Dimitris Karakasilis
0d3406fa7b
Fallback to system CAs
...
No automated test for this case because it's complicated to get a
properly signed certificate in tests:
- the domain we use is sslip.io (not sure if letsencrypt would sign it)
- we need to use the letsencrypt production and that has quotas not
suitable for CI
Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>
2023-02-09 11:48:59 +02:00
Dimitris Karakasilis
1cd4d9a7af
Implement test that checks invalid cert case
...
Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>
2023-02-09 11:48:59 +02:00
Dimitris Karakasilis
d875e54171
Implement pinned certs
...
Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>
2023-02-09 11:48:59 +02:00
mudler
dfe29aa24f
Return a payload
...
Signed-off-by: mudler <mudler@c3os.io>
2023-01-24 12:03:08 +01:00
Dimitris Karakasilis
8898eb8ae9
Small refactorings (renaming vars, create constants etc)
...
Signed-off-by: Ettore Di Giacinto <ettore@spectrocloud.com>
2023-01-19 16:24:39 +02:00
Ettore Di Giacinto
91c24586ea
Improve naming of functions and add comments
...
Signed-off-by: Dimitris Karakasilis <dimitris@spectrocloud.com>
2023-01-19 16:06:53 +02:00
mudler
83f529b53d
🌱 Small fixups
...
Signed-off-by: mudler <mudler@c3os.io>
2023-01-19 14:24:33 +01:00
mudler
2c8a589906
Enable local encryption, remote now partially uses TPM
...
Signed-off-by: mudler <mudler@c3os.io>
2023-01-18 23:32:27 +01:00