Jeff Mitchell
|
cc232e6f79
|
Address comments from review.
|
2015-08-25 15:33:58 -07:00 |
Jeff Mitchell
|
0b580d0521
|
Update website documentation for init and rekey with secret_pgp_keys API option
|
2015-08-25 14:52:13 -07:00 |
Jeff Mitchell
|
c887df93cc
|
Add support for pgp-keys argument to rekey, as well as tests, plus
refactor common bits out of init.
|
2015-08-25 14:52:13 -07:00 |
Jeff Mitchell
|
f57e7892e7
|
Don't store the given public keys in the seal config
|
2015-08-25 14:52:13 -07:00 |
Jeff Mitchell
|
a7316f2e24
|
Handle people specifying PGP key files with @ in front
|
2015-08-25 14:52:13 -07:00 |
Jeff Mitchell
|
2f3e245b0b
|
Add support for "pgp-tokens" parameters to init.
There are thorough unit tests that read the returned
encrypted tokens, seal the vault, and unseal it
again to ensure all works as expected.
|
2015-08-25 14:52:13 -07:00 |
Vishal Nayak
|
07b4091cae
|
Merge pull request #566 from hashicorp/fix-install-script
Cleanup of public key install script
|
2015-08-24 15:06:28 -04:00 |
vishalnayak
|
c35d78b3cb
|
Vault SSH: Documentation update
|
2015-08-24 14:18:37 -04:00 |
vishalnayak
|
e6987beb61
|
Vault SSH: Replace args with named vars
|
2015-08-24 14:07:07 -04:00 |
vishalnayak
|
eb91a3451b
|
Merging with master
|
2015-08-24 13:55:20 -04:00 |
vishalnayak
|
44c07cff5b
|
Vault SSH: Cleanup of aux files in install script
|
2015-08-24 13:50:46 -04:00 |
Jeff Mitchell
|
025ec5057e
|
Merge pull request #564 from hashicorp/remove-cookie-auth
Remove cookie authentication
|
2015-08-21 19:55:00 -07:00 |
Jeff Mitchell
|
a8ef0e8a80
|
Remove cookie authentication.
|
2015-08-21 19:46:23 -07:00 |
Jeff Mitchell
|
f7845234b4
|
Merge pull request #555 from hashicorp/toggleable-hostname-enforcement
Allow enforcement of hostnames to be toggleable for certificates.
|
2015-08-21 19:23:09 -07:00 |
Jeff Mitchell
|
5695d57ba0
|
Merge pull request #561 from hashicorp/fix-wild-cards
Allow hyphens in endpoint patterns of most backends
|
2015-08-21 11:40:42 -07:00 |
Armon Dadgar
|
88a7b57491
|
Merge pull request #558 from captainill/master
make sure header is below clickable area that hides sidebar
|
2015-08-21 10:21:40 -07:00 |
vishalnayak
|
6822af68e1
|
Vault SSH: Undo changes which does not belong to wild card changes
|
2015-08-21 09:58:15 -07:00 |
vishalnayak
|
6c2927ede0
|
Vault: Fix wild card paths for all backends
|
2015-08-21 00:56:13 -07:00 |
Jeff Mitchell
|
065e4e3fdb
|
Merge pull request #560 from hashicorp/refactor-lease-ttl
Refactor Lease names internally for logical consistency
|
2015-08-20 23:30:31 -07:00 |
Jeff Mitchell
|
ea9fbb90bc
|
Rejig Lease terminology internally; also, put a few JSON names back to their original values
|
2015-08-20 22:27:01 -07:00 |
Jeff Mitchell
|
93ef9a54bd
|
Internally refactor Lease/LeaseGracePeriod into TTL/GracePeriod
|
2015-08-20 18:00:51 -07:00 |
Jeff Mitchell
|
04a6a814cc
|
Merge pull request #557 from hashicorp/generic-lease-to-ttl
Change "lease" parameter in the generic backend to be "ttl" to reduce confusion.
|
2015-08-20 18:00:11 -07:00 |
Jeff Mitchell
|
0fa783f850
|
Update help text for TTL values in generic backend
|
2015-08-20 17:59:30 -07:00 |
captainill
|
ad9e00b166
|
make sure header is below clickable area that hides sidebar
|
2015-08-20 17:22:48 -07:00 |
Jeff Mitchell
|
b57ce8e5c2
|
Change "lease" parameter in the generic backend to be "ttl" to reduce confusion. "lease" is now deprecated but will remain valid until 0.4.
Fixes #528.
|
2015-08-20 16:41:25 -07:00 |
vishalnayak
|
54db77a3f1
|
Vault SSH: +script link, -script file, in docs
|
2015-08-20 16:35:16 -07:00 |
vishalnayak
|
0ffad79548
|
Vault SSH: Make the script readable
|
2015-08-20 16:12:17 -07:00 |
Jeff Mitchell
|
133380915a
|
Disallow non-client X509 key usages for client TLS cert authentication.
|
2015-08-20 15:50:47 -07:00 |
Jeff Mitchell
|
41b85a1c83
|
Allow enforcement of hostnames to be toggleable for certificates. Fixes #451.
|
2015-08-20 14:33:37 -07:00 |
Jeff Mitchell
|
c84ccc08d4
|
sys_mount.go is now unnecessary
|
2015-08-20 14:09:15 -07:00 |
Jeff Mitchell
|
271255b008
|
Send sys mounting logic directly to logical backend. Unit tests run.
|
2015-08-20 13:59:57 -07:00 |
Jeff Mitchell
|
15f57082e0
|
Begin factoring out sys paths into logical routes. Also, standardize on 307 as redirect code.
|
2015-08-20 13:20:35 -07:00 |
vishalnayak
|
2da717fd8b
|
Vault SSH: Adding the missed out config file
|
2015-08-20 11:30:21 -07:00 |
Jeff Mitchell
|
46d06144a8
|
Merge pull request #552 from hashicorp/fix-uselimit-decrement
Fix #461 properly by defering potential revocation of a token until a…
|
2015-08-20 10:39:24 -07:00 |
Jeff Mitchell
|
db79dd8c22
|
Don't defer revocation when sealing, and clear out response/auth if there is a token use error
|
2015-08-20 10:37:42 -07:00 |
Jeff Mitchell
|
0e8e3660ff
|
Fix #461 properly by defering potential revocation of a token until after the request is fully handled.
|
2015-08-20 10:14:13 -07:00 |
Vishal Nayak
|
beca9f1596
|
Merge pull request #385 from hashicorp/vishal/vault
SSH Secret Backend for Vault
|
2015-08-20 10:03:15 -07:00 |
Jeff Mitchell
|
0af4682c74
|
Actually include the Godeps files, derp.
|
2015-08-20 09:52:21 -07:00 |
Jeff Mitchell
|
6af94d7555
|
Merge pull request #549 from bkw/cassandraUsernamesUnderscore
Use underscores in cassandra username generation
|
2015-08-20 07:02:52 -07:00 |
Bernhard K. Weisshuhn
|
8a5361ea79
|
skip revoke permissions step on cassandra rollback (drop user is enough)
|
2015-08-20 11:15:43 +02:00 |
Bernhard K. Weisshuhn
|
86cde438a5
|
avoid dashes in generated usernames for cassandra to avoid quoting issues
|
2015-08-20 11:15:28 +02:00 |
vishalnayak
|
451d2b0532
|
Vault SSH: Removing script file
|
2015-08-19 12:59:52 -07:00 |
vishalnayak
|
76ed3bec74
|
Vault SSH: 1024 is default key size and removed 4096
|
2015-08-19 12:51:33 -07:00 |
vishalnayak
|
c283e34f8c
|
Merge branch 'vishal/vault' of https://github.com/hashicorp/vault into vishalvault
|
2015-08-19 12:16:58 -07:00 |
vishalnayak
|
1f5062a6e1
|
Merge branch 'master' of https://github.com/hashicorp/vault into vishalvault
|
2015-08-19 12:16:37 -07:00 |
Jeff Mitchell
|
7e851813e8
|
Update godeps to include crypto/ssh
|
2015-08-19 11:23:34 -07:00 |
Seth Vargo
|
551e7f4647
|
Merge pull request #544 from codeinthehole/patch-1
Fix typo in ACL doc
|
2015-08-19 09:56:10 -04:00 |
David Winterbottom
|
9fd6837d7b
|
Fix typo in ACL doc
|
2015-08-19 07:36:16 +01:00 |
Jeff Mitchell
|
fe8c1c514d
|
Add -no-verify option to CLI auth command, to avoid decrementing the token use count during auth.
|
2015-08-18 19:22:17 -07:00 |
Jeff Mitchell
|
9f2f79cdf4
|
Fix tests with AWS changes.
|
2015-08-18 19:22:17 -07:00 |