Commit graph

4895 commits

Author SHA1 Message Date
Daniel Garcia af7ce33edd fixes #3061: use variable for docker image name (#3062) 2019-10-08 11:09:56 -03:00
Pluggi 3035d27297 docs: Fix broken link to backup instructions (#3064)
Signed-off-by: Antoine Bardoux <pluggi512@gmail.com>
2019-10-08 11:06:58 -03:00
Gus Luxton 4efef0cab1
Added FIPS AMI build support (#3051) 2019-10-04 15:49:47 -03:00
Gus Luxton ad6bf79f98
Add Dynamo stream configuration to Terraform (#3023)
* Add Dynamo stream configuration
* Update to NEW_IMAGE as per docs
2019-10-03 14:34:58 -03:00
Gus Luxton 435c546dba
/var/run/teleport -> /run/teleport (#3043) 2019-10-02 20:26:56 -03:00
Ben Arent 674d57bad5
Backport 4.1 / 4.0 Doc Updates release (#3047) 2019-10-02 09:49:29 -07:00
Ben Arent b7357538fb
4.1 Docs - Backup and Restore. [Merge when 4.1 is public] (#2956)
* Info for backup and Restore
* Include information about path in storage.
2019-10-01 15:09:09 -07:00
Ben Arent ee56e4f7bd
First draft updating Trusted Cluster (#3026)
* First draft updating Trusted Cluster
2019-10-01 14:53:06 -07:00
Russell Jones 47b268095b Updated CHANGELOG.md. 2019-10-01 13:27:48 -07:00
Russell Jones 1375723715
Update CHANGELOG.md 2019-10-01 12:48:29 -07:00
Lele 7774fb760c
Fixed anti-pattern use of /var/run as the PID dir (#3035)
Fixed anti-pattern use of /var/run as the PID dir
2019-10-01 21:27:18 +02:00
Alexander Klizhentas 5055656572
Close access point cache on cluster disconnect. (#3037)
This commit fixes goroutine leak - whenever
a leaf cluster disconnects from the root cluster,
the caching access point cache update loop has to be closed
as well.
2019-10-01 10:25:01 -07:00
Ben Arent 8d4b715c15
Add redirect_url for gsuite. (#3025) 2019-09-27 15:22:17 -07:00
Gus Luxton 3692d56998
Update ADFS docs (#3030)
* Update ADFS docs to add node labels and fix display name
* Add example of longer claim format
* Remove extraneous space
* Add note about double quotes
2019-09-27 18:24:38 -03:00
Ben Arent d161538e2e
Additional IAM permissions (#3022)
* Update Terraform for IAM Requirements with S3 requirements.
2019-09-25 11:32:37 -07:00
Ben Arent 96d7c0e716
Add information about Checksum (#2988)
* Provide docs on how to use checksum, both manually and via an automated system.
2019-09-24 16:45:13 -07:00
Ben Arent 77d5a8c730 Fix more options for Okta (#3019) 2019-09-24 16:42:52 -07:00
Forrest Marshall 2df2561a51 fix duplicate seek entries. (#2992)
* fix duplicate seeking & add periodic verbose logging

* add prometheus gauge for proxy connections
2019-09-24 14:01:57 -07:00
Roman Tkachenko 07b25088ec Remote tctl execution. (#2991)
* Teach tctl to use remote auth servers and identity.

* Tests and cleanups.
2019-09-24 14:01:30 -07:00
Russell Jones c3f72ac663 Release 4.2.0-alpha.1. 2019-09-24 13:55:43 -07:00
Alexander Klizhentas 8ce1000ee1
Merge pull request #3017 from gravitational/bigcommerce-gcp_ha_support
Bigcommerce gcp ha support
2019-09-24 13:50:24 -07:00
Sasha Klizhentas 408ee26083 Fix context leaks 2019-09-24 11:39:44 -07:00
Sasha Klizhentas 779b50c083 Merge branch 'gcp_ha_support' of https://github.com/bigcommerce/teleport into bigcommerce-gcp_ha_support 2019-09-24 11:00:53 -07:00
Forrest Marshall 646f58357e improve message for already-exists error (#2968) 2019-09-20 10:52:03 -07:00
Abdu Elkugia 57efdfa38d Update to RBAC section of docs (#3000)
* Typo updates to Teleport quick start guide
* Updated TTL for login back to 12 hours. TTL for signup token was 1 hour.
* Adding mention to discuss updating role mapping in trusted cluster
* Adding section for updating trusted cluster
2019-09-20 08:54:35 -07:00
Ben Arent f6658c9787 Adds docs for keep-alive #2334 (#2976)
* Adds docs for keep-alive #2334
2019-09-20 08:53:37 -07:00
Ben Arent 8e0a42a860 Trusted cluster YAML fix during testing. (#3004) 2019-09-19 15:46:07 -07:00
Russell Jones 60e2d9e6a3 Updated CHANGELOG.md. 2019-09-17 16:01:21 -07:00
Forrest Marshall 94808fdec1 fix web session ID generation 2019-09-17 13:19:03 -07:00
Russell Jones 28c518631a Release 4.1.0-beta.3. 2019-09-16 18:25:11 +00:00
Pierre Beaucamp 6a1fba3bd4
Merge pull request #2982 from gravitational/pierre/update-e
Update e-ref to contain latest changes
2019-09-13 16:50:54 -04:00
Pierre Beaucamp 1fb1a74c56
Merge branch 'master' into pierre/update-e 2019-09-13 14:41:40 -04:00
Ben Arent d70883e09c
Fix Admin guide link for trusted cluster (#2986)
* Fix 404 to trusted clusters
2019-09-13 10:25:56 -07:00
Ben Arent 533828a883 Remove Proxyjump docs as these are in 4.1 (#2984) 2019-09-13 09:39:37 -07:00
Russell Jones e8aae88112 Restore CreateWebSession endpoint.
Revert 04b4469  to restore the CreateWebSession endpoint.
2019-09-12 11:43:49 -07:00
Russell Jones de24ad788c Update 6f96595 to support Windows builds. 2019-09-12 11:43:49 -07:00
Pierre Beaucamp fbbbf07cd3
Update e-ref to contain latest changes 2019-09-12 10:20:34 -04:00
Russell Jones f0a455f2ea Use JSON for trait encoding. 2019-09-11 15:13:52 -07:00
Russell Jones 6f96595e99 Send UUIDv1 session IDs to legacy servers.
Before establishing a session, request the server version. If the server
replies false, that means it does not support that request type and is
an older server version which needs UUIDv1 format session IDs.
2019-09-11 13:50:00 -07:00
Gus Luxton 152d626a1d Make license optional in Terraform to improve use with OSS (#2978) 2019-09-11 13:38:17 -07:00
Russell Jones 36838e5e21 Release 4.1.0-beta.2. 2019-09-10 00:02:23 +00:00
Alexander Klizhentas 7f494f7c10
Updating dependencies for etcd v3.3.15 (#2965)
Fixes #2762

This commit updates go etcd client that fixes
issue of the first etcd peer going down briging down
the whole cluster.
2019-09-08 10:50:56 -07:00
Russell Jones 6b1bc20451 Release 4.1.0-beta.1. 2019-09-06 20:00:16 +00:00
Forrest Marshall 9937815b62 fix e-ref (#2959) 2019-09-06 10:50:06 -07:00
Forrest Marshall 6838a95cac Add isolated proxy-seeking state machine (#2946)
This commit introduces a new iteration of the proxy discovery
algorithm implemented as a separate component from the main
reversetunnel agent/agentpool system.  This isolation is
intended to improve our ability to test and reason about the
algorithm in isolation from IO and other implementation
details.
2019-09-06 10:37:12 -07:00
Russell Jones afa0e520c0 Updated CHANGELOG.md. 2019-09-06 00:20:46 +00:00
Russell Jones cebd21ad91 Fix broken test. 2019-09-05 17:02:00 -07:00
Russell Jones d8c638a3b6 Always emit session related events with host UUID.
When emitting session related events, emit them with the ID of the host
not of the server. This is because the forwarding server has a randomly
generated ID that will note validate with TLS identity that connects to
the Auth Server.
2019-09-05 17:02:00 -07:00
Joshua Durbin d346f2b124 adds support for GCP HA environments with gcs recording storage, firestore-backed events, and firestore backend storage 2019-09-05 13:09:55 -07:00
Russell Jones 100a9d15ea Fix failing test. 2019-09-03 13:44:20 -07:00