Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | | Add contants for default key version and document version to ↵ | Bjørn Christian Seime | 2018-05-16 | 1 | -0/+3 | |
|/ | | | | SignedIdentityDocument | |||||
* | Add methods to ZtsClient for retrieving role token and certificate | Bjørn Christian Seime | 2018-05-11 | 5 | -2/+257 | |
| | ||||||
* | Allow lambda passed to withClient() to throw IOException | Bjørn Christian Seime | 2018-05-11 | 1 | -7/+9 | |
| | ||||||
* | Add overloaded method taking Path instead of File | Bjørn Christian Seime | 2018-05-11 | 1 | -2/+7 | |
| | ||||||
* | Remove checked exception type from ZtsClient.close() | Bjørn Christian Seime | 2018-05-11 | 1 | -2/+2 | |
| | ||||||
* | Add new binding types which name does not conflict with model types | Bjørn Christian Seime | 2018-05-11 | 8 | -0/+325 | |
| | | | | | | - Deprecate old types - Add utility class to map between the types - Temporarily allow deprecation warnings in vespa-athenz + athenz-identity-provider-service. | |||||
* | Refactor entity parsing from getInstanceIdentity | Bjørn Christian Seime | 2018-05-11 | 1 | -4/+7 | |
| | ||||||
* | Add trailing slash to uri to ensure that URI.resolve behave as expected | Bjørn Christian Seime | 2018-05-11 | 1 | -2/+9 | |
| | ||||||
* | Add missing call to lock() | Bjørn Christian Seime | 2018-05-11 | 1 | -0/+2 | |
| | ||||||
* | Use ConcurrentCopyOnWriteArraySet -- could alternatively provide a Comparator | Jon Marius Venstad | 2018-05-08 | 1 | -2/+2 | |
| | ||||||
* | Add InstanceCsrGenerator | Bjørn Christian Seime | 2018-05-07 | 1 | -0/+50 | |
| | ||||||
* | Add convenience method to add subject alternative name to csr builder | Bjørn Christian Seime | 2018-05-07 | 1 | -0/+5 | |
| | ||||||
* | Add helper method to return domain name | Bjørn Christian Seime | 2018-05-07 | 1 | -0/+1 | |
| | ||||||
* | Don't use api deprecated in apache http 4.5 + set user agent | Bjørn Christian Seime | 2018-05-04 | 3 | -9/+9 | |
| | ||||||
* | Add identity document client + domain types for signed identity document | Bjørn Christian Seime | 2018-05-04 | 5 | -0/+276 | |
| | ||||||
* | Rename IdentityDocumentService -> IdentityDocumentClient | Bjørn Christian Seime | 2018-05-04 | 4 | -10/+10 | |
| | ||||||
* | Enable creation of ZtsClient using ServiceIdentityProvider | Bjørn Christian Seime | 2018-05-03 | 1 | -19/+78 | |
| | ||||||
* | Add new ZtsClient implementation | Bjørn Christian Seime | 2018-05-03 | 8 | -0/+347 | |
| | ||||||
* | Add support for registration of listeners on ServiceIdentityProvider | Bjørn Christian Seime | 2018-05-03 | 4 | -12/+74 | |
| | ||||||
* | Use new identity document api path | Bjørn Christian Seime | 2018-04-30 | 1 | -2/+1 | |
| | ||||||
* | Add initial implementation for retrieving role token/cert | Bjørn Christian Seime | 2018-04-30 | 2 | -1/+98 | |
| | ||||||
* | Rename AthenzService -> ZtsClient | Bjørn Christian Seime | 2018-04-27 | 4 | -30/+31 | |
| | ||||||
* | Reuse SSLContext when communicating with ZTS | Bjørn Christian Seime | 2018-04-27 | 4 | -36/+7 | |
| | ||||||
* | Only create SSLContext once for each update | Bjørn Christian Seime | 2018-04-26 | 4 | -20/+50 | |
| | ||||||
* | Rename getDomain() -> domain() + getService() -> service() | Bjørn Christian Seime | 2018-04-26 | 1 | -2/+2 | |
| | ||||||
* | Use separate types for tenant and vespa identity providers | Bjørn Christian Seime | 2018-04-26 | 3 | -17/+32 | |
| | | | | | | | | - Add ServiceIdentityProvider - Remove AthenzSslContextProvider - Change SiaIdentityProvider to implement ServiceIdentityProvider - Change AthenzIdentityProviderImpl to implement both ServiceIdentityProvider and AthenzIdentityProvider - Stop using AthenzIdentityProvider for internal use | |||||
* | Include ipaddress SAN in CSR | Morten Tokle | 2018-04-26 | 4 | -14/+72 | |
| | ||||||
* | Allow SiaIdentityProvider to notify listeners after reload | Bjørn Christian Seime | 2018-04-24 | 1 | -2/+17 | |
| | ||||||
* | Add simplifed constructor to SiaIdentityProvider | Bjørn Christian Seime | 2018-04-24 | 1 | -5/+20 | |
| | ||||||
* | Set name for threads launched by SiaIdentityProvider | Bjørn Christian Seime | 2018-04-20 | 1 | -9/+6 | |
| | ||||||
* | Ensure that failing to updating SSLContext does not halt scheduler | Bjørn Christian Seime | 2018-04-20 | 1 | -1/+10 | |
| | | | | - Add logging during SSLContext updating | |||||
* | Make alternative SiaIdentityProvider constructor public | Bjørn Christian Seime | 2018-04-20 | 1 | -5/+5 | |
| | ||||||
* | Remove method withIdentityCertificate | Bjørn Christian Seime | 2018-04-20 | 2 | -7/+1 | |
| | ||||||
* | Add builder method for PEM encoded cert and key | Bjørn Christian Seime | 2018-04-20 | 2 | -15/+18 | |
| | ||||||
* | Rename AthenzSslContextBuilder -> SslContextBuilder | Bjørn Christian Seime | 2018-04-20 | 4 | -20/+20 | |
| | ||||||
* | Remove duplicate type for signed identity document | Bjørn Christian Seime | 2018-04-19 | 3 | -33/+3 | |
| | ||||||
* | Change type of 'zts-endpoint' to URI | Bjørn Christian Seime | 2018-04-19 | 1 | -2/+3 | |
| | ||||||
* | Move identity document api types to vespa-athenz | Bjørn Christian Seime | 2018-04-19 | 5 | -0/+281 | |
| | ||||||
* | Add type for provider unique instance id | Bjørn Christian Seime | 2018-04-18 | 3 | -0/+140 | |
| | ||||||
* | Move identity provider client to new Java package | Bjørn Christian Seime | 2018-04-18 | 11 | -11/+11 | |
| | ||||||
* | Add helper method for extracting issuer common name | Bjørn Christian Seime | 2018-04-17 | 1 | -3/+4 | |
| | ||||||
* | Rename getCommonNames -> getSubjectCommonNames | Bjørn Christian Seime | 2018-04-17 | 3 | -3/+2 | |
| | ||||||
* | Add helper for extracting SANs from certificate | Bjørn Christian Seime | 2018-04-17 | 7 | -29/+188 | |
| | | | | | - Model SAN as type SubjectAlternativeName - Add SubjectAlternativeName to csr and certificate builders | |||||
* | Replace BouncyCastle use with vespa-athenz helpers | Bjørn Christian Seime | 2018-04-09 | 1 | -31/+9 | |
| | ||||||
* | Rewrite SiaIdentityProvider to be easily testable, add unit test | Bjørn Christian Seime | 2018-03-22 | 2 | -23/+132 | |
| | | | | Contains fix for parsing bug as well. | |||||
* | Add method for serializing private key to PEM | Bjørn Christian Seime | 2018-03-22 | 2 | -1/+54 | |
| | | | | | Rewrite pem deserialization to use BouncyCastle directly instead of using third-party wrapper. | |||||
* | A csr can only contain a single 'extension request' attribute | Bjørn Christian Seime | 2018-03-22 | 1 | -13/+13 | |
| | ||||||
* | Change return type of getBasicContraints() to Optional<Boolean> | Bjørn Christian Seime | 2018-03-22 | 2 | -5/+6 | |
| | ||||||
* | Add getters for basic constraints and subject alternative names | Bjørn Christian Seime | 2018-03-22 | 7 | -17/+175 | |
| | ||||||
* | Add helper method for extracting common name | Bjørn Christian Seime | 2018-03-22 | 2 | -11/+25 | |
| |