Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | SSL: Update LetsEncrypt certs March 2020pedro/ssl-mar-2020 | Pedro Alvarez | 2020-03-02 | 6 | -210/+210 |
| | |||||
* | SSL: Update LetsEncrypt certs December 2019 | Pedro Alvarez | 2019-12-16 | 6 | -210/+210 |
| | |||||
* | SSL: Update LetsEncrypt certs October 2019pedro/ssl-oct-2019 | Pedro Alvarez | 2019-10-08 | 6 | -210/+210 |
| | |||||
* | SSL: Update LetsEncrypt certs July 2019 | Pedro Alvarez | 2019-07-15 | 6 | -208/+208 |
| | |||||
* | SSL: Update LetsEncrypt certs May 2019 | Pedro Alvarez | 2019-05-01 | 6 | -208/+208 |
| | |||||
* | SSL: Update LetsEncrypt certs February 2019 | Pedro Alvarez | 2019-02-11 | 6 | -210/+210 |
| | |||||
* | SSL: Update LetsEncrypt certs November 2018pedro/ssl-nov-18 | Pedro Alvarez | 2018-11-22 | 6 | -228/+214 |
| | |||||
* | SSL: Update LetsEncrypt certs September 2018 | Pedro Alvarez | 2018-09-05 | 6 | -206/+206 |
| | |||||
* | SSL: Update LetsEncrypt certs Jun 2018 | Pedro Alvarez | 2018-06-25 | 6 | -188/+208 |
| | |||||
* | SSL: Update LetsEncrypt certs March 2018 | Pedro Alvarez | 2018-03-28 | 8 | -190/+186 |
| | |||||
* | SSL: Update LetsEncrypt certs Jan 2018 | Pedro Alvarez | 2018-01-02 | 6 | -186/+186 |
| | |||||
* | SSL: Remove storyboard certs | Pedro Alvarez | 2018-01-02 | 4 | -182/+0 |
| | |||||
* | Update SSL certificates | Sam Thursfield | 2017-10-20 | 6 | -240/+234 |
| | | | | Old ones had expired | ||||
* | Add ostree.baserock.org system | Sam Thursfield | 2017-07-13 | 3 | -124/+128 |
| | | | | | | | | | | | | | This is a new instance that can be used as an artifact cache by the BuildStream build tool. Anyone can download artifacts over HTTPS. Those given SSH access to the machine can write to the artifact cache (this will likely be limited to automated build machines). DNS is now set to point cache.baserock.org and ostree.baserock.org to the HAProxy frontend. The SSL certificate for the frontend-haproxy system has been regenerated to include the cache.baserock.org and ostree.baserock.org domains. | ||||
* | Update SSL certs | Pedro Alvarez Piedehierro | 2017-05-20 | 12 | -226/+467 |
| | |||||
* | Apply manually changes from previous commit for frontend.pem | Pedro Alvarez | 2017-05-02 | 2 | -59/+96 |
| | |||||
* | certs: Make spec.bo and docs.bo part of the frontend cert | Pedro Alvarez | 2017-03-22 | 1 | -58/+59 |
| | |||||
* | Remove old SSL certificate files | Pedro Alvarez | 2017-03-17 | 2 | -196/+0 |
| | |||||
* | Add new SSL certs | Pedro Alvarez | 2017-03-17 | 3 | -0/+277 |
| | |||||
* | Add letsencrypt Root certificate | Pedro Alvarez | 2017-03-17 | 1 | -0/+58 |
| | | | | | Combination of "ISRG Root X1" and "Encrypt Authority X3" certificates downloaded from https://letsencrypt.org/certificates/ | ||||
* | certs: Add startcom CA chain certificate | Pedro Alvarez | 2015-11-11 | 1 | -0/+78 |
| | | | | | | | | These are public and can be downloaded from https://www.startssl.com/certs/ - https://www.startssl.com/certs/sub.class2.server.ca.pem - https://www.startssl.com/certs/ca.pem Change-Id: Ia2e1c2702fbd48f0f3bdd37dfc6044c5d0a94875 | ||||
* | Use HTTPS for all infrastructure. | Sam Thursfield | 2015-03-30 | 1 | -0/+118 |
This is implemented with the HAProxy frontend doing 'SSL termination'. So internal traffic between the frontend_haproxy instance and the various machines serving content is unencrypted HTTP as before, but all traffic that goes over the public internet is encrypted now. Note that storyboard.baserock.org is not behind HAProxy, and currently uses a different, self-signed certificate. Change-Id: I9140def605fe26c9c613066fa6524e3cf817f97c |