Commit Graph

573 Commits

Author SHA1 Message Date
Artem Yarmoluk
9197acfefe
Allow disabling issuing temporary certificates
Signed-off-by: Artem Yarmoluk <koolgen@gmail.com>
2019-06-30 21:57:57 +03:00
Stuart Hu
aae6e83923 update doc
Signed-off-by: Stuart Hu <shijiehu@improbable.io>
2019-06-27 18:39:53 +08:00
kfoozminus
582877b050 Fix typo
Signed-off-by: kfoozminus <kfoozminus@gmail.com>
2019-06-27 13:00:35 +06:00
Aled James
ac785e9716 Better deployment example. Known to work now that vcert version bumped in PR1827
Signed-off-by: Aled James <aledjms@gmail.com>
2019-06-26 14:37:13 +01:00
Aled James
0bda2b3198 Fix formatting and wording based on cheukwing feedback on PR1729
Signed-off-by: Aled James <aledjms@gmail.com>
2019-06-26 14:37:13 +01:00
Aled James
f1198fda6f Most recent version of EKS docs
Signed-off-by: Aled James <aledjms@gmail.com>
2019-06-26 14:37:13 +01:00
Aled James
5664a1790f Add example information
Signed-off-by: Aled James <aledjms@gmail.com>
2019-06-26 14:37:13 +01:00
Aled James
5d05fc8695 Initial commit of EKS docs
Signed-off-by: Aled James <aledjms@gmail.com>
2019-06-26 14:37:13 +01:00
James Munnelly
8a0fbf8868 Update CRDs and reference docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-06-25 15:18:30 +02:00
Hays Clark
ef757f6749 Removing use of kubectl --show-all in docs
--show-all has been deprecated in kubernetes v1.15
Resolves #1814

Signed-off-by: Hays Clark <hays.clark@gmail.com>
2019-06-21 12:06:04 +00:00
jetstack-bot
84770edfa7
Merge pull request #1796 from munnerz/bump-081
Bump version numbers for v0.8.1
2019-06-18 12:01:17 +01:00
Crystal-Chun
4f35c56443 Allows certificates to use PKCS#8 Issue 1155 (#1308)
* Added KeyEncoding spec value to Certificate type.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added validation for Certificate Spec field KeyEncoding.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added Encoding PKCS8 function for encoding private keys in generate.go.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Modified the call to the private key encoding function for each issuer in issue.go to pass in the extra KeyEncoding field.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added case for decoding pkcs8 key.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Converting decoded PKCS8 key into crypto.Signer.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added debugging log statements for decoding private keys.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Log messages for decoding private keys.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added logs for decoding private keys.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added debug logs.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Add debug logs.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Modified keys package.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed the key converter to the ssh package.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Testing decoding as pkcs1 key instead.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Trying to convert to crypto.Signer for PKCS8.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Converting to rsa.PrivateKey.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed return to type private key.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changing parsing.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Cleaned up logs.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed logging info.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed debug logging.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fix parse test for new pkcs8 support.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed extra lines.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed extra lines and spaces.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed duplicate PKCS8 functions.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed the KeyEncoding field from an int to a string.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed issue.go for issuers to pass in the certificate when encoding private key.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Corrected capitalization of Spec.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed the error message to use the correct variable.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixed selfsigned issue.go to pass in certificate object instead of the keyEncoding.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed error format.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed test to pass in certificate variable into encoding private key function.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixed syntax issue.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed parameter for encode private key function in parse_test.go.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixed parse test for encode private key function.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed invalid syntax.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Moved the if statement.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Cleaned up go-fmt errors.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Ran bazel run //hack:update-reference-docs.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed encode private key to take keyEncoding instead of certificate.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed setting keyEncoding for ca issue test.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixing passing in the correct type for encoding private key.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixing passing in the correct type for encoding private key.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixed parameter passed into encode private key for parse test.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added unit test for encoding different private key types.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed key encoding field from existing test.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added KeyEncoding spec value to Certificate type.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added validation for Certificate Spec field KeyEncoding.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added Encoding PKCS8 function for encoding private keys in generate.go.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Modified the call to the private key encoding function for each issuer in issue.go to pass in the extra KeyEncoding field.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added case for decoding pkcs8 key.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Converting decoded PKCS8 key into crypto.Signer.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added debugging log statements for decoding private keys.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Log messages for decoding private keys.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added logs for decoding private keys.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added debug logs.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Add debug logs.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Modified keys package.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed the key converter to the ssh package.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Testing decoding as pkcs1 key instead.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Trying to convert to crypto.Signer for PKCS8.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Converting to rsa.PrivateKey.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed return to type private key.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changing parsing.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Cleaned up logs.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed logging info.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed debug logging.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fix parse test for new pkcs8 support.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed extra lines.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed extra lines and spaces.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed duplicate PKCS8 functions.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed the KeyEncoding field from an int to a string.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed issue.go for issuers to pass in the certificate when encoding private key.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Corrected capitalization of Spec.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed the error message to use the correct variable.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixed selfsigned issue.go to pass in certificate object instead of the keyEncoding.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed error format.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed test to pass in certificate variable into encoding private key function.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixed syntax issue.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed parameter for encode private key function in parse_test.go.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixed parse test for encode private key function.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed invalid syntax.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Moved the if statement.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Cleaned up go-fmt errors.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Ran bazel run //hack:update-reference-docs.

Signed-off-by: Crystal Chun <crystalchun@crystals-mbp.raleigh.ibm.com>
Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Changed encode private key to take keyEncoding instead of certificate.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed setting keyEncoding for ca issue test.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixing passing in the correct type for encoding private key.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixing passing in the correct type for encoding private key.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixed parameter passed into encode private key for parse test.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added unit test for encoding different private key types.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed key encoding field from existing test.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed syntax error for declaring constant.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Moving private key all to one line.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added commas after each test case and changed the private key to a pkcs1 rsa private key.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixed test errors.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added default error.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Predefined actualEncoding variable.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Undeclared actualEncoding variable.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Declared actualEncoding variable to nil.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Declared actualEncoding variable to empty key encoding type.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixed unit test.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Ran update go-fmt.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Added e2e test for pkcs8 certificate.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Removed unused variable.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Creating issue in pkcs8 e2e test.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Fixing no new variables on the left side of := for err variable.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* Updated docs to mention the key encoding field.

Signed-off-by: Crystal Chun <crystalchun@Crystals-MacBook-Pro.local>

* change venafi issuer to support different cert encoding

Signed-off-by: Daniel Morsing <dmo@jetstack.io>

* update crds

Signed-off-by: Daniel Morsing <dmo@jetstack.io>
2019-06-18 11:34:03 +01:00
jetstack-bot
31b873ac13
Merge pull request #1481 from danfoster/patch-1
Update troubleshooting.rst
2019-06-18 10:35:04 +01:00
James Munnelly
d2be1375b2 Bump version numbers for v0.8.1
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-06-18 10:30:55 +01:00
James Munnelly
539a12c2ec Fix code rendering in docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-06-17 22:49:18 +01:00
Kevin Woo
4815bd3de9 cert-manager-webhook secret exists in cert-manager ns
Signed-off-by: Kevin Woo <kevinawoo@gmail.com>
2019-06-17 18:21:02 +00:00
jetstack-bot
9c16efdb3f
Merge pull request #1779 from cheukwing/issue-1614
Add documentation on cnameStrategy
2019-06-17 18:56:57 +01:00
Michael Tsang
6ba4ef21b1 Document cnameStrategy
Signed-off-by: Michael Tsang <michael.tsang@jetstack.io>
2019-06-17 13:34:14 +01:00
jetstack-bot
a0e1b864af
Merge pull request #1785 from lachlancooper/fix-indentation
Fix indentation on ACME setup examples
2019-06-17 13:32:57 +01:00
Michael Tsang
9934593714 Add test and documentation regarding clockskew on notBefore
Signed-off-by: Michael Tsang <michael.tsang@jetstack.io>
2019-06-17 12:53:48 +01:00
Lachlan Cooper
5437590390 Fix indentation on ACME setup examples
The selector field needs to be on the same level as the solver type
(either dns01 or http01).

Signed-off-by: Lachlan Cooper <lachlancooper@gmail.com>
2019-06-17 15:49:20 +10:00
JoshVanL
e9c9ea2a44 Update docs on podTemplating only using labels and annotations
Signed-off-by: JoshVanL <vleeuwenjoshua@gmail.com>
2019-06-10 08:54:22 +01:00
JoshVanL
622eaa191d Adds podTemplate docs
Signed-off-by: JoshVanL <vleeuwenjoshua@gmail.com>
2019-06-07 10:44:18 +01:00
JoshVanL
f2ba4d9f20 Assigns solver pod to exposed template with defaults, includes
validation

Signed-off-by: JoshVanL <vleeuwenjoshua@gmail.com>
2019-06-07 10:41:27 +01:00
jetstack-bot
fce7bdd377
Merge pull request #1742 from cabiad/patch-1
Quick-Start example clarity suggestions
2019-06-06 20:01:03 +01:00
Christopher Abiad
b0de337787 remove whitespace-only lines
Signed-off-by: Christopher Abiad <chris@chrisabiad.com>
2019-06-05 15:44:11 -04:00
Chris Abiad
f95b7231a8 minor typo and phrasing fixes
Signed-off-by: Christopher Abiad <chris@chrisabiad.com>
2019-06-05 15:41:55 -04:00
Chris Abiad
67156110f0 merge namespace restriction doc into earlier text
Also, clarify that ClusterIssuer doesn't have this restriction and link to documentation.

Signed-off-by: Christopher Abiad <chris@chrisabiad.com>
2019-06-05 15:41:49 -04:00
Chris Abiad
1ce7de1c88 Quickstart example clarity suggestions
Signed-off-by: Christopher Abiad <chris@chrisabiad.com>
2019-06-05 15:41:40 -04:00
Till Wiese
dd9860b32e
Fixed manifest file link
Signed-off-by: Till Wiese <mail-github@till-wiese.de>
2019-06-05 15:39:44 +02:00
jetstack-bot
72813494c4
Merge pull request #1724 from cheukwing/issue-1608
Add solvers fields in Let's Encrypt/nginx quick start guide
2019-06-05 14:10:40 +01:00
Michael Tsang
79109cb9a0 Use solvers field in quickstart guide in rst, and remove additional lines in yamls
Signed-off-by: Michael Tsang <michael.tsang@jetstack.io>
2019-06-05 11:43:50 +01:00
jetstack-bot
80e97c984b
Merge pull request #1723 from cheukwing/issue-1611
Add solvers field in kube-lego migration guide
2019-05-29 19:11:31 +01:00
Stefan Kolb
58060101d6 Change name of issuer to issuer from contextual example
Shouldn't it be either `example-issuer` or `letsencrypt-staging` in both of th examples in this context?

Signed-off-by: Stefan Kolb <stefan-kolb@web.de>
2019-05-29 12:54:25 +02:00
Michael Tsang
26d0fe22bd Modify issuer yamls in docs with solver
Signed-off-by: Michael Tsang <michael.tsang@jetstack.io>
2019-05-24 16:37:36 +01:00
Michael Tsang
088cb36e07 Add solvers field in kube-lego migration guide
Signed-off-by: Michael Tsang <michael.tsang@jetstack.io>
2019-05-24 16:19:52 +01:00
James Munnelly
7dae8ece6b Fixup version number in docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-24 00:30:40 +01:00
James Munnelly
7be86008e3 Fix broken links in docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-20 18:38:48 +02:00
James Munnelly
af6d95bc94 Fixup oc login command in openshift guide
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-19 11:04:31 +02:00
James Munnelly
95a08d03e9 Add v0.8 upgrade notes document
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-18 14:27:43 +01:00
jetstack-bot
f4a16cb144
Merge pull request #1662 from munnerz/fixup-links
Fix linkcheck errors
2019-05-09 14:27:16 +01:00
jetstack-bot
755f4ac476
Merge pull request #1660 from munnerz/openshift
Add installing on OpenShift guide
2019-05-09 14:16:17 +01:00
James Munnelly
ee225290c2 Fix linkcheck errors
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-09 13:44:52 +01:00
James Munnelly
54e542f1d6 Bump version of sphinx-redirects and disable linkcheck_anchors
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-09 13:44:18 +01:00
James Munnelly
c0085f47b2 Add installing on OpenShift guide
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-09 10:08:29 +01:00
Kévin Dunglas
3c9122980e
[docs] Fix Venafi link
Signed-off-by: Kévin Dunglas <dunglas@gmail.com>
2019-05-08 17:09:01 +02:00
jetstack-bot
98f67a88aa
Merge pull request #1647 from munnerz/upd-install
Update install guide for GitHub assets installation
2019-05-08 11:27:43 +01:00
Zenuka
632172c195 Namespace parameter missing in troubleshooting document (#1653)
* Namespace parameter missing

During troubleshooting I found out the issuer and certificate resources where missing so I spent a lot of time fixing that because I forgot to specify the namespace 🤦‍♂

* make email address an optional field in ACME issuers

Signed-off-by: Daniel Morsing <dmo@jetstack.io>
Signed-off-by: Sebastiaan Molleman Effectory <Sebastiaan.Molleman@effectory.com>

* Bump version numbers for v0.8.0-beta.0

Signed-off-by: James Munnelly <james@munnelly.eu>
Signed-off-by: Sebastiaan Molleman Effectory <Sebastiaan.Molleman@effectory.com>

* release: read github token from file

Signed-off-by: James Munnelly <james@munnelly.eu>
Signed-off-by: Sebastiaan Molleman Effectory <Sebastiaan.Molleman@effectory.com>

* Namespace parameter missing

During troubleshooting I found out the issuer and certificate resources where missing so I spent a lot of time fixing that because I forgot to specify the namespace 🤦‍♂

Signed-off-by: Sebastiaan Molleman Effectory <Sebastiaan.Molleman@effectory.com>
2019-05-08 10:32:45 +01:00
James Munnelly
28f10d5c33 Update install guide for GitHub assets installation
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-07 15:07:47 +01:00
James Munnelly
382d8c1d80 Bump version numbers for v0.8.0-beta.0
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-07 13:10:21 +01:00
James Munnelly
297563c9e3 Run //hack:update-reference-docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-04 19:31:06 +01:00
James Munnelly
0b05af3139 Bump brodocs dependencies
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-04 19:31:06 +01:00
Kirill Rakhman
ff3c6dcc2a Fix wrong helm repo reference in "Migrating from kube-lego"
Signed-off-by: Kirill Rakhman <kirill.rakhman@gmail.com>
2019-05-03 16:34:15 +02:00
James Munnelly
05c9e83af7 Rearrange docs and remove duplicate content
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-02 10:27:28 +01:00
James Munnelly
b17f3a6b41 Rename ingressClass->class
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-02 10:14:32 +01:00
jetstack-bot
e0474fb27f
Merge pull request #1450 from munnerz/acme-config-on-issuer
Add 'solvers' configuration to ACME Issuer
2019-05-01 17:56:09 +01:00
James Munnelly
3adf857a5d Update documentation typo
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-01 17:14:21 +01:00
James Munnelly
71eda5a7d5 Bump manifests and docs for v0.8
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-01 16:53:10 +01:00
James Munnelly
057549a38e Regenerate files
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-01 14:24:00 +01:00
James Munnelly
f82a1cf5b3 Update ACME documentation for new solver config
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-05-01 14:24:00 +01:00
Michael FIG
afadbe27cd Build under MacOS.
Signed-off-by: Michael FIG <michael@liveblockauctions.com>
2019-04-30 10:07:26 -06:00
Ivan Wallis
b9d6a02578
Update doc
add more detail around username format for TPP credentials.
2019-04-19 07:26:18 -07:00
James Munnelly
c127716ac5 Add DNS01 webhook provider API fields
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-04-18 17:18:25 +01:00
James Munnelly
b86b232a2d Update reference docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-04-14 15:51:44 +01:00
Aleksander Rykalin
89606fdbc6 Fixing username field in credentials secret
Signed-off-by: Aleksandr Rykalin <alexander.rykalin@venafi.com>
2019-04-12 17:08:48 +03:00
jetstack-bot
74d27aaa0f
Merge pull request #1499 from sebbrandt87/patch-1
corrected example docs path
2019-03-26 16:29:22 +00:00
Sebastian Brandt
ff0861680c
corrected example docs path
Signed-off-by: Sebastian Brandt 793580+sebbrandt87@users.noreply.github.com
2019-03-24 21:06:40 +01:00
Michelle Noorali
fe22df5b31 ref(quickstart): remove duplicate command
Signed-off-by: Michelle Noorali <michellemolu@gmail.com>
2019-03-23 15:16:07 -04:00
Dan
4db4e1f341
Update troubleshooting.rst
The example for checking the namespace has the correct label was incorrect.

It was also being hidden on the Github RST rendering, because of the `:emphasize-lines`. I suspect this is why the mistake has never been noticed previously.
I suggest having the example render in github is more important the emphasizing the line.
2019-03-18 09:28:04 +00:00
Bradley
dfe5aaffd4 fix(docs): updated quickstart docs
Updated the quickstart documentation to use the new jetstack helm repo.

Signed-off-by: Bradley Wilson-Hunt <bwilsonhunt@gmail.com>
2019-03-12 15:22:14 +00:00
jetstack-bot
193c5e22d6
Merge pull request #1446 from brtknr/patch-2
Few corrections to the quickstart documentation
2019-03-08 12:02:11 +00:00
jetstack-bot
7df6ce9064
Merge pull request #1457 from munnerz/bump-v070
Bump manifests for v0.7.0
2019-03-08 10:20:11 +00:00
jetstack-bot
7875368b2d
Merge pull request #1456 from munnerz/tmp-certs-doc
Add note on temporary self signed certificates to docs
2019-03-08 09:51:11 +00:00
jetstack-bot
aeef7dc461
Merge pull request #1454 from munnerz/update-venafi
Move Venafi tutorial to a Setting up Venafi Issuers doc
2019-03-08 09:39:12 +00:00
James Munnelly
ad42fe557e Add note on temporary self signed certificates
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-03-08 09:34:43 +00:00
James Munnelly
208009151b Bump manifests for v0.7.0
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-03-07 19:34:11 +00:00
James Munnelly
16c5178fc3 Add Venafi to supported issuers lists
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-03-07 19:25:40 +00:00
James Munnelly
5708809b40 Add link to challenge types doc
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-03-07 19:25:11 +00:00
James Munnelly
aa7b0db6c7 Update links to ACME docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-03-07 19:12:51 +00:00
James Munnelly
38bb110a49 Move Venafi tutorial to a Setting up Venafi Issuers doc
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-03-07 19:03:26 +00:00
jetstack-bot
b86acb055e
Merge pull request #1449 from DanielMorsing/updatedocs
update DNS01 contrib docs
2019-03-07 15:38:14 +00:00
Bharat Kunwar
14732f56be Make reference to release-0.7 all the way through
Signed-off-by: Bharat Kunwar <b.kunwar@gmail.com>
2019-03-07 15:23:56 +00:00
Daniel Morsing
6869b9a52e update docs
Signed-off-by: Daniel Morsing <dmo@jetstack.io>
2019-03-07 13:12:33 +00:00
Aleksandr Rykalin
033008c037
Fixing typos in Venafi documentation and improving caBundle example
Signed-off-by: Aleksandr Rykalin <alexander.rykalin@venafi.com>
2019-03-07 14:25:26 +03:00
Bharat Kunwar
fc1397713f Few corrections to the quickstart documentation
Signed-off-by: Bharat Kunwar <b.kunwar@gmail.com>
2019-03-07 10:50:21 +00:00
jetstack-bot
104d63fb2e
Merge pull request #1434 from munnerz/updates
Update references to Helm chart repo with charts.jetstack.io
2019-03-07 10:39:14 +00:00
jetstack-bot
6875701041
Merge pull request #1436 from munnerz/update-ca-sync
Update webhook documentation for cainjector
2019-03-06 17:22:20 +00:00
James Munnelly
3698cee01e Update references to Helm chart repo with charts.jetstack.io
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-03-06 14:46:23 +00:00
James Munnelly
4d028b3e10 Remove old note about EKS
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-03-06 14:44:22 +00:00
James Munnelly
b6ec5caba3 Update webhook documentation for cainjector
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-03-06 14:41:53 +00:00
jetstack-bot
98f5fc0232
Merge pull request #1427 from munnerz/bump-0.7-beta
Update versions for v0.7.0-beta.0
2019-03-01 22:33:49 +00:00
James Munnelly
dc080b155f Update versions for v0.7.0-beta.0
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-03-01 17:14:43 +00:00
James Munnelly
2f67c78f62 Address review feedback
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-03-01 14:37:11 +00:00
James Munnelly
7d628f32c9 Regenerate reference docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-03-01 13:16:03 +00:00
James Munnelly
8b3f17decc Add Venafi docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-03-01 13:16:03 +00:00
Ara Pulido
02d2d51ece Small fixes based on review
Thanks for the review :)
Signed-off-by: Ara Pulido <apulido@gmail.com>
2019-02-28 17:42:43 +01:00
Ara Pulido
7510bf4868 Added kubeprod as an alternative way to deploy cert-manager
Signed-off-by: Ara Pulido <apulido@gmail.com>
2019-02-28 16:52:50 +01:00
James Munnelly
be915d0567 Update generated files
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-02-22 12:34:55 +00:00
James Munnelly
a9d8f7de8a Fixup for Kubernetes 1.13.2
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-02-22 11:53:19 +00:00
jetstack-bot
f1f701213d
Merge pull request #1390 from munnerz/v070alpha0
Bump files for v0.7.0-alpha.0
2019-02-21 14:34:58 +00:00
James Munnelly
f3bcb28f35 Bump files for v0.7.0-alpha.0
Signed-off-by: James Munnelly <james.munnelly@jetstack.io>
2019-02-20 14:15:17 +00:00
James Munnelly
5ab73f3a88 Move doc into tasks section
Signed-off-by: James Munnelly <james.munnelly@jetstack.io>
2019-02-20 13:51:31 +00:00
Brian Topping
d0712bb05e Add additional logging per #926, add documentation for rfc2136 provider.
Signed-off-by: Brian Topping <brian@coglative.com>
2019-02-20 13:47:51 +00:00
jetstack-bot
2299d1de3a
Merge pull request #1295 from wwwil/clouddns-docs
Add more information to Google CloudDNS guide
2019-02-19 21:09:30 +00:00
Viktor Petersson
f95f6a320b
s/Encryppt/Encrypt/
Minor typo
2019-02-18 18:06:48 +00:00
jetstack-bot
39ced0b2d5
Merge pull request #1374 from MattiasGees/bug/doc-cert
Fix certificate example in docs
2019-02-18 15:40:03 +00:00
jetstack-bot
308996253b
Merge pull request #1368 from dontreboot/minikube-doc
add the missing new line to minikube shell block
2019-02-18 15:31:05 +00:00
Mattias Gees
d4adc7afda
Fix certificate example in docs
Signed-off-by: Mattias Gees <mattias.gees@gmail.com>
2019-02-16 14:26:35 +00:00
Shawn Zhou
5e1bdec85b add the missing new line to minikube shell block
Signed-off-by: Shawn Zhou <shawnzhou00@yahoo.com>
2019-02-13 14:03:28 -08:00
jetstack-bot
bfafc7354e
Merge pull request #1322 from munnerz/gen-validation-schema
Generate CRDs using controller-tools, including validation schema
2019-02-13 16:35:07 +00:00
jetstack-bot
386f60bfca
Merge pull request #1357 from dontreboot/minikube-doc
Update helm command for minikube installation
2019-02-12 16:29:10 +00:00
Shawn Zhou
cf77fbef06 Update helm command for minikube installation
- add run kubectl steps before running helm
- correct the path for helm chart

Signed-off-by: Shawn Zhou <shawnzhou00@yahoo.com>
2019-02-11 17:05:43 -08:00
jetstack-bot
ae29fca5f9
Merge pull request #1346 from ixdy/fix-docs-installing-with-regular-manifests
docs: no need to apply 00-crds.yaml when installing with regular manifests
2019-02-09 17:00:53 +00:00
Shawn Zhou
22a286ea6b update minikube startup instruction
minikube enables RBAC by default as of v0.26.0; hence,
it is not needed to add the extra-config override
See 9b5f7c1ebd

Signed-off-by: Shawn Zhou <shawnzhou00@yahoo.com>
2019-02-08 16:12:44 -08:00
Jeff Grafton
7e00b42c1a docs: no need to apply 00-crds.yaml when installing with regular manifests
Signed-off-by: Jeff Grafton <jgrafton@google.com>
2019-02-08 11:30:25 -08:00
William Squires
4ece4c9275 Add more information to Google CloudDNS guide
Signed-off-by: William Squires <wwwil.squires@gmail.com>
2019-02-08 12:11:59 +00:00
James Munnelly
c3c0ef1ebe Update docs links to docs.cert-manager.io
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-02-07 21:06:52 +00:00
jetstack-bot
1ee435437b
Merge pull request #1337 from Evesy/rfc2136_docs
Recover missing RFC2136 docs
2019-02-07 18:26:53 +00:00
Mike Eves
e2efd72beb Recover missing RFC2136 docs
Signed-off-by: Mike Eves <meves23@gmail.com>
2019-02-07 18:06:25 +00:00
Mike Eves
811097caa0 Fix redirect of ingress-shim.html page
Signed-off-by: Mike Eves <meves23@gmail.com>
2019-02-07 17:51:28 +00:00
James Munnelly
8a2f755ea8 Regenerate reference docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-02-06 15:28:04 +00:00
AthulDilip
f439ae6b3c
Fixed a mistake in installation guide 2019-02-06 19:37:58 +05:30
James Munnelly
034fd54870 Run //hack:update-reference-docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-02-06 13:25:54 +00:00
James Munnelly
9f5653ebac Bump for v0.6.1
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-02-05 13:44:36 +00:00
jetstack-bot
22b0863801
Merge pull request #1128 from lrolaz/certificate-ip-sans
Add IP Address in CSR
2019-01-31 23:05:25 +00:00
jetstack-bot
370db7d37f
Merge pull request #1288 from munnerz/add-troubleshooting
Add webhook troubleshooting guide
2019-01-31 15:34:25 +00:00
James Munnelly
2f50ab2c9a Add webhook troubleshooting guide
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-31 15:26:07 +00:00
James Munnelly
cdc8d489e5 Fix redirects for old docs pages
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-31 15:15:35 +00:00
James Munnelly
dbd21a7ccc Bump sphinx dependency versions
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-31 12:56:43 +00:00
James Munnelly
8df9cb5be2 Add basic text to debugging orders page
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-31 12:02:42 +00:00
James Munnelly
d3142dfb49 Add issuing DNS01 certificates section
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-31 12:02:31 +00:00
James Munnelly
abf9a359d5 Upgrade Pygments version
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-31 11:14:27 +00:00
James Munnelly
bcfcf52267 Remove line-height hack
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-31 11:09:47 +00:00
James Munnelly
c58b149f81 Bump sphinx-rtd-theme version
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-31 11:07:04 +00:00
James Munnelly
bc7a65e4b0 Move tutorials before tasks
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-31 11:02:39 +00:00
James Munnelly
65b62c4bbb Addressing review feedback
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-31 10:46:16 +00:00
James Munnelly
4e4167a00c Reword setup-ca
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-31 10:23:28 +00:00
James Munnelly
1412295c3a Re-order tasks page contents
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 20:41:41 +00:00
James Munnelly
2de3904007 Add start of issuing acme certificates guide
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 16:59:25 +00:00
James Munnelly
bce9622dcc Add 'Issuing Certificates' document
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 16:01:51 +00:00
James Munnelly
3da80d4531 Fix inline code
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 15:44:13 +00:00
James Munnelly
c6eb69bb7b Move ingress-shim guide under tasks
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 15:44:03 +00:00
James Munnelly
753e45eb26 Add short sentence for each issuer type
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 15:06:32 +00:00
James Munnelly
3f3bff835c Adding 'Setting up ACME Issuers' doc
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 15:04:42 +00:00
James Munnelly
1eea864323 Fix typo
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 14:38:53 +00:00
James Munnelly
c9d82de262 Update 'configuring your first issuer' section of install guide
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 14:37:32 +00:00
James Munnelly
bca22f097e Rewrite webhook doc intro
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 14:35:00 +00:00
James Munnelly
54e35e4684 First-round review comments
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 14:28:36 +00:00
James Munnelly
1bc09ddbf3 Fix lint warnings and line highlighting
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 14:13:25 +00:00
James Munnelly
8a6c488e84 Add link to Tillerless Helm v2
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 13:35:31 +00:00
James Munnelly
4fb204da63 Add disabling webhook component guide
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 13:32:31 +00:00
James Munnelly
c01c63120c Add backing up and restoring guide
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-30 13:29:24 +00:00
James Munnelly
8c38e2e4c8 Configure redirects for moved pages
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-29 23:25:33 +00:00
James Munnelly
337e4f090e Rearrange documentation and add new content
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-29 23:24:11 +00:00
Laurent Rolaz
55cafeae33 Generate doc
Signed-off-by: Laurent Rolaz <laurent.rolaz@gmail.com>
2019-01-25 18:38:12 +01:00
Kévin Dunglas
d9c0d8e1b4
docs: fix a bash snippet in 2-installing.rst
Signed-off-by: Kévin Dunglas <dunglas@gmail.com>
2019-01-24 12:31:44 +01:00
James Munnelly
0db04b988c Add note on verifying your installation
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-22 12:09:21 +00:00
jetstack-bot
af81d3245a
Merge pull request #1187 from munnerz/update-quickstart
Update nginx acme quickstart guide with details on Orders and Challenges
2019-01-17 15:36:02 +00:00
jetstack-bot
9bec321c7d
Merge pull request #1223 from munnerz/upgrade-notes
Add upgrade notes for v0.6
2019-01-17 14:47:02 +00:00
James Munnelly
02502246bc Address @heckj review feedback
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-17 13:42:33 +00:00
James Munnelly
0991f8e412 Add notes on --validate=false to upgrading and installing guide
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-16 19:20:42 +00:00
James Munnelly
2333e8a195 Add upgrade notes for v0.6
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-16 15:38:14 +00:00
James Munnelly
4371dcfa65 Update reference docs index and spellcheck
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-16 15:37:42 +00:00
James Munnelly
170771f9be Add reference docs for Order and Challenge resources
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-15 16:40:38 +00:00
James Munnelly
97f29b4593 Update installation guide with new all-in-one install method
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-10 16:56:52 +00:00
James Munnelly
5ba04e4889 Address review feedback
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-09 14:28:35 +00:00
James Munnelly
e1d294ce41 Update nginx acme quickstart guide with details on Order and Challenge resources
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-09 14:12:03 +00:00
James Munnelly
3464f4363a Bump versions for 0.6.0-alpha.0
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-08 16:45:06 +00:00
James Munnelly
0fcc0c666c Update copyright header year
Signed-off-by: James Munnelly <james@munnelly.eu>
2019-01-07 15:07:55 +00:00
James Munnelly
bf17ac809f
Merge pull request #1131 from davegrix/patch-1
Update index.rst
2018-12-14 09:09:24 -08:00
davegrix
a72b935a96 Update index.rst
Updated to fix error

Signed-off-by: Dave Grix <herghostuk@gmail.com>
2018-12-05 09:10:23 +00:00
James Munnelly
bb7d2f5f4e Remove the Namespace resource from Helm chart
Signed-off-by: James Munnelly <james@munnelly.eu>
2018-12-04 19:08:35 +00:00
James Munnelly
c0fc03c6a4 Update upgrading docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2018-12-04 18:32:35 +00:00
James Munnelly
779cc0ae1f Update getting started guide
Signed-off-by: James Munnelly <james@munnelly.eu>
2018-12-04 18:26:49 +00:00
James Munnelly
77796efb3b Update reference docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2018-12-04 13:57:27 +00:00
James Munnelly
34c3590052 Store a copy of the signed certificate on the Order resource after Finalize
Signed-off-by: James Munnelly <james@munnelly.eu>
2018-11-29 12:11:42 +00:00
Joe Heck
51aa3d7f4e fix numbering of steps in quickstart
Signed-off-by: Joe Heck <heckj@mac.com>
2018-11-26 07:50:55 -08:00
Joe Heck
5930a0b8d5 a few last updates missed earlier
Signed-off-by: Joe Heck <heckj@mac.com>
2018-11-21 08:19:01 -08:00
Joe Heck
71aaad9063 remaining updates from feedback
Signed-off-by: Joe Heck <heckj@mac.com>
2018-11-19 11:23:30 -08:00
Matt Turner
15d5e6b637 Adding quick-start guide w/ nginx ingress controller
Signed-off-by: Joe Heck <heckj@mac.com>
2018-11-19 11:23:30 -08:00
jetstack-bot
9975ff4a8a
Merge pull request #1075 from gparvin/adding-not-after-to-certificate-status
changes to add a NotAfter field to the cert status
2018-11-16 10:11:01 +00:00
jetstack-bot
9a64cfa027
Merge pull request #1008 from munnerz/ref-docs-cleanup
Move reference-docs generation tools into docs/ subdir
2018-11-15 11:35:00 +00:00
Max Ehrlich
bbd9249198 Configurable issuer duration and renewBefore Take 2 (#893)
* Configurable issuer duration and renewBefore [1/3]

This is part one of (probably) three parts manually moving the changes from commit 723015174a167d746323f506ab3575cfb243d8bd to the new master. This commit moves the basic functionality of configurable duration while skipping e2e tests and docs. It does not include new work.

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Configurable issuer duration and renewBefore [2/3]

This commit moves over most of the e2e testing updates, some things are intentionally left out as they may be obsolete

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Configurable issuer duration and renewBefore [3/3]

This commit moves the documentation changes, completely the migration of the original code to the latest master

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Rerunning all hack scripts with since the massive bazel update

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Add missing boilerplate headers

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Rerun codegen hack

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Rerunning update-docs hack

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Fix failing unit tests

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Fix build errors in e2e tests

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Rerun update-deps

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Don't recreate the CA issuer, it already exists

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Need to create new issuers for the duration and renew time tests because those fields are set in the issuer, so make sure they are named uniquely

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Add duration e2e tests for self-signed issuer

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Add duration e2e tests for vault w/ custom mount path

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Add validation to disallow acme certificates with duration and renewBefore set and update unit tests to verify

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Update docs to mention duration/renew for self-signed issuer and fix potential parsing errors with rst formatting

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Self-signed issuer was missing duration validation

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Fix a bug causing certificates with a short enough renew-before w.r.t their duration to be renewed instantly and forever

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Print the exact time until renewal

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Move duration and renwal validation to the issuer validation

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Update e2e tests to work with new validation

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Add e2e test for the self-signed issuer

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Redo cert duration and renew before to appear as part of the CSR and not the issuer

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Updating tests to match new duration/renewbefore format

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Update e2e tests to match new format

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Update docs to reflect changing the field from issuers to certificates

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Remove event firing and replace with a TODO as of discussion on PR

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Run hack scripts

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Remove the sync unit test since without events there is no way to catch the warnings that it was testing

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Use IssuerOptions RenewBeforeExpiryDuration if certificates dont set a renewBefore value for immediate renewal checks

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Delete check on certificate data length in e2e test for certificate duration as there is no reason it should be there

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Update e2e tests since certificate creation will never generate an event

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Rerunning hack scripts after big rebase

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Fix a few problems that slipped through during the rebase

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Fix an e2e error that resulted from the rebase

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Add unit test for the calculateTimeBeforeExpiry function

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Adding back in a bunch of missing error checks

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Remove unused function

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Add missing boilerplate

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Remove unused constant

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Move log constants to function body

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Rerun hack scripts

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Remove mistakenly commited file

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Remove double-import of util package

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Fix bad function call in e2e vault issuer

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Change duration and renewBefore to be pointer fields as they are optional

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Remove wrong vault issuer test that got passed the rebase somehow

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Change e2e to use pointer format

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Move e2e cert tests out of issuer test file

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Move e2e self-signed issuer test to new location

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Make sure to check for nil in GenerateTemplate

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Add more empty checks to be safe

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Rerunning hacks after rebase

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Fix bad function call in new e2e test

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Try not setting duration and renewbefore on acme e2e tests

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Zero checks should really just be replaced by nil tests, zero should be caught as any other too-small value

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Fixed a missing nil check that got away

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Change e2e duration test format to use pointer times to better simulate API calls

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Fix sync unit test to match e2e test format

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Fix vault e2e test

Signed-off-by: Max Ehrlich <max.ehr@gmail.com>

* Revert changes to Certificate sync function

Signed-off-by: James Munnelly <james@munnelly.eu>

* Remove selfsigned e2e issuer.go

Signed-off-by: James Munnelly <james@munnelly.eu>

* Don't use ACME issuer in duration example and tidy up line endings

Signed-off-by: James Munnelly <james@munnelly.eu>

* Allow renewBefore to be set on ACME certificates

Signed-off-by: James Munnelly <james@munnelly.eu>

* Update renewBefore ACME docs. Remove unused fields.

Signed-off-by: James Munnelly <james@munnelly.eu>

* Rename calculateTimeBeforeExpiry to calculateDurationUntilRenew

Signed-off-by: James Munnelly <james@munnelly.eu>
2018-11-14 22:30:00 +00:00
Gus Parvin
ff1a8534fa remove changes in issuers that seems to not be needed
Signed-off-by: Gus Parvin <gparvin@us.ibm.com>
2018-11-14 15:11:56 +00:00
James Munnelly
b71944b5a4 Move reference-docs generation tools into docs/ subdir
Signed-off-by: James Munnelly <james@munnelly.eu>
2018-11-14 00:48:06 +00:00
Gus Parvin
7e33256b68 changes to add a NotAfter field to the cert status
Signed-off-by: Gus Parvin <gparvin@us.ibm.com>
2018-11-13 16:16:29 +00:00
jetstack-bot
3ce276d5e8
Merge pull request #1066 from heckj/files-for-quickstart
adding files for quickstart
2018-11-13 11:21:59 +00:00
Joe Heck
c18449afb4 adding files for quickstart
- I'm going to reference them, but the testing for this repo does
  link validation up front, so the files need to exist in their final
  locations before the other PR can pass it's testing/validation.

Signed-off-by: Joe Heck <heckj@mac.com>
2018-11-10 12:58:50 -08:00
Joe Heck
7e3ee68879 minor grammar improvement
Signed-off-by: Joe Heck <heckj@mac.com>
2018-11-10 09:48:54 -08:00
Joe Heck
facf1e9fb4 clean up sphinx warnings
- fixed missing blank line in ref docs code block
- updated references to sphinx docs
- included documentation notes into the docs index

Signed-off-by: Joe Heck <heckj@mac.com>
2018-11-10 09:48:54 -08:00
James Munnelly
efe2129c69 Run //hack:update-reference-docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2018-11-06 12:32:05 +00:00
jetstack-bot
d8e652c48e
Merge pull request #986 from munnerz/bazel-kind
Use kind provided by Bazel WORKSPACE
2018-10-26 15:23:34 +01:00
Floyd May
f3bc8b5491 Update kube-lego migration guide towards logs
Related to #773 - the previous instructions guide the user to look for events on the certificate related to when renewals are scheduled. This change directs them to view the logs to see the renewal schedule messages.
Signed-off-by: Floyd May <fmay@asemio.com>
2018-10-26 09:06:33 -05:00
James Munnelly
be47be486d Update running e2e tests docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2018-10-26 14:44:12 +01:00
jetstack-bot
12ed381cb8
Merge pull request #972 from aslafy-z/dns/digitalocean
Add ACME DigitalOcean DNS01 provider
2018-10-26 11:54:34 +01:00
Sergej Nikolaev
f2add649e7 add certmanager.k8s.io/acme-http01-ingress-class annotation
Signed-off-by: Sergej Nikolaev <kinolaev@gmail.com>
2018-10-25 22:14:08 +03:00
Zadkiel Aharonian
7f8a3a7970
regenerate
Signed-off-by: Zadkiel Aharonian <hello@zadkiel.fr>
2018-10-23 16:27:30 +02:00
Zadkiel Aharonian
1cd4495fd1
Add link to digitalocean access-token docs
Signed-off-by: Zadkiel Aharonian <hello@zadkiel.fr>
2018-10-23 16:25:49 +02:00
Zadkiel Aharonian
59e905cbcc
Add ACME DigitalOcean DNS01 provider
Signed-off-by: Zadkiel Aharonian <hello@zadkiel.fr>
2018-10-23 16:25:49 +02:00
James Munnelly
e9441e6fdc Run //hack:update-reference-docs
Signed-off-by: James Munnelly <james@munnelly.eu>
2018-10-23 10:59:31 +01:00