Skip to content
This repository has been archived by the owner on Jun 9, 2024. It is now read-only.

Releases: cloudflare/cfrpki

Release v1.5.1

29 Mar 09:50
9076639
Compare
Choose a tag to compare
NETDEV-5569: Port resources.json endpoint to public version (#130)

Co-authored-by: Oliver Geiselhardt-Herms <ogeiselhardt-herms@cloudflare.com>

Release v1.5.0

21 Mar 08:24
326f7dc
Compare
Choose a tag to compare
Implement concurrent data retrieval (#128)

Co-authored-by: Oliver Geiselhardt-Herms <ogeiselhardt-herms@cloudflare.com>

Release v1.4.4

18 Oct 17:21
5f64bcd
Compare
Choose a tag to compare
Merge pull request from GHSA-pmw9-567p-68pc

Co-authored-by: Oliver Geiselhardt-Herms <ogeiselhardt-herms@cloudflare.com>

Release v1.4.3

18 Feb 11:50
4e5c4f1
Compare
Choose a tag to compare
  • Fix assumption about trailing slash in -cache paramater
  • Fix octorpki path traversal vulnerability

Release v1.4.2

18 Nov 21:02
667e707
Compare
Choose a tag to compare
Merge pull request #102 from cloudflare/dhaynespls/fix-build

Typo fix makefile

Release v1.4.0

09 Nov 22:20
6d518c2
Compare
Choose a tag to compare

This release contains fixes for security vulnerabilities disclosed as part of https://www.ncsc.nl/actueel/advisory?id=NCSC-2021-0987.

Release v1.3.0

01 Sep 17:42
a8db4e0
Compare
Choose a tag to compare
Merge pull request #90 from natesales/nsales/fix/maxlen-validation

fix: ROA maxLength bounds checks

Release v1.2.2

09 Dec 20:06
Compare
Choose a tag to compare
Reduce strictness of validation

* Expired certificates do not invalidate the whole CA
* Manifests only account for missing/corrupted files

Release v1.2.1

24 Nov 22:48
Compare
Choose a tag to compare
Fix packaging issue

v1.2.0: Refactor and major issue fixes

29 Oct 23:57
Compare
Choose a tag to compare
* Improvement of RAM usage
* Refactored /info page
* Added /health endpoint
* Manifest+CA invalidation when listed resource is invalid
* Signature algorithm checks
* Sentry, Jaeger and pprof monitoring
* HTTPs TAL