Commit Graph

1132 Commits (195cdd664aa8ba1f53b3e90d6f76c0b234868dfe)
 

Author SHA1 Message Date
David Cowden eb42ea90db ssh/api: Use host tags instead of groups
Tags are more flexible and what we use in the managed offering.
4 years ago
Mariano Cano 1d9edcd48f
Merge pull request #220 from smallstep/identity-cert-duration
Enforce a duration for identity certificates
4 years ago
Mariano Cano bfe1f4952d Rename interface to CertificateEnforcer and add tests. 4 years ago
Mariano Cano 64f26c0f40 Enforce a duration for identity certificates. 4 years ago
Mariano Cano 041aeb7a90 Add simple rule to run step certificates. 4 years ago
Mariano Cano 83993d31d4
Merge pull request #214 from smallstep/build-with-go.1.13
Use go 1.13 to build certificates
4 years ago
Mariano Cano 1d7ab9145a Avoid lint error. 4 years ago
Mariano Cano 0b62ce9d0e Use go 1.13 to build certificates. 4 years ago
Mariano Cano 3480ed44c7 Upgrade github.com/x/crypto to fix a vulnerability in ssh.
* CVE-2020-9283
4 years ago
max furman 495e60a44b Extraneous fmt.Sprintf 4 years ago
max furman 0d9cd24d78 Slightly decrease version of golanci-lint to match brew. 4 years ago
max furman fd80da6a8d Bump version of golangci-lint in `make bootstrap`. 4 years ago
Mariano Cano ee1c8dd0cd
Merge pull request #207 from smallstep/add-context
Add context to ssh methods
4 years ago
Mariano Cano fa416336a8 Add context to tests. 4 years ago
Mariano Cano c49a9d5e33 Add context parameter to all SSH methods. 4 years ago
Carl Tashian 164e4ef2d0 Add Build From Source instructions 4 years ago
Mariano Cano 818c38188f
Merge pull request #204 from smallstep/ssh-cloud-identities
Allow custom principals on cloud identity provisioners
4 years ago
Mariano Cano 349bca06bb Fix line error due to deprecated DialTLS. 4 years ago
Mariano Cano f868e07a76 Allow to use custom principals on cloud provisioners.
Fixes #203
4 years ago
Mariano Cano f37554fddb Use go 1.14 4 years ago
Mariano Cano f5d2f92099 Load identity certificate from disk in each connection. 4 years ago
Carl Tashian a26d489abd
Merge pull request #199 from smallstep/faq-update
Update FAQ: "I already have PKI"
4 years ago
Carl Tashian be4b853d3a Typo fix 4 years ago
Mariano Cano 59fc8cdd2d Fix typo in comments. 4 years ago
Carl Tashian 681e15deeb Replace broken aws-cli commands with a Python script 4 years ago
Carl Tashian 76a077ba3e Add CFSSL instructions 4 years ago
Carl Tashian a1debf7b1e FAQ Update: Intermediate certificates should be valid for 10 years 4 years ago
Mariano Cano 3c5046f0d4
Merge pull request #196 from smallstep/hsm-pending-generation
Retry CloudKMS GetPublicKey
4 years ago
Carl Tashian 043233f90f Update FAQ: I already have PKI 4 years ago
Mariano Cano 1138cc4207 Retry CloudKMS GetPublicKey.
On HSM keys are not generated instantly and the GetPublicKey fails
with a FailedPrecondition error. This change will retry GetPublicKey
if this happens.
4 years ago
Mariano Cano 806abb6232
Merge pull request #192 from smallstep/cloudkms-init
Cloudkms init
4 years ago
Mariano Cano 6b01128bcc Reference root.Subject instead of hardcoding it. 4 years ago
Mariano Cano 32c2558b58 Replace project in output. 4 years ago
Mariano Cano 334d191563 Fix docs. 4 years ago
Mariano Cano 8604c31818 Fix in documentation. 4 years ago
Mariano Cano 91f0caa6ff
Merge pull request #195 from smallstep/custom-templates
Templates without the filesystem
4 years ago
Mariano Cano 914636668a Add support for loading templates without using files. 4 years ago
Mariano Cano 55e661bd26 Add initial docs for cloud kms. 4 years ago
Mariano Cano 1535e95d89 Add tool to initialize pki in cloud kms. 4 years ago
max furman 8e882faf44 Remove extraneous "stage" from travis yml 4 years ago
Mariano Cano cf7ef472f7
Merge pull request #164 from smallstep/kms
Kms
4 years ago
Mariano Cano 5c8c741fab Fix linting issues. 4 years ago
Mariano Cano dd5a96a42e Fix typo. 4 years ago
Mariano Cano b724f5a338 Fix typos. 4 years ago
Mariano Cano 6987a46b76 Skip test on travis. 4 years ago
Mariano Cano b11bbd5728 Fix typo. 4 years ago
Mariano Cano 05cc1437b7 Remove unnecessary parse of certificate. 4 years ago
Mariano Cano cff346e7fd Skip test on travis, it won't fail because they have access to the KMS. 4 years ago
Mariano Cano 2d4f369db2 Add options to set root and federated certificates using x509.Certificate 4 years ago
Mariano Cano 8f17a46be0 Fix formatting. 4 years ago