aboutsummaryrefslogtreecommitdiffstats
path: root/vespa-athenz/src
Commit message (Collapse)AuthorAgeFilesLines
* Use the jks keystoreBjørn Christian Seime2019-07-051-1/+1
|
* Allow applications to re-use SSLContext returned by providerBjørn Christian Seime2019-07-034-55/+108
| | | | | | - Use MutableX509KeyManager instead of re-creating SSLContext when credentials are updated. - Make AthenzIdentityProviderImpl responsible for creating initial SSLContext. - Use proper x509 certificates and keys in unit test instead of Mockito mocks.
* Use AutoReloadingX509KeyManager in SiaIdentityProviderBjørn Christian Seime2019-07-032-57/+16
| | | | | | The SSLContext instance provided by SiaIdentityProvider can now be reused as the underlying key manager will automatically update the key material every hour.
* Use AthenzIdentity instead of AthensServiceHåkon Hallingstad2019-04-1012-49/+55
|
* Add missing exportpackageMorten Tokle2019-02-251-0/+5
|
* Fix refresh logicMorten Tokle2019-02-222-7/+39
|
* Add aws credential providerMorten Tokle2019-02-211-0/+79
|
* Add support for AWS temp credentialsMorten Tokle2019-02-126-3/+169
|
* Initialize AuthZpeClient in constructorBjørn Christian Seime2019-01-311-0/+5
|
* TestJon Marius Venstad2019-01-111-0/+3
|
* Return empty list if parent directory does not existJon Marius Venstad2019-01-111-0/+4
|
* Remove domain partMorten Tokle2018-12-171-2/+2
|
* Add missing parameters to hasAccessMorten Tokle2018-12-171-1/+2
|
* Get access token from request attributeBjørn Christian Seime2018-11-201-2/+0
|
* Use httpclient version from parent pomBjørn Christian Seime2018-11-071-1/+1
|
* Don't parse entity for responses without contentBjørn Christian Seime2018-10-252-8/+9
|
* Export package 'com.yahoo.vespa.athenz.client.zms'Bjørn Christian Seime2018-10-251-0/+8
|
* Add ZmsClient and DefaultZmsClientBjørn Christian Seime2018-10-2411-0/+494
|
* Create ClientBase containing common Athenz client logicBjørn Christian Seime2018-10-2413-84/+114
|
* Expose role token expiryMorten Tokle2018-10-171-0/+5
|
* Remove deprecated types from vespa-athenzBjørn Christian Seime2018-10-1724-571/+23
|
* Expose private key and certificate (#7217)Morten Tokle2018-10-081-2/+15
|
* Rename InstanceCsrGenerator -> CsrGeneratorMorten Tokle2018-10-054-15/+15
|
* Implement role CSR requirementsMorten Tokle2018-10-054-34/+32
|
* Add OU field to csrMorten Tokle2018-10-044-7/+47
|
* Add copyright headerJon Bratseth2018-10-018-7/+15
|
* Revert "Replace RSA with EC in unit test"Bjørn Christian Seime2018-09-121-2/+2
| | | | This reverts commit bdb057ecfac68acaaeecc2fe54ae989e0fba2c75.
* Remove most deprecated types from com.yahoo.vespa.athenz.tlsBjørn Christian Seime2018-09-1118-1034/+17
| | | | Pkcs10Csr and related classes are not removed as they are currently in use.
* Replace RSA with EC in unit testBjørn Christian Seime2018-09-111-2/+2
|
* Replace use of com.yahoo.vespa.athenz.tls with com.yahoo.securityBjørn Christian Seime2018-09-074-5/+5
|
* Replace use of com.yahoo.vespa.athenz.tls with com.yahoo.securityBjørn Christian Seime2018-09-058-48/+43
| | | | - Use replace RSA with EC in unit tests where possible
* Deprecate crypto utilities in com.yahoo.vespa.athenz.tlsBjørn Christian Seime2018-09-0514-0/+28
|
* Merge pull request #6593 from ↵Bjørn Christian Seime2018-08-284-76/+0
|\ | | | | | | | | vespa-engine/bjorncs/use-ssl-socket-factory-node-admin Bjorncs/use ssl socket factory node admin
| * Remove listener interface from ServiceIdentityProviderBjørn Christian Seime2018-08-154-76/+0
| |
* | Remove workaround for missing identity typeBjørn Christian Seime2018-08-163-39/+7
| |
* | Merge pull request #6542 from ↵Bjørn Christian Seime2018-08-167-349/+15
|\ \ | |/ |/| | | | | vespa-engine/bjorncs/remove-wrapped-identity-document Bjorncs/remove wrapped identity document
| * Remove 'dnsSuffix' and 'ztsEndpoint' from identity documentBjørn Christian Seime2018-08-154-36/+3
| |
| * Remove wrapped document structure from SignedIdentityDocumentBjørn Christian Seime2018-08-157-317/+16
| |
* | Revert "Remove listener interface from ServiceIdentityProvider"Bjørn Christian Seime2018-08-154-0/+76
| | | | | | | | This reverts commit 90cdc3376e9a899674264d9ffa2edf3286b248a7.
* | Remove listener interface from ServiceIdentityProviderBjørn Christian Seime2018-08-144-76/+0
| |
* | Remove SiaBackedApacheHttpClientBjørn Christian Seime2018-08-141-189/+0
| |
* | Use ServiceIdentitySslSocketFactory in DefaultZtsClientBjørn Christian Seime2018-08-141-4/+6
| |
* | Add SSLSocketFactory backed by ServiceIdentityProviderBjørn Christian Seime2018-08-141-0/+100
|/
* Rename 'refer' -> 'acquire'Bjørn Christian Seime2018-08-141-5/+5
|
* Update DefaultZtsClient to use new http client interfaceBjørn Christian Seime2018-08-141-8/+21
|
* Make SiaBackedApacheHttpClient a CloseableHttpClientBjørn Christian Seime2018-08-141-48/+116
|
* Merge pull request #6564 from vespa-engine/bjorncs/sia-backed-http-clientBjørn Christian Seime2018-08-142-94/+146
|\ | | | | Bjorncs/sia backed http client
| * Misc improvements to close()Bjørn Christian Seime2018-08-141-0/+8
| | | | | | | | | | | | - Make close() idempotent - Disallow execute() after close() - Add redundant guards to refer()/release()
| * Fix race conditions by using the global lockBjørn Christian Seime2018-08-131-21/+17
| | | | | | | | | | Replace AtomicInteger with int and use clientLock to synchronize all access to refer() and release(). Remove synchronized from constructor.
| * Use SiaBackedApacheHttpClient in DefaultZtsClientBjørn Christian Seime2018-08-131-94/+25
| |