Commit Graph
188 Commits
Author SHA1 Message Date
Daniel Roesler c29c0f36ce added test to check for line count 2021-10-26 06:08:20 -05:00
Daniel Roesler 1858f68204 Merge remote-tracking branch 'imrejonk/python3-interpreter' into v5-python3 5.0.1 2021-09-11 13:38:35 -05:00
Daniel Roesler ce0bbdb3a1 Merge branch 'issue_241_include_contact_in_registration' 4.1.1 2021-08-21 20:59:22 -05:00
Daniel Roesler 447652afd2 compressed some lines to bring the line count back down under 200 lines, removed example cronjob in command line help since it comflicts with the README 2021-08-21 20:58:07 -05:00
Daniel Roesler fa6eafe361 added test for skipping already-valid authorizations (pull #254) 2021-08-21 20:55:35 -05:00
Daniel Roesler 0f5371306a reconfigured handling openssl configs for keys setup to remove 'ResourceWarning: unclosed file...' warnings on tests 2021-08-21 20:54:32 -05:00
Daniel Roesler 9691f8779c re-worded pull #254 a bit 2021-08-21 20:45:21 -05:00
Daniel Roesler ad9b90d711 Merge remote-tracking branch 'chref/skip_valid_auth' into pull_254 2021-08-21 20:42:25 -05:00
Daniel Roesler ffad759523 some ACME services require contact info in the initial account registration (see issue #241) 2021-08-21 17:11:36 -05:00
Daniel Roesler 3840755ae1 switched to re-generating account and cert keys every test since staging tests keep authorizations valid between tests 2021-08-21 17:08:16 -05:00
Daniel Roesler 0d97a2d35d shortened pull #260 2021-08-21 16:12:45 -05:00
Daniel Roesler 907bba2644 Merge remote-tracking branch 'Bombenleger/master' 2021-08-21 16:07:19 -05:00
Daniel Roesler 67ae60e955 Merge commit 'e2c499775a61b731bef4e45f33f2f96330b5b408' 2021-08-21 15:53:57 -05:00
Daniel Roesler 95703cfe53 re-worded staging readme section from pull #249 2021-08-21 15:31:22 -05:00
Daniel Roesler 4a58b8809c reverted changes from pull #249 2021-08-21 15:15:37 -05:00
Daniel Roesler a87fb1afc7 Merge remote-tracking branch 'steelman/dry-run' 2021-08-21 15:14:36 -05:00
Daniel Roesler 90528ddc00 added test ensuring path traversal risk is negated (see issue #262) 2021-08-14 17:45:11 -05:00
Daniel Roesler 1db3e546f4 updated README badges with new Github Actions test runner 2021-08-13 19:04:31 -05:00
Daniel Roesler fdb2c2fc6f fixed staging ssh key secret loading 2021-08-13 18:58:57 -05:00
Daniel Roesler da7839bf03 fixed staging event trigger to be manually triggered 2021-08-13 18:47:54 -05:00
Daniel Roesler a28ecc9c56 added staging workflow 2021-08-13 18:44:06 -05:00
Daniel Roesler 4b82b381fa python3.5 json loading doesn't like byte strings, apparently 2021-08-13 16:48:10 -05:00
Daniel Roesler 43c0ef7608 added pebble server setup to test runners 2021-08-13 16:39:32 -05:00
Daniel Roesler 4d617d231f added workflows for github actions to automatically test commits and pull requests 2021-08-13 15:52:22 -05:00
Daniel Roesler ee1f8a3cab updated tests to support both local letsencrypt/pebble server or staging server, increased coverage to 100% for pebble test runs, removed fuse as dependency and instead added instructions to mount remote filesystem on local instead for staging tests 2021-08-12 21:55:26 -05:00
Sven Ertel 9a8ec1db42 log the Let’s Encrypt account ID 2021-05-19 14:18:48 +02:00
Axel Beckert e2c499775a 4.x upgrade note: Mention issues with GnuTLS 3.7.0
Duplicate intermediate certificates are known to cause issues with GnuTLS 3.7.0 based clients on servers not based on GnuTLS (e.g. OpenSSL-based servers). Document this in the according upgrade note in README.md.

See https://gitlab.com/gnutls/gnutls/-/issues/1131
2020-12-08 16:34:57 +01:00
Christof Efkemann c1a57b1ab7 skip valid authorizations
Authorizations that already have a status of "valid" do not need
to be validated again (until the authorization expires).
Skipping these authorizations makes it possible to obtain certificates
for domains for which a dns-01 validation is still valid, as
acme_tiny is unable to re-validate them. (The alternative would be
to wait up to a month until the authorization expires, or use a
different acme client.)
2020-09-17 14:05:40 +02:00
Łukasz Stelmach 7604358254 Add --dry-run command line option
The --dry-run option is a shortcut

  --directory-url https://acme-staging-v02.api.letsencrypt.org/directory

to use Let's Encrypt staging environment for testing.
2020-05-18 12:15:31 +02:00
Imre Jonk 5cb59d7d51 Set interpreter to 'python3'
People over at the DebOps project encountered problems running
acme-tiny on Python 3-only systems [1]. As described in the Debian
Python Policy [2], this behaviour is expected when using the
(discouraged) 'python' interpreter. This commit modifies the shebang
line to specify the 'python3' interpreter instead.

[1] https://github.com/debops/debops/issues/1079#issuecomment-562854976
[2] https://www.debian.org/doc/packaging-manuals/python-policy/python.html#interpreter
2020-01-19 14:40:03 +01:00
Daniel Roesler 0a9afb2b72 force python 2 for conversion script, fixes issue #233 2019-12-10 07:01:02 -06:00
Daniel Roesler 58752c527c made public key parsing more robust for windows (still not officially supporting windows though), fixes issue #228 2019-12-10 06:56:04 -06:00
Daniel Roesler ea4d288699 updated wording in test for DNS error response 2019-12-10 06:51:49 -06:00
Daniel Roesler e464294c12 changed wording a bit for openssl SAN support 2019-12-10 06:50:56 -06:00
Daniel Roesler 97aaa183ad Merge remote-tracking branch 'james_master/openssl_addext' 2019-12-10 06:37:07 -06:00
Anton Berezin e6b1b1a68a Fix nginx server_name directive syntax (no commas). 2019-11-10 23:19:23 +01:00
James e9190920a7 New subjectAltName syntax in the README
Thanks to [openssl@bfa470a](https://github.com/openssl/openssl/commit/bfa470a4f64313651a35571883e235d3335054eb), we don't have to use such a cluster of a workaround to generate multi-domain CSRs

Leaving the old syntax in, however, for historical interest and for those stuck on such operating systems
2019-08-08 14:15:52 -05:00
Daniel Roesler cb094cf3ef fixed additional POST-as-GET 4.1.0 2019-07-07 08:27:06 -05:00
Daniel Roesler a6acdc2103 pointed out by @felixfontein in #222, we shouldn't delete the challenge files on errors, but we should clean them up on success 2019-07-06 21:00:59 -05:00
Felix Fontein 3f75a80d99 Also accept critical SAN extensions. 2019-07-06 20:48:30 -05:00
Daniel Roesler e9e52678ae merged #220, but switched it from using variables to using a tmp file 2019-07-06 20:47:11 -05:00
Filipe Maia 9d92a0484d Prevented the deletion of the certificate when the renewal script fails 2019-07-06 20:45:46 -05:00
Daniel Roesler f24226b15e added space for assert syntax 2019-07-06 20:35:17 -05:00
Daniel Roesler 84c71cf61e addresses #205 where @nuxi points out a situation where polling may hang indefinitely 2019-07-06 20:34:36 -05:00
Daniel Roesler b02912486a split python test versions out into their own versions since travis can't handle multiple python versions in matrixes 2019-07-06 20:08:46 -05:00
Daniel Roesler 6fb5f22e47 have to run python 3.3 in ubuntu 14.04 on travis ci 2019-07-06 20:02:22 -05:00
Daniel Roesler d86baf55d6 switched to using ubuntu 16.04 in travis test suite since it supports python 3.7 2019-07-06 19:49:22 -05:00
Daniel Roesler 1b6c6bc0e6 fixed #226, start using POST-as-GET for GET requests 2019-07-06 19:27:55 -05:00
Daniel Roesler 9b9a4d8423 added official python 3.7 support in setup.py 2019-07-06 19:26:33 -05:00
Daniel Roesler 072778cc54 added explit test for python 3.7 2019-07-06 19:22:57 -05:00