Commit Graph
147 Commits
Author SHA1 Message Date
Seppo Yli-Olli f53c0736e8 Make acme_tiny.py executable in index
Minor tweak that makes deploying a tiny bit easier
2017-05-02 23:08:03 +03:00
Maximilian Kaul 9537453586 FIX CN parsing to work with OpenSSL 1.1
CN used to be without whitespaces around the `=` but OpenSSL 1.1 introduced
whitespaces:
1.0.1: subject=/CN=example.com
1.1.0: subject=CN = example.com

This commit makes them optional.
2017-04-27 08:21:33 +02:00
Santiago Castro 5fcb7ec8b7 Fix broken Markdown headings 2017-04-17 22:40:08 -03:00
bas@zoetekouw.net da53f51fdc fix parsing of new (?) openssl output format 2017-03-20 10:28:17 +01:00
Dick Marinus 403848e855 Add documentation and support for Red Hat openssl directories 2017-02-18 17:28:55 +01:00
Sebastian Andrzej Siewior 2f92c78c65 Don't fail on openssl 1.1 output
A subject only CN entry looks in openssl 1.0.2 and earlier like:
	Subject: CN=xxx.domain.tld

The output with 1.1.0+ differs slightly:
        Subject: CN = xxx.domain.tld

This is enough to get the script confused and to continue with zero
domains and fail later:

|Parsing account key...
|Parsing CSR...
|Registering account...
|Already registered!
|Signing certificate...
|Traceback (most recent call last):
|  File "/home/letsencrypt/acme-tiny/acme_tiny.py", line 198, in <module>
|    main(sys.argv[1:])
|  File "/home/letsencrypt/acme-tiny/acme_tiny.py", line 194, in main
|    signed_crt = get_crt(args.account_key, args.csr, args.acme_dir, log=LOGGER, CA=args.ca)
|  File "/home/letsencrypt/acme-tiny/acme_tiny.py", line 161, in get_crt
|    raise ValueError("Error signing certificate: {0} {1}".format(code, result))
|ValueError: Error signing certificate: 403 {
|  "type": "urn:acme:error:unauthorized",
|  "detail": "Error creating new cert :: Authorizations for these names not found or expired: xxx.domain.tld",
|  "status": 403
|}

With this change it should work again. Maybe the script could stop after
parsing the CSR if zero domains were found.

Signed-off-by: Sebastian Andrzej Siewior <bigeasy@linutronix.de>
2017-01-30 16:50:48 +01:00
Florian Lindner cf93f5e7f7 Make regular expression accept a whitespace after CN.
The output of OpenSSL 1.1.0c, included in Debian Testing adds a
whitespace there. Obtaining a certificate list fails that way, since the
list of domains is empty.
2016-12-04 18:14:48 +01:00
Jonas Haag 002c9e19a3 Merge branch 'master' into pypi 2.0.0 2016-09-08 15:42:29 +02:00
Daniel Roesler daba51d37e fixed key in test suite server that I had already apparently fixed in travis-ci.gethttpsforfree.com 2016-08-17 20:29:25 -07:00
Daniel Roesler 5a7b4e79bc Merge remote-tracking branch 'origin/master' 2016-08-01 12:53:22 -07:00
Daniel Roesler ecd26b1e78 updated agreement URL since Let's Encrypt is now rejecting the old agreement 2016-08-01 12:53:13 -07:00
Jakub Wilk cf6d4ad602 fix typos 2016-07-07 17:51:49 +02:00
Jonas Haag 2bbf6d9a63 Fix syntax 1.0.0 2016-04-23 21:08:15 +02:00
Jonas Haag be8e10a174 Merge branch 'master' into pypi 2016-04-23 21:04:15 +02:00
rugk bb403359a5 Readme: Only needs access to private account key
Updated Readme to reflect the fact that this script does not need access to the private TLS key.
(also added one space)
2016-04-21 09:05:48 +02:00
Kunal Mehta 25ad03a24f Include licensing information in acme_tiny.py itself
Many people simply copy the acme_tiny.py script, meaning they
lose the licensing information that is included in a separate file.

This adds one extra comment line to the top of the file stating
who the copyright owner is, and what license it is under.
2016-04-18 11:18:07 -07:00
Daniel Roesler 7a5a2558c8 Merge pull request #103 from nylen/patch-1
For challenges, redirects from HTTP -> HTTPS are fine too
2016-03-26 10:30:04 -07:00
Daniel Roesler 84308ab4a5 Let's Encrypt changed their staging server issuer common name 2016-03-26 10:24:30 -07:00
Daniel Roesler fba3cb5263 Merge pull request #109 from maghoff/patch-1
Update README.md
2016-03-26 10:16:32 -07:00
Magnus Hoff be31020b3c Update README.md
Let's Encrypt have switched to using their intermediate certificate X3 for signing, see https://letsencrypt.org/certificates/
2016-03-26 12:10:37 +01:00
James Nylen bf5d383e25 For challenges, redirects from HTTP -> HTTPS are fine too 2016-03-16 01:49:21 -05:00
Jonas Haag a9ed4bf211 Merge pull request #2 from theMarix/patch-2
Mark wheels of acme-tiny as universal
2016-02-23 08:35:28 +01:00
Matthias Bach edcaee1fa8 Mark wheels of acme-tiny as universal
Ensure that wheels created from the acme-tiny source are marked as universal.
2016-02-22 22:53:06 +01:00
Jonas Haag 00e3d3f516 Merge pull request #1 from rspeed/pypi-setuptools_scm
Added setuptools_scm for automatic versioning based on tags.
2016-02-11 10:30:39 +01:00
Rob Speed cdf1bde83d Added setuptools_scm for automatic versioning based on tags. 2016-02-10 21:53:24 -05:00
Daniel Roesler f61f72c212 Merge remote-tracking branch 'origin/master' 2015-12-29 12:43:26 -08:00
Daniel Roesler fcb7cd6f66 fixed #58, apparently .reason isn't an attribute on HTTPError in python 2.6 even though it's documented as such 2015-12-29 12:43:12 -08:00
Jonas Haag 9bc3865d8c Add setup.py 2015-12-29 14:14:49 +01:00
Daniel Roesler 32376d02f4 Merge pull request #55 from jwilk/spelling
fix typos
2015-12-26 11:41:15 -08:00
Jakub Wilk 7747bd1eb1 fix typos 2015-12-26 01:22:29 +01:00
Daniel Roesler 69a457269a fixed error reading for URLErrors and HTTPErrors 2015-12-22 15:15:01 -08:00
Daniel Roesler 9e69fa7b0f added permissions change to accomodate https://bugs.launchpad.net/ubuntu/+source/fuse/+bug/794494 2015-12-22 10:32:33 -08:00
Daniel Roesler d3c6451a4f fixed #48, handle URLErrors in addition to HTTPErrors 2015-12-22 08:38:57 -08:00
Daniel Roesler a9a1bc79a6 switched form the node script to the tiny python script 2015-12-22 08:17:03 -08:00
Daniel Roesler 33f593d060 Merge branch 'master' into pull_34 2015-12-22 08:11:21 -08:00
Daniel Roesler 039769ab3f Merge pull request #44 from RalfJung/master
Fix TypeError: 'str' does not support the buffer interface
2015-12-22 07:47:54 -08:00
Daniel Roesler 6d3002403e Merge pull request #51 from monkz/patch-1
Additional clarification for the creation of the account key
2015-12-22 07:36:33 -08:00
monkz fd9d2a8161 Additional clarification for the creation of the account key
According to #50 was the wording in Step 1 a litte ambiguous.
2015-12-19 15:10:13 +01:00
Daniel Roesler 86394c615a Merge remote-tracking branch 'origin/master' 2015-12-15 08:28:15 -08:00
Daniel Roesler ad59a79681 fixed #45, added readme with instructions on how to test 2015-12-15 08:27:57 -08:00
Ralf Jung 7f2325e49f Fix TypeError: 'str' does not support the buffer interface 2015-12-13 12:54:04 +01:00
Daniel Roesler 81e357fe81 Merge pull request #38 from reidrac/master
Fixed nginx example
2015-12-10 07:08:38 -08:00
Juan J. Martínez 24da0a1838 Fixed nginx example
server_name names is not a comma separated list host hostsnames.
2015-12-09 07:14:00 +00:00
Andreas Pfohl 7d8e06a805 Added description for converting an LE private key for acme-tiny. 2015-12-07 14:00:33 +01:00
Daniel Roesler f7aaf199e4 switched coveralls badge to use master branch 2015-12-06 02:36:32 -08:00
Daniel Roesler b37284d218 added error handling tests 2015-12-06 02:26:03 -08:00
Daniel Roesler e6cad5f0f6 added argparse to requirements for python 2.6 and removed fuse from coverage 2015-12-06 00:38:10 -08:00
Daniel Roesler e0a874203c added monkey patching via fuse for full integration test 2015-12-06 00:23:22 -08:00
Daniel Roesler dacd06f2c5 added coveralls to travis test 2015-12-05 18:58:29 -08:00
Daniel Roesler d3e807302b apparently coverage doesn't support python 3.2 2015-12-05 18:40:36 -08:00