Commit Graph
56 Commits
Author SHA1 Message Date
Tim Bruijnzeels 1ea10bb0cd Be more lenient in accepting RFC8181/6492 CMS structures and Id Certs - because they are poorly defined. (#13) 2019-07-24 16:26:30 -04:00
Tim Bruijnzeels b1bdd08071 Should fix the RFC6492 CMS signatures. (#13) 2019-07-24 09:47:38 -04:00
Tim Bruijnzeels 9b790757f4 Ignore critical extensions on IdCert (for interop testing). 2019-07-23 11:41:52 -04:00
Tim Bruijnzeels 3c8e9a470c Fix racecondition (save the updated aggregate!), and deadlock (use outer_lock on pub functions). 2019-07-21 15:54:59 -04:00
Tim Bruijnzeels 2e7b6258fe Get certificate from RFC6492 parent / issue to child. (#13) 2019-07-21 15:53:37 -04:00
Tim Bruijnzeels 2737a829da Support publishing to embedded pub server through scheduler. (#13) 2019-07-19 22:57:35 +02:00
Tim Bruijnzeels 38464aa2cf Introducing message queue for asynchronous triggered processes: request certs, publish. (work in progress for #13) 2019-07-19 21:20:18 +02:00
Tim Bruijnzeels 446a1c339b Add rfc6492 parent to child CA (#13). 2019-07-19 09:16:22 +02:00
Tim Bruijnzeels 901e2dfae7 Accept invalid certs when connecting to localhost or 127.0.0.1 - useful when testing. 2019-07-18 12:05:22 +02:00
Tim Bruijnzeels a6cbddbdf5 Generate the RFC8183 ID when a CA is initialised. Return RFC 8183 Child Request for CAs. 2019-07-18 11:55:20 +02:00
Tim Bruijnzeels b30c3a02b7 Merging cms_proxy module back into commons, so that we can define RFC8183 parents more easily. (#13) 2019-07-17 13:09:07 +02:00
Tim Bruijnzeels 3b7dd8fe20 Clippy knows best. 2019-07-17 11:32:26 +02:00
Tim Bruijnzeels 46f2d189e4 Support RFC8183 Parent Response. See issue #13. 2019-07-17 11:02:12 +02:00
Tim Bruijnzeels 5a79d0c18f Support RFC8183 Child Request. See issue #13. 2019-07-16 16:05:48 +02:00
Tim Bruijnzeels f8c83950a4 Support RFC6492 Revocation Request XML. 2019-07-16 12:21:43 +02:00
Tim Bruijnzeels 6b2d64e4f8 Support RFC6492 Issuance Report XML, and use it internally as well. (Issue #13) 2019-07-16 12:16:24 +02:00
Tim Bruijnzeels f622c14588 Support RFC6492 Issuance Report XML, and use it internally as well. (Issue #13) 2019-07-15 17:10:00 +02:00
Tim Bruijnzeels 63ddaec0b0 Support RFC6492 Certificate Issuance Request XML. (Issue #13) 2019-07-15 14:13:19 +02:00
Tim Bruijnzeels e859146bad Support RFC6492 List Response XML (for issue: #13) 2019-07-15 13:42:05 +02:00
Tim Bruijnzeels 57b3096418 Manage embedded delegated CA through CLI. 2019-07-10 15:06:28 +02:00
Tim Bruijnzeels 0280e6eaec Simplify: let TA and CA use same codebase 'CertAuth' 2019-07-09 12:17:40 +02:00
Tim Bruijnzeels fd1df3bb82 Merge branch 'master' into child-ca 2019-07-05 15:51:55 +02:00
Tim Bruijnzeels 6e22317576 Clean-up 2019-07-05 14:53:38 +02:00
Tim Bruijnzeels e0d7596de4 Support child CA under embedded TA. Work in progress. Issue #14 2019-07-05 12:13:39 +02:00
Tim Bruijnzeels 813e075ede Simplifications and code formatting. 2019-06-13 08:53:02 +02:00
Tim Bruijnzeels 38f7c15eca Fix clippy warnings in tests 2019-06-11 17:07:28 +02:00
Tim Bruijnzeels 40b154c577 Upgrade to actix-web 1.0 2019-06-11 12:49:50 +02:00
Tim Bruijnzeels 26411075c7 Clean up dependencies on actix (not needed at all) and actix-web. 2019-06-06 13:26:43 +02:00
Tim Bruijnzeels 8d0e601684 Use built-in serde for Serial. 2019-06-06 11:36:45 +02:00
Tim Bruijnzeels afd226933e Update dependencies and use built-in serde for Time. 2019-06-06 10:54:50 +02:00
Tim Bruijnzeels 16ce1db2ec Automate (re)-publication. Closes #33. 2019-06-05 17:15:27 +02:00
Tim Bruijnzeels 448c7357f0 Clean up: use provided De/Serialize for rpki::uri::Rsync. 2019-06-05 08:34:08 +02:00
Tim Bruijnzeels 2d122d6664 Reduce complexity in eventsourcing. Closes #41 2019-06-04 17:13:44 +02:00
Tim Bruijnzeels 28e89a7fc3 Quick fix for Serial serialization - will be fixed properly in rpki.rs. 2019-06-04 16:06:48 +02:00
Tim Bruijnzeels 445d4d836c Updating dependencies. 2019-06-04 14:56:47 +02:00
Tim Bruijnzeels a6d9aade03 Manual publication of TA MFT and CRL. Closes #12. 2019-06-04 08:46:58 +02:00
Tim Bruijnzeels 733f76f53b Refactoring the TrustAnchor in preparation of publication. 2019-05-23 11:34:21 +02:00
Tim Bruijnzeels 0b72b0792e Add EventListener to event sourcing.
Also had to refer to explicit type DiskAggregateStore for now.
2019-05-15 10:34:11 +02:00
Tim Bruijnzeels 2705418eab Create Manifest and CRL for TA (initially). 2019-05-14 12:31:17 +02:00
Tim Bruijnzeels d58e386acf Show / init embedded TA from CLI. 2019-05-08 17:19:30 +02:00
Tim Bruijnzeels fb46d2c04a Download TAL for embedded TA. 2019-05-08 14:55:17 +02:00
Tim Bruijnzeels 619fef9f35 Fix clippy. 2019-05-07 16:44:44 +02:00
Tim Bruijnzeels 29c79df432 Implement rand for softsigner (using openssl) 2019-05-07 14:46:24 +02:00
Tim Bruijnzeels 3e3759f789 Start test server using https for integration testing - accept self signed certs in these tests. 2019-05-07 14:41:02 +02:00
Tim Bruijnzeels 710323db01 Initialising TA from UI. Not displaying properly yet. (See #12)
Also note: had to change http -> https all over the place, and this currently breaks the client connections for the CLI and integration tests. Will fix this soon!
2019-05-03 16:14:02 +02:00
Tim Bruijnzeels 44e63ba8ca Fix clippy warnings. 2019-05-01 11:29:02 +02:00
Tim Bruijnzeels f7ec726852 Update to rpki-rs with revised-cert-handling. 2019-05-01 09:28:58 +02:00
Tim Bruijnzeels 13394879f4 Adding view for TrustAnchor. 2019-04-30 16:27:55 +02:00
Tim Bruijnzeels a34d5603d7 Moving common CA data types to krill_commons/api. And initialise TA from CaServer. 2019-04-29 15:35:38 +02:00
Tim Bruijnzeels 335c10955a Use the built-in Json and Path extractors from actix-web. 2019-04-29 12:22:01 +02:00