Matthew Irish
c722bc0e39
UI - make engine list more consistent with the auth method list ( #4598 )
...
* remove expanding behavior from engines list and add a configuration route
* use page header component, secret tab component for the template on the secret engine configuration route
* move abstraction to secret-list-header and remove secret-tabs
* add attrs to secret engine model and adjust mount controller code to support that
* fix top level nav so that we can use the back button properly
* fix tests
2018-05-23 11:25:52 -05:00
Jeff Mitchell
0545944fc5
Interactive server now uses kvv2 so update text
2018-05-23 09:59:52 -04:00
Jeff Mitchell
7dd05ab2b8
changelog++
2018-05-23 09:57:27 -04:00
Jeff Mitchell
3dcd5a2a17
Add missing flags to KV commands and simplify boilerplate ( #4617 )
2018-05-23 09:56:47 -04:00
Chris Hoffman
c42adad873
remove incorrect parameter
2018-05-23 08:58:27 -04:00
Matthew Irish
1a9e7287df
Update CHANGELOG.md
2018-05-22 16:52:28 -05:00
Matthew Irish
42b329eb25
fix issue where unwrapping a response with an auth block wouldn't work ( #4611 )
2018-05-22 16:49:29 -05:00
Jeff Mitchell
1fb28cf398
Add a switch for the demo server to use version 2 kv mount by default
2018-05-22 17:31:36 -04:00
Chris Hoffman
a43143889e
changelog++
2018-05-22 16:52:18 -04:00
Jeff Mitchell
8011cfe703
Update to TrustedCAFile for etcd as CAFile is deprecated and removed in latest libs
2018-05-22 15:46:39 -04:00
Jeff Mitchell
674c107ad4
Specify go-oidc v2 for update-deps
2018-05-22 15:42:54 -04:00
Becca Petrin
8b4f412299
Fix possible nil pointer on mapping method ( #4609 )
2018-05-22 12:10:36 -07:00
Yoko
d67e3b3200
Seal Wrap / FIPS 140-2 Compliance guide ( #4558 )
...
* WIP - Seal Wrap guide
* WIP: Seal Wrap guide
* Added a brief description about the Seal Wrap guide
* Incorporated feedbacks
* Updated FIPS language
Technically everything looks great. I've updated some of the language here as "compliance" could be interpreted to mean that golang's crypto and xcrypto libraries have been certified compliant with FIPS. Unfortunately they have not, and Leidos' cert is only about how Vault can operate in tandem with FIPS-certified modules.
It's a very specific update, but it's an important one for some VE customers.
Looks great - thanks!
* Removed 'Compliance' from title
* typo fix
2018-05-22 11:23:11 -07:00
Jeff Mitchell
c0275a3c7d
Add instructions for both kvv1 and kvv2 to getting started policies info
2018-05-22 14:07:12 -04:00
Yoko
500cb5737c
Mount Filters guide ( #4536 )
...
* WIP: Mount filter guide
* WIP
* Mount filter guide for CLI, API, and UI
* updated the next step
* Updated the verification steps
* Added a note about the unseal key on secondaries
* Added more details
* Added a reference to mount filter guide
* Added a note about generating a new root token
* Added a note about local secret engine
2018-05-22 08:57:36 -07:00
Jeff Mitchell
4c6fb7b19c
changelog++
2018-05-22 10:39:24 -04:00
Chris Hoffman
25df1c28e4
updating link
2018-05-22 10:00:20 -04:00
Dan Brown
4fc853a04a
Fix typo ( #4607 )
2018-05-22 08:30:13 -04:00
Becca Petrin
6c4266e553
move fields and field parsing to helper ( #4603 )
2018-05-21 17:04:26 -07:00
Chris Hoffman
e614cadbe5
adding options information to mount endpoint ( #4606 )
2018-05-21 16:39:43 -04:00
madalynrose
e0652de81f
Update CHANGELOG.md
2018-05-21 14:54:05 -04:00
madalynrose
6888781969
update hmac form and component to use 'algorithm' instead of 'hash-algorithm' ( #4604 )
2018-05-21 14:50:54 -04:00
Becca Petrin
ca2bdbb8c0
Restrict userpass logins & tokens by CIDR ( #4557 )
2018-05-21 11:47:28 -07:00
Brian Kassouf
e49e261f8c
Don't reload singleton mounts ( #4593 )
2018-05-21 11:05:04 -07:00
Jeff Mitchell
c368238fe0
changelog++
2018-05-21 09:21:24 -04:00
Jeff Mitchell
1fa5e18d44
Make description of prehashed a bit more friendly
2018-05-21 09:08:22 -04:00
Jeff Mitchell
fdf368c843
changelog++
2018-05-19 13:25:27 -04:00
Jeff Mitchell
157a14e7f9
Fix role writing not allowing key_type of any ( #4596 )
...
Fixes #4595
2018-05-19 10:24:43 -07:00
Jeff Mitchell
ec24d3d2f7
Update key_type parameter description
2018-05-19 12:20:37 -04:00
Jeff Mitchell
ae1732d485
Bump travis go version
2018-05-19 12:07:13 -04:00
Kevin Paulisse
7a6777b41a
Docs: Clarify that revoking token revokes dynamic secrets ( #4592 )
2018-05-18 23:27:53 -07:00
Jeff Mitchell
f85ed110d8
Update issue templates
2018-05-18 17:49:30 -04:00
Jeff Mitchell
ae41ad84ec
Update issue templates
2018-05-18 17:46:31 -04:00
Jeff Mitchell
20ca95e593
Update issue templates
2018-05-18 17:20:36 -04:00
Jeff Mitchell
320edcc6b1
changelog++
2018-05-18 16:35:01 -04:00
Jeff Mitchell
787c9ee090
Use copystructure when assigning allowed/denied params from nil check ( #4585 )
...
Fixes #4582
2018-05-18 13:33:49 -07:00
Calvin Leung Huang
a9daf49553
Optimize revokeSalted by not calling view.List twice ( #4465 )
...
* Optimize revokeSalted by not calling view.List twice
* Minor comment update
* Do not go through the orphaning dance if we are revoking the entire tree
* Update comment
2018-05-18 12:14:42 -07:00
Calvin Leung Huang
3a95aa55b9
Use a token store with an initialized exp mananger in TestTokenStore_RevokeSelf ( #4590 )
2018-05-18 12:13:37 -07:00
Jeff Mitchell
d991bc1917
Update go-retryablehttp de
2018-05-18 15:11:44 -04:00
Calvin Leung Huang
36837d8009
Return as internal error on failed token lookup ( #4589 )
2018-05-18 10:14:31 -07:00
Jeff Mitchell
cd46a01f24
Update command in UI DR guide to non-deprecated version ( #4588 )
2018-05-18 09:43:12 -07:00
Jeff Mitchell
f6b6ce1837
Add missing drsecondarycode to health API docs
2018-05-18 12:39:13 -04:00
Calvin Leung Huang
6bea768f0e
Return ts.Lookup error on handleCreateCommon ( #4587 )
...
* Return ts.Lookup error on handleCreateCommon
* Fix test
2018-05-18 09:30:03 -07:00
Jeff Mitchell
2f97c3017f
Flip documented resolve_aws_unique_id value
...
Fixes #4583
2018-05-18 12:05:52 -04:00
Reid Wiggins
668e2358aa
Add documentation for MySQL 5.6 root rotation ( #4584 )
...
The default root rotation statement for MySQL is only valid for 5.7 and
up. This commit adds example documentation for 5.6.
Fixes #4567
2018-05-18 08:56:11 -07:00
Romain Vrignaud
5e62b26f10
Rename Google Container Engine to Google Kubernetes Engine ( #4586 )
2018-05-18 08:19:56 -07:00
Martin Hrabovcin
358aabab95
physical/zookeeper: Re-try to release lock in case of failure ( #4569 )
2018-05-17 15:52:50 -07:00
Jeff Mitchell
91b9ffdb33
Merge pull request #4580 from tavislikedavis/patch-1
...
Update policies.html.md
2018-05-17 09:14:35 -07:00
Jeff Mitchell
15a365c76f
Updated for new syntax
2018-05-17 09:14:12 -07:00
Jeff Mitchell
2a6f08a0b8
Merge pull request #4575 from avoidik/patch-2
...
Add more essential notes into production hardening guide
2018-05-17 09:05:34 -07:00