mirror of
https://github.com/GSA/notifications-api.git
synced 2026-08-24 16:23:44 -04:00
Compare commits
10 Commits
d77029d279
...
h11-fix
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
b6aa359957 | ||
|
|
2fb1e96ba2 | ||
|
|
9f0b6b0ca1 | ||
|
|
7dd1751556 | ||
|
|
3ae7749d0b | ||
|
|
f6cc4afab7 | ||
|
|
6325849855 | ||
|
|
b564a8800e | ||
|
|
d99661863f | ||
|
|
0a6bbe035a |
16
docs/all.md
16
docs/all.md
@@ -1507,3 +1507,19 @@ Note: better to search on space 'notify-production' rather than specifically for
|
||||
#notify-admin-1505 (general login issues)
|
||||
#notify-admin-1701 (wrong sender phone number)
|
||||
#notify-admin-1859 (job is created with created_at being the wrong time)
|
||||
|
||||
### refreshing the login.gov certificate
|
||||
|
||||
1. generate certificate: `openssl req -x509 -newkey rsa:2048 -keyout key.pem -out cert.crt -nodes`
|
||||
2. update the github secrets for staging, demo, production (contents of key.pem go in LOGIN_PEM and contents of cert.crt in LOGIN_PUB).
|
||||
DO NOT RESTAGE YET.
|
||||
3. use the same certificate for staging, demo, and production
|
||||
4. login to the login.gov partner app (https://portal.int.identitysandbox.gov)
|
||||
5. add the new certificate to the production version of Notify in the partner app (our partner app account has sandbox and production)
|
||||
6. Make a Zendesk support request for login.gov to push the new version of Notify (https://zendesk.login.gov)
|
||||
7. Do not delete the old certificate, because you need things to keep working until you complete the transition.
|
||||
8. When you receive an email from login.gov that the app has been pushed successfully, restage notify on the staging tier
|
||||
9. If staging works, you can restage demo and production
|
||||
10. Delete the old certificate in the partner app, send another zendesk request to push again. This is best practice but a lower
|
||||
priority, because certificates eventually expire anyway and we have changed the certificate in github secrets, so the old cert is
|
||||
no longer relevant.
|
||||
|
||||
576
poetry.lock
generated
576
poetry.lock
generated
File diff suppressed because it is too large
Load Diff
@@ -29,7 +29,7 @@ expiringdict = "==1.2.2"
|
||||
flask = "~=3.0"
|
||||
flask-bcrypt = "==1.0.1"
|
||||
flask-marshmallow = "==1.2.1"
|
||||
flask-migrate = "==4.0.7"
|
||||
flask-migrate = "==4.1.0"
|
||||
flask-redis = "==0.4.0"
|
||||
flask-sqlalchemy = "==3.1.1"
|
||||
gunicorn = {version = "==23.0.0", extras = ["eventlet"]}
|
||||
@@ -41,7 +41,7 @@ marshmallow-sqlalchemy = "==1.0.0"
|
||||
newrelic = "*"
|
||||
notifications-python-client = "==10.0.0"
|
||||
oscrypto = { git = "https://github.com/wbond/oscrypto.git", rev = "1547f53" }
|
||||
packaging = "==24.2"
|
||||
packaging = "==25.0"
|
||||
poetry-dotenv-plugin = "==0.2.0"
|
||||
psycopg2-binary = "==2.9.9"
|
||||
pyjwt = "==2.10.1"
|
||||
@@ -55,7 +55,7 @@ geojson = "^3.2.0"
|
||||
numpy = "^2.2.5"
|
||||
ordered-set = "^4.1.0"
|
||||
phonenumbers = "^8.13.42"
|
||||
python-json-logger = "^2.0.7"
|
||||
python-json-logger = "^3.3.0"
|
||||
regex = "^2024.11.6"
|
||||
shapely = "^2.0.5"
|
||||
smartypants = "^2.0.1"
|
||||
|
||||
Reference in New Issue
Block a user