<feed xmlns='http://www.w3.org/2005/Atom'>
<title>pki.git/base/server/cmsbundle/src/LogMessages.properties, branch master</title>
<subtitle>Unnamed repository; edit this file 'description' to name the repository.</subtitle>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/edewata/public_git/pki.git/'/>
<entry>
<title>Ticket#2737 CMC: check HTTPS client authentication cert against CMC signer</title>
<updated>2017-06-15T19:03:14+00:00</updated>
<author>
<name>Christina Fu</name>
<email>cfu@redhat.com</email>
</author>
<published>2017-06-14T21:57:10+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/edewata/public_git/pki.git/commit/?id=63c9582009b3858a6878863b9658d04c9aad45c1'/>
<id>63c9582009b3858a6878863b9658d04c9aad45c1</id>
<content type='text'>
This patch adds enforcement in CMCUserSignedAuth to make sure SSL client authentication is performed and the authenticated cert matches that of the CMC signing cert.
Some auditing adjustments are also done.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
This patch adds enforcement in CMCUserSignedAuth to make sure SSL client authentication is performed and the authenticated cert matches that of the CMC signing cert.
Some auditing adjustments are also done.
</pre>
</div>
</content>
</entry>
<entry>
<title>Added SCHEDULE_CRL_GENERATION audit event.</title>
<updated>2017-05-26T20:12:48+00:00</updated>
<author>
<name>Endi S. Dewata</name>
<email>edewata@redhat.com</email>
</author>
<published>2017-05-18T22:33:26+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/edewata/public_git/pki.git/commit/?id=c9a9fe6e31d860c089dd2b2ee584dd0d4a9b2174'/>
<id>c9a9fe6e31d860c089dd2b2ee584dd0d4a9b2174</id>
<content type='text'>
A new SCHEDULE_CRL_GENERATION audit event has been added which
will be generated when CRL generation is scheduled manually.

https://pagure.io/dogtagpki/issue/2651

Change-Id: I1e2fc307491e796e50b09550d66e5eba370d090a
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
A new SCHEDULE_CRL_GENERATION audit event has been added which
will be generated when CRL generation is scheduled manually.

https://pagure.io/dogtagpki/issue/2651

Change-Id: I1e2fc307491e796e50b09550d66e5eba370d090a
</pre>
</div>
</content>
</entry>
<entry>
<title>Added FULL_CRL_PUBLISHING audit event.</title>
<updated>2017-05-26T20:12:48+00:00</updated>
<author>
<name>Endi S. Dewata</name>
<email>edewata@redhat.com</email>
</author>
<published>2017-05-25T22:46:53+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/edewata/public_git/pki.git/commit/?id=33838ebaffcdf121c4167379f0c917b5b5b67d0e'/>
<id>33838ebaffcdf121c4167379f0c917b5b5b67d0e</id>
<content type='text'>
A new FULL_CRL_PUBLISHING audit event has been added which will
be generated when full CRL publishing is complete.

https://pagure.io/dogtagpki/issue/2651

Change-Id: I4461b03f4afd300b65e9d12c7d0bfa935b4e7082
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
A new FULL_CRL_PUBLISHING audit event has been added which will
be generated when full CRL publishing is complete.

https://pagure.io/dogtagpki/issue/2651

Change-Id: I4461b03f4afd300b65e9d12c7d0bfa935b4e7082
</pre>
</div>
</content>
</entry>
<entry>
<title>Added FULL_CRL_GENERATION audit event.</title>
<updated>2017-05-26T20:12:48+00:00</updated>
<author>
<name>Endi S. Dewata</name>
<email>edewata@redhat.com</email>
</author>
<published>2017-05-25T22:13:10+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/edewata/public_git/pki.git/commit/?id=37e6ba6d1fb24694c2744adbc27c78b749d7e35d'/>
<id>37e6ba6d1fb24694c2744adbc27c78b749d7e35d</id>
<content type='text'>
A new FULL_CRL_GENERATION audit event has been added which will
be generated when full CRL generation is complete.

https://pagure.io/dogtagpki/issue/2651

Change-Id: I74b083721e477ad72fe5a787935af617e89a6968
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
A new FULL_CRL_GENERATION audit event has been added which will
be generated when full CRL generation is complete.

https://pagure.io/dogtagpki/issue/2651

Change-Id: I74b083721e477ad72fe5a787935af617e89a6968
</pre>
</div>
</content>
</entry>
<entry>
<title>Added DELTA_CRL_PUBLISHING audit event.</title>
<updated>2017-05-26T20:12:48+00:00</updated>
<author>
<name>Endi S. Dewata</name>
<email>edewata@redhat.com</email>
</author>
<published>2017-05-25T20:53:03+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/edewata/public_git/pki.git/commit/?id=4d5ecb5dd3e1f4eabbe29ab2ddbfeb825f9f4233'/>
<id>4d5ecb5dd3e1f4eabbe29ab2ddbfeb825f9f4233</id>
<content type='text'>
A new DELTA_CRL_PUBLISHING audit event has been added which will
be generated when delta CRL publishing is complete.

https://pagure.io/dogtagpki/issue/2651

Change-Id: I38f84fc2d00ea57ef13f0ee50998da9239437372
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
A new DELTA_CRL_PUBLISHING audit event has been added which will
be generated when delta CRL publishing is complete.

https://pagure.io/dogtagpki/issue/2651

Change-Id: I38f84fc2d00ea57ef13f0ee50998da9239437372
</pre>
</div>
</content>
</entry>
<entry>
<title>Added DELTA_CRL_GENERATION audit event.</title>
<updated>2017-05-26T20:12:47+00:00</updated>
<author>
<name>Endi S. Dewata</name>
<email>edewata@redhat.com</email>
</author>
<published>2017-05-18T17:38:20+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/edewata/public_git/pki.git/commit/?id=e3f64ea8ca4ec231a954076a7f6b05dfc626ff1b'/>
<id>e3f64ea8ca4ec231a954076a7f6b05dfc626ff1b</id>
<content type='text'>
A new DELTA_CRL_GENERATION audit event has been added which will
be generated when delta CRL generation is complete.

https://pagure.io/dogtagpki/issue/2651

Change-Id: Ic4759ac2d90b6915443587708292d0f51e11345f
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
A new DELTA_CRL_GENERATION audit event has been added which will
be generated when delta CRL generation is complete.

https://pagure.io/dogtagpki/issue/2651

Change-Id: Ic4759ac2d90b6915443587708292d0f51e11345f
</pre>
</div>
</content>
</entry>
<entry>
<title>Encapsulate server side keygen audit events</title>
<updated>2017-05-25T14:40:47+00:00</updated>
<author>
<name>Ade Lee</name>
<email>alee@redhat.com</email>
</author>
<published>2017-05-25T03:42:41+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/edewata/public_git/pki.git/commit/?id=2a947446b81d21758ffadbae905a49e8c4e900ef'/>
<id>2a947446b81d21758ffadbae905a49e8c4e900ef</id>
<content type='text'>
This encapsulates key gen events for the token servlets.
Consolidated the success and failure cases.  Note that this
event can likely later be replaced with security_data_keygen
events.  Leaving separate for now.

Change-Id: I6caaeb2231fd2f7410eade03cb5fa93d66444bbf
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
This encapsulates key gen events for the token servlets.
Consolidated the success and failure cases.  Note that this
event can likely later be replaced with security_data_keygen
events.  Leaving separate for now.

Change-Id: I6caaeb2231fd2f7410eade03cb5fa93d66444bbf
</pre>
</div>
</content>
</entry>
<entry>
<title>Encapsulate key status change audit logs</title>
<updated>2017-05-25T14:30:12+00:00</updated>
<author>
<name>Ade Lee</name>
<email>alee@redhat.com</email>
</author>
<published>2017-05-25T02:49:24+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/edewata/public_git/pki.git/commit/?id=c88ad697138778c597cf8ce361f8ee1761bee0ab'/>
<id>c88ad697138778c597cf8ce361f8ee1761bee0ab</id>
<content type='text'>
Change-Id: I57b30cdff571056d0a95436858308872a8dc007b
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Change-Id: I57b30cdff571056d0a95436858308872a8dc007b
</pre>
</div>
</content>
</entry>
<entry>
<title>Encapsulate symmetric and asymmetric keygen audit events</title>
<updated>2017-05-24T18:49:30+00:00</updated>
<author>
<name>Ade Lee</name>
<email>alee@redhat.com</email>
</author>
<published>2017-05-24T16:31:45+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/edewata/public_git/pki.git/commit/?id=3ddc916954d712f6fe25497789925fecebef20fc'/>
<id>3ddc916954d712f6fe25497789925fecebef20fc</id>
<content type='text'>
Change-Id: Ifc8d05bd1d2d34bb0ef25877f838731bed58d00e
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Change-Id: Ifc8d05bd1d2d34bb0ef25877f838731bed58d00e
</pre>
</div>
</content>
</entry>
<entry>
<title>Make sure archivalID is passed through archival</title>
<updated>2017-05-24T15:24:34+00:00</updated>
<author>
<name>Ade Lee</name>
<email>alee@redhat.com</email>
</author>
<published>2017-05-23T16:14:06+00:00</published>
<link rel='alternate' type='text/html' href='https://fedorapeople.org/cgit/edewata/public_git/pki.git/commit/?id=de9f890133e3acc660b985e8ef5950507d341a03'/>
<id>de9f890133e3acc660b985e8ef5950507d341a03</id>
<content type='text'>
There was some confusion in the previous commit for archival
logging.  The archivalID is the id provided by the CA for the archival
and is its requestID.  This allows the cert request operation
to be tracked through the archival.

Made sure therefore, that we have two fields - one for the archivalID
and one for the requestId (which is the KRA archival request ID)

In addition, some of the archival events occur in the CA component
just before the request id sent to the KRA.  These events will not
be displayed unless the audit event is added to the CA CS.cfg.

Change-Id: I3904d42ae677d5916385e0120f0e25311b4d9d08
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
There was some confusion in the previous commit for archival
logging.  The archivalID is the id provided by the CA for the archival
and is its requestID.  This allows the cert request operation
to be tracked through the archival.

Made sure therefore, that we have two fields - one for the archivalID
and one for the requestId (which is the KRA archival request ID)

In addition, some of the archival events occur in the CA component
just before the request id sent to the KRA.  These events will not
be displayed unless the audit event is added to the CA CS.cfg.

Change-Id: I3904d42ae677d5916385e0120f0e25311b4d9d08
</pre>
</div>
</content>
</entry>
</feed>
