Mariano Cano
23b8f45b37
Address gosec warnings
...
Most if not all false positives
2 years ago
max furman
c040e4b459
Add unit tests
2 years ago
max furman
b7c2f6c482
Check for DNS name validity
2 years ago
Mariano Cano
b62f4d1000
Add lgtm comments on some security warnings
2 years ago
Shulhan
fe04f93d7f
all: reformat all go files with the next gofmt (Go 1.19)
...
There are some changes that manually edited, for example using '-' as
default list and grouping imports.
2 years ago
Herman Slatman
abfbbc8d49
Merge pull request #946 from smallstep/herman/acme-csr-padding
...
Strip base64-url padding from ACME CSR
2 years ago
Herman Slatman
fd546287ac
Strip base64-url padding from ACME CSR
...
This commit strips the padding from a base64-url encoded CSR
submitted by a client that doesn't use raw base64-url encoding.
2 years ago
Mariano Cano
e7f4eaf6c4
Remove explicit deprecation notice
...
This will avoid linter errors on other projects for now.
2 years ago
Mariano Cano
d461918eb0
Merge branch 'master' into context-authority
2 years ago
Mariano Cano
2ea0c70344
Move acme context middleware to deprecated handler
2 years ago
Mariano Cano
9147356d8a
Fix linter errors
2 years ago
Mariano Cano
2ab7dc6f9d
Fix acme tests.
2 years ago
Mariano Cano
ba499eeb2a
Fix acme/api tests.
2 years ago
Mariano Cano
6f9d847bc6
Fix panic in acme/api tests.
2 years ago
Herman Slatman
d82e51b748
Update AllowWildcardNames configuration name
2 years ago
Mariano Cano
d1f75f1720
Refactor ACME api.
2 years ago
Mariano Cano
fddd6f7d95
Move linker to the acme package.
2 years ago
Mariano Cano
55b0f72821
Add context methods for the acme linker.
2 years ago
Mariano Cano
bb8d85a201
Fix unit tests - work in progress
2 years ago
Mariano Cano
42435ace64
Use scep authority from context
...
This commit also converts all the methods from the handler to
functions.
2 years ago
Mariano Cano
d13537d426
Use context in the acme handlers.
2 years ago
Mariano Cano
bd412c9f42
Add context methods for the acme database
2 years ago
Herman Slatman
6e1f8dd7ab
Refactor policy engines into container
2 years ago
Herman Slatman
2a7620641f
Fix more PR comments
2 years ago
Herman Slatman
fb81407d6f
Fix ACME policy comments
2 years ago
Herman Slatman
7f9034d22a
Add additional policy options
2 years ago
Herman Slatman
a9f033ece5
Fix JSON property name for ACME policy
2 years ago
Herman Slatman
256fe113f7
Improve tests for ACME account policy
3 years ago
Herman Slatman
034b7943fe
Merge branch 'master' into herman/allow-deny
3 years ago
Herman Slatman
7df52dbb76
Add ACME EAB policy
3 years ago
Herman Slatman
479c6d2bf5
Fix ACME IPv6 HTTP-01 challenges
...
Fixes #890
3 years ago
Herman Slatman
2fbdf7d5b0
Merge branch 'master' into herman/allow-deny
3 years ago
Panagiotis Siatras
00634fb648
api/render, api/log: initial implementation of the packages ( #860 )
...
* api/render: initial implementation of the package
* acme/api: refactored to support api/render
* authority/admin: refactored to support api/render
* ca: refactored to support api/render
* api: refactored to support api/render
* api/render: implemented Error
* api: refactored to support api/render.Error
* acme/api: refactored to support api/render.Error
* authority/admin: refactored to support api/render.Error
* ca: refactored to support api/render.Error
* ca: fixed broken tests
* api/render, api/log: moved error logging to this package
* acme: refactored Error so that it implements render.RenderableError
* authority/admin: refactored Error so that it implements render.RenderableError
* api/render: implemented RenderableError
* api/render: added test coverage for Error
* api/render: implemented statusCodeFromError
* api: refactored RootsPEM to work with render.Error
* acme, authority/admin: fixed pointer receiver name for consistency
* api/render, errs: moved StatusCoder & StackTracer to the render package
3 years ago
Herman Slatman
b49307f326
Fix ACME order tests with mock ACME CA
3 years ago
Herman Slatman
9e0edc7b50
Add early authority policy evaluation to ACME order API
3 years ago
Herman Slatman
101ca6a2d3
Check admin subjects before changing policy
3 years ago
Herman Slatman
3ec9a7310c
Fix ACME order identifier allow/deny check
3 years ago
Herman Slatman
af53a17bb4
Merge branch 'master' into herman/allow-deny
3 years ago
Herman Slatman
b6f6bd879c
Fix PR comment and add tests for ACME prerequisites checker
3 years ago
Herman Slatman
e47dd0a666
Add ACME configuration prerequisites check
3 years ago
Herman Slatman
c3c6f3da72
Merge branch 'master' into herman/allow-deny
3 years ago
Herman Slatman
bfa2245abb
Merge branch 'master' into herman/normalize-ipv6-dns-names
3 years ago
Herman Slatman
1fe7362bee
Normalize IPv6 addresses in ACME linker
3 years ago
Herman Slatman
c1424036bf
Merge branch 'master' into herman/allow-deny
3 years ago
Herman Slatman
bf21319e76
Fix PR comments and issue with empty string slices
3 years ago
Herman Slatman
fd9845e9c7
Add cursor and limit to ACME EAB DB interface
3 years ago
Herman Slatman
c3f2fd8ef0
Add RW locks to prevent concurrent updates to the DB
...
Although this may slow certain API calls down and may not be, strictly
necessary, I think it's best to put all the ACME EAB operations behind
RW locks to prevent concurrent updates to the DB and guarantee
consistent result sets.
3 years ago
Herman Slatman
868cc4ad7f
Increase test coverage for additional indexes
3 years ago
Herman Slatman
c0eb420806
Remove special case for empty slices
3 years ago
Herman Slatman
6440870a80
Clean up, improve test cases and coverage
3 years ago