Search Options

Results per page
Sort
Preferred Languages
Advance

Results 1 - 10 of 809 for cacert (0.17 sec)

  1. releasenotes/notes/sds-cacert-precedence.yaml

    apiVersion: release-notes/v2
    kind: bug-fix
    area: security
    issue:
    - 29856
    releaseNotes:
    - |
      **Fixed** an issue causing a Secret named `<secret>-cacert` to have lower precedence than a Secret named `<secret>` for Gateway Mutual TLS.
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Tue Jan 05 10:55:59 UTC 2021
    - 356 bytes
    - Viewed (0)
  2. cmd/kubeadm/app/phases/certs/renewal/filerenewer.go

    type FileRenewer struct {
    	caCert *x509.Certificate
    	caKey  crypto.Signer
    }
    
    // NewFileRenewer returns a new certificate renewer that uses given CA cert and key for generating new certificates
    func NewFileRenewer(caCert *x509.Certificate, caKey crypto.Signer) *FileRenewer {
    	return &FileRenewer{
    		caCert: caCert,
    		caKey:  caKey,
    	}
    }
    
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Tue Aug 11 00:35:31 UTC 2020
    - 1.3K bytes
    - Viewed (0)
  3. security/pkg/k8s/chiron/utils.go

    	caCert, err := os.ReadFile(caCertPath)
    	if err != nil {
    		log.Errorf("failed to read CA cert, cert. path: %v, error: %v", caCertPath, err)
    		return nil, fmt.Errorf("failed to read CA cert, cert. path: %v, error: %v", caCertPath, err)
    	}
    
    	b, _ := pem.Decode(caCert)
    	if b == nil {
    		return nil, fmt.Errorf("could not decode pem")
    	}
    	if b.Type != "CERTIFICATE" {
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Fri Apr 05 18:11:22 UTC 2024
    - 9.2K bytes
    - Viewed (0)
  4. staging/src/k8s.io/apiserver/pkg/util/webhook/gencerts.sh

    openssl x509 -req -in caCertInter.csr -CA caCert.pem -CAkey caKey.pem -CAcreateserial -out caCertInter.pem -days 100000 -extensions v3_ca -extfile intermediate_ca.conf
    
    # Create an intermediate certificate authority with sha1 signature
    openssl req -new -nodes -key caKeyInter.pem -days 100000 -out caCertInterSHA1.csr -subj "/CN=${CN_BASE}_intermediate_ca"
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Fri Mar 25 15:57:40 UTC 2022
    - 5.7K bytes
    - Viewed (0)
  5. staging/src/k8s.io/apiserver/plugin/pkg/authorizer/webhook/metrics_test.go

    			serverCert: serverCert, serverKey: serverKey, serverCA: caCert,
    			expectedRegisteredStatusCode: "200",
    			expectEvalutionResult:        "success",
    			expectDurationResult:         "success",
    			expectFailOpenResult:         "",
    		},
    
    		{
    			name:       "timed out request",
    			clientCert: clientCert, clientKey: clientKey, clientCA: caCert,
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Mon Mar 04 19:01:15 UTC 2024
    - 6.6K bytes
    - Viewed (0)
  6. okhttp/src/main/kotlin/okhttp3/internal/tls/BasicTrustRootIndex.kt

        for (caCert in caCerts) {
          map.getOrPut(caCert.subjectX500Principal) { mutableSetOf() }.add(caCert)
        }
        this.subjectToCaCerts = map
      }
    
      override fun findByIssuerAndSignature(cert: X509Certificate): X509Certificate? {
        val issuer = cert.issuerX500Principal
        val subjectCaCerts = subjectToCaCerts[issuer] ?: return null
    
        return subjectCaCerts.firstOrNull {
    Registered: Sun Jun 16 04:42:17 UTC 2024
    - Last Modified: Mon Jan 08 01:13:22 UTC 2024
    - 1.8K bytes
    - Viewed (0)
  7. staging/src/k8s.io/apiserver/plugin/pkg/authenticator/token/webhook/metrics_test.go

    			clientCert: clientCert, clientKey: clientKey, clientCA: caCert,
    			serverCert: serverCert, serverKey: serverKey, serverCA: caCert,
    			expectedRegisteredStatusCode: "200",
    		},
    
    		{
    			name:       "an internal error returned from the webhook",
    			clientCert: clientCert, clientKey: clientKey, clientCA: caCert,
    			serverCert: serverCert, serverKey: serverKey, serverCA: caCert,
    			authnFakeServiceStatusCode:   500,
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Tue Jun 29 07:49:14 UTC 2021
    - 3.7K bytes
    - Viewed (0)
  8. pilot/pkg/bootstrap/istio_ca_test.go

    }
    
    func createCASecret(t test.Failer, client kube.Client) {
    	var caCert, caKey, certChain, rootCert []byte
    	var err error
    	if caCert, err = readSampleCertFromFile("ca-cert.pem"); err != nil {
    		t.Fatal(err)
    	}
    	if caKey, err = readSampleCertFromFile("ca-key.pem"); err != nil {
    		t.Fatal(err)
    	}
    	if certChain, err = readSampleCertFromFile("cert-chain.pem"); err != nil {
    		t.Fatal(err)
    	}
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Tue Oct 31 14:48:28 UTC 2023
    - 4.3K bytes
    - Viewed (0)
  9. staging/src/k8s.io/apiserver/pkg/admission/plugin/webhook/testcerts/gencerts.sh

    openssl x509 -req -in server.csr -CA CACert.pem -CAkey CAKey.pem -CAcreateserial -out ServerCert.pem -days 100000 -extensions v3_req -extfile server.conf
    
    # Create a client certiticate
    openssl genrsa -out ClientKey.pem 2048
    openssl req -new -key ClientKey.pem -out client.csr -subj "/CN=${CN_BASE}_client" -config client.conf
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Thu Jan 24 05:55:09 UTC 2019
    - 3.5K bytes
    - Viewed (0)
  10. cmd/kubeadm/app/util/certs/util.go

    func GetSparseCertTestCases(t *testing.T) []CertTestCase {
    
    	caCert, caKey := CreateCACert(t)
    	fpCACert, fpCAKey := CreateCACert(t)
    	etcdCACert, etcdCAKey := CreateCACert(t)
    
    	fpCert, fpKey, _ := CreateTestCert(t, fpCACert, fpCAKey, certutil.AltNames{})
    
    	return []CertTestCase{
    		{
    			Name: "nothing present",
    		},
    		{
    			Name: "CAs already exist",
    			Files: PKIFiles{
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Wed May 01 16:01:49 UTC 2024
    - 9.1K bytes
    - Viewed (0)
Back to top