Commit Graph

924 Commits (74a6e59b1f1cb8411805b17c6ddb26f8e060421b)

Author SHA1 Message Date
Herman Slatman bddd08d4b0
Remove "proto:" prefix from bad proto JSON messages 2 years ago
Herman Slatman 6e1f8dd7ab
Refactor policy engines into container 2 years ago
Herman Slatman 2a7620641f
Fix more PR comments 2 years ago
Herman Slatman 76112c2da1
Improve error creation and testing for core policy engine 2 years ago
Herman Slatman 20f5d12b99
Improve test rigour for reloadPolicyEngines 2 years ago
Herman Slatman 6264e8495c
Improve policy error handling code coverage 2 years ago
Herman Slatman 3fa96ebf13
Improve policy errors returned to client 2 years ago
Herman Slatman c40a4d2694
Contain policy engines inside provisioner Controller 2 years ago
Herman Slatman ef110a94df
Change pointer booleans to regular boolean configuration 2 years ago
Herman Slatman e9f5a1eb98
Improve policy bad request handling 2 years ago
Herman Slatman b72430f4ea
Block all APIs when using linked deployment mode 2 years ago
Herman Slatman fb81407d6f
Fix ACME policy comments 2 years ago
Herman Slatman a2cfbe3d54
Fix (part of) PR comments 2 years ago
Herman Slatman 3eecc4f7bb
Improve test coverage for reloadPolicyEngines 3 years ago
Herman Slatman 72bbe53376
Add additional policy options 3 years ago
Herman Slatman 9a21208f22
Add deduplication of policy configuration values 3 years ago
Herman Slatman f2f9cb899e
Add conditional defaults to policy protobuf request bodies 3 years ago
Herman Slatman 647538e9e8
Merge branch 'herman/allow-deny' into herman/allow-deny-options 3 years ago
Herman Slatman ad2de16299
Merge branch 'master' into herman/allow-deny 3 years ago
Herman Slatman 7f9034d22a
Add additional policy options 3 years ago
Mariano Cano fe9c3cf753
Merge branch 'master' into ahmet2mir-feat/vault 3 years ago
Herman Slatman def9438ad6
Improve handling of bad JSON protobuf bodies 3 years ago
Herman Slatman 2ca5c0170f
Fix flaky test behavior for protobuf messages 3 years ago
Herman Slatman abcad679ff
Merge branch 'master' into herman/allow-deny 3 years ago
Herman Slatman 8d15a027a7
Fix if-else linting issue 3 years ago
Mariano Cano c066694c0c Allow renew token issuer to be the provisioner name.
For consistency with AuthorizeAdminToken, AuthorizeRenewToken will
allow the issuer to be either the fixed string 'step-ca-client/1.0'
or the provisioner name.
3 years ago
Herman Slatman 99702d3648
Fix case of no authority policy existing 3 years ago
Herman Slatman d6be9450be
Merge branch 'master' into herman/allow-deny 3 years ago
Herman Slatman 30d5d89a13
Improve test coverage for Policy Admin API 3 years ago
Mariano Cano d3b6bc3c75 Merge branch 'master' into fix/adminra 3 years ago
Mariano Cano ad5aedfa60 Fix backward compatibility in AuthorizeAdminToken
This commit validates both new and old issuers.
3 years ago
Mariano Cano 5f714f2485 Fix tests for AuthorizeRenewToken 3 years ago
Mariano Cano 674dc3c844 Rename unreleased claim to allowRenewalAfterExpiry for consistency. 3 years ago
Mariano Cano 4e4d4e882f Use a fixed string for renewal token issuer. 3 years ago
Mariano Cano 0a5dc237df Fix typo in comment. 3 years ago
Mariano Cano 00cd0f5f21
Apply suggestions from code review
Co-authored-by: Herman Slatman <hslatman@users.noreply.github.com>
3 years ago
Mariano Cano ea5f7f2acc
Fix SANs for step-ca certificate
Co-authored-by: Herman Slatman <hslatman@users.noreply.github.com>
3 years ago
Mariano Cano 37b521ec6c
Merge branch 'master' into feat/vault 3 years ago
Mariano Cano c8c59d68f5 Allow mTLS renewals if the provisioner extension does not exists.
This fixes a backward compatibility issue with with the new
LoadProvisionerByCertificate.
3 years ago
Herman Slatman 256fe113f7
Improve tests for ACME account policy 3 years ago
Panagiotis Siatras f2cf9cf828
authority/status: removed the package (#892) 3 years ago
Mariano Cano af8fcf5b01 Use always LoadProvisionerByCertificate on authority package 3 years ago
Mariano Cano 1d1e095447 Add tests for LoadProvisionerByCertificate. 3 years ago
Herman Slatman 0bb15e16f9
Fix missing ACME provisioner option 3 years ago
Herman Slatman 9797b3350e
Merge branch 'master' into herman/allow-deny 3 years ago
Mariano Cano dfdc9c06ed Fix linter error importShadow 3 years ago
Mariano Cano 8abd568f03 Merge branch 'master' into fix/adminra 3 years ago
Mariano Cano b7e11da480 Merge branch 'master' into feat/linkedra 3 years ago
Mariano Cano c55b27a2fc Refactor admin token to use with RAs. 3 years ago
Herman Slatman 034b7943fe
Merge branch 'master' into herman/allow-deny 3 years ago