Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | Remove unused raw() and exceptTrailer() methods | Bjørn Christian Seime | 2020-03-03 | 1 | -47/+0 | |
| | ||||||
* | Close connections used by SimpleHttpClient | Bjørn Christian Seime | 2020-03-03 | 1 | -4/+13 | |
| | ||||||
* | Merge pull request #12230 from ↵ | Bjørn Christian Seime | 2020-02-20 | 1 | -1/+2 | |
|\ | | | | | | | | | vespa-engine/bjorncs/tls-hostname-validation-jrt-wiring Bjorncs/tls hostname validation jrt wiring | |||||
| * | Specify new DefaultTlsContext constructor parameter | Bjørn Christian Seime | 2020-02-17 | 1 | -1/+2 | |
| | | ||||||
* | | Close all connections on ssl handshake failure | Bjørn Christian Seime | 2020-02-19 | 1 | -2/+10 | |
| | | ||||||
* | | Specify default request timeouts | Bjørn Christian Seime | 2020-02-19 | 1 | -0/+8 | |
| | | ||||||
* | | Use persisent connections | Bjørn Christian Seime | 2020-02-19 | 1 | -3/+1 | |
|/ | ||||||
* | Use cipher/protocol config to configure Jetty | Bjørn Christian Seime | 2020-01-31 | 1 | -21/+48 | |
| | ||||||
* | Add connector config for enabled cipher suites and protocol versions | Bjørn Christian Seime | 2020-01-31 | 2 | -2/+19 | |
| | ||||||
* | Move cipher and protocol inclusion/exclusion logic to separate class | Bjørn Christian Seime | 2020-01-31 | 2 | -18/+38 | |
| | ||||||
* | State the configuration and purpose of health check proxy in the log | Bjørn Christian Seime | 2020-01-28 | 1 | -1/+7 | |
| | ||||||
* | Only use a client certificate if required | Bjørn Christian Seime | 2020-01-28 | 1 | -5/+25 | |
| | ||||||
* | Upgrade Apache httpclient+httpcore to newest version | Bjørn Christian Seime | 2020-01-10 | 1 | -1/+1 | |
| | | | | | Use deprecated setSslcontext() in code that may run outside JDisc. | |||||
* | Revert "Bjorncs/java deps cleanup" | Harald Musum | 2020-01-10 | 1 | -1/+1 | |
| | ||||||
* | Upgrade Apache httpclient and httpcore to newest version | Bjørn Christian Seime | 2020-01-09 | 1 | -1/+1 | |
| | ||||||
* | Non-functional changes | Jon Bratseth | 2020-01-06 | 1 | -0/+1 | |
| | ||||||
* | Remove use of apache commons libraries in jdisc_http_service | Bjørn Christian Seime | 2020-01-03 | 2 | -16/+20 | |
| | ||||||
* | Log effective SSL setup on JDisc startup | Bjørn Christian Seime | 2019-12-16 | 1 | -0/+18 | |
| | ||||||
* | Revert "Move cipher and protocol inclusion/exclusion logic to separate class" | Jon Marius Venstad | 2019-12-09 | 2 | -38/+18 | |
| | | | | This reverts commit 7d8233a7d9ab9a177d689b6faa03ae8dd7e4e13a. | |||||
* | Revert "Add connector config for enabled cipher suites and protocol versions" | Jon Marius Venstad | 2019-12-09 | 1 | -6/+0 | |
| | | | | This reverts commit f0771b350536dffaeeb5d4c2878da495437e611e. | |||||
* | Revert "Use cipher/protocol config to configure Jetty" | Jon Marius Venstad | 2019-12-09 | 1 | -48/+21 | |
| | | | | This reverts commit 645a7d5190b95c0a47fac52d48327192b7c8e405. | |||||
* | Revert "Update ABI spec file" | Jon Marius Venstad | 2019-12-09 | 1 | -13/+2 | |
| | | | | This reverts commit 3eb2a26b3183d876ebf38fc942b1f5802e1d66f8. | |||||
* | Revert "Allow config of ssl cipher suites and protocol version" | Jon Marius Venstad | 2019-12-09 | 3 | -20/+38 | |
| | ||||||
* | Only enable ciphers supported by current JVM | Bjørn Christian Seime | 2019-12-05 | 1 | -2/+2 | |
| | ||||||
* | Log effective SSL setup on JDisc startup | Bjørn Christian Seime | 2019-12-04 | 1 | -0/+18 | |
| | ||||||
* | Remove unused class | Bjørn Christian Seime | 2019-12-04 | 1 | -36/+0 | |
| | ||||||
* | Merge pull request #11494 from vespa-engine/bjorncs/jdisc-cipher-protocol-config | Bjørn Christian Seime | 2019-12-04 | 5 | -41/+105 | |
|\ | | | | | Bjorncs/jdisc cipher protocol config | |||||
| * | Update ABI spec file | Bjørn Christian Seime | 2019-12-04 | 1 | -2/+13 | |
| | | | | | | | | This API is marked as public API for legacy reasons | |||||
| * | Use cipher/protocol config to configure Jetty | Bjørn Christian Seime | 2019-12-03 | 1 | -21/+48 | |
| | | ||||||
| * | Add connector config for enabled cipher suites and protocol versions | Bjørn Christian Seime | 2019-12-03 | 1 | -0/+6 | |
| | | ||||||
| * | Move cipher and protocol inclusion/exclusion logic to separate class | Bjørn Christian Seime | 2019-12-03 | 2 | -18/+38 | |
| | | ||||||
* | | Fix invalid ordering of arguments to constructor | Bjørn Christian Seime | 2019-12-04 | 1 | -2/+2 | |
|/ | ||||||
* | Use mockito-core 3.1.0 | Håkon Hallingstad | 2019-10-18 | 7 | -12/+13 | |
| | ||||||
* | Replace 'Alternative' with 'Optional' | Bjørn Christian Seime | 2019-10-08 | 3 | -208/+4 | |
| | ||||||
* | Use 'X-Forwarded-Port' as preferred source for remote port | Bjørn Christian Seime | 2019-10-08 | 2 | -1/+16 | |
| | ||||||
* | Always include peer port/address in access log | Bjørn Christian Seime | 2019-10-08 | 1 | -9/+10 | |
| | ||||||
* | Hide exceptions caused by abruptly closed connections | Bjørn Christian Seime | 2019-09-30 | 1 | -1/+1 | |
| | ||||||
* | Specify user agent | Bjørn Christian Seime | 2019-09-24 | 1 | -0/+1 | |
| | ||||||
* | set up tls using complete cert chain in config/file | andreer | 2019-09-19 | 1 | -2/+2 | |
| | ||||||
* | Allow whitelisting of uri paths in combination with implicit ssl connector | Bjørn Christian Seime | 2019-09-16 | 1 | -5/+30 | |
| | ||||||
* | Improve error message when clients present an invalid certificate | Bjørn Christian Seime | 2019-09-12 | 1 | -1/+4 | |
| | ||||||
* | Remove findbugs annotations from code and build path. | gjoranv | 2019-09-09 | 6 | -17/+8 | |
| | | | | | - jsr305 is needed by guava, which declares it as optional dep. - Remaining modules with annotations do not affect the container. | |||||
* | Allow CA certificates configured as PEM string | Bjørn Christian Seime | 2019-08-21 | 1 | -5/+12 | |
| | ||||||
* | Reimplement ConfiguredSslContextFactoryProvider as TlsContextBasedProvider | Bjørn Christian Seime | 2019-08-21 | 1 | -34/+27 | |
| | | | | | Use the TlsContextBasedProvider to ensure that the endpoint uses the standard TLS settings of Vespa (TLS protocol version, ciphers etc). | |||||
* | Merge pull request #10262 from vespa-engine/bjorncs/http-bindings-cleanup | Bjørn Christian Seime | 2019-08-16 | 1 | -1/+1 | |
|\ | | | | | Don't use wildcard scheme in uri patterns | |||||
| * | Don't use wildcard scheme in uri patterns | Bjørn Christian Seime | 2019-08-13 | 1 | -1/+1 | |
| | | ||||||
* | | Merge pull request #10296 from vespa-engine/bjorncs/nginx-health-check-proxy | Bjørn Christian Seime | 2019-08-15 | 7 | -11/+231 | |
|\ \ | | | | | | | Add health check proxy support to jdisc connectors | |||||
| * | | Only allow proxying https ports | Bjørn Christian Seime | 2019-08-15 | 1 | -4/+3 | |
| | | | ||||||
| * | | Add health check proxy support to jdisc connectors | Bjørn Christian Seime | 2019-08-15 | 7 | -11/+232 | |
| | | | | | | | | | | | | | | | | | | | | | | | | Add connector configuration that will transform the connector to a health check proxy for to a different connector, e.g proxying http -> https. This is a required feature to support http-only load balancer health checks when the container is intended to be running in a https-only environment. | |||||
* | | | Merge pull request #10238 from vespa-engine/ogronnesby/propagate-ca-in-config | Øyvind Grønnesby | 2019-08-14 | 2 | -0/+9 | |
|\ \ \ | |/ / |/| | | Add the CA certificates to configuration and read it from app package |