mirror of
https://github.com/GSA/notifications-api.git
synced 2026-08-28 10:13:41 -04:00
Compare commits
9 Commits
d77029d279
...
4-24-2025
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
2fb1e96ba2 | ||
|
|
9f0b6b0ca1 | ||
|
|
7dd1751556 | ||
|
|
3ae7749d0b | ||
|
|
f6cc4afab7 | ||
|
|
6325849855 | ||
|
|
b564a8800e | ||
|
|
d99661863f | ||
|
|
0a6bbe035a |
16
docs/all.md
16
docs/all.md
@@ -1507,3 +1507,19 @@ Note: better to search on space 'notify-production' rather than specifically for
|
||||
#notify-admin-1505 (general login issues)
|
||||
#notify-admin-1701 (wrong sender phone number)
|
||||
#notify-admin-1859 (job is created with created_at being the wrong time)
|
||||
|
||||
### refreshing the login.gov certificate
|
||||
|
||||
1. generate certificate: `openssl req -x509 -newkey rsa:2048 -keyout key.pem -out cert.crt -nodes`
|
||||
2. update the github secrets for staging, demo, production (contents of key.pem go in LOGIN_PEM and contents of cert.crt in LOGIN_PUB).
|
||||
DO NOT RESTAGE YET.
|
||||
3. use the same certificate for staging, demo, and production
|
||||
4. login to the login.gov partner app (https://portal.int.identitysandbox.gov)
|
||||
5. add the new certificate to the production version of Notify in the partner app (our partner app account has sandbox and production)
|
||||
6. Make a Zendesk support request for login.gov to push the new version of Notify (https://zendesk.login.gov)
|
||||
7. Do not delete the old certificate, because you need things to keep working until you complete the transition.
|
||||
8. When you receive an email from login.gov that the app has been pushed successfully, restage notify on the staging tier
|
||||
9. If staging works, you can restage demo and production
|
||||
10. Delete the old certificate in the partner app, send another zendesk request to push again. This is best practice but a lower
|
||||
priority, because certificates eventually expire anyway and we have changed the certificate in github secrets, so the old cert is
|
||||
no longer relevant.
|
||||
|
||||
31
poetry.lock
generated
31
poetry.lock
generated
@@ -1562,14 +1562,14 @@ tests = ["flask-marshmallow[sqlalchemy]", "pytest"]
|
||||
|
||||
[[package]]
|
||||
name = "flask-migrate"
|
||||
version = "4.0.7"
|
||||
version = "4.1.0"
|
||||
description = "SQLAlchemy database migrations for Flask applications using Alembic."
|
||||
optional = false
|
||||
python-versions = ">=3.6"
|
||||
groups = ["main"]
|
||||
files = [
|
||||
{file = "Flask-Migrate-4.0.7.tar.gz", hash = "sha256:dff7dd25113c210b069af280ea713b883f3840c1e3455274745d7355778c8622"},
|
||||
{file = "Flask_Migrate-4.0.7-py3-none-any.whl", hash = "sha256:5c532be17e7b43a223b7500d620edae33795df27c75811ddf32560f7d48ec617"},
|
||||
{file = "Flask_Migrate-4.1.0-py3-none-any.whl", hash = "sha256:24d8051af161782e0743af1b04a152d007bad9772b2bca67b7ec1e8ceeb3910d"},
|
||||
{file = "flask_migrate-4.1.0.tar.gz", hash = "sha256:1a336b06eb2c3ace005f5f2ded8641d534c18798d64061f6ff11f79e1434126d"},
|
||||
]
|
||||
|
||||
[package.dependencies]
|
||||
@@ -1577,6 +1577,10 @@ alembic = ">=1.9.0"
|
||||
Flask = ">=0.9"
|
||||
Flask-SQLAlchemy = ">=1.0"
|
||||
|
||||
[package.extras]
|
||||
dev = ["flake8", "pytest", "tox"]
|
||||
docs = ["sphinx"]
|
||||
|
||||
[[package]]
|
||||
name = "flask-redis"
|
||||
version = "0.4.0"
|
||||
@@ -3146,14 +3150,14 @@ test = ["pytest"]
|
||||
|
||||
[[package]]
|
||||
name = "packaging"
|
||||
version = "24.2"
|
||||
version = "25.0"
|
||||
description = "Core utilities for Python packages"
|
||||
optional = false
|
||||
python-versions = ">=3.8"
|
||||
groups = ["main", "dev"]
|
||||
files = [
|
||||
{file = "packaging-24.2-py3-none-any.whl", hash = "sha256:09abb1bccd265c01f4a3aa3f7a7db064b36514d2cba19a2f694fe6150451a759"},
|
||||
{file = "packaging-24.2.tar.gz", hash = "sha256:c228a6dc5e932d346bc5739379109d49e8853dd8223571c7c5b55260edc0b97f"},
|
||||
{file = "packaging-25.0-py3-none-any.whl", hash = "sha256:29572ef2b1f17581046b3a2227d5c611fb25ec70ca1ba8554b24b0e69331a484"},
|
||||
{file = "packaging-25.0.tar.gz", hash = "sha256:d443872c98d677bf60f6a1f2f8c1cb748e8fe762d2bf9d3148b5599295b0fc4f"},
|
||||
]
|
||||
|
||||
[[package]]
|
||||
@@ -3932,16 +3936,19 @@ docs = ["sphinx"]
|
||||
|
||||
[[package]]
|
||||
name = "python-json-logger"
|
||||
version = "2.0.7"
|
||||
description = "A python library adding a json log formatter"
|
||||
version = "3.3.0"
|
||||
description = "JSON Log Formatter for the Python Logging Package"
|
||||
optional = false
|
||||
python-versions = ">=3.6"
|
||||
python-versions = ">=3.8"
|
||||
groups = ["main"]
|
||||
files = [
|
||||
{file = "python-json-logger-2.0.7.tar.gz", hash = "sha256:23e7ec02d34237c5aa1e29a070193a4ea87583bb4e7f8fd06d3de8264c4b2e1c"},
|
||||
{file = "python_json_logger-2.0.7-py3-none-any.whl", hash = "sha256:f380b826a991ebbe3de4d897aeec42760035ac760345e57b812938dc8b35e2bd"},
|
||||
{file = "python_json_logger-3.3.0-py3-none-any.whl", hash = "sha256:dd980fae8cffb24c13caf6e158d3d61c0d6d22342f932cb6e9deedab3d35eec7"},
|
||||
{file = "python_json_logger-3.3.0.tar.gz", hash = "sha256:12b7e74b17775e7d565129296105bbe3910842d9d0eb083fc83a6a617aa8df84"},
|
||||
]
|
||||
|
||||
[package.extras]
|
||||
dev = ["backports.zoneinfo ; python_version < \"3.9\"", "black", "build", "freezegun", "mdx_truly_sane_lists", "mike", "mkdocs", "mkdocs-awesome-pages-plugin", "mkdocs-gen-files", "mkdocs-literate-nav", "mkdocs-material (>=8.5)", "mkdocstrings[python]", "msgspec ; implementation_name != \"pypy\"", "mypy", "orjson ; implementation_name != \"pypy\"", "pylint", "pytest", "tzdata", "validate-pyproject[all]"]
|
||||
|
||||
[[package]]
|
||||
name = "python-socketio"
|
||||
version = "5.13.0"
|
||||
@@ -5555,4 +5562,4 @@ cffi = ["cffi (>=1.11)"]
|
||||
[metadata]
|
||||
lock-version = "2.1"
|
||||
python-versions = "^3.12.2"
|
||||
content-hash = "4ad2256f4a9301cf8421e5da16cc7ca14be9c49d3c79b1b1799dd51ba7dc4a7f"
|
||||
content-hash = "2ac4ca1dcd977d2dd0a942613ff4f35a6e1c41b613e81576dda0668e609ee20a"
|
||||
|
||||
@@ -29,7 +29,7 @@ expiringdict = "==1.2.2"
|
||||
flask = "~=3.0"
|
||||
flask-bcrypt = "==1.0.1"
|
||||
flask-marshmallow = "==1.2.1"
|
||||
flask-migrate = "==4.0.7"
|
||||
flask-migrate = "==4.1.0"
|
||||
flask-redis = "==0.4.0"
|
||||
flask-sqlalchemy = "==3.1.1"
|
||||
gunicorn = {version = "==23.0.0", extras = ["eventlet"]}
|
||||
@@ -41,7 +41,7 @@ marshmallow-sqlalchemy = "==1.0.0"
|
||||
newrelic = "*"
|
||||
notifications-python-client = "==10.0.0"
|
||||
oscrypto = { git = "https://github.com/wbond/oscrypto.git", rev = "1547f53" }
|
||||
packaging = "==24.2"
|
||||
packaging = "==25.0"
|
||||
poetry-dotenv-plugin = "==0.2.0"
|
||||
psycopg2-binary = "==2.9.9"
|
||||
pyjwt = "==2.10.1"
|
||||
@@ -55,7 +55,7 @@ geojson = "^3.2.0"
|
||||
numpy = "^2.2.5"
|
||||
ordered-set = "^4.1.0"
|
||||
phonenumbers = "^8.13.42"
|
||||
python-json-logger = "^2.0.7"
|
||||
python-json-logger = "^3.3.0"
|
||||
regex = "^2024.11.6"
|
||||
shapely = "^2.0.5"
|
||||
smartypants = "^2.0.1"
|
||||
|
||||
Reference in New Issue
Block a user