Path to this page:
Subject: CVS commit: pkgsrc/security
From: Adam Ciarcinski
Date: 2019-04-08 17:48:31
Message id: 20190408154832.20ADBFB16@cvs.NetBSD.org
Log Message:
py-acme,py-certbot*: updated to 0.33.1
0.33.1:
Fixed
A bug causing certbot-auto to print warnings or crash on some RHEL based systems \
has been resolved.
Despite us having broken lockstep, we are continuing to release new versions of \
all Certbot components during releases for the time being, however, the only \
changes in this release were to certbot-auto.
0.33.0:
Added
Fedora 29+ is now supported by certbot-auto. Since Python 2.x is on a \
deprecation path in Fedora, certbot-auto will install and use Python 3.x on \
Fedora 29+.
CLI flag --https-port has been added for Nginx plugin exclusively, and replaces \
--tls-sni-01-port. It defines the HTTPS port the Nginx plugin will use while \
setting up a new SSL vhost. By default the HTTPS port is 443.
Changed
Support for TLS-SNI-01 has been removed from all official Certbot plugins.
Attributes related to the TLS-SNI-01 challenge in acme.challenges and \
acme.standalone modules are deprecated and will be removed soon.
CLI flags --tls-sni-01-port and --tls-sni-01-address are now no-op, will \
generate a deprecation warning if used, and will be removed soon.
Options tls-sni and tls-sni-01 in --preferred-challenges flag are now no-op, \
will generate a deprecation warning if used, and will be removed soon.
CLI flag --standalone-supported-challenges has been removed.
Fixed
Certbot uses the Python library cryptography for OCSP when cryptography>=2.5 \
is installed. We fixed a bug in Certbot causing it to interpret timestamps in \
the OCSP response as being in the local timezone rather than UTC.
Issue causing the default CentOS 6 TLS configuration to ignore some of the HTTPS \
VirtualHosts created by Certbot. mod_ssl loading is now moved to main http.conf \
for this environment where possible.
Files: