Commit Graph

4429 Commits

Author SHA1 Message Date
Mariano Cano
6c6ed46fef
Remove sshFingerprintValidator and rename fingerprintValidator 2024-07-23 11:48:46 -07:00
Mariano Cano
ccce670504
Merge branch 'master' into fix-1637 2024-07-23 11:37:00 -07:00
Mariano Cano
88f161818d
Merge pull request #1558 from adantop/feat/support-gcp-ssh-user-certs-opt-2
Allowing GCP provisioner to issue SSH User Certificates - Option 2
2024-07-23 11:13:51 -07:00
step-ci
d25289a099
Merge pull request #1937 from smallstep/dependabot/go_modules/google.golang.org/api-0.189.0
Bump google.golang.org/api from 0.188.0 to 0.189.0
2024-07-23 01:21:47 -07:00
dependabot[bot]
9e2e77da92
Bump google.golang.org/api from 0.188.0 to 0.189.0
Bumps [google.golang.org/api](https://github.com/googleapis/google-api-go-client) from 0.188.0 to 0.189.0.
- [Release notes](https://github.com/googleapis/google-api-go-client/releases)
- [Changelog](https://github.com/googleapis/google-api-go-client/blob/main/CHANGES.md)
- [Commits](https://github.com/googleapis/google-api-go-client/compare/v0.188.0...v0.189.0)

---
updated-dependencies:
- dependency-name: google.golang.org/api
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-07-23 08:18:07 +00:00
step-ci
2c4d2d25e7
Merge pull request #1936 from smallstep/dependabot/go_modules/github.com/googleapis/gax-go/v2-2.13.0
Bump github.com/googleapis/gax-go/v2 from 2.12.5 to 2.13.0
2024-07-23 01:17:01 -07:00
step-ci
7b504e4a3e
Merge pull request #1938 from smallstep/dependabot/go_modules/cloud.google.com/go/longrunning-0.5.10
Bump cloud.google.com/go/longrunning from 0.5.9 to 0.5.10
2024-07-23 01:16:31 -07:00
step-ci
7d9069158c
Merge pull request #1939 from smallstep/dependabot/github_actions/softprops/action-gh-release-2.0.8
Bump softprops/action-gh-release from 2.0.6 to 2.0.8
2024-07-23 01:15:58 -07:00
dependabot[bot]
2dda026392
Bump softprops/action-gh-release from 2.0.6 to 2.0.8
Bumps [softprops/action-gh-release](https://github.com/softprops/action-gh-release) from 2.0.6 to 2.0.8.
- [Release notes](https://github.com/softprops/action-gh-release/releases)
- [Changelog](https://github.com/softprops/action-gh-release/blob/master/CHANGELOG.md)
- [Commits](a74c6b72af...c062e08bd5)

---
updated-dependencies:
- dependency-name: softprops/action-gh-release
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-07-22 16:01:34 +00:00
dependabot[bot]
c801308df7
Bump cloud.google.com/go/longrunning from 0.5.9 to 0.5.10
Bumps [cloud.google.com/go/longrunning](https://github.com/googleapis/google-cloud-go) from 0.5.9 to 0.5.10.
- [Release notes](https://github.com/googleapis/google-cloud-go/releases)
- [Changelog](https://github.com/googleapis/google-cloud-go/blob/main/CHANGES.md)
- [Commits](https://github.com/googleapis/google-cloud-go/compare/longrunning/v0.5.9...longrunning/v0.5.10)

---
updated-dependencies:
- dependency-name: cloud.google.com/go/longrunning
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-07-22 15:32:14 +00:00
dependabot[bot]
70fb53e871
Bump github.com/googleapis/gax-go/v2 from 2.12.5 to 2.13.0
Bumps [github.com/googleapis/gax-go/v2](https://github.com/googleapis/gax-go) from 2.12.5 to 2.13.0.
- [Release notes](https://github.com/googleapis/gax-go/releases)
- [Commits](https://github.com/googleapis/gax-go/compare/v2.12.5...v2.13.0)

---
updated-dependencies:
- dependency-name: github.com/googleapis/gax-go/v2
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-07-22 15:31:49 +00:00
Max
077f688e2d
Add changelog for 0.27.2 & 0.27.1 | update changelog for 0.27.0 (#1934)
- A change was added in 0.27.0 that mandated use of strict FQDNs in ACME
  challenge verification. Upon further review, a flag was added to
  enable this behavior because it is not considered to be a necessary
  security feature.
2024-07-18 11:49:39 -07:00
Mariano Cano
eb503c7991
Merge pull request #1931 from smallstep/mariano/console
Update step_config.tpl template
2024-07-16 10:03:38 -07:00
github-actions[bot]
797f577caa
Merge pull request #1929 from smallstep/dependabot/go_modules/go.step.sm/linkedca-0.22.1
Bump go.step.sm/linkedca from 0.21.1 to 0.22.1
2024-07-16 10:23:11 +02:00
github-actions[bot]
61ffb32b09
Merge pull request #1928 from smallstep/dependabot/go_modules/cloud.google.com/go/security-1.17.3
Bump cloud.google.com/go/security from 1.17.0 to 1.17.3
2024-07-16 10:15:17 +02:00
Mariano Cano
8b89dd1afa
Update step_config.tpl template
This commit updates the SSH template step_config.tpl. This new version
allows to run `step ssh proxycommand` with a `--console` flag that will
execute the OIDC flow using the Device authorization grant flow.
2024-07-15 18:32:24 -07:00
dependabot[bot]
b67eb9d57e
Bump go.step.sm/linkedca from 0.21.1 to 0.22.1
Bumps [go.step.sm/linkedca](https://github.com/smallstep/linkedca) from 0.21.1 to 0.22.1.
- [Release notes](https://github.com/smallstep/linkedca/releases)
- [Commits](https://github.com/smallstep/linkedca/compare/v0.21.1...v0.22.1)

---
updated-dependencies:
- dependency-name: go.step.sm/linkedca
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-07-15 15:34:54 +00:00
dependabot[bot]
53f616d324
Bump cloud.google.com/go/security from 1.17.0 to 1.17.3
Bumps [cloud.google.com/go/security](https://github.com/googleapis/google-cloud-go) from 1.17.0 to 1.17.3.
- [Release notes](https://github.com/googleapis/google-cloud-go/releases)
- [Changelog](https://github.com/googleapis/google-cloud-go/blob/main/documentai/CHANGES.md)
- [Commits](https://github.com/googleapis/google-cloud-go/compare/kms/v1.17.0...retail/v1.17.3)

---
updated-dependencies:
- dependency-name: cloud.google.com/go/security
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-07-15 15:34:42 +00:00
Mariano Cano
3897771e42
Merge pull request #1926 from smallstep/mariano/dns
Add a flag to enable strict DNS resolution
2024-07-12 14:04:17 -07:00
Mariano Cano
3e61796df4
Add a flag to enable strict DNS resolution
This commit adds a flag to enable strict DNS resolution on ACME
challenges.
2024-07-12 12:58:44 -07:00
Max
0a9dd62d8f
[actions] use ref_name as release name (#1924) 2024-07-12 10:44:58 -07:00
Max
3978d2b859
Update changelog for 0.27.0 | add actionlint | update go.step.sm/crypto (#1923) 2024-07-11 22:00:41 -07:00
Mariano Cano
383d281cea
Merge pull request #1765 from smallstep/mariano/init-provisioners
Do not fail if a provisioner cannot be initialized
2024-07-11 16:00:09 -07:00
Mariano Cano
343e7308a8
Remove Disabled provisioner add add an Uninitialized state
This commit renames the Disabled provisioner to Uninitialized and adds
an state instead of just a boolean. It also adds tests.
2024-07-11 15:18:52 -07:00
Mariano Cano
39089325b5
Merge branch 'master' into mariano/init-provisioners 2024-07-11 12:43:26 -07:00
Mariano Cano
b6da1defb8
Merge pull request #1922 from smallstep/mariano/identity
Create identity uri on any provisioner
2024-07-11 12:36:04 -07:00
Mariano Cano
ffbbdf6f04
Update api/ssh.go
Co-authored-by: Max <mx.furman@gmail.com>
2024-07-11 12:35:39 -07:00
Mariano Cano
955338a80d
Create identity uri on any provisioner
This commit allows the creation of the identity certificate with the
host URI using any provisioner. Before, only the K8SSA provisioner could
create an identity certificate with the URI.
2024-07-11 12:27:15 -07:00
Mariano Cano
95afe686e0
Merge pull request #1920 from smallstep/mariano/crypto
Upgrades go.step.sm/crypto
2024-07-09 17:23:35 -07:00
Mariano Cano
191f1a598d
Fix unit tests after introduction of rawSubject 2024-07-09 17:04:46 -07:00
Mariano Cano
8f19b3de60
Upgrades go.step.sm/crypto
This commit upgrades crypto with support for rawSubject on templates.

Fixes #1917
2024-07-09 16:54:36 -07:00
Mariano Cano
e28eae7872
Merge pull request #1919 from smallstep/mariano/fix-acme-http-port
Fix HTTP01 challenge url when --acme-http-host is used
2024-07-09 13:31:33 -07:00
Mariano Cano
8ac876df3a
Fix HTTP01 challenge url when --acme-http-host is used
This commit fixes an issue whith the HTTP-01 challenge URL not having
the insecure port.
2024-07-09 13:28:39 -07:00
Herman Slatman
0eee6f0f86
Merge pull request #1918 from smallstep/carl/make-install-path
Change `make install` path
2024-07-09 13:13:11 +02:00
Herman Slatman
e81512db00
Merge pull request #1913 from smallstep/herman/improve-missing-device-attestation-error
Fix HTTP internal server error when bad attestation object is provided
2024-07-09 13:12:24 +02:00
Carl Tashian
ecd6c62f06
Mirrors smallstep/cli#1214 2024-07-08 16:29:20 -07:00
github-actions[bot]
a7d4141802
Merge pull request #1915 from smallstep/dependabot/go_modules/github.com/newrelic/go-agent/v3-3.33.1
Bump github.com/newrelic/go-agent/v3 from 3.33.0 to 3.33.1
2024-07-08 22:16:21 +02:00
github-actions[bot]
530810fbd9
Merge pull request #1914 from smallstep/dependabot/go_modules/cloud.google.com/go/longrunning-0.5.9
Bump cloud.google.com/go/longrunning from 0.5.8 to 0.5.9
2024-07-08 22:15:49 +02:00
github-actions[bot]
2590690b0c
Merge pull request #1916 from smallstep/dependabot/go_modules/google.golang.org/grpc-1.65.0
Bump google.golang.org/grpc from 1.64.0 to 1.65.0
2024-07-08 22:15:24 +02:00
dependabot[bot]
a5539076a2
Bump google.golang.org/grpc from 1.64.0 to 1.65.0
Bumps [google.golang.org/grpc](https://github.com/grpc/grpc-go) from 1.64.0 to 1.65.0.
- [Release notes](https://github.com/grpc/grpc-go/releases)
- [Commits](https://github.com/grpc/grpc-go/compare/v1.64.0...v1.65.0)

---
updated-dependencies:
- dependency-name: google.golang.org/grpc
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-07-08 15:18:13 +00:00
dependabot[bot]
78aa7b0a24
Bump github.com/newrelic/go-agent/v3 from 3.33.0 to 3.33.1
Bumps [github.com/newrelic/go-agent/v3](https://github.com/newrelic/go-agent) from 3.33.0 to 3.33.1.
- [Release notes](https://github.com/newrelic/go-agent/releases)
- [Changelog](https://github.com/newrelic/go-agent/blob/master/CHANGELOG.md)
- [Commits](https://github.com/newrelic/go-agent/compare/v3.33.0...v3.33.1)

---
updated-dependencies:
- dependency-name: github.com/newrelic/go-agent/v3
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-07-08 15:18:05 +00:00
dependabot[bot]
e733cf9a9d
Bump cloud.google.com/go/longrunning from 0.5.8 to 0.5.9
Bumps [cloud.google.com/go/longrunning](https://github.com/googleapis/google-cloud-go) from 0.5.8 to 0.5.9.
- [Release notes](https://github.com/googleapis/google-cloud-go/releases)
- [Changelog](https://github.com/googleapis/google-cloud-go/blob/main/CHANGES.md)
- [Commits](https://github.com/googleapis/google-cloud-go/compare/longrunning/v0.5.8...longrunning/v0.5.9)

---
updated-dependencies:
- dependency-name: cloud.google.com/go/longrunning
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-07-08 15:17:55 +00:00
Herman Slatman
5fecc2bd87
Fix HTTP internal server error when bad attestation object is provided 2024-07-05 15:43:40 +02:00
Mariano Cano
bc35b0c87f
Merge pull request #1911 from smallstep/mariano/crypto-update
Upgrade go.step.sm/crypto
2024-07-03 15:44:54 -07:00
Mariano Cano
f93ad60cd8
Upgrade go.step.sm/crypto
This commit upgrades go.step.sm/crypto that includes the template
functions added with smallstep/crypto#539
2024-07-03 13:51:42 -07:00
Mariano Cano
b9657b67e8
Merge pull request #1910 from smallstep/mariano/dns
Do strict DNS lookup on ACME
2024-07-03 13:47:59 -07:00
max furman
87c80203f8
make fmt 2024-07-03 15:34:21 -04:00
Mariano Cano
2b30ae5087
Show clean URL on HTTP-01 errors 2024-07-03 11:14:28 -07:00
Mariano Cano
c79a4d5cc0
Add helper annotation on test function
Co-authored-by: Herman Slatman <hslatman@users.noreply.github.com>
2024-07-03 10:46:34 -07:00
Mariano Cano
ed71ac024b
Wait for CA to start in a goroutine 2024-07-02 19:27:57 -07:00