Merge 0.12->trunk
|
Kim Alvefur |
2022-05-16 |
core.certmanager: Expand debug messages about cert lookups in index
0.12
|
Kim Alvefur |
2022-05-16 |
net: refactor sslconfig to not depend on LuaSec
|
Jonas Schäfer |
2022-04-02 |
net: isolate LuaSec-specifics
|
Jonas Schäfer |
2022-04-27 |
Merge config-updates+check-turn from timber
|
Matthew Wild |
2022-03-04 |
core.certmanager: Turn soft dependency on LuaSec into a hard
|
Kim Alvefur |
2022-02-10 |
core.certmanager: Ensure key exists for fullchain
|
Kim Alvefur |
2022-02-21 |
core.certmanager: Relax certificate filename check #1713
|
Kim Alvefur |
2022-02-14 |
core.certmanager: Use 'tls_profile' instead of 'tls_preset' to match documentation
|
Kim Alvefur |
2022-01-18 |
core.certmanager: Apply TLS preset before global settings (thanks Menel)
|
Kim Alvefur |
2022-01-18 |
core.certmanager: Disable DANE name checks (not needed for XMPP)
|
Kim Alvefur |
2021-09-16 |
core.certmanager: Add curveslist to 'old' Mozilla TLS preset
|
Kim Alvefur |
2021-12-25 |
core.certmanager: Check index for wildcard certs
|
Kim Alvefur |
2021-12-22 |
prosodyctl cert: use the indexing functions for better UX
|
Jonas Schäfer |
2021-12-21 |
core.certmanager: Rename preset option to 'tls_preset'
|
Kim Alvefur |
2021-12-22 |
core.certmanager: Add "legacy" preset for keeping previous default settings
|
Kim Alvefur |
2021-12-22 |
core.certmanager: Add TLS 1.3 cipher suites to Mozilla TLS presets
|
Kim Alvefur |
2021-11-03 |
core.certmanager: Presets based on Mozilla SSL Configuration Generator
|
Kim Alvefur |
2019-12-22 |
core.certmanager: Support 'use_dane' setting to enable DANE support
|
Kim Alvefur |
2021-07-18 |
core.certmanager: Skip service certificate lookup for https client
|
Kim Alvefur |
2021-05-27 |
Merge 0.11->trunk
|
Matthew Wild |
2021-05-13 |
certmanager: Disable renegotiation by default
0.11
|
Matthew Wild |
2021-05-11 |
core.certmanager: Test for SSL options in absence of LuaSec config
0.11
|
Kim Alvefur |
2021-04-26 |
core.certmanager: Attempt to directly access LuaSec config table
0.11
|
Kim Alvefur |
2021-04-26 |
core.certmanager: Catch error from lfs
|
Kim Alvefur |
2021-05-07 |
core.certmanager: Resolve certs path relative to config dir
|
Kim Alvefur |
2021-05-07 |
core.certmanager: Skip directly to guessing of key from cert filename
|
Kim Alvefur |
2021-05-05 |
core.certmanager: Join paths with OS-aware util.paths function
|
Kim Alvefur |
2021-05-05 |
core.certmanager: Build an index over certificates
|
Kim Alvefur |
2021-04-10 |
core.certmanager: Check for complete filename
|
Kim Alvefur |
2021-04-10 |
core.certmanager: Add comments explaining the 'verifyext' TLS settings
|
Kim Alvefur |
2021-02-06 |
core.certmanager: Add TODO about LuaSec issue
|
Kim Alvefur |
2020-06-07 |
Merge 0.11->trunk
|
Kim Alvefur |
2020-04-13 |
core.certmanager: Move EECDH ciphers before EDH in default cipherstring (fixes #1513)
0.11
|
Kim Alvefur |
2019-08-25 |
Merge 0.11->trunk
|
Kim Alvefur |
2020-04-10 |
core.certmanager: Look for privkey.pem to go with fullchain.pem (fix #1526)
0.11
|
Kim Alvefur |
2020-04-10 |
core.portmanager: Fix TLS context inheritance for SNI hosts (completes SNI support)
|
Kim Alvefur |
2019-11-29 |
core.certmanager: Lower severity for tls config not having cert
|
Kim Alvefur |
2019-09-06 |
core.certmanager: Remove unused import [luacheck]
|
Kim Alvefur |
2019-08-25 |
Remove COMPAT with temporary luasec fork
|
Kim Alvefur |
2019-08-25 |
core.certmanager: Move EECDH ciphers before EDH in default cipherstring
|
Kim Alvefur |
2019-08-25 |
core.certmanager: Do not ask for client certificates by default
|
Kim Alvefur |
2019-03-10 |
Merge 0.10->trunk
|
Kim Alvefur |
2018-05-25 |
core.certmanager: Allow all non-whitespace in service name (fixes #1019)
|
Kim Alvefur |
2018-05-25 |
vairious: Add annotation when an empty environment is set [luacheck]
|
Kim Alvefur |
2018-02-28 |
certmanager: Check for missing certificate before key in configuration (should be marginally less confusing)
|
Kim Alvefur |
2017-12-28 |
certmanager: Set single curve conditioned on LuaSec advertising EC crypto support
|
Kim Alvefur |
2017-11-19 |
certmanager: Filter out curves not supported by LuaSec
|
Kim Alvefur |
2017-11-19 |
certmanager: Change table representing LuaSec capabilities to match capabilities table exposed in LuaSec 0.7
|
Kim Alvefur |
2017-11-19 |
core.certmanager: Set a default curveslist [sic], fixes #879, #943, #951 if used along with luasec 0.7 and openssl 1.1
|
Kim Alvefur |
2017-09-27 |
prosodyctl: cert import: Reuse function from certmanager for locating certificates and keys
|
Kim Alvefur |
2017-09-27 |
certmanager: Add debug logging (thanks av6)
|
Matthew Wild |
2017-09-23 |
certmanager: Update the 'certificates' option after the config has been reloaded (fixes #929)
|
Kim Alvefur |
2017-06-01 |
core.certmanager: Translate "no start line" to something friendlier (thanks santiago)
|
Kim Alvefur |
2016-11-26 |
core.certmanager: Split cipher list into array with comments explaining each part
|
Kim Alvefur |
2016-09-12 |
certmanager: Assume default config path of '.' (fixes prosodyctl check certs when not installed)
|
Kim Alvefur |
2016-07-29 |
certmanager: Explicitly tonumber() version number segments before doing arithmetic and avoid relying on implicit coercion (thanks David Favro)
|
Matthew Wild |
2016-03-26 |
certmanager: Localize tonumber
|
Matthew Wild |
2016-02-18 |
certmanager: Try filename.key if certificate is set to a full filename ending with .crt
|
Kim Alvefur |
2016-02-05 |
certmanager: Apply global ssl config later so certificate/key is not overwritten by magic
|
Kim Alvefur |
2016-02-05 |