v1.4.3

GordyD/3reev1.4.3Nov 25, 2020by FiloSottile

AI Summary

Simplifies the Extended Key Usage (EKU) logic to align with standard certificate generation and migrates the build process to GitHub Actions.

Key Highlights

  • Simplified EKU logic for certificate generation
  • ServerAuth, clientAuth, and emailProtection are included based on SANs
  • Certificate generation is now consistent with standards
  • Releases are now built from GitHub Actions

New Features

  • GitHub Actions integration for builds

Full Release Notes

The EKU logic is now simpler, and it follows the following rules

* if an IP address, DNS name, or URI SAN is present, serverAuth is included
* if `-client` is used, clientAuth is included
* if an email address SAN in present, emailProtection is included

Certificate generation based on CSRs is now consistent with standard certificate generation.

Releases are now built from GitHub Actions.