Age | Commit message (Collapse) | Author |
|
This hasn't been enabled in a while due to gRPC limitations
|
|
A config file is not required - don't error if one doesn't exist.
Don't overwrite default options with an empty string.
|
|
|
|
* Support a message to be passed and logged from client to server
|
|
* enables saving private keys
* renames public_file_prefix to key_file_prefix and updates its docs to better reflect the changes
|
|
|
|
|
|
Correct some flag strings and some format strings
Don't fatal when the client config file is missing
Make keysigner, certstore and authprovider package-level
|
|
Allow the client to save the public key and public cert to files
that start with public_file_prefix and end with .pub and -cert.pub
respectively.
This is the naming scheme the ssh IdentityFile config option supported
for certs starting in version 5.4p1. Starting in version 7.2p1, an
additional option, CertificateFile, was added, but the IdentityFile-only
method with those names still works.
Used in conjunction with a user's ~/.ssh/config file setting
IdentitiesOnly and IdentityFile, this change will allow for multiple
ssh CAs for different services.
Note that this will resolve #49 .
|
|
Use functions to build key generation options.
Make it entirely optional.
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
To allow for easier development on localhost where one cannot get a
root-CA signed TLS certificate, add a new validate_tls_certificate
option to the configuration file which optionally allows for certificate
chain checking to be disabled.
|
|
|
|
|