jetstack-bot
f3bea02c62
Merge pull request #754 from kragniz/clouddns-fqdn-2
...
clouddns: use fqdn for challenge cleanup
2018-07-24 12:03:48 +01:00
jetstack-bot
d4c52d7229
Merge pull request #748 from stealthybox/patch-1
...
Document project field for Google CloudDNS provider
2018-07-24 11:17:10 +01:00
leigh schrandt
39e071aa7a
Document project field for Google CloudDNS provider
...
👋
2018-07-24 00:05:35 -07:00
Louis Taylor
bcf135c7ae
clouddns: use fqdn for challenge cleanup
...
This is the same as the problem fixed in #750 , but for cleanup.
2018-07-22 20:17:11 +01:00
jetstack-bot
398e1560a3
Merge pull request #670 from gurvindersingh/master
...
add support CNAME for dns-01 challenge
2018-07-20 19:36:06 +01:00
jetstack-bot
b15a18be98
Merge pull request #746 from euank/route53-invalid-change-batch
...
issuer/route53: fix delete for 'NotExist' errors
2018-07-20 18:36:59 +01:00
Euan Kemp
ea84532a5c
issuer/route53: log ignored InvalidChangeBatch err
2018-07-20 10:10:02 -07:00
jetstack-bot
cbb09ebb52
Merge pull request #750 from kragniz/clouddns-fqdn
...
clouddns: find hosted zone for challenge record
2018-07-20 17:31:37 +01:00
Louis Taylor
082f815773
clouddns: find hosted zone for challenge record
...
Previously this would fail if you use a CNAME for the _acme-challenge
record.
2018-07-20 16:53:12 +01:00
jetstack-bot
2607c242dc
Merge pull request #744 from kragniz/add-e2e-certificate-validation-rebase
...
Add e2e test to ensure changing dnsNames on an ACME certificate triggers a re-issue
2018-07-20 12:48:58 +01:00
Louis Taylor
24f581376d
Don't return err if secret is absent
2018-07-20 11:11:33 +01:00
Louis Taylor
65b891da29
Remove yoda condition
2018-07-20 11:08:19 +01:00
jetstack-bot
4157139e27
Merge pull request #747 from euank/dep-version
...
hack/verify: also include 'dep version' output
2018-07-19 20:12:53 +01:00
Euan Kemp
efb339bac5
Gopkg: fix inputs digest
2018-07-19 11:24:12 -07:00
Euan Kemp
69829277ac
hack/verify: also include 'dep version' output
...
If "dep status" fails on CI, it's useful to know what version of dep is
being used to locally reproduce and examine the issue.
2018-07-19 11:12:42 -07:00
Euan Kemp
15d497b4ca
issuer/route53: fix delete for 'NotExist' errors
...
Fixes #736 .
Prior to this change, it was quite possible to end up with a queue of
cleanup tasks that would never succeed.
2018-07-19 10:20:27 -07:00
Louis Taylor
502e9d2bfb
Increase timeout
2018-07-19 17:42:01 +01:00
Louis Taylor
e5e5362e2a
Fix nil panic
2018-07-19 16:37:21 +01:00
Louis Taylor
4601c95557
Use new WaitCertificateIssuedValid everywhere
2018-07-19 16:26:15 +01:00
Louis Taylor
8e9171adbf
Check for labels on created secret
2018-07-19 16:11:12 +01:00
Louis Taylor
5f0c5f21fb
Increase http01 self-check timeout
2018-07-19 15:48:21 +01:00
James Munnelly
5a102fb5f6
Add e2e test to ensure changing dnsNames on an ACME certificate triggers a re-issue
2018-07-19 13:36:15 +01:00
jetstack-bot
840f9de7d9
Merge pull request #734 from timuthy/master
...
Improve ACME DNS validation tutorial
2018-07-19 10:25:41 +01:00
jetstack-bot
6348c6ffca
Merge pull request #722 from autonomic-ai/support-ec-keys
...
Add keyAlgorithm and keySize fields to Certificates, and support ECDSA keys
2018-07-18 10:00:36 +01:00
Afolabi Badmos
445e522432
Add support for EC keys
...
- This PR adds two fields to CertificateSpec:
- `keyAlgorithm`, denotes which algorithm to use when generating
a private key. Can be either `rsa` or `ecdsa`. When not set, the
default algorithm used `rsa`.
- `keySize`, denotes the key size of the private key being generated.
For `rsa`, minimum key size is 2048 and maximum is 8192.
For `ecdsa`, sizes 224, 256, 384 & 521 are supported.
See https://golang.org/pkg/crypto/elliptic
- `keySize` can be set without being explicit about `keyAlgorithm`.
- If `keySize` is specified and `keyAlgorithm` is not provided, `rsa` will
be used as the key algorithm.
- `keyAlgorithm` can be set without being explicit about `keySize`.
- If `keyAlgorithm` is specified and `keySize` is not provided, key size
key size of `256` will be used for `ecdsa` key algorithm and
key size of `2048` will be used for `rsa` key algorithm.
- helper functions in `pki` package now return crypto.PrivateKey
2018-07-17 12:42:07 -04:00
Tim Usner
fa6f1bde12
Fix broken link for SAN
2018-07-17 13:04:23 +02:00
Tim Usner
92cb56746d
Add *.example.com to SAN
...
*.example.com is set as Common Name and thus part of SANs.
2018-07-17 13:02:27 +02:00
jetstack-bot
c1b34376fd
Merge pull request #726 from munnerz/selfsigned-link
...
Add link to selfsigned issuer docs
2018-07-12 18:21:30 +01:00
James Munnelly
c8ad744392
Add link to selfsigned issuer docs
2018-07-12 18:17:40 +01:00
jetstack-bot
caae0cc48a
Merge pull request #717 from kragniz/disable-ingress-shim
...
Add --controllers flag to set which controllers are run
2018-07-12 15:49:13 +01:00
Louis Taylor
58d71216c3
Change flag to list of controllers to enable
2018-07-12 10:27:49 +01:00
Louis Taylor
969c4530a0
Add Contains util function
2018-07-12 10:27:05 +01:00
Louis Taylor
fd48a2e360
Add option for disabling ingress-shim
...
This adds a new flag, which can be used to disable running the
ingress-shim controller:
--enable-ingress-shim=false
2018-07-12 10:27:05 +01:00
jetstack-bot
a162a5bb8e
Merge pull request #612 from vdesjardins/custom-approle-path
...
Vault: configurable appRole authentication path
2018-07-11 17:53:33 +01:00
jetstack-bot
c08cd80730
Merge pull request #622 from munnerz/istio-annotation
...
Add auth.istio.io annotation to ACME HTTP01 service
2018-07-11 17:18:33 +01:00
test@test.com
cb7eaf986f
Run hack/update-reference-docs.sh
2018-07-11 16:02:23 +00:00
Vincent Desjardins
7fae0fccf1
code review fixes
2018-07-11 16:00:39 +00:00
Vincent Desjardins
ca3b909cb7
code review modifications
2018-07-11 16:00:39 +00:00
Vincent Desjardins
2995cc90a3
Vault: configurable appRole authentication path
2018-07-11 16:00:39 +00:00
jetstack-bot
bd7f15d5f4
Merge pull request #710 from kragniz/dns-flag
...
Add flag for setting nameservers for DNS01 check
2018-07-11 14:26:33 +01:00
jetstack-bot
4d3179f2ba
Merge pull request #707 from munnerz/bump-crypto-acme
...
Merge latest changes from upstream crypto/acme library
2018-07-11 14:02:33 +01:00
jetstack-bot
1c167c302d
Merge pull request #720 from zegl/route53-managed-by-certmanager
...
route53: update managed by DNS record comment
2018-07-11 13:37:49 +01:00
jetstack-bot
22ba1d416b
Merge pull request #719 from kragniz/secret-certificate-name-label
...
Add certificate-name label to created secrets
2018-07-11 13:37:43 +01:00
jetstack-bot
44e3793241
Merge pull request #718 from kragniz/version-in-logs
...
Add log message showing git tag and commit during startup
2018-07-11 13:37:33 +01:00
Gustav Westling
641b497242
route53: update managed by DNS record comment
2018-07-08 12:09:00 +02:00
Louis Taylor
2e97514c5e
Add test
2018-07-06 18:03:02 +01:00
Louis Taylor
d60f4b447e
Apply cert name label to created secrets
2018-07-06 18:02:13 +01:00
Louis Taylor
3815b36193
Add git tag and commit to startup logs
2018-07-06 17:27:59 +01:00
jetstack-bot
2ef08e2b3c
Merge pull request #716 from kragniz/docs-apiversion
...
docs: fix api version in issuer example resources
2018-07-06 16:25:32 +01:00
Louis Taylor
4653d456ec
docs: fix api version in issuer example resources
2018-07-06 16:07:55 +01:00