Commit Graph

68 Commits

Author SHA1 Message Date
Anderson Toshiyuki Sasaki
e1bccbcb9d Use TLS on revocation notification webhook
- Include system installed CA certificates when verifying webhook server
  certificate
- Include the CA certificates added via configuration file option
  'trusted_server_ca'

Resolves: RHEL-49601
Resolves: RHEL-51279
Resolves: RHEL-51321

Signed-off-by: Anderson Toshiyuki Sasaki <ansasaki@redhat.com>
2024-08-19 11:32:04 +02:00
Anderson Toshiyuki Sasaki
fdd9b2c51b Restore create_allowlist.sh to be the same as in RHEL-9
Resolves: RHEL-32637

Signed-off-by: Anderson Toshiyuki Sasaki <ansasaki@redhat.com>
2024-08-16 17:36:42 +02:00
Karel Srot
f688487375 Add rhel-10 gating.yaml 2024-06-24 16:05:26 +00:00
Troy Dawson
e8fbf501b8 Bump release for June 2024 mass rebuild 2024-06-24 08:53:40 -07:00
Karel Srot
4241665e37 tests: Update CI test plan for C10S
Resolves: RHEL-35979

Signed-off-by: Karel Srot <ksrot@redhat.com>
2024-05-09 15:56:26 +02:00
Sergio Correia
feee12343d
Fixes for rawhide
* Remove python3-keylime-agent subpackaged
  It had been removed upstream in 7.0.0 release

* Update dependencies:
  Add python3-jsonschema to python3-keylime
  Add openssl to keylime-base (required by the ek-openssl-verify
    script)
2024-02-12 16:38:51 +00:00
Sergio Correia
705c3a1856
Updating for Keylime release v7.9.0
- Migrated license to SPDX
2024-01-30 18:40:35 +00:00
Fedora Release Engineering
7e7a382ff3 Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild 2024-01-24 23:57:01 +00:00
Fedora Release Engineering
f2cbbd511d Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild 2024-01-21 00:16:57 +00:00
Sergio Correia
50ddc5f8cf
Updating for Keylime release v7.8.0 2023-12-05 16:00:11 +00:00
Sergio Correia
ddfaa1e3f1
Updating for Keylime release v7.7.0 2023-11-02 10:11:52 +00:00
Sergio Correia
1ff58b5d20
Updating for Keylime release v7.5.0 2023-08-24 13:25:29 +01:00
Sergio Correia
c4fb4ff4a2
Updating for Keylime release v7.3.0 2023-07-31 12:22:19 +01:00
Fedora Release Engineering
405de1f2ac Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2023-07-20 08:44:04 +00:00
Python Maint
473a0b6c4d Rebuilt for Python 3.12 2023-06-15 18:54:49 +02:00
Sergio Correia
8bd46bc758
Update test plan
Fix regex so that we will not run unwanted tests.
2023-06-06 13:50:41 -03:00
Sergio Correia
6a94ffa449
Updating for Keylime release v7.2.5 2023-06-05 07:41:04 -03:00
Sergio Correia
391573bca0
Updating for Keylime release v6.6.0 2023-02-03 09:48:41 -03:00
Sergio Correia
5173a643e7
e2e tests: do not change the tpm hash alg to sha256
That is already default, since rhbz#2114485, plus the proper way to
do it now would be creating a snippet under /etc/keylime/agent.conf.d.
2023-01-25 15:19:15 -03:00
Sergio Correia
126f6404f2
Updating for Keylime release v6.5.3 2023-01-25 14:32:00 -03:00
Fedora Release Engineering
d2197f4062 Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2023-01-19 14:24:11 +00:00
Karel Srot
75167c22c0 Ignore non-keylime AVCs on Fedora Rawhide 2022-12-12 12:48:16 +01:00
Sergio Correia
39928f5149
Proper exception handling in tornado_requests
Fixes: CVE-2022-3500
2022-12-09 09:16:37 -03:00
Sergio Correia
2ff4a57711
Do not remove tag-repository.repo 2022-12-09 09:16:37 -03:00
Karel Srot
5ce5dc11c1 Add dynamic_ref reference to e2e_tests.fmf 2022-12-01 13:14:23 +01:00
Patrik Koncity
761a2a2733 Add keylime selinux policy as subpackage and update CI 2022-10-25 08:52:11 +02:00
Sergio Correia
ca613224de Update tests branch to fedora-main 2022-09-14 08:30:55 -03:00
Sergio Correia
e6d044d7f3 Updating for Keylime release v6.4.3 2022-08-24 22:33:13 -03:00
Fedora Release Engineering
33289197f6 Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2022-07-21 15:54:20 +00:00
Sergio Correia
bee1262a8b Wrap efivar-libs dependency in a "ifarch %efi" 2022-07-11 08:05:28 -03:00
Sergio Correia
53cec23924 Fix efivar-libs dependency
- Some arches do not have efivar-libs, so let's require it
  conditionally.
2022-07-08 20:45:47 -03:00
Sergio Correia
a7cf835927 Updating for Keylime release v6.4.2
- Remove keylime-webapp and mark package as obsolete
- Configure tmpfiles.d
- Move common python dependencies to python3-keylime
- Change dependency from python3-gnupg to python3-gpg
- Use sysusers.d for handling user creation
2022-07-08 15:39:47 -03:00
Sergio Correia
15dee78736 Adjust Fedora CI test plan as per upstream 2022-07-08 15:39:47 -03:00
Sergio Correia
efa722d41d Opt in to rpmautospec 2022-07-07 12:36:01 -03:00
Python Maint
18356fdee7 Rebuilt for Python 3.11 2022-06-13 21:14:06 +02:00
Sergio Correia
47830013bc Updating for Keylime release v6.4.1 2022-06-07 09:09:27 -03:00
Karel Srot
603392c415 Adjust Fedora CI test plan to match upstream one 2022-06-07 13:34:20 +02:00
Sergio Correia
f24e892b6f Updating for Keylime release v6.4.0 2022-05-04 15:39:34 -03:00
Sergio Correia
5e0080288e Updating for Keylime release v6.3.2 2022-04-07 08:12:42 -03:00
Sergio Correia
41480cc95b Remove trailing whitespace from e2e_tests.fmf 2022-02-17 18:45:08 -03:00
Karel Srot
2082e8f4fd Added Fedora CI tmt test plan
Signed-off-by: Karel Srot <ksrot@redhat.com>
2022-02-17 20:39:08 +01:00
Sergio Correia
07fa712c02 Updating for Keylime release v6.3.1 2022-02-15 00:19:27 -03:00
Sergio Correia
2e877b5368 Add conflicts clauses for the subpackages 2022-02-08 10:14:04 -03:00
Sergio Correia
1295186eae Split keylime into subpackages
Related: rhbz#2045874 - Keylime subpackaging and agent alternatives
2022-02-07 19:44:19 -03:00
Sergio Correia
616454e3f1 Fix permissions of config file 2022-01-27 14:28:36 -03:00
Sergio Correia
727405f39c Updating for Keylime release v6.3.0 2022-01-27 13:47:55 -03:00
Fedora Release Engineering
c361f2c2b3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2022-01-20 14:27:49 +00:00
Fedora Release Engineering
00a241e8e2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_35_Mass_Rebuild
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2021-07-22 09:44:01 +00:00
Python Maint
05dc419c40 Rebuilt for Python 3.10 2021-06-04 20:08:07 +02:00
Luke Hinds
abc6f58c97 Updating for Keylime release v6.1.0 2021-03-25 14:37:26 +00:00