Commit Graph

150 Commits (f6cbd9dc880f0a544f5406b35bf857b2f937e63d)

Author SHA1 Message Date
Mariano Cano b487edbd13 Clarify comment. 4 years ago
Mariano Cano fbd2208044 Close key manager for safe reloads when a cgo module is used. 4 years ago
Mariano Cano 40d0596b71 Use smallstep/cli-utils instead of smallstep/cli 4 years ago
Mariano Cano ba918100d0 Use go.step.sm/crypto/jose
Replace use of github.com/smallstep/cli/crypto with the new package
go.step.sm/crypto/jose.
4 years ago
Mariano Cano d30a95236d Use always go.step.sm/crypto 4 years ago
Mariano Cano 533ad0ca20 Use always go.step.sm/crypto/x509util 4 years ago
Mariano Cano 4943ae58d8 Move TLSOption, TLSVersion, CipherSuites and ASN1DN to certificates. 4 years ago
Mariano Cano e83e47a91e Use sshutil and randutil from go.step.sm/crypto. 4 years ago
Mariano Cano 6c64fb3ed2 Rename provisioner options structs:
* provisioner.ProvisionerOptions => provisioner.Options
* provisioner.Options => provisioner.SignOptions
* provisioner.SSHOptions => provisioner.SingSSHOptions
4 years ago
Mariano Cano 44207523be Add missing tests. 4 years ago
Mariano Cano 0c8376a7f6 Fix existing unit tests. 4 years ago
max furman 1951669e13 wip 4 years ago
max furman 6e69f99310 Always set nbf and naf for new ACME orders ...
- Use the default value from the ACME provisioner if values are not
defined in the request.
4 years ago
Mariano Cano 9f1d95d8bf Fix renew of certificate at the start of the server. 4 years ago
Mariano Cano 1d7ab9145a Avoid lint error. 5 years ago
Mariano Cano 0b62ce9d0e Use go 1.13 to build certificates. 5 years ago
max furman 495e60a44b Extraneous fmt.Sprintf 5 years ago
Mariano Cano 349bca06bb Fix line error due to deprecated DialTLS. 5 years ago
Mariano Cano f5d2f92099 Load identity certificate from disk in each connection. 5 years ago
Ivan Bertona 9052da66a3 Fix linter, tidy go.mod file. 5 years ago
Mariano Cano 3d6a18180e Fix a couple of race conditions in the renewal of certificates. 5 years ago
max furman 1cb8bb3ae1 Simplify statuscoder error generators. 5 years ago
max furman dccbdf3a90 Introduce generalized statusCoder errors and loads of ssh unit tests.
* StatusCoder api errors that have friendly user messages.
* Unit tests for SSH sign/renew/rekey/revoke across all provisioners.
5 years ago
Mariano Cano a025f72af7 Disable backdata on ca tests. 5 years ago
Mariano Cano a88ba8eb31 Use errs package for HTTP errors. 5 years ago
Mariano Cano 47f4ac1b53 Add method to just write the identity certificate. 5 years ago
Mariano Cano 14e59775bd Add method to renew the identity. 5 years ago
max furman 9aafe265d0 Should be returning nil from applyIdentity if cert expired. 5 years ago
max furman b9f6aacb0f Move api errors to their own package and modify the typedef 5 years ago
Mariano Cano 65b4dda420 Add wrappers to identity methods in the ca package. 5 years ago
Mariano Cano 524c221c61 Add mTLS test for identity client. 5 years ago
Mariano Cano 25144539f8 Improve identity tests. 5 years ago
Mariano Cano d85386d0b4 Add identity client and move identity to a new package. 5 years ago
Mariano Cano 9e7b86342b Fix test. 5 years ago
Mariano Cano c6f6493bb7 Fail silently if the identity fails. 5 years ago
max furman 3ac388612a Use x5cInsecure token for /ssh/check-host endpoint 5 years ago
Mariano Cano ab126d6405 Add GetTransport to client. 5 years ago
Mariano Cano 2259f62638 Add method to create an ssh token. 5 years ago
Mariano Cano caa2b8dbb7 Add leeway in identity not before. 5 years ago
max furman 0512f6e3e5 redundant variable type def 5 years ago
Mariano Cano d2b1f1547f Create a custom client that sends a custom User-Agent. 5 years ago
Mariano Cano 5d7829b198 Replace /ssh/get-hosts to /ssh/hosts 5 years ago
Mariano Cano 2fe07cd79c Fix tests. 5 years ago
Mariano Cano 85d3843968 Add Identity helpers. 5 years ago
Mariano Cano 50188fc901 Add version support to the ca.Client. 5 years ago
Mariano Cano db3b795eea Fix directory permissions. 5 years ago
Mariano Cano bbaf8e106e Support for retry and identity files. 5 years ago
Mariano Cano d555f310dc Add support for identity authentication. 5 years ago
Mariano Cano f9e5b27e63 Add client method for SSHBastion 5 years ago
max furman 29853ae016 sshpop provisioner + ssh renew | revoke | rekey first pass 5 years ago