summaryrefslogtreecommitdiffstats
path: root/pki/base/common/src/com
Commit message (Collapse)AuthorAgeFilesLines
* Fix update for bugzilla bub #649343.awnuk2010-12-234-3/+20
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1665 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bugzilla Bug 491183 - rhcs rfe - add rfc 4523 support for pkiUser and pkiCA, ↵vakwetu2010-12-225-86/+510
| | | | | | obsolete 2252 and 2256 git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1663 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fixed bugzilla bug #649343.awnuk2010-12-2110-14/+193
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1659 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 663546 - Disable the functionalities that are not exposed in the consolecfu2010-12-171-1/+2
| | | | | | | - 1st patch: disable expirationTime config capability git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1643 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bugzilla Bug 661889 - The Servlet TPSRevokeCert of the CA returns an ↵jmagne2010-12-161-1/+26
| | | | | | error to TPS even if certificate in question is already revoked. git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1641 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bugzilla Bug 661196 - ECC(with nethsm) subca configuration fails with ↵jmagne2010-12-152-2/+3
| | | | | | Key Type RSA Not Matched despite using ECC key pairs for rootCA & subCA. git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1639 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 499494 - change CA defaults to SHA2 cfu2010-12-033-5/+5
| | | | | | | - fix that makes the default alg not SHA1 when new profiles are created from the Console git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1604 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 659004 - CC: AuditVerify hardcoded with SHA-1cfu2010-12-021-2/+2
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1599 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 642357 - CC Feature- Self-Test plugins only check for validitycfu2010-11-242-0/+243
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1588 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bugzilla BZ 653576 - tomcat5 does not always run filters on servlets as expectedvakwetu2010-11-244-84/+4
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1587 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 651977 - turn off ssl2 for java servers (server.xml) - patch 2cfu2010-11-222-0/+7
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1583 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bugzilla Bug 649910 - Console: an auditor or agent can be added to an ↵jmagne2010-11-191-1/+3
| | | | | | administrator group. Minor config addition. git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1528 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bugzilla Bug 649910 - Console: an auditor or agent can be added to an ↵jmagne2010-11-191-18/+47
| | | | | | administrator group. git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1526 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bug 623452 - rhcs80 pkiconsole profile policy editor limit policy ↵jmagne2010-11-1711-149/+551
| | | | | | extension to 5 only git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1520 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 499494 - change CA defaults to SHA2 (phase 1)cfu2010-11-172-3/+3
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1516 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 653713 - CC: setting trust on a CIMC cert requires auditingcfu2010-11-161-1/+28
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1505 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 642359 - CC Feature - need to verify certificate when it is addedcfu2010-11-162-19/+50
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1503 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bugzilla Bug 651916 - kra and ocsp are using incorrect ports to talk to CA ↵vakwetu2010-11-156-15/+64
| | | | | | and complete configuration in DonePanel git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1498 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bugzilla Bug 360721 - New Feature: Profile Integrity Check.jmagne2010-11-101-2/+10
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1493 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bugzilla Bug 360721 - New Feature: Profile Integrity Check . . .jmagne2010-11-102-6/+100
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1491 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 542863 - RHCS8: Default cert audit nickname written to CS.cfg files ↵cfu2010-11-092-0/+28
| | | | | | imcomplete when the cert is stored on a hsm git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1488 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* BZ651040: cloning shoud not include sslservervakwetu2010-11-091-1/+1
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1484 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bugzilla Bug 451874 - RFE - Java console - Certificate Wizard missing e.c. ↵vakwetu2010-11-049-10/+239
| | | | | | support git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1473 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bugzilla Bug 638242 - Installation Wizard: at SizePanel, fix selection of ↵vakwetu2010-11-043-98/+188
| | | | | | signature algorithm; and for ECC curves git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1471 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 648757 - expose and use updated cert verification function in JSScfu2010-11-044-42/+92
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1470 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fixed bugzilla bug #516632.awnuk2010-11-018-51/+134
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1451 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bugzilla Bug 524916 - ECC key constraints plug-ins should be based on ↵jmagne2010-10-281-33/+135
| | | | | | ECC curve names (not on key sizes). git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1448 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bugzilla Bug 630176 - Improve reliability of the LdapAnonConnFactoryjmagne2010-10-161-1/+21
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1357 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bugzilla Bug #555927 - rhcs80 - AgentRequestFilter servlet and port fowarding mharmsen2010-10-154-4/+4
| | | | | | | for agent services git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1356 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bugzilla Bug #223313 - should do random generated IV param for symmetric ↵jmagne2010-10-152-8/+12
| | | | | | keys git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1354 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 637330 - CC feature: Key Management - provide signature verification ↵cfu2010-10-134-1/+274
| | | | | | functions (JAVA subsystems) git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1350 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bugzilla Bug#539781 - rhcs 71 - CRLs Partitioned by Reason Code - ↵jmagne2010-10-091-3/+7
| | | | | | onlySomeReasons ? git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1343 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bugzilla Bug 223336 - ECC: unable to clone a ECC CAvakwetu2010-10-075-6/+37
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1337 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fixed bugzilla bug #621341awnuk2010-10-061-6/+18
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1335 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 504061 - ECC: unable to install subsystems (sub-CA, DRM, TKS, etc.) for ↵cfu2010-10-041-10/+12
| | | | | | an ECC CA (installation and starting ONLY. Run time issues are filed as separate bugs) git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1330 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 635033 - At installation wizard selecting key types other than CA's ↵cfu2010-09-262-6/+12
| | | | | | signing cert will fail git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1319 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fixed bugzilla bugs: 621327 and 621334.awnuk2010-09-211-8/+79
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1313 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 634663 - CA CMC response default hard-coded to SHA1cfu2010-09-214-12/+37
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1310 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix minor Javadoc type.jmagne2010-09-211-1/+1
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1309 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bugzilla Bug 630121 - OCSP responder lacking option to delete or disable ↵jmagne2010-09-204-0/+256
| | | | | | a CA that it serves git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1304 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bug 489342 - com.netscape.cms.servlet.common.CMCOutputTemplate.java doesn't ↵cfu2010-09-161-0/+2
| | | | | | | | | support EC Contributed by david.konrad.stutzman@us.army.mil; approved by cfu; git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1302 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bugzilla Bug #558100 - - host challenge of the Secure Channel needs to ↵jmagne2010-09-151-0/+134
| | | | | | be generated on TKS instead of TPS. (changed '55810' to '558100' on 9/15/2010 by mharmsen). git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1298 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bugzilla Bug 607380 - CC: Make sure Java Console can configure all security ↵vakwetu2010-09-155-1/+144
| | | | | | relevant config items git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1295 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fixed bugzilla bugs: 621337, 621338.awnuk2010-09-101-5/+20
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1289 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bugzilla #586700 - OCSP Server throws fatal error while using OCSP ↵jmagne2010-09-101-0/+21
| | | | | | console for renewing SSL Server certificate. git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1287 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Related: bug #632425jdennis2010-09-102-21/+30
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | fix password & CryptoManger initialization These are a couple of simple issues which I discovered during the tomcat porting. Since they are mostly independent of the tomcat changes I'd like to keep them separate and get them in first. The changes are: 1) Make CMSEngine.getPasswordStore() a synchronized method. During testing I had discovered two threads were both calling this method at essentially the same time trashing the state which lead to password failures. 2) Remove redundant duplicated code for initializing the password store, now CMSEngine.getPasswordStore() is the sole owner of the logic to perform this action. 3) Initialize CryptoManager before first use. We had been relying on a side effect in tomcat 5 for CryptoManager initialization where tomcatjss was doing the CryptoManager initialization prior to our first use of the CryptoManager. Tomcat 6 has modified when the connection objects first get created (which was what was kicking off the CryptoManager initialization). The patch adds the same code for initializing the CryptoManger as is in tomcatjss. We now check for CryptoManager initialization *prior* to our first use of it and if and only if it hasn't been initialized yet we do so. git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1279 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Bugzilla 583823 - CC: Auditing issues found as result of CC - interface reviewcfu2010-09-083-1/+101
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1275 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fixed bugzilla bug #629769.awnuk2010-09-031-0/+10
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1264 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fix Bug 503838 - rhcs71-80 external publishing ldap connection pools not ↵jmagne2010-09-034-9/+70
| | | | | | reliable - improve connections or discovery. git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1263 c9f7a03b-bd48-0410-a16d-cbbf54688b0b
* Fixed bugzilla bug #621350awnuk2010-09-031-1/+45
| | | | git-svn-id: svn+ssh://svn.fedorahosted.org/svn/pki/trunk@1261 c9f7a03b-bd48-0410-a16d-cbbf54688b0b