Skip to content

Conversation

yim-lee
Copy link
Contributor

@yim-lee yim-lee commented Feb 12, 2021

This is part 2 of a series of PRs to support package collection signing on all platforms. Originally #3242.

Depends on #3260, #3264

@yim-lee yim-lee force-pushed the sign-collection-nap branch from 1ca6bdc to 4cf61ad Compare February 13, 2021 01:50
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Feb 13, 2021
This is part 3 of a series of PRs to support package collection signing on **non-Apple** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Feb 13, 2021
This is part 3 of a series of PRs to support package collection signing on **non-Apple** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
@yim-lee yim-lee changed the title [DNM][Collections] Signing (non-apple, 2): signed collections [DNM][Collections] Signing (all, 2): signed collections Feb 13, 2021
@tomerd tomerd added the next waiting for next merge window label Feb 16, 2021
@yim-lee yim-lee force-pushed the sign-collection-nap branch from 4cf61ad to 2a1ae90 Compare February 18, 2021 00:18
@yim-lee
Copy link
Contributor Author

yim-lee commented Feb 18, 2021

@swift-ci please smoke test

yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Feb 18, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
This is part 1 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3238.

Depends on swiftlang#3259
This is part 2 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3242.

Depends on swiftlang#3260, swiftlang#3264
@yim-lee yim-lee force-pushed the sign-collection-nap branch from 2a1ae90 to e54f2ec Compare February 18, 2021 20:14
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Feb 18, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
@yim-lee
Copy link
Contributor Author

yim-lee commented Feb 18, 2021

Rolling this into #3270. Closing.

@yim-lee yim-lee closed this Feb 18, 2021
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Feb 18, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Feb 20, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Feb 22, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Feb 26, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Feb 26, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Mar 2, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Mar 9, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Mar 10, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Mar 11, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Mar 11, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Mar 12, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Mar 12, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Mar 13, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Mar 20, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit to yim-lee/swift-package-manager that referenced this pull request Mar 22, 2021
This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally swiftlang#3245.

Depends on swiftlang#3265, swiftlang#3269
yim-lee added a commit that referenced this pull request Mar 24, 2021
* [Collections] Signing (all, 1): certificate and key types

This is part 1 of a series of PRs to support package collection signing on **all** platforms. Originally #3238.

Depends on #3259

* [Collections] Signing (all, 2): signed collections

This is part 2 of a series of PRs to support package collection signing on **all** platforms. Originally #3242.

Depends on #3260, #3264

* [Collections] Signing (all, 3): certificate validations

This is part 3 of a series of PRs to support package collection signing on **all** platforms. Originally #3245.

Depends on #3265, #3269

* [Collections] Signing (all, 3.b): OCSP support for non-Apple platforms

This is part 3.b of a series of PRs to support package collection signing on **all** platforms.

Depends on #3270

Modifications:
- Add `PackageCollectionsSigningLibc` module
- Add OCSP support for non-Apple platforms through `PackageCollectionsSigningLibc`

* Use shared callbackQueue and diagnosticsEngine in tests

* Update platform check

* Better OCSP error handling and cache OCSP results

* Don't default to BoringSSL

* OpenSSL license

* fixup

* Use ptr.count

* Don't blindly drop X509_V_ERR_UNHANDLED_CRITICAL_EXTENSION error

* Add withUnsafeMutablePointer for accessing underlying X509 pointer

* Fix leaks

* Use withExtendedLifetime

* OSCP response handling

* Delete remove from cache call

* OCSP should fail open

* Verify OCSP response

* Create new X509_STORE per invocation
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
next waiting for next merge window
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants