Mauro Morales
0e56e52cbf
Bump go to 1.20
...
Signed-off-by: Mauro Morales <mauro.morales@spectrocloud.com >
2023-03-29 14:28:45 +02:00
Dimitris Karakasilis
0c236b6145
Let OnFailure handle abnormal VM termination
...
now that peg gracefully terminates the VM when `Destroy` is called.
Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me >
2023-02-14 16:15:11 +02:00
Dimitris Karakasilis
d390f77688
Bump peg (after merging PR#9)
...
Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me >
2023-02-14 10:48:08 +02:00
Dimitris Karakasilis
266c4f20e9
Handle unexpected VM exit better and use a core image with working DNS
...
Also print serial output when something goes wrong
Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me >
2023-02-14 10:09:46 +02:00
Dimitris Karakasilis
d875e54171
Implement pinned certs
...
Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me >
2023-02-09 11:48:59 +02:00
Dimitris Karakasilis
e9433d2ba7
Move challenger server inside the cluster and serve with TLS
...
Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me >
2023-02-09 11:48:59 +02:00
Dimitris Karakasilis
7dc1e39ac7
Implement an e2e test suite for kcrypt encryption
...
Scenarios based on docs: https://kairos.io/docs/advanced/partition_encryption/
Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me >
2023-02-02 11:48:44 +02:00
Ettore Di Giacinto
91c24586ea
Improve naming of functions and add comments
...
Signed-off-by: Dimitris Karakasilis <dimitris@spectrocloud.com >
2023-01-19 16:06:53 +02:00
mudler
2c8a589906
Enable local encryption, remote now partially uses TPM
...
Signed-off-by: mudler <mudler@c3os.io >
2023-01-18 23:32:27 +01:00
mudler
2603757f2c
Simplify challenge
...
Signed-off-by: mudler <mudler@c3os.io >
2023-01-18 16:09:52 +01:00
mudler
df0fb4a341
⬆️ Point to tpm-helpers
...
Signed-off-by: mudler <mudler@c3os.io >
2023-01-18 16:02:17 +01:00
Dimitris Karakasilis
72829108df
Extract client code to separate package and test it
...
- add new suite to the pipeline and fix Earthly to run tests
- read configuration from file
- the "kcrypt" section is our configuration now
- move configuration logic in `kcrypt` repository
Part of #399
Signed-off-by: Mauro Morales <mauro.morales@spectrocloud.com >
Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me >
2023-01-18 15:25:04 +02:00
Dimitris Karakasilis
83bba2f0cf
Introduce a test suite and an earthly target to run it
...
Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me >
2022-11-17 12:57:09 +02:00
Ettore Di Giacinto
7c6fa7df06
🎨 Small fixups
2022-10-13 21:35:26 +00:00
Ettore Di Giacinto
05d48347d7
Initial import
2022-10-13 20:34:44 +00:00