aboutsummaryrefslogtreecommitdiffstats
AgeCommit message (Collapse)AuthorFilesLines
2021-07-20[OOM-K8S-CERT-EXTERNAL-PROVIDER] Refactor provider codePiotr Marcinkiewicz14-162/+245
- add csr and key params to SignCertificateModel - correct handling error when signing csr fails - create factory for SignCertificateModel Issue-ID: OOM-2753 Signed-off-by: Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com> Change-Id: I9bc296dfc999de0390ec90a00cbaa9dd82c89265
2021-07-19Merge "[OOM-CERT-SERVICE] Add CertificateDecriptionException handler"Bogumil Zebek2-0/+26
2021-07-19Merge "[OOM-CERT-SERVICE] Refactor CmpResponseValidationHelper"Bogumil Zebek2-90/+57
2021-07-19[OOM-CERT-SERVICE] Update OpenAPIPiotr Marcinkiewicz3-16/+107
- Update OpenAPI after introduction certificate update endpoint Issue-ID: OOM-2753 Signed-off-by: Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com> Change-Id: I16117a9dc9f854ba04b39ca1133c19d052e8f7db
2021-07-19[OOM-CERT-SERVICE] Add CertificateDecriptionException handlerPiotr Marcinkiewicz2-0/+26
Issue-ID: OOM-2753 Signed-off-by: Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com> Change-Id: If4f705b11cdaf1c98f49875b40eb970563d4c3dd
2021-07-16Merge "[OOM-K8S-CERT-EXTERNAL-PROVIDER] Add send update request functionality"Pawel Baniewski13-53/+273
2021-07-15[OOM-CERT-SERVICE] Refactor CmpResponseValidationHelperPiotr Marcinkiewicz2-90/+57
- move to validation package - adjust methods modifiers - remove duplicated code (getProtectedBytes) Issue-ID: OOM-2753 Signed-off-by: Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com> Change-Id: I2dd977ac136e2d1f99338f2c92b36b19651426df
2021-07-15[OOM-K8S-CERT-EXTERNAL-PROVIDER] Add send update request functionalityTomasz Wrobel13-53/+273
Issue-ID: OOM-2753 Signed-off-by: Tomasz Wrobel <tomasz.wrobel@nokia.com> Change-Id: I0637ded5c870cc66c7dc27dff269dab0f7d9015b
2021-07-15[OOM-CERT-SERVICE] Improve loggingJoanna Jeremicz6-23/+27
Issue-ID: OOM-2753 Signed-off-by: Joanna Jeremicz <joanna.jeremicz@nokia.com> Change-Id: If61f56cf0a54cc0084481613ff984ae01655c942
2021-07-15Merge "[OOM-CERT-SERVICE] Refactor CertService API code"Pawel Baniewski18-174/+276
2021-07-15Merge "[OOM-CERT-SERVICE] Fix sonar and checkstyle issues, code cleanup"Pawel Baniewski14-52/+56
2021-07-14[OOM-CERT-SERVICE] Remove CaMode from Cmpv2Server configurationRemigiusz Janeczek13-93/+19
Issue-ID: OOM-2753 Signed-off-by: Remigiusz Janeczek <remigiusz.janeczek@nokia.com> Change-Id: I10662551a315a0b38b1213513d07ab2a4ccf5326
2021-07-13[OOM-CERT-SERVICE] Refactor CertService API codePiotr Marcinkiewicz18-176/+277
- move conversion StringBase64 to PrivateKey to separate class - move protection algorithm classes to separate package - adjust modifiers and test to above changes Issue-ID: OOM-2753 Signed-off-by: Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com> Change-Id: Ifafa38162acfcd59d5177dbc478a6209e97a18e3
2021-07-13[OOM-CERT-SERVICE] Fix sonar and checkstyle issues, code cleanupRemigiusz Janeczek14-52/+56
Issue-ID: OOM-2753 Signed-off-by: Remigiusz Janeczek <remigiusz.janeczek@nokia.com> Change-Id: Id88b6b2bceba7258745e4ce999dd375fb9ce438f
2021-07-12Merge "[OOM-K8S-CERT-EXTERNAL-PROVIDER] Add check if cert should be updated"Pawel Baniewski4-3/+255
2021-07-09Merge "[OOM-CERT-SERVICE] Add Unit test for private key in pkcs1 format"Pawel Baniewski2-8/+58
2021-07-09[OOM-CERT-SERVICE] Alignment of makefileTomasz Wrobel2-6/+13
- Add more SANs to openssl request creation - Add customization of CA destination Issue-ID: OOM-2753 Signed-off-by: Tomasz Wrobel <tomasz.wrobel@nokia.com> Change-Id: I409a874983bdc7cda61195086549abc30259fb3c
2021-07-09[OOM-CERT-SERVICE] Add Unit test for private key in pkcs1 formatTomasz Wrobel2-8/+58
Issue-ID: OOM-2753 Signed-off-by: Tomasz Wrobel <tomasz.wrobel@nokia.com> Change-Id: I91000b223c30eae1cd9f4d48be9e8197e239e1d2
2021-07-08[OOM-CERT-SERVICE] Code refactorJoanna Jeremicz32-501/+543
- Rename methods names to more descriptive ones - Group classes in packages - Simplify certificate model usage in KUR (use BouncyCastle object) Issue-ID: OOM-2753 Signed-off-by: Joanna Jeremicz <joanna.jeremicz@nokia.com> Change-Id: I0507752b8d74a71ef27545648c2045f2033a330a
2021-07-08[OOM-K8S-CERT-EXTERNAL-PROVIDER] Add check if cert should be updatedRemigiusz Janeczek4-3/+255
Issue-ID: OOM-2753 Signed-off-by: Remigiusz Janeczek <remigiusz.janeczek@nokia.com> Change-Id: If0d7154b39c9ca7f9a7942f61b93725405b8f4e8
2021-07-07Merge "[OOM-CERT-SERVICE] Add Certification Request functionality"Pawel Baniewski8-22/+124
2021-07-07Merge "[OOM-K8S-CERT-EXTERNAL-PROVIDER] Format golang code"Pawel Baniewski11-29/+25
2021-07-06[OOM-K8S-CERT-EXTERNAL-PROVIDER] Format golang codeRemigiusz Janeczek11-29/+25
Issue-ID: OOM-2753 Signed-off-by: Remigiusz Janeczek <remigiusz.janeczek@nokia.com> Change-Id: I7b2f83dff5f7894b3064461b523bd94a77cac1f3
2021-07-06[OOM-CERT-SERVICE] Add Certification Request functionalityJoanna Jeremicz8-22/+124
Issue-ID: OOM-2753 Signed-off-by: Joanna Jeremicz <joanna.jeremicz@nokia.com> Change-Id: Id8702dd45254f0e82d9b71e5e69372569e523838
2021-07-05[OOM-CERT-SERVICE] Add Key Update Request functionalityTomasz Wrobel13-38/+487
Issue-ID: OOM-2753 Signed-off-by: Tomasz Wrobel <tomasz.wrobel@nokia.com> Change-Id: Icecef30b830c38606e17fbc2c502208543d048d2
2021-07-02[OOM-CERT-SERVICE] Fix EJBCA "CA with name - does not exist" errorRemigiusz Janeczek1-0/+1
When sending KUR request to EJBCA it fails with error: "CA with name - does not exist" Issue-ID: OOM-2753 Signed-off-by: Remigiusz Janeczek <remigiusz.janeczek@nokia.com> Change-Id: I19d41fd1c8718d5b7e82f361d398c1ebe2545401
2021-07-02Merge "[OOM-CERT-SERVICE] Add Certificate Update Admin role"Bogumil Zebek1-0/+7
2021-07-02[OOM-CERT-SERVICE] Fix makefile requestsRemigiusz Janeczek1-4/+4
Issue-ID: OOM-2753 Signed-off-by: Remigiusz Janeczek <remigiusz.janeczek@nokia.com> Change-Id: Ic295f805b8aea6f13b95e6c972037066471a5faa
2021-07-01Merge "[OOM-CERT-SERVICE] Add logic for KUR/CR detection"Bogumil Zebek23-135/+1246
2021-07-01Merge "[OOM-CERT-SERVICE] Modify EJBCA configuration"Bogumil Zebek3-2/+13
2021-07-01Merge "[OOM-CERT-SERVICE] Add handling cmp response when PBM value is missing."Bogumil Zebek2-20/+106
2021-07-01[OOM-CERT-SERVICE] Add logic for KUR/CR detectionRemigiusz Janeczek23-135/+1246
Issue-ID: OOM-2753 Signed-off-by: Remigiusz Janeczek <remigiusz.janeczek@nokia.com> Change-Id: I571ad3914a870dde83929cb6121c2c63a5df3ae4
2021-06-30[OOM-CERT-SERVICE] Modify EJBCA configurationJoanna Jeremicz3-2/+13
- Do not create default ManagementCA with generated UID - Create ManagementCA with hardcoded UID to allow performing KUR Issue-ID: OOM-2753 Signed-off-by: Joanna Jeremicz <joanna.jeremicz@nokia.com> Change-Id: Ief51c27200300118ffa0206ba2657504ce4bc69c
2021-06-30[OOM-CERT-SERVICE] Add handling cmp response when PBM value is missing.Tomasz Wrobel2-22/+106
Issue-ID: OOM-2753 Signed-off-by: Tomasz Wrobel <tomasz.wrobel@nokia.com> Change-Id: I38de28c994b5c83f936b3b5ea47d024a96f4733e
2021-06-30[OOM-CERT-SERVICE] Add curl requests to MakefileRemigiusz Janeczek5-0/+144
Increase max header size (default was too low for update requests) Issue-ID: OOM-2753 Change-Id: I3614d8d34ed18ae52cec8fb4f9349e170c2ac3af Signed-off-by: Remigiusz Janeczek <remigiusz.janeczek@nokia.com>
2021-06-30[OOM-CERT-SERVICE] Add Certificate Update Admin rolePiotr Marcinkiewicz1-0/+7
Add Certificate Update Admin role in order to allow performing KUR/CR in EJBCA. Issue-ID: OOM-2753 Signed-off-by: Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com> Change-Id: Ib07a694c6a88d5ad58059cd331d2eddbcaf8a97b
2021-06-29Merge "[OOM-CERT-SERVICE] Add update endpoint"Bogumil Zebek4-7/+195
2021-06-29[OOM-CERT-SERVICE] Add update endpointPiotr Marcinkiewicz4-7/+195
- Add endpoint with old cert and old PK parameters for KUR/CR requests Issue-ID: OOM-2753 Signed-off-by: Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com> Change-Id: I094ce1a39a11bbb94f94e0b13ca7ff71eb99dd30
2021-06-28[OOM-CERT-SERVICE] Implement signature PKIMessage protectionPiotr Marcinkiewicz11-90/+611
- Add signature protection - Refactor password-based protection code - Add JUnit tests Issue-ID: OOM-2753 Signed-off-by: Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com> Change-Id: I398568a35e52a816c32646c8915db5c287ede401
2021-06-18Merge "Fix sonar issues"Pawel Baniewski14-69/+59
2021-06-18Merge "[OOM-CERT-SERVICE] Deprecate certServiceClient - update docs"Pawel Baniewski15-436/+249
2021-06-15Merge "[OOM-CERT-SERVICE] Fix cmpv2 issuer error when CRD is removed"Pawel Baniewski1-3/+4
2021-06-15[OOM-CERT-SERVICE] Fix cmpv2 issuer error when CRD is removedTomasz Wrobel1-3/+4
Issue-ID: OOM-2771 Signed-off-by: Tomasz Wrobel <tomasz.wrobel@nokia.com> Change-Id: I28f7a0d7fb3e7f6227b0a4ac64ca45c274956b8e
2021-06-10[OOM-CERT-SERVICE] Deprecate certServiceClient - update docsPiotr Marcinkiewicz15-436/+249
- Remove certServiceClient description from docs - Move descrption of CMPv2 provider to "How to use functionality" - Update description of getting certs for CertService in OOM - Update certService version to 2.4.0 Issue-ID: OOM-2744 Signed-off-by: Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com> Change-Id: I283755b8fbd579646f979c88ea3022266855c4dc
2021-06-10Fix sonar issuesRemigiusz Janeczek14-69/+59
Issue-ID: OOM-2764 Signed-off-by: Remigiusz Janeczek <remigiusz.janeczek@nokia.com> Change-Id: Iab71cbcac1982207e6f29b4b046280ad27143e03
2021-06-02Merge "[OOM-CERT-SERVICE] Configure EJBCA to handle Key Update Request"Bogumil Zebek1-1/+5
2021-06-01Deprecate certServiceClientRemigiusz Janeczek4-6/+9
- disable certServiceClient submodule - set fixed version for certServiceClient image usage Issue-ID: OOM-2744 Signed-off-by: Remigiusz Janeczek <remigiusz.janeczek@nokia.com> Change-Id: Ibfca21ffe4310e7a5d124853c4b33c1c481f10a8
2021-06-01[OOM-CERT-SERVICE] Configure EJBCA to handle Key Update RequestPiotr Marcinkiewicz1-1/+5
Change RA response protection from pbe to signature, set HMAC and End entity certificate authentication in order to enable Key Update Request in EJBCA. Set default CA, which will sign Confirmation Response message. Issue-ID: OOM-2753 Signed-off-by: Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com> Change-Id: I1ab13b0a55711291a8c2a1448ae3497747348d67
2021-05-11[OOM-CERT-SERVICE] Update EJBCA image tag to 7.4.3.2Tomasz Wrobel1-1/+1
Issue-ID: OOM-2649 Signed-off-by: Tomasz Wrobel <tomasz.wrobel@nokia.com> Change-Id: I1c1d650b5bb85aa5a235f1e9476475e30a90987c
2021-02-24Create Honolulu release noteshonoluluPiotr Marcinkiewicz1-21/+28
Issue-ID: REQ-601 Signed-off-by: Piotr Marcinkiewicz <piotr.marcinkiewicz@nokia.com> Change-Id: I4bbce41cb8e9dde9f90ad8eb8e3f1a85d0ea94fa