136 Commits
Author SHA1 Message Date
Daniel Roesler ad7802f1c4 Merge pull request #184 from nledez/fix-typos
Fix typos in README.md
4.0.3
2018-03-17 17:04:19 -07:00
Daniel Roesler b9503e7197 Merge branch 'master' into fix-typos 2018-03-17 17:04:10 -07:00
Daniel Roesler 6058ee6e6a Merge pull request #192 from NonSecwitter/patch-1
update SSL config
2018-03-17 17:03:06 -07:00
Daniel Roesler e89444a8f9 Merge branch 'master' into patch-1 2018-03-17 17:02:49 -07:00
Daniel Roesler bdbf58154f Merge remote-tracking branch 'origin/master' 2018-03-17 16:56:55 -07:00
Daniel Roesler 31ff3267b4 Merge remote-tracking branch 'origin/master' 2018-03-17 16:56:34 -07:00
Daniel Roesler a5738ff017 merged #155, adding tiny user agent 2018-03-17 16:56:04 -07:00
Daniel Roesler ebca951674 Merge pull request #177 from nanonyme/master
Make acme_tiny.py executable in index
2018-03-17 16:51:48 -07:00
Daniel Roesler eff13b3da9 Merge pull request #174 from bryant1410/master
Fix broken headings in Markdown files
2018-03-17 16:50:50 -07:00
Daniel Roesler 2251f66980 Merge pull request #164 from meeuw/minorfixes
Add documentation and support for Red Hat openssl directories
2018-03-17 16:47:05 -07:00
Daniel Roesler 1947187152 Merge pull request #133 from jwilk-forks/spelling
fix typos
2018-03-17 16:14:55 -07:00
Daniel Roesler ddc4bc6fa3 Merge remote-tracking branch 'origin/master' 2018-03-17 16:10:29 -07:00
Daniel Roesler d1b54fa523 Merge pull request #121 from rugk/patch-1
Readme: Only needs access to private account key
2018-03-17 16:10:13 -07:00
Daniel Roesler b4704b1e17 cleaned up help and copyright text 2018-03-17 16:09:24 -07:00
Daniel Roesler 0ba9104386 Merge pull request #120 from legoktm/patch-1
Include licensing information in acme_tiny.py itself
2018-03-17 16:04:16 -07:00
Daniel Roesler 71a97aa92f fixed buffer to unicode decoding for tests 4.0.2 2018-03-17 15:02:23 -07:00
Daniel Roesler aaf1091838 added optional contact details 2018-03-17 14:56:30 -07:00
Daniel Roesler 7a4ea10d08 updated readme to note that ACME v2 certificate downloads now include the intermediate certificate 4.0.1 2018-03-17 12:10:07 -07:00
Daniel Roesler 77d33f88f5 updated test coverage to ignore new setup.py file (setup install still gets tested via test_install.py) 4.0.0 2018-03-15 22:17:30 -07:00
Daniel Roesler 51ab579635 Merge branch 'setup_merge' into ACMEv2 2018-03-15 22:03:38 -07:00
Daniel Roesler ea9823d190 removed challenge payload that is no longer needed in new acme spec 2018-03-15 21:10:12 -07:00
Daniel Roesler d1ccbecdfa consolidated external commandline execution error handling to bring back under 200 lines of code 2018-03-10 23:53:05 -08:00
Daniel Roesler 68c565ec32 added badNonce retries 2018-03-10 23:51:10 -08:00
Daniel Roesler c4b79703c8 deprecated CA url in favor of using the direct certificate authority directory url 2018-03-10 21:24:41 -08:00
Jonas Haag 54548ed442 New release 3.0.0 2018-01-23 18:25:08 +01:00
Jonas Haag 5289e321ed Merge branch 'master' into pypi 2018-01-23 18:24:08 +01:00
Daniel Roesler bb248e0012 mostly working ACMEv2, except for letsencrypt/boulder#3367 2018-01-14 17:28:42 -08:00
Jonathon Anderson d05519aeb5 update SSL config
NGINX now recommends specifying SSL on a per socket basis
2017-12-07 11:15:46 -06:00
Daniel Roesler 4ed13950c0 added python 3.6 to test coverage 2017-11-14 21:30:52 -08:00
Daniel Roesler 19b274cf38 damn python3 bytes-to-strings encoding gets you again... 2017-11-14 21:21:27 -08:00
Daniel Roesler c4940d229a switched to grabbing the agreement url from /directory, addresses #145, #148, #172, #189 2017-11-14 20:59:49 -08:00
Nicolas Ledez 27f346492b Fix typos 2017-08-24 00:42:40 +02:00
Daniel Roesler 7ef9164dc1 Merge remote-tracking branch 'pull-156/master' into travis-ci 2017-06-06 11:11:58 -07:00
Daniel Roesler 069b154748 Merge remote-tracking branch 'pull-169/ossl1.1-fixup' into travis-ci 2017-06-06 11:09:57 -07:00
Daniel Roesler 478ad3124f Merge remote-tracking branch 'pull-168/master' into travis-ci 2017-06-06 11:08:55 -07:00
Daniel Roesler 76d1c06f97 Merge branch 'travis-ci' into HEAD 2017-06-06 11:03:53 -07:00
Daniel Roesler 84ad36d886 fixed more error message case changes 2017-06-06 11:00:03 -07:00
Daniel Roesler eea72dcc17 fixed changing error message 2017-06-06 10:55:15 -07:00
Florian Lindner af025f5bf1 OpenSSL output seems to have changed another time.
Also accept a whitespace after equal sign.
2017-05-16 09:57:46 +02:00
Seppo Yli-Olli f53c0736e8 Make acme_tiny.py executable in index
Minor tweak that makes deploying a tiny bit easier
2017-05-02 23:08:03 +03:00
Maximilian Kaul 9537453586 FIX CN parsing to work with OpenSSL 1.1
CN used to be without whitespaces around the `=` but OpenSSL 1.1 introduced
whitespaces:
1.0.1: subject=/CN=example.com
1.1.0: subject=CN = example.com

This commit makes them optional.
2017-04-27 08:21:33 +02:00
Santiago Castro 5fcb7ec8b7 Fix broken Markdown headings 2017-04-17 22:40:08 -03:00
bas@zoetekouw.net da53f51fdc fix parsing of new (?) openssl output format 2017-03-20 10:28:17 +01:00
Dick Marinus 403848e855 Add documentation and support for Red Hat openssl directories 2017-02-18 17:28:55 +01:00
Sebastian Andrzej Siewior 2f92c78c65 Don't fail on openssl 1.1 output
A subject only CN entry looks in openssl 1.0.2 and earlier like:
	Subject: CN=xxx.domain.tld

The output with 1.1.0+ differs slightly:
        Subject: CN = xxx.domain.tld

This is enough to get the script confused and to continue with zero
domains and fail later:

|Parsing account key...
|Parsing CSR...
|Registering account...
|Already registered!
|Signing certificate...
|Traceback (most recent call last):
|  File "/home/letsencrypt/acme-tiny/acme_tiny.py", line 198, in <module>
|    main(sys.argv[1:])
|  File "/home/letsencrypt/acme-tiny/acme_tiny.py", line 194, in main
|    signed_crt = get_crt(args.account_key, args.csr, args.acme_dir, log=LOGGER, CA=args.ca)
|  File "/home/letsencrypt/acme-tiny/acme_tiny.py", line 161, in get_crt
|    raise ValueError("Error signing certificate: {0} {1}".format(code, result))
|ValueError: Error signing certificate: 403 {
|  "type": "urn:acme:error:unauthorized",
|  "detail": "Error creating new cert :: Authorizations for these names not found or expired: xxx.domain.tld",
|  "status": 403
|}

With this change it should work again. Maybe the script could stop after
parsing the CSR if zero domains were found.

Signed-off-by: Sebastian Andrzej Siewior <bigeasy@linutronix.de>
2017-01-30 16:50:48 +01:00
Florian Lindner cf93f5e7f7 Make regular expression accept a whitespace after CN.
The output of OpenSSL 1.1.0c, included in Debian Testing adds a
whitespace there. Obtaining a certificate list fails that way, since the
list of domains is empty.
2016-12-04 18:14:48 +01:00
Jonas Haag 002c9e19a3 Merge branch 'master' into pypi 2.0.0 2016-09-08 15:42:29 +02:00
Daniel Roesler daba51d37e fixed key in test suite server that I had already apparently fixed in travis-ci.gethttpsforfree.com 2016-08-17 20:29:25 -07:00
Daniel Roesler 5a7b4e79bc Merge remote-tracking branch 'origin/master' 2016-08-01 12:53:22 -07:00
Daniel Roesler ecd26b1e78 updated agreement URL since Let's Encrypt is now rejecting the old agreement 2016-08-01 12:53:13 -07:00