Mariano Cano
|
45af68b244
|
Upgrade go.step.sm/crypto
|
2022-08-31 11:36:07 -07:00 |
|
Mariano Cano
|
6db631df51
|
Upgrade go.step.sm/crypto@attest
|
2022-08-30 15:49:10 -07:00 |
|
Mariano Cano
|
2a44972830
|
Run go mod tidy
|
2022-08-24 19:23:31 -07:00 |
|
Mariano Cano
|
bca311b05e
|
Add acme property to enable challenges
Fixes #1027
|
2022-08-23 17:11:40 -07:00 |
|
Mariano Cano
|
693dc39481
|
Merge branch 'master' into device-attestation
|
2022-08-22 17:59:17 -07:00 |
|
Mariano Cano
|
6cab4d328e
|
Add a middleware to automatically route HEAD requests to GET
Fixes #992
|
2022-08-16 16:10:29 -07:00 |
|
Mariano Cano
|
0c7467ceb2
|
Allow to automatically configure and linked RA
|
2022-08-16 14:39:02 -07:00 |
|
Mariano Cano
|
5df1694250
|
Add endpoint id for the RA certificate
In a linked RA mode, send an endpoint id to group the server
certificates.
|
2022-08-11 14:47:11 -07:00 |
|
Mariano Cano
|
2f7cb9225f
|
Use go.step.sm/crypto to set the permanent identifier
|
2022-08-10 17:38:18 -07:00 |
|
Mariano Cano
|
369b8f81c3
|
Use go.step.sm/crypto/kms
Fixes #975
|
2022-08-08 17:58:18 -07:00 |
|
Mariano Cano
|
e02a190fa7
|
Merge branch 'master' into device-attestation
|
2022-08-08 17:29:59 -07:00 |
|
Mariano Cano
|
8445c29db6
|
Change actions to build using Go 1.19
Fixes #998
|
2022-08-08 12:01:18 -07:00 |
|
Mariano Cano
|
38fb92452f
|
Merge pull request #993 from smallstep/ra-ids
RA provisioner IDs
|
2022-08-04 11:26:59 -07:00 |
|
Mariano Cano
|
821743f71e
|
Upgrade newrelic to v3
|
2022-08-04 11:16:11 -07:00 |
|
Aaron Bieber
|
135c481893
|
Update deps to bring in support for OpenBSD
OpenBSD support was added to the following deps:
- github.com/go-piv/piv-go in https://github.com/go-piv/piv-go/pull/101
- github.com/newrelic/go-agent in https://github.com/newrelic/go-agent/pull/455
- github.com/miekg/pkcs11 in https://github.com/miekg/pkcs11/pull/140
With these deps bumped, tests all pass on OpenBSD amd64.
|
2022-08-04 11:38:15 -06:00 |
|
Mariano Cano
|
a2f7766943
|
Use released version of linkedca
|
2022-08-04 10:31:57 -07:00 |
|
Mariano Cano
|
64744562c6
|
Send RA provisioner to linkedca.
|
2022-08-03 18:44:25 -07:00 |
|
Brandon Weeks
|
77c6d10fd6
|
Verify key authorization is contained within the TPM quote extraData field
|
2022-06-23 05:19:36 +10:00 |
|
Brandon Weeks
|
e1ec31c0ed
|
Implement TPM attestation statement verification
|
2022-06-23 05:19:36 +10:00 |
|
Brandon Weeks
|
2ac8b69da2
|
Add ACME permanent-identifier identifier type
|
2022-06-23 05:19:36 +10:00 |
|
Mariano Cano
|
2adf8caac7
|
Fix Dependabot warning on an indirect dependency
|
2022-05-25 17:11:45 -07:00 |
|
Erik De Lamarter
|
dec1067add
|
vault kubernetes auth
|
2022-05-21 21:06:14 +02:00 |
|
Herman Slatman
|
d1ab1d5431
|
Merge branch 'master' into herman/update-crypto-0.16.2
|
2022-05-18 09:11:38 +02:00 |
|
Herman Slatman
|
b75ce3acbd
|
Update to go.step.sm/crypto v0.16.2
This patch release of go.step.sm/crypto fixes an issue with
not all `Subject` names being available for usage in a template
as `ExtraNames`.
|
2022-05-17 23:39:01 +02:00 |
|
Herman Slatman
|
7030dbb7a1
|
Use github.com/smallstep/pkcs7 fork with patches applied
|
2022-05-11 21:18:47 +02:00 |
|
Herman Slatman
|
ed231d29e2
|
Update to go.step.sm/linkedca@v0.16.1
|
2022-05-05 15:57:47 +02:00 |
|
Herman Slatman
|
f0272dc717
|
Fix import replacement of linkedca
|
2022-05-05 11:10:21 +02:00 |
|
Herman Slatman
|
60d8b22d89
|
Change context retrievers to MustTFromContext
|
2022-05-05 11:05:57 +02:00 |
|
Herman Slatman
|
ad2de16299
|
Merge branch 'master' into herman/allow-deny
|
2022-04-19 10:26:31 +02:00 |
|
Mariano Cano
|
fe9c3cf753
|
Merge branch 'master' into ahmet2mir-feat/vault
|
2022-04-18 15:35:26 -07:00 |
|
Herman Slatman
|
d6be9450be
|
Merge branch 'master' into herman/allow-deny
|
2022-04-15 11:57:05 +02:00 |
|
Mariano Cano
|
674dc3c844
|
Rename unreleased claim to allowRenewalAfterExpiry for consistency.
|
2022-04-13 15:11:54 -07:00 |
|
Mariano Cano
|
9134bad22c
|
Run go mod tidy.
|
2022-04-11 14:59:22 -07:00 |
|
Mariano Cano
|
37b521ec6c
|
Merge branch 'master' into feat/vault
|
2022-04-11 14:57:45 -07:00 |
|
Herman Slatman
|
9797b3350e
|
Merge branch 'master' into herman/allow-deny
|
2022-04-08 16:01:56 +02:00 |
|
Mariano Cano
|
d4013f0df6
|
Update linkedca
|
2022-04-07 18:19:56 -07:00 |
|
Herman Slatman
|
7df52dbb76
|
Add ACME EAB policy
|
2022-04-07 14:11:53 +02:00 |
|
Herman Slatman
|
235a2c9d04
|
Pin to specific version of go.step.sm/linkedca
|
2022-03-31 16:40:49 +02:00 |
|
Herman Slatman
|
5daa9fc0b1
|
Merge branch 'master' into herman/allow-deny
|
2022-03-31 16:13:50 +02:00 |
|
Mariano Cano
|
f5bf46b950
|
Upgrade go.step.sm/crypto
|
2022-03-30 18:24:17 -07:00 |
|
Herman Slatman
|
2fbdf7d5b0
|
Merge branch 'master' into herman/allow-deny
|
2022-03-30 14:50:14 +02:00 |
|
Herman Slatman
|
1dbaa62740
|
Update cloud.google.com/go/kms
|
2022-03-27 21:40:01 +02:00 |
|
Herman Slatman
|
dc23fd23bf
|
Merge branch 'master' into herman/allow-deny-next
|
2022-03-24 12:36:12 +01:00 |
|
Herman Slatman
|
6b620c8e9c
|
Improve protobuf unmarshaling error handling
|
2022-03-24 10:54:45 +01:00 |
|
Herman Slatman
|
81b0c6c37c
|
Add API implementation for authority and provisioner policy
|
2022-03-15 15:56:04 +01:00 |
|
Mariano Cano
|
c903f00cd4
|
Rename claim to allowRenewAfterExpiry.
|
2022-03-14 15:40:01 -07:00 |
|
Mariano Cano
|
616490a9c6
|
Refactor renew after expiry token authorization
This changes adds a new authority method that authorizes the
renew after expiry tokens.
|
2022-03-10 20:21:01 -08:00 |
|
Mariano Cano
|
3fb5e57f12
|
Upgrade nosql package
The new version of the package allows filtering out database drivers
using Go tags.
|
2022-03-04 10:56:09 -08:00 |
|
Mariano Cano
|
6f46cdb432
|
Merge pull request #829 from vijayjt/new-azure-token-authz-options
Add subscription and object ID validation options to Azure provisioner
|
2022-02-28 14:31:28 -08:00 |
|
vijayjt
|
7a32c312bf
|
Update linkedca dependency version
|
2022-02-25 11:21:32 +00:00 |
|