diff --git a/manifest.json b/manifest.json index 08bd1b23..ba196d2c 100644 --- a/manifest.json +++ b/manifest.json @@ -258,1187 +258,1187 @@ { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/rekey/README.mdx" + "path": "/step-cli/reference/help/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/sign/README.mdx" + "path": "/step-cli/reference/api/token/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/renew/README.mdx" + "path": "/step-cli/reference/api/token/create/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/revoke/README.mdx" + "path": "/step-cli/reference/api/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/init/README.mdx" + "path": "/step-cli/reference/ssh/list/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/provisioner/list/README.mdx" + "path": "/step-cli/reference/ssh/hosts/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/provisioner/add/README.mdx" + "path": "/step-cli/reference/ssh/logout/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/provisioner/webhook/add/README.mdx" + "path": "/step-cli/reference/ssh/certificate/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/provisioner/webhook/README.mdx" + "path": "/step-cli/reference/ssh/config/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/provisioner/webhook/update/README.mdx" + "path": "/step-cli/reference/ssh/inspect/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/provisioner/webhook/remove/README.mdx" + "path": "/step-cli/reference/ssh/rekey/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/provisioner/README.mdx" + "path": "/step-cli/reference/ssh/check-host/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/provisioner/update/README.mdx" + "path": "/step-cli/reference/ssh/needs-renewal/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/provisioner/remove/README.mdx" + "path": "/step-cli/reference/ssh/renew/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/provisioner/jwe-key/README.mdx" + "path": "/step-cli/reference/ssh/proxycommand/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/acme/eab/list/README.mdx" + "path": "/step-cli/reference/ssh/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/acme/eab/add/README.mdx" + "path": "/step-cli/reference/ssh/login/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/acme/eab/README.mdx" + "path": "/step-cli/reference/ssh/fingerprint/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/acme/eab/remove/README.mdx" + "path": "/step-cli/reference/ssh/revoke/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/acme/README.mdx" + "path": "/step-cli/reference/version/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/admin/list/README.mdx" + "path": "/step-cli/reference/ca/init/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/admin/add/README.mdx" + "path": "/step-cli/reference/ca/certificate/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/admin/README.mdx" + "path": "/step-cli/reference/ca/root/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/admin/update/README.mdx" + "path": "/step-cli/reference/ca/rekey/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/admin/remove/README.mdx" + "path": "/step-cli/reference/ca/provisioner/jwe-key/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/bootstrap/README.mdx" + "path": "/step-cli/reference/ca/provisioner/remove/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/token/README.mdx" + "path": "/step-cli/reference/ca/provisioner/list/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/certificate/README.mdx" + "path": "/step-cli/reference/ca/provisioner/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/view/README.mdx" + "path": "/step-cli/reference/ca/provisioner/webhook/remove/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/allow/email/README.mdx" + "path": "/step-cli/reference/ca/provisioner/webhook/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/allow/principal/README.mdx" + "path": "/step-cli/reference/ca/provisioner/webhook/add/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/allow/README.mdx" + "path": "/step-cli/reference/ca/provisioner/webhook/update/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/allow/dns/README.mdx" + "path": "/step-cli/reference/ca/provisioner/add/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/README.mdx" + "path": "/step-cli/reference/ca/provisioner/update/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/deny/email/README.mdx" + "path": "/step-cli/reference/ca/renew/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/deny/principal/README.mdx" + "path": "/step-cli/reference/ca/token/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/deny/README.mdx" + "path": "/step-cli/reference/ca/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/deny/dns/README.mdx" + "path": "/step-cli/reference/ca/health/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/user/allow/email/README.mdx" + "path": "/step-cli/reference/ca/acme/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/user/allow/principal/README.mdx" + "path": "/step-cli/reference/ca/acme/eab/remove/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/user/allow/README.mdx" + "path": "/step-cli/reference/ca/acme/eab/list/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/user/README.mdx" + "path": "/step-cli/reference/ca/acme/eab/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/user/deny/email/README.mdx" + "path": "/step-cli/reference/ca/acme/eab/add/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/user/deny/principal/README.mdx" + "path": "/step-cli/reference/ca/sign/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/user/deny/README.mdx" + "path": "/step-cli/reference/ca/roots/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/ssh/README.mdx" + "path": "/step-cli/reference/ca/federation/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/allow/uri/README.mdx" + "path": "/step-cli/reference/ca/bootstrap/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/allow/email/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/remove/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/allow/ip/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/allow/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/allow/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/allow/email/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/allow/dns/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/allow/principal/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/allow/cn/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/allow/dns/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/wildcards/allow/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/deny/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/wildcards/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/deny/email/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/wildcards/deny/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/deny/principal/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/deny/dns/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/deny/uri/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/host/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/deny/email/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/user/allow/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/deny/ip/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/user/allow/email/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/deny/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/user/allow/principal/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/deny/dns/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/user/deny/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/x509/deny/cn/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/user/deny/email/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/user/deny/principal/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/provisioner/remove/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/user/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/view/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/ssh/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/allow/uri/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/wildcards/allow/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/allow/email/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/wildcards/deny/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/allow/ip/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/wildcards/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/allow/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/allow/cn/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/allow/dns/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/allow/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/allow/cn/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/allow/email/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/wildcards/allow/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/allow/uri/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/wildcards/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/allow/dns/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/wildcards/deny/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/allow/ip/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/deny/cn/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/deny/uri/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/deny/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/deny/email/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/deny/email/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/deny/ip/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/deny/uri/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/deny/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/deny/dns/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/deny/dns/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/deny/ip/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/x509/deny/cn/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/x509/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/acme/remove/README.mdx" + "path": "/step-cli/reference/ca/policy/provisioner/view/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/view/README.mdx" + "path": "/step-cli/reference/ca/policy/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/host/allow/email/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/remove/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/host/allow/principal/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/wildcards/allow/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/host/allow/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/wildcards/deny/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/host/allow/dns/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/wildcards/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/host/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/allow/cn/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/host/deny/email/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/allow/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/host/deny/principal/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/allow/email/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/host/deny/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/allow/uri/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/host/deny/dns/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/allow/dns/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/user/allow/email/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/allow/ip/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/user/allow/principal/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/deny/cn/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/user/allow/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/deny/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/user/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/deny/email/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/user/deny/email/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/deny/uri/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/user/deny/principal/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/deny/dns/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/user/deny/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/deny/ip/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/ssh/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/x509/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/allow/uri/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/allow/email/README.mdx" + "path": "/step-cli/reference/ca/policy/acme/view/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/allow/ip/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/remove/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/allow/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/host/allow/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/allow/dns/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/host/allow/email/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/allow/cn/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/host/allow/principal/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/wildcards/allow/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/host/allow/dns/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/wildcards/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/host/deny/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/wildcards/deny/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/host/deny/email/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/host/deny/principal/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/deny/uri/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/host/deny/dns/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/deny/email/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/host/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/deny/ip/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/user/allow/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/deny/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/user/allow/email/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/deny/dns/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/user/allow/principal/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/x509/deny/cn/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/user/deny/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/user/deny/email/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/authority/remove/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/user/deny/principal/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/policy/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/user/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/ssh/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/roots/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/wildcards/allow/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/root/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/wildcards/deny/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/federation/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/wildcards/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ca/health/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/allow/cn/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/otp/verify/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/allow/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/otp/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/allow/email/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/otp/generate/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/allow/uri/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jws/verify/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/allow/dns/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jws/sign/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/allow/ip/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jws/inspect/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/deny/cn/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jws/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/deny/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/rand/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/deny/email/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jose/format/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/deny/uri/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jose/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/deny/dns/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/hash/digest/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/deny/ip/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/hash/compare/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/x509/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/hash/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/keypair/README.mdx" + "path": "/step-cli/reference/ca/policy/authority/view/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwt/verify/README.mdx" + "path": "/step-cli/reference/ca/admin/remove/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwt/sign/README.mdx" + "path": "/step-cli/reference/ca/admin/list/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwt/inspect/README.mdx" + "path": "/step-cli/reference/ca/admin/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwt/README.mdx" + "path": "/step-cli/reference/ca/admin/add/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/secretbox/seal/README.mdx" + "path": "/step-cli/reference/ca/admin/update/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/secretbox/README.mdx" + "path": "/step-cli/reference/ca/revoke/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/secretbox/open/README.mdx" + "path": "/step-cli/reference/path/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/sign/sign/README.mdx" + "path": "/step-cli/reference/beta/ca/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/sign/keypair/README.mdx" + "path": "/step-cli/reference/beta/ca/acme/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/sign/README.mdx" + "path": "/step-cli/reference/beta/ca/acme/eab/remove/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/sign/open/README.mdx" + "path": "/step-cli/reference/beta/ca/acme/eab/list/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/auth/verify/README.mdx" + "path": "/step-cli/reference/beta/ca/acme/eab/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/auth/digest/README.mdx" + "path": "/step-cli/reference/beta/ca/acme/eab/add/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/auth/README.mdx" + "path": "/step-cli/reference/beta/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/box/seal/README.mdx" + "path": "/step-cli/reference/certificate/lint/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/box/keypair/README.mdx" + "path": "/step-cli/reference/certificate/format/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/box/README.mdx" + "path": "/step-cli/reference/certificate/verify/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/box/open/README.mdx" + "path": "/step-cli/reference/certificate/key/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/nacl/README.mdx" + "path": "/step-cli/reference/certificate/inspect/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/README.mdx" + "path": "/step-cli/reference/certificate/needs-renewal/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwk/keyset/list/README.mdx" + "path": "/step-cli/reference/certificate/uninstall/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwk/keyset/add/README.mdx" + "path": "/step-cli/reference/certificate/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwk/keyset/find/README.mdx" + "path": "/step-cli/reference/certificate/bundle/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwk/keyset/README.mdx" + "path": "/step-cli/reference/certificate/create/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwk/keyset/remove/README.mdx" + "path": "/step-cli/reference/certificate/sign/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwk/create/README.mdx" + "path": "/step-cli/reference/certificate/install/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwk/README.mdx" + "path": "/step-cli/reference/certificate/p12/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwk/public/README.mdx" + "path": "/step-cli/reference/certificate/fingerprint/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwk/thumbprint/README.mdx" + "path": "/step-cli/reference/crypto/kdf/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/key/verify/README.mdx" + "path": "/step-cli/reference/crypto/kdf/compare/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/key/fingerprint/README.mdx" + "path": "/step-cli/reference/crypto/kdf/hash/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/key/sign/README.mdx" + "path": "/step-cli/reference/crypto/jose/format/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/key/inspect/README.mdx" + "path": "/step-cli/reference/crypto/jose/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/key/format/README.mdx" + "path": "/step-cli/reference/crypto/jwt/verify/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/key/README.mdx" + "path": "/step-cli/reference/crypto/jwt/inspect/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/key/public/README.mdx" + "path": "/step-cli/reference/crypto/jwt/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/winpe/README.mdx" + "path": "/step-cli/reference/crypto/jwt/sign/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/winpe/extract/README.mdx" + "path": "/step-cli/reference/crypto/jwk/public/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/change-pass/README.mdx" + "path": "/step-cli/reference/crypto/jwk/keyset/remove/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/kdf/hash/README.mdx" + "path": "/step-cli/reference/crypto/jwk/keyset/list/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/kdf/compare/README.mdx" + "path": "/step-cli/reference/crypto/jwk/keyset/find/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/kdf/README.mdx" + "path": "/step-cli/reference/crypto/jwk/keyset/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwe/README.mdx" + "path": "/step-cli/reference/crypto/jwk/keyset/add/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwe/encrypt/README.mdx" + "path": "/step-cli/reference/crypto/jwk/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crypto/jwe/decrypt/README.mdx" + "path": "/step-cli/reference/crypto/jwk/create/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/api/token/create/README.mdx" + "path": "/step-cli/reference/crypto/jwk/thumbprint/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/api/token/README.mdx" + "path": "/step-cli/reference/crypto/key/public/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/api/README.mdx" + "path": "/step-cli/reference/crypto/key/format/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/help/README.mdx" + "path": "/step-cli/reference/crypto/key/verify/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/needs-renewal/README.mdx" + "path": "/step-cli/reference/crypto/key/inspect/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/check-host/README.mdx" + "path": "/step-cli/reference/crypto/key/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/list/README.mdx" + "path": "/step-cli/reference/crypto/key/sign/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/rekey/README.mdx" + "path": "/step-cli/reference/crypto/key/fingerprint/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/fingerprint/README.mdx" + "path": "/step-cli/reference/crypto/otp/verify/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/renew/README.mdx" + "path": "/step-cli/reference/crypto/otp/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/inspect/README.mdx" + "path": "/step-cli/reference/crypto/otp/generate/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/logout/README.mdx" + "path": "/step-cli/reference/crypto/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/revoke/README.mdx" + "path": "/step-cli/reference/crypto/jws/verify/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/proxycommand/README.mdx" + "path": "/step-cli/reference/crypto/jws/inspect/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/hosts/README.mdx" + "path": "/step-cli/reference/crypto/jws/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/login/README.mdx" + "path": "/step-cli/reference/crypto/jws/sign/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/certificate/README.mdx" + "path": "/step-cli/reference/crypto/rand/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/README.mdx" + "path": "/step-cli/reference/crypto/jwe/encrypt/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/ssh/config/README.mdx" + "path": "/step-cli/reference/crypto/jwe/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/fileserver/README.mdx" + "path": "/step-cli/reference/crypto/jwe/decrypt/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crl/inspect/README.mdx" + "path": "/step-cli/reference/crypto/change-pass/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/crl/README.mdx" + "path": "/step-cli/reference/crypto/winpe/extract/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/base64/README.mdx" + "path": "/step-cli/reference/crypto/winpe/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/certificate/needs-renewal/README.mdx" + "path": "/step-cli/reference/crypto/nacl/auth/digest/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/certificate/verify/README.mdx" + "path": "/step-cli/reference/crypto/nacl/auth/verify/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/certificate/fingerprint/README.mdx" + "path": "/step-cli/reference/crypto/nacl/auth/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/certificate/sign/README.mdx" + "path": "/step-cli/reference/crypto/nacl/secretbox/open/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/certificate/create/README.mdx" + "path": "/step-cli/reference/crypto/nacl/secretbox/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/certificate/inspect/README.mdx" + "path": "/step-cli/reference/crypto/nacl/secretbox/seal/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/certificate/uninstall/README.mdx" + "path": "/step-cli/reference/crypto/nacl/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/certificate/format/README.mdx" + "path": "/step-cli/reference/crypto/nacl/sign/open/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/certificate/p12/README.mdx" + "path": "/step-cli/reference/crypto/nacl/sign/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/certificate/lint/README.mdx" + "path": "/step-cli/reference/crypto/nacl/sign/sign/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/certificate/README.mdx" + "path": "/step-cli/reference/crypto/nacl/sign/keypair/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/certificate/key/README.mdx" + "path": "/step-cli/reference/crypto/nacl/box/open/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/certificate/install/README.mdx" + "path": "/step-cli/reference/crypto/nacl/box/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/certificate/bundle/README.mdx" + "path": "/step-cli/reference/crypto/nacl/box/seal/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/beta/ca/acme/eab/list/README.mdx" + "path": "/step-cli/reference/crypto/nacl/box/keypair/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/beta/ca/acme/eab/add/README.mdx" + "path": "/step-cli/reference/crypto/hash/digest/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/beta/ca/acme/eab/README.mdx" + "path": "/step-cli/reference/crypto/hash/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/beta/ca/acme/eab/remove/README.mdx" + "path": "/step-cli/reference/crypto/hash/compare/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/beta/ca/acme/README.mdx" + "path": "/step-cli/reference/crypto/keypair/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/beta/ca/README.mdx" + "path": "/step-cli/reference/oauth/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/beta/README.mdx" + "path": "/step-cli/reference/crl/inspect/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/oauth/README.mdx" + "path": "/step-cli/reference/crl/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/completion/README.mdx" + "path": "/step-cli/reference/fileserver/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/version/README.mdx" + "path": "/step-cli/reference/context/remove/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/context/list/README.mdx" + "path": "/step-cli/reference/context/current/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/context/README.mdx" + "path": "/step-cli/reference/context/list/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/context/remove/README.mdx" + "path": "/step-cli/reference/context/select/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/context/select/README.mdx" + "path": "/step-cli/reference/context/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/context/current/README.mdx" + "path": "/step-cli/reference/base64/README.mdx" }, { "hideFromSidebar": true, "title": "", - "path": "/step-cli/reference/path/README.mdx" + "path": "/step-cli/reference/completion/README.mdx" } ] } diff --git a/step-cli/reference/README.mdx b/step-cli/reference/README.mdx index 8a725454..58f103ae 100644 --- a/step-cli/reference/README.mdx +++ b/step-cli/reference/README.mdx @@ -65,7 +65,7 @@ print the version ## Version -Smallstep CLI/0.26.1 (linux/amd64) +Smallstep CLI/0.26.2 (linux/amd64) ## Copyright diff --git a/step-cli/reference/ca/provisioner/add/README.mdx b/step-cli/reference/ca/provisioner/add/README.mdx index f7d93e94..d401a12c 100644 --- a/step-cli/reference/ca/provisioner/add/README.mdx +++ b/step-cli/reference/ca/provisioner/add/README.mdx @@ -18,6 +18,8 @@ step ca provisioner add --type=JWK [--public-key=] [--admin-cert=] [--admin-key=] [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] +[--x509-template=] [--x509-template-data=] [--ssh-template=] +[--ssh-template-data=] ACME @@ -27,6 +29,7 @@ step ca provisioner add --type=ACME [--admin-cert=] [--admin-key=] [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] +[--x509-template=] [--x509-template-data=] OIDC @@ -37,6 +40,8 @@ step ca provisioner add --type=OIDC [--admin-cert=] [--admin-key=] [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] +[--x509-template=] [--x509-template-data=] [--ssh-template=] +[--ssh-template-data=] X5C @@ -44,6 +49,8 @@ step ca provisioner add --type=X5C --x5c-roots= [--admin-cert=] [--admin-key=] [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] +[--x509-template=] [--x509-template-data=] [--ssh-template=] +[--ssh-template-data=] SSHPOP @@ -59,14 +66,15 @@ step ca provisioner add --type=Nebula --nebula-root= [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] -K8SSA +K8SSA (Kubernetes Service Account) step ca provisioner add --type=K8SSA [--public-key=] [--admin-cert=] [--admin-key=] [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] +[--x509-template=] [--x509-template-data=] -IID +IID (AWS/GCP/Azure) step ca provisioner add --type=[AWS|Azure|GCP] [--aws-account=] [--gcp-service-account=] [--gcp-project=] @@ -77,6 +85,8 @@ step ca provisioner add --type=[AWS|Azure|GCP] [--admin-cert=] [--admin-key=] [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] +[--x509-template=] [--x509-template-data=] [--ssh-template=] +[--ssh-template-data=] SCEP @@ -88,6 +98,7 @@ step ca provisioner add --type=SCEP [--force-cn] [--challenge= [--admin-cert=] [--admin-key=] [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] +[--x509-template=] [--x509-template-data=] ``` ## Description diff --git a/step-cli/reference/ca/provisioner/update/README.mdx b/step-cli/reference/ca/provisioner/update/README.mdx index b3177096..59a9e5d6 100644 --- a/step-cli/reference/ca/provisioner/update/README.mdx +++ b/step-cli/reference/ca/provisioner/update/README.mdx @@ -18,6 +18,8 @@ step ca provisioner update [--public-key=] [--admin-cert=] [--admin-key=] [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] +[--x509-template=] [--x509-template-data=] [--ssh-template=] +[--ssh-template-data=] ACME @@ -27,6 +29,7 @@ step ca provisioner update [--force-cn] [--require-eab] [--attestation-roots=] [--admin-cert=] [--admin-key=] [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] +[--x509-template=] [--x509-template-data=] OIDC @@ -36,9 +39,13 @@ step ca provisioner update [--domain=] [--remove-domain=] [--group=] [--remove-group=] [--admin=]... [--remove-admin=]... +[--scope=] [--remove-scope=] +[--auth-param=] [--remove-auth-param=] [--admin-cert=] [--admin-key=] [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] +[--x509-template=] [--x509-template-data=] [--ssh-template=] +[--ssh-template-data=] X5C @@ -46,6 +53,8 @@ step ca provisioner update --x5c-roots= [--admin-cert=] [--admin-key=] [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] +[--x509-template=] [--x509-template-data=] [--ssh-template=] +[--ssh-template-data=] K8SSA (Kubernetes Service Account) @@ -53,6 +62,7 @@ step ca provisioner update [--public-key=] [--admin-cert=] [--admin-key=] [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] +[--x509-template=] [--x509-template-data=] IID (AWS/GCP/Azure) @@ -67,6 +77,8 @@ step ca provisioner update [--admin-cert=] [--admin-key=] [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] +[--x509-template=] [--x509-template-data=] [--ssh-template=] +[--ssh-template-data=] SCEP @@ -78,6 +90,7 @@ step ca provisioner update [--force-cn] [--challenge=] [--admin-cert=] [--admin-key=] [--admin-subject=] [--admin-provisioner=] [--admin-password-file=] [--ca-url=] [--root=] [--context=] [--ca-config=] +[--x509-template=] [--x509-template-data=] ``` ## Description @@ -142,6 +155,14 @@ Use the '--group' flag multiple times to configure multiple groups. **--tenant-id**=`tenant-id` The `tenant-id` used to replace the templatized tenantid value in the OpenID Configuration. +**--scope**=`scope` +The `scope` list used to validate the scopes extension in an OpenID Connect token. +Use the '--scope' flag multiple times to configure multiple scopes. + +**--auth-param**=`auth-param` +The `auth-param` list used to validate the auth-params extension in an OpenID Connect token. +Use the '--auth-param' flag multiple times to configure multiple auth-params. + **--x5c-roots**=`file`, **--x5c-root**=`file` PEM-formatted root certificate(s) `file` used to validate the signature on X5C provisioning tokens. diff --git a/step-cli/reference/certificate/sign/README.mdx b/step-cli/reference/certificate/sign/README.mdx index 9285a671..4b6657fc 100644 --- a/step-cli/reference/certificate/sign/README.mdx +++ b/step-cli/reference/certificate/sign/README.mdx @@ -14,8 +14,8 @@ menu: ```raw step certificate sign -[--profile=] [--template=] -[--set=] [--set-file=] +[--profile=] [--template=] +[--set=] [--set-file=] [--omit-cn-san] [--password-file=] [--path-len=] [--not-before=] [--not-after=] [--bundle] @@ -65,6 +65,13 @@ The `key=value` pair with template data variables. Use the **--set** flag multip **--set-file**=`file` The JSON `file` with the template data variables. +**--omit-cn-san** +Do not add CSR Common Name as SAN extension in resulting certificate. +By default, the CSR Common Name will be added as a SAN extension only if the CSR +does not contain any SANs. Note that if the Common Name is already captured as a +SAN extension in the CSR then it will still appear as a SAN extension in the +certificate. + **--password-file**=`file` The path to the `file` containing the password to encrypt or decrypt the private key. @@ -112,6 +119,11 @@ Sign a CSR with custom validity and bundle the new certificate with the issuer: $ step certificate sign --bundle --not-before -1m --not-after 16h leaf.csr issuer.crt issuer.key ``` +Sign a CSR but do not add the Common Name to the SANs extension of the certificate: +```shell +$ step certificate sign --omit-cn-san leaf.csr issuer.crt issuer.key +``` + Sign an intermediate ca: ```shell $ step certificate sign --profile intermediate-ca intermediate.csr issuer.crt issuer.key diff --git a/step-cli/reference/certificate/verify/README.mdx b/step-cli/reference/certificate/verify/README.mdx index a2fe435c..be665e76 100644 --- a/step-cli/reference/certificate/verify/README.mdx +++ b/step-cli/reference/certificate/verify/README.mdx @@ -15,6 +15,9 @@ menu: ```raw step certificate verify [--host=] [--roots=] [--servername=] +[--issuing-ca=] [--verbose] +[--verify-ocsp]] [--ocsp-endpoint]=url +[--verify-crl] [--crl-endpoint]=url ``` ## Description @@ -47,9 +50,30 @@ authenticity of the remote server. - **directory**: Relative or full path to a directory. Every PEM encoded certificate from each file in the directory will be used for path validation. +**--issuing-ca**=`file` +The certificate issuer CA `file` needed to communicate with OCSP and verify a CRL. By default the issuing CA will be taken from the cert Issuing Certificate URL extension. + +**--verify-ocsp** +Verify the certificate against it's OCSP. + +**--ocsp-endpoint**=`value` +The OCSP endpoint to use. If not provided step will attempt to check it against the certificate's OCSPServer AIA extension endpoints. + +**--verify-crl** +Verify the certificate against it's CRL. + +**--crl-endpoint**=`value` +The CRL endpoint to use. If not provided step will attempt to check it against the certificate's CRLDistributionPoints extension endpoints. + +**--verbose**, **-v** +Print result of certificate verification to stdout on success + **--servername**=`value` TLS Server Name Indication that should be sent to request a specific certificate from the server. +**--insecure** + + ## Exit codes This command returns 0 on success and >0 if any error occurs. @@ -87,4 +111,21 @@ Verify a certificate using a custom directory of root certificates for path vali $ step certificate verify ./certificate.crt --roots ./root-certificates/ ``` +Verify a certificate including OCSP and CRL using CRL and OCSP defined in the certificate + +```shell +$ step certificate verify ./certificate.crt --verify-crl --verify-ocsp +``` + +Verify a certificate including OCSP and specifying an OCSP server + +```shell +$ step certificate verify ./certificate.crt --verify-ocsp --ocsp-endpoint http://acme.com/ocsp +``` + +Verify a certificate including CRL and specificing a CRL server and providing the issuing CA certificate + +```shell +$ step certificate verify ./certificate.crt --issuing-ca ./issuing_ca.pem --verify-crl --crl-endpoint http://acme.com/crl +``` diff --git a/step-cli/reference/ssh/certificate/README.mdx b/step-cli/reference/ssh/certificate/README.mdx index 5ab0d1d5..017dd04c 100644 --- a/step-cli/reference/ssh/certificate/README.mdx +++ b/step-cli/reference/ssh/certificate/README.mdx @@ -16,10 +16,11 @@ menu: step ssh certificate [--host] [--host-id] [--sign] [--principal=] [--password-file=] [--provisioner-password-file=] -[--add-user] [--not-before=] +[--add-user] [--not-before=] [--comment=] [--not-after=] [--token=] [--issuer=] [--no-password] [--insecure] [--force] [--x5c-cert=] [--x5c-key=] [--k8ssa-token-path=] [--no-agent] +[--kty=] [--curve=] [--size=] [--ca-url=] [--root=] [--context=] ``` @@ -146,6 +147,40 @@ The path to the `file` containing the password to decrypt the one-time token **--sign** Sign the public key passed as an argument instead of creating one. +**--kty**=`kty` +The `kty` to build the certificate upon. +If unset, default is EC. + +`kty` is a case-sensitive string and must be one of: + +- **EC**: Create an **elliptic curve** keypair + +- **OKP**: Create an octet key pair (for **"Ed25519"** curve) + +- **RSA**: Create an **RSA** keypair + +**--crv**=`curve`, **--curve**=`curve` +The elliptic `curve` to use for EC and OKP key types. Corresponds +to the **"crv"** JWK parameter. Valid curves are defined in JWA [RFC7518]. If +unset, default is P-256 for EC keys and Ed25519 for OKP keys. + +`curve` is a case-sensitive string and must be one of: + +- **P-256**: NIST P-256 Curve + +- **P-384**: NIST P-384 Curve + +- **P-521**: NIST P-521 Curve + +- **Ed25519**: Ed25519 Curve + +**--size**=`size` +The `size` (in bits) of the key for RSA and oct key types. RSA keys require a +minimum key size of 2048 bits. If unset, default is 2048 bits for RSA keys and 128 bits for oct keys. + +**--comment**=`value` +The comment used when adding the certificate to an agent. Defaults to the subject if not provided. + **--kms**=`uri` The `uri` to configure a Cloud KMS or an HSM. @@ -249,3 +284,15 @@ Generate a new key pair and a certificate using a given token: $ step ssh certificate --token $TOKEN mariano@work id_ecdsa ``` +Create an EC pair with curve P-521 and certificate: + +```shell +$ step ssh certificate --kty EC --curve "P-521" mariano@work id_ecdsa +``` + +Create an Octet Key Pair with curve Ed25519 and certificate: + +```shell +$ step ssh certificate --kty OKP --curve Ed25519 mariano@work id_ed25519 +``` + diff --git a/step-cli/reference/ssh/login/README.mdx b/step-cli/reference/ssh/login/README.mdx index 50e42c15..84eb6be3 100644 --- a/step-cli/reference/ssh/login/README.mdx +++ b/step-cli/reference/ssh/login/README.mdx @@ -16,7 +16,8 @@ menu: step ssh login [] [--token=] [--provisioner=] [--provisioner-password-file=] [--principal=] [--not-before=] [--not-after=] -[--set=] [--set-file=] [--force] +[--kty=] [--curve=] [--size=] [--comment=] +[--set=] [--set-file=] [--force] [--insecure] [--offline] [--ca-config=] [--ca-url=] [--root=] [--context=] ``` @@ -106,6 +107,43 @@ The path to the PEM `file` used as the root certificate authority. **--context**=`name` The context `name` to apply for the given command. +**--comment**=`value` +The comment used when adding the certificate to an agent. Defaults to the subject if not provided. + +**--kty**=`kty` +The `kty` to build the certificate upon. +If unset, default is EC. + +`kty` is a case-sensitive string and must be one of: + +- **EC**: Create an **elliptic curve** keypair + +- **OKP**: Create an octet key pair (for **"Ed25519"** curve) + +- **RSA**: Create an **RSA** keypair + +**--crv**=`curve`, **--curve**=`curve` +The elliptic `curve` to use for EC and OKP key types. Corresponds +to the **"crv"** JWK parameter. Valid curves are defined in JWA [RFC7518]. If +unset, default is P-256 for EC keys and Ed25519 for OKP keys. + +`curve` is a case-sensitive string and must be one of: + +- **P-256**: NIST P-256 Curve + +- **P-384**: NIST P-384 Curve + +- **P-521**: NIST P-521 Curve + +- **Ed25519**: Ed25519 Curve + +**--size**=`size` +The `size` (in bits) of the key for RSA and oct key types. RSA keys require a +minimum key size of 2048 bits. If unset, default is 2048 bits for RSA keys and 128 bits for oct keys. + +**--insecure** + + ## Examples Request a new SSH certificate and add it to the agent: @@ -128,3 +166,18 @@ Request a new SSH certificate with multiple principals: $ step ssh login --principal admin --principal bob bob@smallstep.com ``` +Request a new SSH certificate and set a custom comment in the agent +```shell +$ step ssh login --comment my-custom-comment bob@smallstep.com +``` + +Request a new SSH certificate with an EC key and P-521 curve: +```shell +$ step ssh certificate --kty EC --curve "P-521" mariano@work id_ecdsa +``` + +Request a new SSH certificate with an Octet Key Pair and Ed25519 curve: +```shell +$ step ssh certificate --kty OKP --curve Ed25519 mariano@work id_ed25519 +``` +