Releases: cloudflare/gokeyless
v1.6.9
Changelog
- 469802b Bump actions/setup-go from 3 to 4
- 4685fce Bump cloud.google.com/go/kms from 1.10.2 to 1.11.0
- d76616f Bump cloud.google.com/go/kms from 1.11.0 to 1.12.0
- d22db6b Bump cloud.google.com/go/kms from 1.12.0 to 1.12.1
- d70ccce Bump cloud.google.com/go/kms from 1.12.1 to 1.13.0
- 01bb456 Bump github.com/cloudflare/cloudflare-go from 0.67.0 to 0.69.0
- abc0887 Bump github.com/cloudflare/cloudflare-go from 0.69.0 to 0.70.0
- 241b224 Bump github.com/cloudflare/cloudflare-go from 0.70.0 to 0.72.0
- 25436e0 Bump github.com/googleapis/gax-go/v2 from 2.10.0 to 2.11.0
- 7a72e2e Bump github.com/googleapis/gax-go/v2 from 2.11.0 to 2.12.0
- fb1e4c2 Bump github.com/googleapis/gax-go/v2 from 2.8.0 to 2.10.0
- 4480aed Bump github.com/miekg/dns from 1.1.54 to 1.1.55
- 62e25c5 Bump github.com/prometheus/client_golang from 1.15.1 to 1.16.0
- 1c0b09c Bump github.com/spf13/afero from 1.9.3 to 1.9.5
- 3a70797 Bump github.com/spf13/viper from 1.15.0 to 1.16.0
- 05e35b9 Bump github.com/stretchr/testify from 1.8.2 to 1.8.3
- 45220be Bump github.com/stretchr/testify from 1.8.3 to 1.8.4
- 42076a8 Bump golang.org/x/crypto from 0.10.0 to 0.11.0
- 083b5c8 Bump golang.org/x/crypto from 0.9.0 to 0.10.0
- 6bb0809 Bump golang.org/x/sync from 0.2.0 to 0.3.0
- 8924126 Bump google.golang.org/protobuf from 1.30.0 to 1.31.0
- b513894 Merge pull request #357 from cloudflare/dependabot/go_modules/github.com/spf13/afero-1.9.5
- b9b07b7 Merge pull request #358 from cloudflare/dependabot/go_modules/github.com/stretchr/testify-1.8.3
- 47ea70d Merge pull request #361 from cloudflare/dependabot/go_modules/github.com/googleapis/gax-go/v2-2.10.0
- 0842a00 Merge pull request #362 from cloudflare/dependabot/go_modules/cloud.google.com/go/kms-1.11.0
- 200881d Merge pull request #363 from cloudflare/dependabot/go_modules/github.com/stretchr/testify-1.8.4
- 8a0ea91 Merge pull request #364 from cloudflare/dependabot/go_modules/github.com/spf13/viper-1.16.0
- 7a1cdee Merge pull request #365 from cloudflare/dependabot/go_modules/github.com/cloudflare/cloudflare-go-0.69.0
- 8af83be Merge pull request #367 from cloudflare/dependabot/go_modules/github.com/prometheus/client_golang-1.16.0
- 823a6bc Merge pull request #368 from cloudflare/dependabot/go_modules/github.com/googleapis/gax-go/v2-2.11.0
- cd5cba1 Merge pull request #369 from cloudflare/dependabot/go_modules/golang.org/x/sync-0.3.0
- 39fd1cd Merge pull request #370 from cloudflare/dependabot/go_modules/cloud.google.com/go/kms-1.12.0
- 6da9c64 Merge pull request #371 from cloudflare/dependabot/go_modules/golang.org/x/crypto-0.10.0
- 7a17131 Merge pull request #372 from cloudflare/dependabot/github_actions/actions/setup-go-4
- f1c1b9a Merge pull request #373 from cloudflare/dependabot/go_modules/cloud.google.com/go/kms-1.12.1
- ed7a3cc Merge pull request #374 from cloudflare/dependabot/go_modules/github.com/miekg/dns-1.1.55
- d6785de Merge pull request #375 from cloudflare/dependabot/go_modules/github.com/cloudflare/cloudflare-go-0.70.0
- 8eb03bb Merge pull request #376 from cloudflare/dependabot/go_modules/google.golang.org/protobuf-1.31.0
- f9867b6 Merge pull request #377 from cloudflare/dependabot/go_modules/github.com/googleapis/gax-go/v2-2.12.0
- 7cd9ca7 Merge pull request #378 from cloudflare/dependabot/go_modules/github.com/cloudflare/cloudflare-go-0.72.0
- b114959 Merge pull request #379 from cloudflare/dependabot/go_modules/golang.org/x/crypto-0.11.0
- 78be0fe Merge pull request #380 from cloudflare/dependabot/go_modules/cloud.google.com/go/kms-1.13.0
v1.6.8
Changelog
- 4b98fd0 Bump actions/checkout from 2 to 3
- 50b64e4 Bump github.com/Azure/go-autorest/autorest from 0.11.17 to 0.11.29
- d4773eb Bump github.com/Azure/go-autorest/autorest/azure/auth
- 7dfed80 Bump github.com/ThalesIgnite/crypto11 from 1.2.1 to 1.2.5
- d6774fd Bump github.com/cloudflare/cfssl
- 2a0e6bc Bump github.com/miekg/dns from 1.1.29 to 1.1.54
- 61c8038 Bump github.com/prometheus/client_golang from 1.13.0 to 1.15.1
- 495e972 Bump github.com/spf13/pflag from 1.0.1 to 1.0.5
- 7b5c533 Bump github.com/spf13/viper from 1.0.2 to 1.15.0
- ddf298b Bump github.com/uber/jaeger-client-go
- fbb0c8d Bump golang.org/x/crypto from 0.7.0 to 0.9.0
- 96c91ce Bump golang.org/x/sync from 0.1.0 to 0.2.0
- b5e13f3 Bump gopkg.in/square/go-jose.v2 from 2.5.1 to 2.6.0
- f936318 Create dependabot.yml
- 3f52f51 Merge pull request #320 from bjorand/fix_package
- ec65bcc Merge pull request #322 from cloudflare/nicky/dns-fix
- 25a2bfb Merge pull request #323 from cloudflare/nicky/goreleaser-tag
- ffeabd6 Merge pull request #331 from cloudflare/nicky/pkg-test
- 83a3bb0 Merge pull request #332 from cloudflare/nicky/go-version-bump
- cb25cf8 Merge pull request #333 from cloudflare/nicky/dependabot
- c98e3a3 Merge pull request #335 from cloudflare/dependabot/github_actions/actions/checkout-3
- 4e694dd Merge pull request #336 from cloudflare/dependabot/go_modules/github.com/prometheus/client_golang-1.15.1
- 502dd07 Merge pull request #337 from cloudflare/dependabot/go_modules/github.com/Azure/go-autorest/autorest-0.11.29
- e083b4f Merge pull request #338 from cloudflare/dependabot/go_modules/github.com/miekg/dns-1.1.54
- 2afdb2a Merge pull request #339 from cloudflare/dependabot/go_modules/gopkg.in/square/go-jose.v2-2.6.0
- c9aabec Merge pull request #340 from cloudflare/dependabot/go_modules/github.com/uber/jaeger-client-go-2.30.0incompatible
- 692da22 Merge pull request #341 from cloudflare/dependabot/go_modules/github.com/ThalesIgnite/crypto11-1.2.5
- 583f334 Merge pull request #342 from cloudflare/dependabot/go_modules/github.com/cloudflare/cfssl-1.6.4
- 272a2f2 Merge pull request #343 from cloudflare/dependabot/go_modules/github.com/spf13/pflag-1.0.5
- 5c832e6 Merge pull request #344 from cloudflare/dependabot/go_modules/github.com/Azure/go-autorest/autorest/azure/auth-0.5.12
- 904b344 Merge pull request #345 from cloudflare/dependabot/go_modules/golang.org/x/sync-0.2.0
- b78779e Merge pull request #346 from cloudflare/nicky/better-coverage
- e43c6e9 Merge pull request #347 from cloudflare/nicky/hsm-tests
- 13b693e Merge pull request #348 from cloudflare/dependabot/go_modules/golang.org/x/crypto-0.9.0
- 7486cf3 Merge pull request #349 from cloudflare/dependabot/go_modules/github.com/spf13/viper-1.15.0
- f3145d6 Merge pull request #350 from cloudflare/nicky/pkg-binary-location-fix
- d08879c Merge pull request #351 from cloudflare/nicky/keystore-dbg
- d1a1750 Merge pull request #352 from cloudflare/nicky/readme.md
- 9af8426 Merge pull request #353 from cloudflare/nicky/init-test
- 8785b12 Merge pull request #354 from cloudflare/nicky/softhsm-fix
- e578724 Merge pull request #355 from cloudflare/nicky/release-env-var-fix
- b2851f7 Merge pull request #356 from cloudflare/nicky/buildvcs
- ac3de61 Update Makefile
- 05b9b76 Update go.yml to add codecov back
- 164bfd4 add basic test for interaction with Cloudflare API
- 582e423 add command to debug loading from keystore
- 22b7f94 better test coverage
- 7712999 build artifacts & run tests with newer go version
- c0504e7 build with vcs info
- 63784c5 fix github token env var
- 4cfa329 fix ldflags to work with cgo
- 0ed6ae6 fix swapped error messages
- 8b313ea fix: add missing content to deb and rpm packages
- 930c7af force use of native go dns resolver
- e6cfbca install the snapshot debian package, assert on basic expectations
- 7052cef lintian suggestion
- 3f86660 run HSM tests in CI
- 2b917c9 skip running goreleaser when commits are merged into master
- 65dab12 update cfssl usage, remove some ioutil
- 4faad6f update readme
- 238c49e update services to expect binary in usr/bin
v1.6.7
This is needed since 1.6.6 packages were already uploaded to apt package server manually months before a release was created. We need a new tag so its get pulled on apt-update.
v1.6.6
Changelog
5b78b34 Add explicit import as required by go 1.17 (#295)
8690614 Add function to access remote connection pool (#311)
bbb1c46 Add missing tags to protocol reference
233a981 Adjust logging and metrics to match earlier versions (#297)
eeea3b5 Better timeout handling (#299)
8d296e6 Bump golang.org/x/crypto from 0.0.0-20201221181555-eec23a3978ad to 0.1.0
7b22d2e Bump golang.org/x/net from 0.1.0 to 0.7.0
85d125c Bump gopkg.in/yaml.v2 from 2.2.2 to 2.2.8
4c30a19 Enable concurrent outstanding RPC requests (#300)
3497362 Enable configuration of maxConnPendingRequests (#291)
d4df7ff Fix protocol reference
2693c99 Merge pull request #289 from cloudflare/nicky/readme-updates
6fe9f93 Merge pull request #303 from cloudflare/dependabot/go_modules/gopkg.in/yaml.v2-2.2.8
2f23be9 Merge pull request #304 from cloudflare/nicky/misc-err-handling
b42ffe1 Merge pull request #305 from cloudflare/nicky/eof
1a9e350 Merge pull request #308 from jyn514/patch-1
b0d09c4 Merge pull request #309 from jyn514/protocool
6283573 Merge pull request #310 from cloudflare/nicky/conn-closed-func
d032fad Merge pull request #312 from cloudflare/dependabot/go_modules/golang.org/x/crypto-0.1.0
7106a15 Merge pull request #313 from cloudflare/dependabot/go_modules/golang.org/x/net-0.7.0
9876502 Merge pull request #314 from cloudflare/nicky/goreleaser-pkcs11
baf9921 Merge pull request #315 from cloudflare/nicky/bump-deps
efe7771 Remove connection pools (#292)
705f0cb Remove internal ECDSA package (#283)
dea0289 Restore the request by opcode metrics (#298)
5fe30ce Restore timeout handling to connection read and write (#293)
1c828f2 Return early if we cannot set the deadline (#296)
bb79ea6 SECENG-9843 start publishing rpm packages via goreleaser
9685871 Separate forwarding and expand concurrency (#290)
a3b3963 Update go.yml
7545d34 Upgrade deps to avoid go mod tidy error (#307)
10bef9f add func to check if conn is closed
ee2afff add goreleaser snapshot and release action, enable pkcs11 in goreleaser builds
ce70013 add some error wrapping
329b43a bump go version in ci
6006312 bump go version to 1.17 in go.mod
46ea7a6 certmetrics: add label indicating where the cert came from (e.g. filepath)
1349e10 chore: bump dependencies
854e370 downgrade log level of noisy EOF errors
c68eba9 update deb packaging to use gz
c663d10 update readme to point to HSM portion of developer docs
v1.6.5
v1.6.4
Summary
- Azure Managed HSM support (https://developers.cloudflare.com/ssl/keyless-ssl/hardware-security-modules/azure-managed-hsm)
- Google Cloud HSM support (https://developers.cloudflare.com/ssl/keyless-ssl/hardware-security-modules/google-cloud-hsm)
- OpenTracing
- Minor fixes, CI improvements, etc.
Changelog
92fec07 Add additional span for wait between write and response. (#280)
cd1c948 Emit certificate expiration metrics for client certificates used in handshake
1250f59 Fix ZoneID json tag
fbb660d Merge pull request #275 from mitalirawat/mitali/SECENG-7134
ddafcb2 Merge pull request #276 from nickysemenza/allow-unknown-protocol-tags
463b231 Merge pull request #277 from nickysemenza/add-opentracing
851ae38 Merge pull request #278 from nickysemenza/fix-protocol-bytes-size
b35b1f4 Merge pull request #279 from bvwells/patch-1
a3cb6f2 Merge pull request #281 from cloudflare/add-gh-action
1c0fca1 Merge pull request #284 from cloudflare/nicky/ci-improvements
1c05176 Revamp connections to avoid runtime calls (#282)
18a5af6 add goreleaser config
23ac0f4 allow Unmarshaling of protocol.Operation with unknown tags
87d9804 cleanup log levels
b490db3 emit metrics for peer certificates, server certificate and fix function name
9f23d91 explicitly check pkcs11 and azure uri formats, add links to azure docs
d5f52c4 feat: add opentracing + jaeger
8487818 feat: support for using keys in google KMS
9b2a902 feat: support using private keys on Azure Key Vault / Managed HSM
99a5454 fix reversed IsPKCS11URI
value
a4447fd fix: correctly calculate protocol.Operation Bytes() size
3bdb599 replace TravisCI wit GH Actions
db3637d update Actions to only run lint once to avoid duplicated warnings
v1.6.3
v1.6.2
v1.6.1
v1.6.0
Changes:
- Upgrade ThalesIgnite/crypto11 package to v1.2.0
- Adopt Go modules