Search Options

Results per page
Sort
Preferred Languages
Advance

Results 11 - 20 of 49 for crl (0.02 sec)

  1. tests/integration/security/egress_gateway_origination_test.go

    				CaCert:      file.AsStringOrFail(t, path.Join(env.IstioSrc, "tests/testdata/certs/dns/root-cert.pem")),
    				Crl:         file.AsStringOrFail(t, path.Join(env.IstioSrc, "tests/testdata/certs/ca.crl")),
    			}, false)
    
    			// Configured with dummy CRL
    			ingressutil.CreateIngressKubeSecret(t, credWithDummyCRL, ingressutil.Mtls, ingressutil.IngressCredential{
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Mon Apr 08 22:02:59 UTC 2024
    - 15.4K bytes
    - Viewed (0)
  2. pilot/pkg/xds/sds_test.go

    		"kubernetes://generic", "kubernetes://generic-mtls", "kubernetes://generic-mtls-cacert",
    		"kubernetes://generic-mtls-split", "kubernetes://generic-mtls-split-cacert", "kubernetes://generic-mtls-crl",
    		"kubernetes://generic-mtls-crl-cacert",
    	}
    	cases := []struct {
    		name                 string
    		proxy                *model.Proxy
    		resources            []string
    		request              *model.PushRequest
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Mon May 13 20:55:20 UTC 2024
    - 17.7K bytes
    - Viewed (0)
  3. pilot/pkg/security/model/authentication_test.go

    							ResourceApiVersion: core.ApiVersion_V3,
    						},
    					},
    				},
    			},
    		},
    		{
    			name: "MTLSStrict using SDS with CRL",
    			node: &model.Proxy{
    				Metadata: &model.NodeMetadata{},
    			},
    			validateClient: true,
    			crl:            "/custom/path/to/crl.pem",
    			expected: &auth.CommonTlsContext{
    				TlsCertificateSdsSecretConfigs: []*auth.SdsSecretConfig{
    					{
    						Name: "default",
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Tue Feb 20 22:39:21 UTC 2024
    - 18.9K bytes
    - Viewed (0)
  4. releasenotes/notes/crl_support.yaml

    kind: feature
    area: security
    docs:
      - https://docs.google.com/document/d/13LNbJnLHe_prlOg7sPr77PjLiIuGj452/edit?usp=sharing&ouid=105743966233121608166&rtpof=true&sd=true
    releaseNotes:
      - |
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Wed May 24 20:21:48 UTC 2023
    - 308 bytes
    - Viewed (0)
  5. src/crypto/x509/parser.go

    		return nil, errors.New("x509: malformed tbs crl")
    	}
    	rl.RawTBSRevocationList = tbs
    	if !tbs.ReadASN1(&tbs, cryptobyte_asn1.SEQUENCE) {
    		return nil, errors.New("x509: malformed tbs crl")
    	}
    
    	var version int
    	if !tbs.PeekASN1Tag(cryptobyte_asn1.INTEGER) {
    		return nil, errors.New("x509: unsupported crl version")
    	}
    	if !tbs.ReadASN1Integer(&version) {
    Registered: Wed Jun 12 16:32:35 UTC 2024
    - Last Modified: Wed May 22 21:00:16 UTC 2024
    - 38.5K bytes
    - Viewed (0)
  6. pilot/pkg/security/model/authentication.go

    	if validateClient {
    		defaultValidationContext := &tls.CertificateValidationContext{
    			MatchSubjectAltNames: matchSAN,
    		}
    		if crl != "" {
    			defaultValidationContext.Crl = &core.DataSource{
    				Specifier: &core.DataSource_Filename{
    					Filename: crl,
    				},
    			}
    		}
    		tlsContext.ValidationContextType = &tls.CommonTlsContext_CombinedValidationContext{
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Thu Mar 28 22:11:02 UTC 2024
    - 9.9K bytes
    - Viewed (0)
  7. tests/integration/security/sds_ingress/util/util.go

    	// The ID/name for the CRL in kubernetes tls secret
    	tlsScrtCaCrl = "ca.crl"
    	// The ID/name for the certificate chain in kubernetes generic secret.
    	genericScrtCert = "cert"
    	// The ID/name for the private key in kubernetes generic secret.
    	genericScrtKey = "key"
    	// The ID/name for the CA certificate in kubernetes generic secret.
    	genericScrtCaCert = "cacert"
    	// The ID/name for the CRL in kubernetes generic secret.
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Tue Jul 25 05:12:36 UTC 2023
    - 20.2K bytes
    - Viewed (0)
  8. tests/integration/security/sds_ingress/util/test_certs.go

    w21DvYLg8JkRxIjsm0VE2tfgv4+tJp3zHmjSK+kXmK1l3ZoupGb+eThJfybswwF0
    rzf+hI4uJC+CUDYwIBBmKHAZyrFwK1Sep5jZ8YJEwDKfYEDohOdnvTonZSt/bIgJ
    O5aKK4vEyXNrqkMf
    -----END X509 CRL-----`
    	DummyCaCrlA = `-----BEGIN X509 CRL-----
    MIIC2DCBwQIBATANBgkqhkiG9w0BAQsFADBUMQswCQYDVQQGEwJVUzEPMA0GA1UE
    CAwGRGVuaWFsMQ4wDAYDVQQHDAVFdGhlcjEMMAoGA1UECgwDRGlzMRYwFAYDVQQD
    DA0qLmV4YW1wbGUuY29tFw0yMzA3MDUxNzQ0MDZaFw0zMzA3MDIxNzQ0MDZaMBQw
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Wed Jul 05 22:01:21 UTC 2023
    - 25.9K bytes
    - Viewed (0)
  9. src/crypto/x509/x509_test.go

    	if err != nil {
    		t.Fatalf("failed to parse certificate: %s", err)
    	}
    
    	want := []string{
    		"http://epscd.catcert.net/crl/ec-acc.crl",
    		"http://epscd2.catcert.net/crl/ec-acc.crl",
    	}
    	if got := cert.CRLDistributionPoints; !reflect.DeepEqual(got, want) {
    		t.Errorf("CRL distribution points = %#v, want #%v", got, want)
    	}
    }
    
    Registered: Wed Jun 12 16:32:35 UTC 2024
    - Last Modified: Wed May 22 21:00:16 UTC 2024
    - 163.4K bytes
    - Viewed (0)
  10. pilot/pkg/credentials/model.go

    type CertInfo struct {
    	// The certificate chain
    	Cert []byte
    	// The private key
    	Key []byte
    	// The oscp staple
    	Staple []byte
    	// Certificate Revocation List information
    	CRL []byte
    }
    
    type Controller interface {
    	GetCertInfo(name, namespace string) (certInfo *CertInfo, err error)
    	GetCaCert(name, namespace string) (certInfo *CertInfo, err error)
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Fri Feb 23 19:18:21 UTC 2024
    - 1.3K bytes
    - Viewed (0)
Back to top