent to provide the
keys stored in a YubiKeys openpgp interface, but can be used for other
setups like proxying a ssh-agent over network.
That way the signing key for ssh certificates can be kept in a
"sign-only" hsm.
This code was written for my employer Intinor AB, but for simplicity
sake gifted to me to contribute upstream.
Signed-off-by: Anton Lundin <glance@acc.umu.se>
2020-11-04 09:06:23 +01:00
Mariano Cano
98a5aa5916
Merge pull request #409 from smallstep/cloudcas-init
...
Add CreateCertificateAuthority
2020-11-03 16:28:50 -08:00
Mariano Cano
736a6fb64e
Fix rebase.
2020-11-03 12:49:04 -08:00
Mariano Cano
a97fab4119
Fix mispell.
2020-11-03 12:48:48 -08:00
Mariano Cano
b057c6677a
Use test/bufconn instead of a real listener.
2020-11-03 12:45:31 -08:00
Mariano Cano
4f9200cc47
Add missing docs.
2020-11-03 12:45:31 -08:00
Mariano Cano
41a46bbd75
Enable default cas implementation.
2020-11-03 12:45:31 -08:00
Mariano Cano
7020011842
Add some extra tests.
2020-11-03 12:45:31 -08:00
Mariano Cano
7aa8a8fe1e
Complete tests for softCAS.
2020-11-03 12:45:31 -08:00
Mariano Cano
bb4f2aef2f
Fix lint error.
2020-11-03 12:45:31 -08:00
Mariano Cano
b275758018
Complete CloudCAS tests.
...
Upgrade cloud.google.com/go
2020-11-03 12:45:31 -08:00
Mariano Cano
10c2ce3071
Add missing files, mocks created using mockgen.
2020-11-03 12:44:54 -08:00
Mariano Cano
b2ae112dd2
Add initial tests for CreateCertificateAuthority.
2020-11-03 12:44:54 -08:00
Mariano Cano
b68344ec36
Fix unexpected error.
2020-11-03 12:44:54 -08:00
Mariano Cano
9270d432ea
Remove unused code.
2020-11-03 12:44:54 -08:00
Mariano Cano
1d48f00723
Add method to create a CertificateAuthorityResponse.
2020-11-03 12:44:54 -08:00
Mariano Cano
dff00a0218
Add support for local signing or cloudCAS intermediates.
2020-11-03 12:44:54 -08:00
Mariano Cano
461735718d
Update go.step.sm/crypto dependency.
2020-11-03 12:44:54 -08:00
Mariano Cano
2b4b902975
Add initial support for step ca init
with cloud cas.
...
Fixes smallstep/cli#363
2020-11-03 12:44:28 -08:00
Max
5a1e44a399
Merge pull request #411 from smallstep/docs-links
...
Update READMEs with links to new docs
2020-10-30 10:58:28 -07:00
Mariano Cano
c9c31e2033
Merge pull request #414 from smallstep/cli-utils
...
Use smallstep/cli-utils instead of smallstep/cli
2020-10-29 16:43:52 -07:00
Mariano Cano
b79701202b
Use cli-utils@v0.1.0
2020-10-29 15:07:14 -07:00