-
Notifications
You must be signed in to change notification settings - Fork 23
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Add Secure Connections Standard #548
base: main
Are you sure you want to change the base?
Commits on Jun 27, 2024
-
Add first part of the secure connections standard
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 3a497cd - Browse repository at this point
Copy the full SHA 3a497cdView commit details -
Add notes about the classifications
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 0821bd6 - Browse repository at this point
Copy the full SHA 0821bd6View commit details -
Add considered options and open questions
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 291b3da - Browse repository at this point
Copy the full SHA 291b3daView commit details -
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 2810fbf - Browse repository at this point
Copy the full SHA 2810fbfView commit details -
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for efce5f8 - Browse repository at this point
Copy the full SHA efce5f8View commit details -
Add database and message queue channel security, extend TLS cipher rules
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 82bbe94 - Browse repository at this point
Copy the full SHA 82bbe94View commit details -
Add remaining decision sections
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 297e562 - Browse repository at this point
Copy the full SHA 297e562View commit details -
Add testing script for secure connection standard (WIP)
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 1f1afe3 - Browse repository at this point
Copy the full SHA 1f1afe3View commit details -
Turn avoiding CBC mode into a recommendation.
https://crypto.stackexchange.com/a/95660 Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for b1c6f2b - Browse repository at this point
Copy the full SHA b1c6f2bView commit details -
Refactor the TLS test script to use SSLyze
and implement all tests based on the current standard draft Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for cb1242d - Browse repository at this point
Copy the full SHA cb1242dView commit details -
Add testing README and reference
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 2ff4d90 - Browse repository at this point
Copy the full SHA 2ff4d90View commit details -
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 0d35174 - Browse repository at this point
Copy the full SHA 0d35174View commit details -
Fix typo in test script comment
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 3a9efd9 - Browse repository at this point
Copy the full SHA 3a9efd9View commit details -
Add glossary and rephrase "SCS" to "SCS project"
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 333f953 - Browse repository at this point
Copy the full SHA 333f953View commit details -
Rename standard filename due to conflicting counter
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for d69af20 - Browse repository at this point
Copy the full SHA d69af20View commit details -
Refine the scope in regards to the communication channels
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 13d850d - Browse repository at this point
Copy the full SHA 13d850dView commit details -
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 914631c - Browse repository at this point
Copy the full SHA 914631cView commit details -
Fix option references for oslo.messaging ssl
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 096675b - Browse repository at this point
Copy the full SHA 096675bView commit details -
Add RFC link for TLS deprecation
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 73dce0a - Browse repository at this point
Copy the full SHA 73dce0aView commit details -
Don't endorse internal CAs specifically
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 0ed970d - Browse repository at this point
Copy the full SHA 0ed970dView commit details -
Refactor test script to check Mozilla TLS recommendations
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for a2f3e77 - Browse repository at this point
Copy the full SHA a2f3e77View commit details -
Update standard to reference Mozilla's TLS recommendations
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 4885429 - Browse repository at this point
Copy the full SHA 4885429View commit details -
Migrate test script requirements to requirements.in
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 1cbd1d0 - Browse repository at this point
Copy the full SHA 1cbd1d0View commit details -
Add libvirt security choices to design considerations
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 6a0920a - Browse repository at this point
Copy the full SHA 6a0920aView commit details -
Add open question about libvirt hardening
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 59c7bc8 - Browse repository at this point
Copy the full SHA 59c7bc8View commit details -
Relax the requirement for the libvirt port
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 3bdc8a6 - Browse repository at this point
Copy the full SHA 3bdc8a6View commit details -
Rephrase and clarify libvirt security recommendations and questions
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for d166e7e - Browse repository at this point
Copy the full SHA d166e7eView commit details
Commits on Jun 28, 2024
-
Add Mozilla TLS JSON override option to test script
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e757dd2 - Browse repository at this point
Copy the full SHA e757dd2View commit details -
Fully parameterize Mozilla TLS config in test script
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 042e5f3 - Browse repository at this point
Copy the full SHA 042e5f3View commit details -
Rename cli args in test script
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 23423b8 - Browse repository at this point
Copy the full SHA 23423b8View commit details -
Add Mozilla TLS JSON copy and staging YAML entry
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e9dacb8 - Browse repository at this point
Copy the full SHA e9dacb8View commit details -
Add remark about internal audits
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 8d92617 - Browse repository at this point
Copy the full SHA 8d92617View commit details
Commits on Jul 26, 2024
-
Remove specific MQ SSL config examples, refer to docs
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 5f7ccd2 - Browse repository at this point
Copy the full SHA 5f7ccd2View commit details
Commits on Aug 9, 2024
-
Configuration menu - View commit details
-
Copy full SHA for 36780c6 - Browse repository at this point
Copy the full SHA 36780c6View commit details
Commits on Aug 19, 2024
-
Configuration menu - View commit details
-
Copy full SHA for be1848c - Browse repository at this point
Copy the full SHA be1848cView commit details -
Align header naming with latest standards template
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 71a663c - Browse repository at this point
Copy the full SHA 71a663cView commit details
Commits on Sep 12, 2024
-
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for c9984db - Browse repository at this point
Copy the full SHA c9984dbView commit details
Commits on Oct 18, 2024
-
Merge remote-tracking branch 'origin/main' into feat/secure-communica…
…tion Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for a503303 - Browse repository at this point
Copy the full SHA a503303View commit details -
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 5405304 - Browse repository at this point
Copy the full SHA 5405304View commit details -
Update scs-compatible-test.yaml
Signed-off-by: Markus Hentsch <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 2c47877 - Browse repository at this point
Copy the full SHA 2c47877View commit details
Commits on Nov 6, 2024
-
Configuration menu - View commit details
-
Copy full SHA for 2be9a0a - Browse repository at this point
Copy the full SHA 2be9a0aView commit details