- Mar 07, 2025
-
-
Wiktor Kwapisiewicz authored
Signed-off-by:
Wiktor Kwapisiewicz <wiktor@metacode.biz>
-
- Mar 05, 2025
-
-
David Runge authored
Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Enable returning a specific `ExtendedUserMapping` by searching for the name of a system user in all mappings. Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Add the wrapper type `ExtendedUserMapping` which is aware of the administrative and non-administrative secret handling, as well as the available backend connections while tracking a single `UserMapping`. This establishes a user mapping centric view of a host. Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Add a function to easily evaluate whether a `UserMapping` has a system user and at least one NetHSM user. Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Derive `strum::Display` and `strum::EnumString` for `AdministrativeSecretHandling` as those are useful when e.g. using the type in errors. Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
The ring crate is now maintained by the maintainers of rustls. Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
- Mar 02, 2025
-
-
renovate authored
Signed-off-by:
renovate <renovate@archlinux.org>
-
- Feb 26, 2025
-
-
renovate authored
Signed-off-by:
renovate <renovate@archlinux.org>
-
- Feb 22, 2025
-
-
renovate authored
Signed-off-by:
renovate <renovate@archlinux.org>
-
David Runge authored
The `ring` feature for the `rustls` crate is no longer feasible now that the upstream project is unmaintained. Switch the direct use of `rustls` to rely on the default features, which include the `aws-lc-rs` crypto provider (an AWS maintained fork of OpenSSL). Allow the OpenSSL license to be able to use the `aws-lc-rs` feature. Fixes: #152 Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Fixes: #151 Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
- Feb 21, 2025
-
-
David Runge authored
Ensure to always use style edition 2024. Format all code according to style edition 2024. Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Use resolver 3 (which came with Rust edition 2024). Set the minimum required Rust version to 1.85.0. Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
- Feb 18, 2025
-
-
Wiktor Kwapisiewicz authored
Signed-off-by:
Wiktor Kwapisiewicz <wiktor@metacode.biz>
-
renovate authored
Signed-off-by:
renovate <renovate@archlinux.org>
-
Wiktor Kwapisiewicz authored
Signed-off-by:
Wiktor Kwapisiewicz <wiktor@metacode.biz>
-
- Feb 11, 2025
-
-
David Runge authored
As `sq` is in the habit of continuously changing its CLI, rely on the simpler `rpacket` for dumping information on OpenPGP packets. Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
- Feb 05, 2025
-
-
Christian Heusel authored
This fixes the pipeline failure from #144 as well as subsequent issues and the underlying security issue. Signed-off-by:
Christian Heusel <christian@heusel.eu>
-
- Jan 29, 2025
-
-
renovate authored
Signed-off-by:
renovate <renovate@archlinux.org>
-
- Jan 26, 2025
-
-
renovate authored
Signed-off-by:
renovate <renovate@archlinux.org>
-
- Jan 22, 2025
-
-
Christian Heusel authored
It seems like the 2.4.0 version of codespell does deem the current wording incorrect, therefore change it to the suggested "reuse" spelling. Fixes #143 Signed-off-by:
Christian Heusel <christian@heusel.eu>
-
- Jan 14, 2025
-
-
David Runge authored
Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Add `NonAdministrativeSecretHandling` to `ParallelHermeticConfig` and adjust all documentation to reflect this. Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
- Add `AdministrativeSecretHandling` to `ParallelHermeticConfig` and adjust all documentation to reflect this. - Adjust `ParallelHermeticConfig::validate` to check for users for share upload and download only when using Shamir's Secret Sharing and fail if they are set otherwise. - Move all use of configuration file strings in unit tests to separate fixture files, which allows better readability (also due to syntax highlighting). Fixes: #123 Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
David Runge authored
Fix the wrong use of the `PACMAN_DEV_PACKAGES` environment variable in the `install-pacman-dev-packages` recipe (it is called `PACMAN_PACKAGES`). Execute `pacman` using `run0` to ensure it can be run without `sudo` on any newer systemd-based system. Don't update the system but simply install the packages. Signed-off-by:
David Runge <dvzrv@archlinux.org>
-
renovate authored
Signed-off-by:
renovate <renovate@archlinux.org>
-
- Jan 12, 2025
-
-
renovate authored
Signed-off-by:
renovate <renovate@archlinux.org>
-
- Jan 09, 2025
-
-
renovate authored
Signed-off-by:
renovate <renovate@archlinux.org>
-
- Jan 07, 2025
-
-
renovate authored
Signed-off-by:
renovate <renovate@archlinux.org>
-
- Dec 20, 2024
-
-
Wiktor Kwapisiewicz authored
Fixes: #109 Signed-off-by:
Wiktor Kwapisiewicz <wiktor@metacode.biz>
-