Log

core/certmanager.lua @ 12967:53b0730093d8

description author age
Merge 0.12->trunk Kim Alvefur 2022-05-16
core.certmanager: Expand debug messages about cert lookups in index 0.12 Kim Alvefur 2022-05-16
net: refactor sslconfig to not depend on LuaSec Jonas Schäfer 2022-04-02
net: isolate LuaSec-specifics Jonas Schäfer 2022-04-27
Merge config-updates+check-turn from timber Matthew Wild 2022-03-04
core.certmanager: Turn soft dependency on LuaSec into a hard Kim Alvefur 2022-02-10
core.certmanager: Ensure key exists for fullchain Kim Alvefur 2022-02-21
core.certmanager: Relax certificate filename check #1713 Kim Alvefur 2022-02-14
core.certmanager: Use 'tls_profile' instead of 'tls_preset' to match documentation Kim Alvefur 2022-01-18
core.certmanager: Apply TLS preset before global settings (thanks Menel) Kim Alvefur 2022-01-18
core.certmanager: Disable DANE name checks (not needed for XMPP) Kim Alvefur 2021-09-16
core.certmanager: Add curveslist to 'old' Mozilla TLS preset Kim Alvefur 2021-12-25
core.certmanager: Check index for wildcard certs Kim Alvefur 2021-12-22
prosodyctl cert: use the indexing functions for better UX Jonas Schäfer 2021-12-21
core.certmanager: Rename preset option to 'tls_preset' Kim Alvefur 2021-12-22
core.certmanager: Add "legacy" preset for keeping previous default settings Kim Alvefur 2021-12-22
core.certmanager: Add TLS 1.3 cipher suites to Mozilla TLS presets Kim Alvefur 2021-11-03
core.certmanager: Presets based on Mozilla SSL Configuration Generator Kim Alvefur 2019-12-22
core.certmanager: Support 'use_dane' setting to enable DANE support Kim Alvefur 2021-07-18
core.certmanager: Skip service certificate lookup for https client Kim Alvefur 2021-05-27
Merge 0.11->trunk Matthew Wild 2021-05-13
certmanager: Disable renegotiation by default 0.11 Matthew Wild 2021-05-11
core.certmanager: Test for SSL options in absence of LuaSec config 0.11 Kim Alvefur 2021-04-26
core.certmanager: Attempt to directly access LuaSec config table 0.11 Kim Alvefur 2021-04-26
core.certmanager: Catch error from lfs Kim Alvefur 2021-05-07
core.certmanager: Resolve certs path relative to config dir Kim Alvefur 2021-05-07
core.certmanager: Skip directly to guessing of key from cert filename Kim Alvefur 2021-05-05
core.certmanager: Join paths with OS-aware util.paths function Kim Alvefur 2021-05-05
core.certmanager: Build an index over certificates Kim Alvefur 2021-04-10
core.certmanager: Check for complete filename Kim Alvefur 2021-04-10
core.certmanager: Add comments explaining the 'verifyext' TLS settings Kim Alvefur 2021-02-06
core.certmanager: Add TODO about LuaSec issue Kim Alvefur 2020-06-07
Merge 0.11->trunk Kim Alvefur 2020-04-13
core.certmanager: Move EECDH ciphers before EDH in default cipherstring (fixes #1513) 0.11 Kim Alvefur 2019-08-25
Merge 0.11->trunk Kim Alvefur 2020-04-10
core.certmanager: Look for privkey.pem to go with fullchain.pem (fix #1526) 0.11 Kim Alvefur 2020-04-10
core.portmanager: Fix TLS context inheritance for SNI hosts (completes SNI support) Kim Alvefur 2019-11-29
core.certmanager: Lower severity for tls config not having cert Kim Alvefur 2019-09-06
core.certmanager: Remove unused import [luacheck] Kim Alvefur 2019-08-25
Remove COMPAT with temporary luasec fork Kim Alvefur 2019-08-25
core.certmanager: Move EECDH ciphers before EDH in default cipherstring Kim Alvefur 2019-08-25
core.certmanager: Do not ask for client certificates by default Kim Alvefur 2019-03-10
Merge 0.10->trunk Kim Alvefur 2018-05-25
core.certmanager: Allow all non-whitespace in service name (fixes #1019) Kim Alvefur 2018-05-25
vairious: Add annotation when an empty environment is set [luacheck] Kim Alvefur 2018-02-28
certmanager: Check for missing certificate before key in configuration (should be marginally less confusing) Kim Alvefur 2017-12-28
certmanager: Set single curve conditioned on LuaSec advertising EC crypto support Kim Alvefur 2017-11-19
certmanager: Filter out curves not supported by LuaSec Kim Alvefur 2017-11-19
certmanager: Change table representing LuaSec capabilities to match capabilities table exposed in LuaSec 0.7 Kim Alvefur 2017-11-19
core.certmanager: Set a default curveslist [sic], fixes #879, #943, #951 if used along with luasec 0.7 and openssl 1.1 Kim Alvefur 2017-09-27
prosodyctl: cert import: Reuse function from certmanager for locating certificates and keys Kim Alvefur 2017-09-27
certmanager: Add debug logging (thanks av6) Matthew Wild 2017-09-23
certmanager: Update the 'certificates' option after the config has been reloaded (fixes #929) Kim Alvefur 2017-06-01
core.certmanager: Translate "no start line" to something friendlier (thanks santiago) Kim Alvefur 2016-11-26
core.certmanager: Split cipher list into array with comments explaining each part Kim Alvefur 2016-09-12
certmanager: Assume default config path of '.' (fixes prosodyctl check certs when not installed) Kim Alvefur 2016-07-29
certmanager: Explicitly tonumber() version number segments before doing arithmetic and avoid relying on implicit coercion (thanks David Favro) Matthew Wild 2016-03-26
certmanager: Localize tonumber Matthew Wild 2016-02-18
certmanager: Try filename.key if certificate is set to a full filename ending with .crt Kim Alvefur 2016-02-05
certmanager: Apply global ssl config later so certificate/key is not overwritten by magic Kim Alvefur 2016-02-05