9692 Commits

Author SHA1 Message Date
Jeff Mitchell
51b9e381f4 Simplify some logic and ensure that if key share backup fails, we fail
the operation as well.

Ping #907
2016-01-06 13:14:23 -05:00
Jeff Mitchell
75973600cc Merge pull request #907 from hashicorp/rekey-work
Add rekey nonce/backup.
2016-01-06 09:55:19 -05:00
Jeff Mitchell
027c84c62a Add rekey nonce/backup. 2016-01-06 09:54:35 -05:00
Marcin Wielgoszewski
48660ddba5 Address issues with properly revoking a user via these additional REVOKE statements 2016-01-06 09:22:55 -05:00
Jeff Mitchell
ad1c30f681 Fix typo in docs 2016-01-05 11:45:23 -05:00
Jeff Mitchell
3870ecf036 changelog++ 2016-01-05 11:27:08 -05:00
Jeff Mitchell
72418cdbeb Merge pull request #904 from hashicorp/policy-doc
Update documentation with policy fetching information.
2016-01-05 10:26:53 -06:00
Jeff Mitchell
a925e5cddd Update documentation with policy fetching information. 2016-01-05 11:26:19 -05:00
Jeff Mitchell
e056575c3b Use int64 for converting time values, not int (will be float64 in JSON anyways, so no need to lose precision, plus could hit a 32-bit max in some edge cases) 2016-01-04 17:11:22 -05:00
Jeff Mitchell
d603069068 changelog++ 2016-01-04 17:01:32 -05:00
Jeff Mitchell
45ec0e2342 Merge pull request #896 from hashicorp/last-renewal-time
Store a last renewal time in the token entry and return it upon lookup
2016-01-04 16:00:21 -06:00
Jeff Mitchell
922293413e Address review feedback; move storage of these values to the expiration manager 2016-01-04 16:43:07 -05:00
Jonathan Thomas
e336b35ab4 Merge pull request #888 from aedotj/patch-1
Fixed "edit this page" not clickable
2016-01-04 11:29:21 -08:00
Jeff Mitchell
139ab81f58 update init/rekey documentation around keybase entries 2016-01-04 14:17:51 -05:00
Jeff Mitchell
592e1e5631 changelog++ 2016-01-04 14:14:51 -05:00
Jeff Mitchell
f8493b09df Merge pull request #901 from hashicorp/keybase-pgp
Add keybase support for PGP keys.
2016-01-04 13:11:11 -06:00
Jeff Mitchell
0c98dfc922 Add returning which user names could not be looked up 2016-01-04 13:56:45 -05:00
Jeff Mitchell
38be5fcd7a Store a last renewal time in the token entry and return it upon lookup
of the token.

Fixes #889
2016-01-04 11:20:49 -05:00
Jeff Mitchell
4ac937a440 Address review feedback. 2016-01-04 11:18:04 -05:00
Jeff Mitchell
43b1105ff2 Happy New Year everyone! (Add keybase support for PGP keys.)
Keys specified in rekey and init operations can now be sourced from
keybase.io by using "keybase:[username]" as the key.
2015-12-31 20:47:41 -05:00
Jeff Mitchell
366d559161 changelog++ 2015-12-31 18:11:32 -05:00
Jeff Mitchell
66a826e6f6 Merge pull request #900 from kenjones-cisco/task/pki-doc
Fixes mis-placed html tag
2015-12-31 09:46:27 -06:00
kenjones-cisco
3438a3c9da Fixes mis-placed html tag 2015-12-31 10:37:01 -05:00
Jeff Mitchell
b0f075cc1f Disable cmd/server tests for now so we can get Travis back on track 2015-12-31 08:48:53 -05:00
Jeff Mitchell
5f49615fc1 Remove some outdated comments 2015-12-30 21:00:27 -05:00
Jeff Mitchell
2afd5072a7 Cert documentation fix.
Fixes #899
2015-12-30 16:44:24 -05:00
Jeff Mitchell
b4c923303a Move the information about the new behavior of token-renew to the breaking changes section 2015-12-30 15:29:24 -05:00
Jeff Mitchell
7b191dbf90 changelog++ 2015-12-30 15:20:02 -05:00
Jeff Mitchell
9d4c42f4dd Merge pull request #897 from hashicorp/filter-duplicate-policies
Filter out duplicate policies during token creation.
2015-12-30 14:19:09 -06:00
Jeff Mitchell
11cfa1dceb Filter out duplicate policies during token creation. 2015-12-30 15:18:30 -05:00
Jeff Mitchell
0dc4b03d5f changelog++ 2015-12-30 14:43:51 -05:00
Jeff Mitchell
314d85f297 Merge pull request #894 from hashicorp/renew-self-for-same-token
Use RenewSelf instead of Renew if the token is the same
2015-12-30 13:42:31 -06:00
Jeff Mitchell
70561c0fe2 Use RenewSelf instead of Renew if the token we're renewing is the same as the client 2015-12-30 14:41:50 -05:00
Nicki Watt
79fb12c977 Updated AWS policy help messages 2015-12-30 19:41:07 +00:00
Jeff Mitchell
c1c1dbee1e changelog++ 2015-12-30 13:28:49 -05:00
Jeff Mitchell
d4a7eb8940 Merge pull request #892 from nickithewatt/token-lookup
Make token-lookup functionality available via Vault CLI
2015-12-30 12:27:39 -06:00
Nicki Watt
375a57b975 Allow use of pre-existing policies for AWS users 2015-12-30 18:05:54 +00:00
Nicki Watt
05c9e5b5ad Make token-lookup functionality available via Vault CLI 2015-12-29 20:18:59 +00:00
Jeff Mitchell
08a5c32486 changelog++ 2015-12-29 13:18:36 -05:00
Jeff Mitchell
f8682021c5 Merge pull request #886 from ooesili/ssh-error-fetching-username
Stop panic when vault ssh username fetching fails
2015-12-29 12:17:51 -06:00
Jeff Mitchell
7d381ce8c4 Merge pull request #891 from hashicorp/issue-890
Build on GH-890 to add other types
2015-12-29 12:08:00 -06:00
Jeff Mitchell
29f04250ff Built on GH-890 to add other types 2015-12-29 13:07:24 -05:00
Jeff Mitchell
323f64b3bc Merge pull request #890 from ironSource/pki-fix
fix CA compatibility with OpenSSL
2015-12-29 12:04:03 -06:00
Jeff Mitchell
a3e6925b72 changelog++ 2015-12-29 13:03:22 -05:00
Jeff Mitchell
3dec78a4d5 Merge pull request #853 from hashicorp/issue-850
Make TokenHelper an interface and split exisiting functionality
2015-12-29 12:01:49 -06:00
Jeff Mitchell
17158a4be6 changelog++ 2015-12-29 13:00:57 -05:00
Jeff Mitchell
d224cc72a7 Merge pull request #802 from hashicorp/f-disable-tls
server: sanity check value for 'tls_disable'
2015-12-29 11:59:23 -06:00
Jeff Mitchell
eabfb472ca Merge branch 'master' into f-disable-tls 2015-12-29 12:59:02 -05:00
Jeff Mitchell
6fd1c13eca Merge pull request #882 from hashicorp/clarify-physical-support
Clarify stance on physical backend support
2015-12-29 11:40:23 -06:00
Jeff Mitchell
ffbe7c8310 changelog++ 2015-12-29 12:39:56 -05:00