Component: certificate
319 changelog entries across 156 version(s)
Releases by channel (stacked)
- added HTTP redirect support for CRL download;
- fixed CRL check (introduced in v7.13beta1);
- fixed host certificate verification if host is IP address (introduced in v7.13beta1);
- fixed manual URL addition for CRL (introduced in v7.13beta2);
- improved CRL signature verification and download error messages;
- use error topic for CRL update failures;
- added HTTP redirect support for CRL download;
- added support for certificates with key size 16384;
- add support for multiple DNS names for Let's Encrypt;
- fixed certificate auto renewal via SCEP when certificate contains "subject-alt-name";
- improved initial certificate creation using SCEP;
- allow to get and maintain Let's Encrypt certificate in IPv6 environment;
- allow to remove issued certificates when CRL is not used;
- fixed "subject-alt-name" duplicating itself when SCEP is used;
- fixed certificate auto renewal via SCEP;
- improved certificate validation logging error messages;
- log CRL HTTP errors under the "error" logging topic;
- allow to remove issued certificates when CRL is not used;
- fixed certificate auto renewal via SCEP;
- allow to get and maintain Let's Encrypt certificate in IPv6 environment;
- fixed "subject-alt-name" duplicating itself when SCEP is used;
- improved certificate validation logging error messages;
- log CRL HTTP errors under the "error" logging topic;
- allow to import certificate with DNS name constraint;
- fixed PEM import;
- fixed trust store CRL link if generated on an older version (introduced in v7.7);
- improved CRL download retry handling;
- removed request for "passphrase" property on import;
- require CRL presence when using "crl-use=yes" setting;
- restored RSA with SHA512 support;
- improved CRL download retry handling;
- fixed trust store CRL link if generated on an older version (introduced in v7.7);
- allow to import certificate with DNS name constraint;
- require CRL presence when using "crl-use=yes" setting;
- removed request for "passphrase" property on import;
- fixed PEM import;
- restored RSA with SHA512 support;
- fixed displaying of certificate serial number;
- improved error reporting for Let's Encrypt certificate;
- restore available "key-usage" property options;
- fixed displaying of certificate serial number;
- improved error reporting for Let's Encrypt certificate;
- restore available "key-usage" property options;
- fixed bogus log messages;
- fixed bogus log messages;
- fixed export of a certificate when the last line of the certificate is exactly 64 bytes long;
- fixed PBES2 certificate import;
- improved certificate management, signing and storing processes;
- improved multiple certificate import process;
- fixed export of a certificate when the last line of the certificate is exactly 64 bytes long;
- fixed certificate import (introduced in v7.8beta2);
- fixed PBES2 certificate import;
- improved multiple certificate import process;
- improved certificate management, signing and storing processes;
- improved Let's Encrypt logging and error recovery;
- improved certificate management, signing and storing processes;
- improved Let's Encrypt logging and error recovery;
- improved certificate management, signing and storing processes;