aboutsummaryrefslogtreecommitdiff
AgeCommit message (Collapse)Author
2008-04-17openssl-SNAP-20080417Rob Austein
svn path=/openssl/Makefile; revision=1671
2008-04-17regenRob Austein
svn path=/rpkid/biz-certs/Alice-CA.cer; revision=1670
2008-04-16regenRob Austein
svn path=/docs/rpki-db-schema.pdf; revision=1669
2008-04-16Rework ROA generation and maintenance.Rob Austein
svn path=/docs/left-right-xml; revision=1668
2008-04-15CleanupRob Austein
svn path=/rpkid/rpki/left_right.py; revision=1665
2008-04-15Add code to cope with transient joins in the cert tree during keyRob Austein
rollover. svn path=/rcynic/rcynic.c; revision=1662
2008-04-14Rework ROA reissue and withdrawal code, not well-tested yet but atRob Austein
least in theory it may be right this time. svn path=/rpkid/rpki/left_right.py; revision=1661
2008-04-12Checkpoint. "make test" works again, but ROA maintenance code isn'tRob Austein
really right yet. svn path=/rpkid/rpki/left_right.py; revision=1658
2008-04-11regenRob Austein
svn path=/docs/rpki-db-schema.pdf; revision=1657
2008-04-11Checkpoint. Initial ROA generation working, no maintenance yet.Rob Austein
svn path=/docs/rpki-db-schema.sql; revision=1656
2008-04-11regenRob Austein
svn path=/docs/rpki-db-schema.pdf; revision=1655
2008-04-11Checkpoint. ROA generation almost working, but not quite.Rob Austein
This checkpoint breaks "make test", will be fixed shortly. svn path=/docs/left-right-xml; revision=1654
2008-04-11CleanupRob Austein
svn path=/rpkid/testbed.py; revision=1653
2008-04-11Checkpoint. Partial support for route_origin in testbed.Rob Austein
svn path=/rpkid/testbed.1.yaml; revision=1652
2008-04-11CheckpointRob Austein
svn path=/rpkid/rpki/gctx.py; revision=1651
2008-04-10Crude version of HTTPS trust anchor cacheRob Austein
svn path=/rpkid/rpki/gctx.py; revision=1648
2008-04-10Allow multiple "trusted" certs.Rob Austein
svn path=/rpkid/rpki/cms.py; revision=1647
2008-04-10regenRob Austein
svn path=/rpkid/INSTALLATION; revision=1646
2008-04-09CleanupRob Austein
svn path=/pow/POW-0.7/POW.c; revision=1645
2008-04-09openssl-SNAP-20080409Rob Austein
svn path=/openssl/Makefile; revision=1644
2008-04-09Switch to using new CMS routines.Rob Austein
svn path=/rpkid/irbe-setup.py; revision=1643
2008-04-09First cut at new CMS code, not yet tested. So far this is just aRob Austein
clone of the PKCS7 code, whacked with a stick until it compiles. svn path=/pow/POW-0.7/POW.c; revision=1642
2008-04-09regenRob Austein
svn path=/docs/rpki-db-schema.pdf; revision=1641
2008-04-09First stage of rototill to support new trust anchor model.Rob Austein
svn path=/docs/left-right-xml; revision=1640
2008-04-08regenRob Austein
svn path=/docs/rpki-db-schema.pdf; revision=1639
2008-04-08Oops, missed this in previous checkinRob Austein
svn path=/docs/left-right-xml; revision=1638
2008-04-08Per RobK, save generated BSC pkcs10_request in SQL and get rid ofRob Austein
useless public_key field. svn path=/rpkid/Makefile; revision=1637
2008-04-08CleanupRob Austein
svn path=/rpkid/rpki/pkcs10.py; revision=1636
2008-04-08Use key and cert from BSC in up-down requestRob Austein
svn path=/rpkid/rpki/left_right.py; revision=1635
2008-04-08regenRob Austein
svn path=/docs/rpki-db-schema.pdf; revision=1634
2008-04-08CleanupRob Austein
svn path=/docs/rpki-db-schema.pdf; revision=1633
2008-04-08CleanupRob Austein
svn path=/rpkid/README; revision=1632
2008-04-08CleanupRob Austein
svn path=/rpkid/rpki/gctx.py; revision=1629
2008-04-07Hideously inefficient first cut at dynamic TLS trust anchor handling.Rob Austein
With this enabled, client certificate validation finally works. Efficiency issues deferred until new trust anchor model is in place, since it will need to be rewritten at that point anyway. svn path=/rpkid/rpki/gctx.py; revision=1628
2008-04-07Checkpoint. Add (untested) ability to call out for a dynamicRob Austein
x509Store verifier object. svn path=/rpkid/cronjob.py; revision=1627
2008-04-06Checkpoint. TLS validation now working with POW/OpenSSL, with runtimeRob Austein
flag to disable throwing of exceptions on validation failures. svn path=/rpkid/rpki/exceptions.py; revision=1626
2008-04-06Checkpoint. All TLS certificate checking temporarily disabled priorRob Austein
to replacing tlslite/Cryptlib certificate checking with POW/OpenSSL. svn path=/rpkid/rpki/https.py; revision=1625
2008-04-05CheckpointRob Austein
svn path=/rpkid/rpki/https.py; revision=1624
2008-04-03Clean up after snapshot changeRob Austein
svn path=/openssl/Makefile; revision=1576
2008-04-02Start cleaning up messy global context stuffRob Austein
svn path=/rpkid/rootd.py; revision=1571
2008-03-31Note location for client trust anchor hook.Rob Austein
svn path=/rpkid/rpki/https.py; revision=1570
2008-03-30Add Fedora package names where knownRob Austein
svn path=/rpkid/README; revision=1569
2008-03-29Forgot about deaddropRob Austein
svn path=/rpkid/README; revision=1568
2008-03-28Merge installation and operation instructions into internals manualRob Austein
svn path=/rpkid/INSTALLATION; revision=1567
2008-03-28Switch to using OpenSSL HEAD snapshot, for the new CMS codeRob Austein
svn path=/openssl/Makefile; revision=1566
2008-03-27Finally got client cert checks working with tlslite -- then promptlyRob Austein
disabled them again in testbed.py (commented out in generated config), because I need to rework the internal trust anchor setup before the up-down protocol will have a prayer of working with this enabled. svn path=/rpkid/OPERATION; revision=1565
2008-03-27Add revoked_cert table and rototill child_cert revocation code to useRob Austein
it. Enable MySQLdb exceptions, whack resulting problem with MySQL DATETIME object conversion repeatedly with a blunt object. svn path=/docs/rpki-db-schema.pdf; revision=1564
2008-03-25Apparently some Linux distributions have "gzip" but don't have "gzcat"Rob Austein
svn path=/openssl/Makefile; revision=1563
2008-03-24Support verification of CMS without bundled EE cert.Rob Austein
svn path=/pow/POW-0.7/POW.c; revision=1562
2008-03-24Post-IETF notesRob Austein
svn path=/rpkid/README; revision=1561