Jeff Mitchell
695a822545
Merge pull request #1075 from rajanadar/patch-14
...
adding full response for intermediate/generate
2016-02-18 10:16:53 -05:00
Jeff Mitchell
c431c2204d
Merge pull request #1074 from rajanadar/patch-13
...
added missing fields to read role
2016-02-18 10:16:14 -05:00
Jeff Mitchell
4a9b8d132e
Merge pull request #1073 from rajanadar/patch-12
...
fixing response fields of /pki/issue
2016-02-18 10:15:19 -05:00
Jeff Mitchell
324357c226
Update cross-compiling Dockerfile to Go 1.6
2016-02-17 17:09:01 -05:00
Jeff Mitchell
c4a9d24c4a
Merge pull request #1090 from hashicorp/pooled-consul
...
Use a pooled transport for the Consul physical backend
2016-02-17 16:57:32 -05:00
Jeff Mitchell
5edaf522a8
Use a pooled transport for the Consul physical backend and give it 4 idle connections
2016-02-17 16:53:30 -05:00
Jeff Mitchell
94e6196574
Update go-cleanhttp
2016-02-17 16:51:12 -05:00
vishalnayak
a6f3b31a36
ssh: Fix response code for ssh/verify
2016-02-16 19:46:29 -05:00
vishalnayak
d9536043e7
Pki: Respond user error when cert is not found instead of internal error
2016-02-16 17:58:57 -05:00
Eyal Lupu
dd2c7a6bc8
Update index.html.md
...
typo in docs
2016-02-15 16:52:43 +00:00
Eyal Lupu
c04b8ab287
Update index.html.md
...
Documentation: Zookeeper authentication and ACLs
2016-02-15 16:38:14 +00:00
Eyal Lupu
35074dff51
Update index.html.md
...
Zookeeper authentication and authorization documentations
2016-02-15 16:20:32 +00:00
Vishal Nayak
4e896ca0d2
Merge pull request #1068 from lunixbochs/master
...
don't panic when config directory is empty
2016-02-15 11:03:48 -05:00
Eyal Lupu
e9c7a02850
https://github.com/hashicorp/vault/issues/1058
...
Make sure locks are also using the same auth info as data
2016-02-15 15:29:08 +00:00
Eyal Lupu
d4db2ea79c
fixes to https://github.com/hashicorp/vault/issues/1058
...
Configuration now supports:
- auth_info
-znode_owner
2016-02-15 15:03:12 +00:00
Raja Nadar
e7d20c0ef3
adding full response for intermediate/generate
...
1. adding superset of fields in response, so that folks can see all possible response fields.
2. also added the less important "warnings" field
2016-02-14 14:42:37 -08:00
Raja Nadar
2d918196ca
added missing fields to read role
...
added the lease and token type field to the read role response.
2016-02-14 13:00:42 -08:00
Raja Nadar
b0d05ebcb3
fixing response fields of /pki/issue
...
1. added the private_key_type field
2. changed "serial" to "serial_number"
3. added the warnings field
2016-02-14 12:41:43 -08:00
Vishal Nayak
baa506c5c2
Merge pull request #1070 from chuyskywalker/patch-1
...
Minor spelling fix
2016-02-13 11:44:53 -05:00
Jeff Minard
1985fa3313
Minor spelling fix
2016-02-13 08:41:16 -08:00
Ryan Hileman
1e65c4a01f
don't panic when config directory is empty
2016-02-12 16:40:19 -08:00
Jeff Mitchell
ea12dff28b
changelog++
2016-02-12 15:38:52 -05:00
Jeff Mitchell
a216c5d74d
Merge pull request #1066 from hashicorp/issue-1054
...
Return status for rekey/root generation at init time.
2016-02-12 15:35:45 -05:00
Jeff Mitchell
8510dbad05
Verify that nonces are non-empty in tests
2016-02-12 15:35:26 -05:00
Jeff Mitchell
5f5542cb91
Return status for rekey/root generation at init time. This mitigates a
...
(very unlikely) potential timing attack between init-ing and fetching
status.
Fixes #1054
2016-02-12 14:24:36 -05:00
Jeff Mitchell
3d3ad051a8
Merge pull request #1064 from techraf/patch-1
...
Fixes typo
2016-02-12 09:48:55 -05:00
techraf
812736b475
Fixes typo
2016-02-12 22:34:07 +09:00
vishalnayak
0b44d81a16
Github renewal enhancement
2016-02-11 20:42:42 -05:00
Jeff Mitchell
3378db0166
Merge pull request #1061 from tomrittervg/tomrittervg-typos-1
...
Fix some typos
2016-02-11 15:12:09 -05:00
Jeff Mitchell
880c9798b7
Merge pull request #1062 from tomrittervg/tomrittervg-AllowedBaseDomain-migration
...
AllowedBaseDomain will stay non-empty in certain error conditions. None of these conditions should be hit anyways, but this provides an extra safety check.
2016-02-11 15:07:54 -05:00
Jeff Mitchell
fdc7317ef0
changelog++
2016-02-11 12:54:49 -05:00
Jeff Mitchell
46b22745c6
Merge pull request #1053 from mwielgoszewski/postgresql-revocation
...
Fix PostgreSQL secret backend issues revoking users
2016-02-11 12:52:37 -05:00
Jeff Mitchell
3faae67288
Merge pull request #1055 from bscott/master
...
Updated Vault Download URL and Version
2016-02-11 09:28:05 -05:00
Brian Scott
1ebbc00761
Updated Vault Download URL and Version
2016-02-10 22:12:19 -08:00
Jeff Mitchell
aaed354aca
Add note about client libraries to 0.5 upgrade page
2016-02-10 12:10:51 -05:00
Jeff Mitchell
4fb603906f
Bump website download links to 0.5.0
2016-02-10 12:08:29 -05:00
Jeff Mitchell
826c593e2d
Cut version 0.5.0
2016-02-10 08:02:18 -05:00
Jeff Mitchell
69f7aca258
Add change of exit code for status to upgrade page
2016-02-10 08:01:54 -05:00
Jeff Mitchell
4f5c65ae74
changelog++
2016-02-10 08:01:46 -05:00
Tom Ritter
a10dc14625
Fix AllowedBaseDomain Migration
...
AllowedBaseDomain is only zero-ed out if the domain is not found in the (new) AllowedDomains configuration setting. If the domain is found, AllowedBaseDomain is not emptied and this code will be run every single time.
//untested
2016-02-09 15:42:15 -06:00
Tom Ritter
940a58cb9d
Typo in error message in path_intermediate.go
2016-02-09 15:08:30 -06:00
Tom Ritter
8901c0b67d
Type in kdf.go
2016-02-08 14:39:46 -06:00
Tom Ritter
e5952a1c28
Typo in policy.go
2016-02-08 12:00:06 -06:00
Jeff Mitchell
005ce81404
Cut version 0.5.0
2016-02-08 11:41:06 -05:00
Jeff Mitchell
b7896fba65
changelog++
2016-02-08 11:40:52 -05:00
Jeff Mitchell
ba71ff7b0c
Update documentation for status command to reflect new return codes
2016-02-08 11:36:08 -05:00
Jeff Mitchell
c36007ab25
changelog++
2016-02-07 14:02:55 -05:00
Jeff Mitchell
c636a8ad29
Merge pull request #1036 from hashicorp/tls-notbefore-skew
...
Add slack on NotBefore value for generated certs.
2016-02-07 14:01:05 -05:00
Jeff Mitchell
4771884c78
Add slack on NotBefore value for generated certs.
...
This fixes an issue where, due to clock skew, one system can get a cert
and try to use it before it thinks it's actually valid. The tolerance of
30 seconds should be high enough for pretty much any set of systems
using NTP.
Fixes #1035
2016-02-07 14:00:03 -05:00
Jeff Mitchell
06810f2ac7
changelog++
2016-02-04 16:40:00 -05:00