Files
nats-server/server
Todd Beets 832dcc9246 Support TLS 1.2 RSA signature with PKCS#1 v1.5 padding (#4244)
Cert Store (aka wincert) feature wasn't properly handling TLS 1.2
handshake with TLS 1.2 clients that do not support RSA signature with
PSS padding.

With this update, Cert Store will perform either PKCS#1 v1.5 or PSS
padding for RSA signature depending on what type is negotiated by the
TLS 1.2 client.

Issue surfaces with the NATS .NET v1 client which supports TLS 1.2 only
(.NET 4.6.2 dependency) only when the client application was hosted on
Windows 10 Enterprise LTSC 2019 (equivalent also to Windows 10 1809 and
Windows Server 2019). If the same client was executed on a more modern
Windows 10 release, RSA signature with PSS padding was negotiated and
succeeded normally.

The Go NATS client as well as any client operating at TLS 1.3 level
would not exhibit the issue as TLS 1.3 requires PSS.

Fix tested good on Windows 10 Enterprise LTSC 2019 host and in confirmed
fixed in user's Windows environment where the issue was originally
detected.
2023-06-14 08:27:17 -07:00
..
2023-02-10 10:29:26 +00:00
2023-01-27 08:35:59 -08:00
2022-07-05 09:33:12 +01:00
2023-05-16 14:15:22 -06:00
2023-06-05 14:13:18 -07:00
2023-06-05 14:13:18 -07:00
2022-09-08 11:28:23 -06:00
2023-06-12 14:12:27 -07:00
2023-06-09 09:29:13 -07:00
2021-11-15 17:23:08 -07:00
2022-07-05 09:28:00 +01:00
2021-11-15 17:23:08 -07:00
2023-06-10 20:56:42 -07:00
2023-06-10 20:56:42 -07:00
2023-04-26 18:42:31 -07:00
2023-06-10 15:23:33 -07:00
2022-11-14 08:28:19 -08:00
2023-04-03 09:32:28 -06:00
2023-06-10 20:56:42 -07:00
2023-06-02 13:19:22 +03:00
2023-06-10 17:03:36 -07:00
2023-05-15 15:44:38 -07:00
2023-06-09 18:25:17 -07:00
2023-02-10 10:29:26 +00:00
2023-02-10 10:29:26 +00:00
2023-05-15 15:44:38 -07:00
2023-06-13 17:22:21 -06:00
2023-06-09 09:29:13 -07:00
2020-06-12 10:03:47 -06:00
2023-04-12 11:48:22 -07:00
2023-04-12 11:48:22 -07:00
2023-06-08 09:34:41 -07:00
2023-05-19 12:16:24 -06:00
2023-06-05 14:13:18 -07:00
2023-04-29 19:52:57 -07:00
2023-06-05 14:13:18 -07:00
2021-11-15 17:23:08 -07:00
2023-01-17 17:40:39 -08:00
2022-12-27 09:41:39 +01:00
2021-11-15 17:23:08 -07:00
2023-02-10 10:29:26 +00:00
2022-07-05 09:33:12 +01:00
2021-09-01 14:55:26 -07:00
2022-07-05 09:28:00 +01:00
2022-03-25 12:11:55 -06:00

Tests

Tests that run on Travis have been split into jobs that run in their own VM in parallel. This reduces the overall running time but also is allowing recycling of a job when we get a flapper as opposed to have to recycle the whole test suite.

JetStream Tests

For JetStream tests, we need to observe a naming convention so that no tests are omitted when running on Travis.

The script runTestsOnTravis.sh will run a given job based on the definition found in ".travis.yml".

As for the naming convention:

  • All JetStream tests name should start with TestJetStream
  • Cluster tests should go into jetstream_cluster_test.go and start with TestJetStreamCluster
  • Super-cluster tests should go into jetstream_super_cluster_test.go and start with TestJetStreamSuperCluster

Not following this convention means that some tests may not be executed on Travis.