summaryrefslogtreecommitdiffstats
path: root/athenz-identity-provider-service/src/main
Commit message (Expand)AuthorAgeFilesLines
* Append parent ips to identity documentMorten Tokle2018-05-151-1/+12
* Revert "Skip sending ipaddresses in CSR"Morten Tokle2018-04-301-1/+1
* Skip sending ipaddresses in CSRMorten Tokle2018-04-271-1/+1
* Use separate types for tenant and vespa identity providersBjørn Christian Seime2018-04-262-5/+5
* Include ipaddress SAN in CSRMorten Tokle2018-04-261-1/+2
* Deprecate legacy SecretStore interfaceMorten Tokle2018-04-241-1/+1
* Rename Ckms -> SecretStoreMorten Tokle2018-04-231-5/+5
* Change type of 'zts-endpoint' to URIBjørn Christian Seime2018-04-191-1/+2
* Move identity document api types to vespa-athenzBjørn Christian Seime2018-04-197-243/+22
* Add configserver hostname in identity documentBjørn Christian Seime2018-04-191-1/+2
* Retrieve host identity through client certificateBjørn Christian Seime2018-04-192-6/+17
* Add separate method for generating identity document for tenant and nodeBjørn Christian Seime2018-04-191-1/+26
* Add type for provider unique instance idBjørn Christian Seime2018-04-182-3/+4
* Change format of provider unique instance idBjørn Christian Seime2018-04-181-1/+1
* add access control to identity document resourceMorten Tokle2018-04-132-2/+35
* Use Pkcs10Csr and related types in CertificateSignerBjørn Christian Seime2018-03-224-95/+41
* Remove direct use of CryptoBjørn Christian Seime2018-03-221-4/+3
* Use X509CertificateUtilsBjørn Christian Seime2018-03-221-2/+2
* Use certificate builder in AthenzSslTrustStoreConfiguratorBjørn Christian Seime2018-03-221-40/+16
* Revert "Bjorncs/certificate builder"Harald Musum2018-03-217-62/+141
* Use Pkcs10Csr and related types in CertificateSignerBjørn Christian Seime2018-03-204-95/+41
* Remove direct use of CryptoBjørn Christian Seime2018-03-191-4/+3
* Use X509CertificateUtilsBjørn Christian Seime2018-03-191-2/+2
* Use certificate builder in AthenzSslTrustStoreConfiguratorBjørn Christian Seime2018-03-191-40/+16
* Use KeyStoreBuilder in AthenzSslTrustStoreConfigurator and AthenzSslKeyStoreC...Bjørn Christian Seime2018-03-122-41/+30
* Tune hostname-commonname mismatch messageHåkon Hallingstad2018-03-081-3/+4
* Merge pull request #5239 from vespa-engine/bjorncs/configserver-tls-on-awsHarald Musum2018-03-084-53/+23
|\
| * Don't unwrap parameters as separate fieldsBjørn Christian Seime2018-03-071-15/+6
| * ZTS server endpoint is zone specificBjørn Christian Seime2018-03-074-7/+4
| * Rewrite server TLS init to use bootstrap identity and allow AWSBjørn Christian Seime2018-03-074-36/+18
* | Respond with HTTP-400 when source IP does not match common nameValerij Fredriksen2018-03-071-0/+4
|/
* Revert "Rewrite server TLS init to use bootstrap identity and allow AWS"Håkon Hallingstad2018-03-034-18/+36
* Rewrite server TLS init to use bootstrap identity and allow AWSBjørn Christian Seime2018-03-024-36/+18
* Don't fail on keystore on disk read/writeBjørn Christian Seime2018-03-012-9/+10
* Cache Athenz certificate to disk. Prefer disk on load.Bjørn Christian Seime2018-03-013-32/+83
* Revert "Rewrite server TLS init to use bootstrap identity and allow AWS"Harald Musum2018-02-284-31/+50
* Rewrite server TLS init to use bootstrap identity and allow AWSBjørn Christian Seime2018-02-284-50/+31
* Use Ckms instead of SecretStore in athenz-identity-provider-serviceBjørn Christian Seime2018-02-221-9/+10
* move identityprovider package to vespa-athenzMorten Tokle2018-02-2211-841/+0
* Revert "Merge pull request #5072 from vespa-engine/revert-4984-mortent/ckms"Morten Tokle2018-02-2111-0/+841
* Revert "Refactor identityprovider. Add SiaIdentityProvider"Morten Tokle2018-02-2011-841/+0
* Revert "Merge pull request #5072 from vespa-engine/revert-4984-mortent/ckms"Morten Tokle2018-02-2011-0/+841
* Revert "Refactor identityprovider. Add SiaIdentityProvider"Morten Tokle2018-02-2011-841/+0
* Merge branch 'master' into mortent/ckmsMorten Tokle2018-02-201-1/+2
|\
* | Move identity provider to athenz-identity-provider-service moduleMorten Tokle2018-02-1611-0/+840
|/
* Report config server cert expiry metricsValerij Fredriksen2018-02-063-9/+99
* Implement /refresh endpoint for indetity providerValerij Fredriksen2018-01-311-1/+1
* Add copyright headersJon Bratseth2018-01-251-0/+1
* Revert "Use hostname if loadBalancerAddress is not set"Valerij Fredriksen2018-01-221-4/+1
* Use hostname if loadBalancerAddress is not setBjørn Christian Seime2018-01-161-1/+4