Commit Graph

  • 37e12b4024 Start backfilling some audit unit tests in post_login_handler Joshua Casey 2024-11-12 17:23:17 -06:00
  • e126ee5495 all callers of Audit() identify which keys may contain PII Ryan Richard 2024-11-12 12:22:41 -08:00
  • a308f3f22a audit log: keep key ordering in personalInfo, render nil slices and maps Ryan Richard 2024-11-12 11:35:59 -08:00
  • c5f4cce3ae make Audit() take struct as param for all optional params and redact PII Ryan Richard 2024-11-11 18:05:00 -08:00
  • ced8686d11 add config for audit logging, remove Audit() from Logger interface Ryan Richard 2024-11-11 15:21:14 -08:00
  • 76f6b725b8 Fix some rebase conflicts Joshua Casey 2024-11-11 10:33:01 -06:00
  • f9e1dd4bec Backfill unit tests for garbage_collector audit logging Joshua Casey 2024-11-11 10:13:07 -06:00
  • f4f393e5de Audit event 'HTTP Request Completed' will now log the location with err, error, and error_description query parameters Joshua Casey 2024-11-08 15:36:04 -06:00
  • 2db5dda266 Add last audit log unit tests to auth_handler Joshua Casey 2024-11-08 15:28:52 -06:00
  • 8cf9c59957 refactor to move audit event message types to their own pkg Ryan Richard 2024-11-07 14:15:04 -08:00
  • 088556193d auth handler audit logs headers and params when http method is wrong Ryan Richard 2024-11-07 14:04:36 -08:00
  • 18d3ab3d15 The 'HTTP Request Parameters' audit event now logs params as a JSON object Joshua Casey 2024-11-07 09:43:33 -06:00
  • dc6faa33bb Log params to token_handler endpoint even during error cases Joshua Casey 2024-11-06 10:26:28 -06:00
  • 0d22ae2c1a Fix lint and unit test compilation Joshua Casey 2024-11-04 14:41:13 -06:00
  • 362d982906 Start to backfill some audit unit tests for the token_handler Joshua Casey 2024-11-04 14:24:19 -06:00
  • 1006dd9379 resolve some todos Ryan Richard 2024-11-04 11:10:37 -08:00
  • 369316556a Add configuration to audit internal endpoints and backfill unit tests Joshua Casey 2024-11-04 12:15:20 -06:00
  • cf4b29de4b Clarify docs Joshua Casey 2024-11-04 09:28:31 -06:00
  • 09ca7920ea Extract testutil helper function Joshua Casey 2024-11-01 13:55:29 -05:00
  • 9994e033b2 Add audit event tests for login_handler Joshua Casey 2024-11-01 13:52:31 -05:00
  • dd56f2b47f Add audit event tests for callback_handler Joshua Casey 2024-11-01 12:25:55 -05:00
  • 4df043a91c document audit logging Ryan Richard 2024-11-01 14:12:13 -07:00
  • d020de4b3d update fips reference doc Ryan Richard 2024-11-01 12:54:49 -07:00
  • dd42f35db0 plog.TestLogger returns a buffer that holds the logs Joshua Casey 2024-11-01 09:18:47 -05:00
  • a67af9455b Refactor: don't copy the loop variable in test loops Joshua Casey 2024-11-01 08:48:04 -05:00
  • d729c82f84 fix lint Joshua Casey 2024-11-01 08:45:15 -05:00
  • 44e218194b Add 'AuthorizeID From Parameters' audit logs to the /callback and /login endpoints Joshua Casey 2024-10-31 17:00:52 -05:00
  • bf1e37f149 Use a helper to verify audit messages Joshua Casey 2024-10-31 10:15:27 -05:00
  • aee56c388f Check the sessionID as well Joshua Casey 2024-10-30 15:22:13 -05:00
  • fd5a10bee7 WIP: Add audit event when upstream redirect occurs and backfill tests Joshua Casey 2024-10-29 16:52:19 -05:00
  • b20e890f15 Add testutil.RequireLogLines to verify multiple log lines at once Joshua Casey 2024-10-29 16:47:29 -05:00
  • 4f9530eec7 audit logging WIP Ryan Richard 2024-07-05 11:06:31 -07:00
  • 615b60bd37 Merge pull request #2143 from vmware-tanzu/rr/kube-cert-agent-for-unschedulable-nodes Joshua Casey 2024-11-27 12:27:33 -06:00
  • e61afcd109 Merge branch 'main' into rr/kube-cert-agent-for-unschedulable-nodes Joshua Casey 2024-11-27 10:05:20 -06:00
  • 6ac5446940 Merge pull request #2142 from vmware-tanzu/pinny/bump-deps Joshua Casey 2024-11-27 09:46:46 -06:00
  • 0706681180 Bump dependencies Pinny 2024-11-27 14:03:34 +00:00
  • 45bc187ee4 Merge pull request #2144 from vmware-tanzu/dependabot/docker/dockerfiles/eks-deployer/ci/amazon/aws-cli-2.22.5 Ryan Richard 2024-11-26 12:31:06 -08:00
  • 434b1e2818 Bump amazon/aws-cli from 2.22.4 to 2.22.5 in /dockerfiles/eks-deployer dependabot[bot] 2024-11-26 01:31:55 +00:00
  • e44d70b41d kube cert agent controller avoids unschedulable nodes when possible Ryan Richard 2024-11-25 12:24:49 -08:00
  • b0904132c4 Merge pull request #2141 from vmware-tanzu/dependabot/docker/dockerfiles/eks-deployer/ci/amazon/aws-cli-2.22.4 Ryan Richard 2024-11-25 13:10:23 -08:00
  • d376fd318f Bump amazon/aws-cli from 2.22.2 to 2.22.4 in /dockerfiles/eks-deployer dependabot[bot] 2024-11-25 02:07:50 +00:00
  • 2d62a03bb2 add debugging echos to usage of "kubectl api-resources" Ryan Richard 2024-11-21 11:42:38 -08:00
  • 4bf810cb8f Merge pull request #2139 from vmware-tanzu/pinny/bump-deps Joshua Casey 2024-11-21 12:13:23 -06:00
  • 8e72e0e20b Merge pull request #2138 from vmware-tanzu/dependabot/docker/dockerfiles/eks-deployer/ci/amazon/aws-cli-2.22.2 Joshua Casey 2024-11-21 09:54:34 -06:00
  • c791db4c52 Bump dependencies Pinny 2024-11-21 14:04:17 +00:00
  • 48a90ae2dc Bump amazon/aws-cli from 2.22.1 to 2.22.2 in /dockerfiles/eks-deployer dependabot[bot] 2024-11-21 01:21:58 +00:00
  • 40c15acde9 Merge pull request #2133 from vmware-tanzu/dependabot/docker/dockerfiles/eks-deployer/ci/amazon/aws-cli-2.22.1 Joshua Casey 2024-11-19 20:37:48 -06:00
  • 3033f87e41 Merge pull request #2134 from vmware-tanzu/dependabot/docker/dockerfiles/k8s-app-deployer/ci/google/cloud-sdk-502.0.0-slim Joshua Casey 2024-11-19 20:37:45 -06:00
  • 6450d0a307 Merge pull request #2135 from vmware-tanzu/dependabot/docker/dockerfiles/integration-test-runner/ci/google/cloud-sdk-502.0.0-slim Joshua Casey 2024-11-19 20:37:42 -06:00
  • 985137df8d Merge pull request #2136 from vmware-tanzu/dependabot/docker/dockerfiles/integration-test-runner-beta/ci/google/cloud-sdk-502.0.0-slim Joshua Casey 2024-11-19 20:37:39 -06:00
  • fe3cd8cabe Bump google/cloud-sdk in /dockerfiles/integration-test-runner-beta dependabot[bot] 2024-11-20 02:01:20 +00:00
  • 25cbd87648 Bump google/cloud-sdk in /dockerfiles/integration-test-runner dependabot[bot] 2024-11-20 01:57:22 +00:00
  • 1cf10bbdc6 Bump google/cloud-sdk in /dockerfiles/k8s-app-deployer dependabot[bot] 2024-11-20 01:52:27 +00:00
  • 02e0b0e2c7 Bump amazon/aws-cli from 2.22.0 to 2.22.1 in /dockerfiles/eks-deployer dependabot[bot] 2024-11-20 01:25:10 +00:00
  • a41a296b55 remove a test from PR pipeline that isn't needed until main pipeline Ryan Richard 2024-11-19 15:05:14 -08:00
  • 45b3f4ec8f Merge pull request #2131 from vmware-tanzu/dependabot/docker/dockerfiles/eks-deployer/ci/amazon/aws-cli-2.22.0 Joshua Casey 2024-11-18 20:59:48 -06:00
  • 82461287a4 Bump amazon/aws-cli from 2.21.3 to 2.22.0 in /dockerfiles/eks-deployer dependabot[bot] 2024-11-19 01:17:33 +00:00
  • 10f005fc7d use check_every on most resource checks to conserve worker resources Ryan Richard 2024-11-18 11:15:13 -08:00
  • 81ff7ce484 Merge pull request #2125 from vmware-tanzu/dependabot/docker/dockerfiles/eks-deployer/ci/mikefarah/yq-4.44.5 Joshua Casey 2024-11-17 20:48:21 -06:00
  • 33c2cdc9d9 Bump mikefarah/yq from 4.44.3 to 4.44.5 in /dockerfiles/eks-deployer dependabot[bot] 2024-11-18 02:48:13 +00:00
  • f1e3ba9eca Merge pull request #2126 from vmware-tanzu/dependabot/docker/dockerfiles/eks-deployer/ci/amazon/aws-cli-2.21.3 Joshua Casey 2024-11-17 20:47:35 -06:00
  • 7bf68cbf8e Merge pull request #2127 from vmware-tanzu/dependabot/docker/dockerfiles/integration-test-runner/ci/mikefarah/yq-4.44.5 Joshua Casey 2024-11-17 20:47:32 -06:00
  • 38adfff384 Merge pull request #2128 from vmware-tanzu/dependabot/docker/dockerfiles/integration-test-runner-beta/ci/mikefarah/yq-4.44.5 Joshua Casey 2024-11-17 20:47:29 -06:00
  • 98a0e42f20 Merge pull request #2129 from vmware-tanzu/dependabot/docker/dockerfiles/crane/ci/mikefarah/yq-4.44.5 Joshua Casey 2024-11-17 20:47:26 -06:00
  • ca0f632790 Merge pull request #2130 from vmware-tanzu/dependabot/docker/dockerfiles/deployment-yaml-formatter/ci/mikefarah/yq-4.44.5 Joshua Casey 2024-11-17 20:47:23 -06:00
  • 08f0bdead4 Bump mikefarah/yq in /dockerfiles/deployment-yaml-formatter dependabot[bot] 2024-11-18 02:10:35 +00:00
  • 313b16530a Bump mikefarah/yq from 4.44.3 to 4.44.5 in /dockerfiles/crane dependabot[bot] 2024-11-18 02:08:19 +00:00
  • 8b28d01bfe Bump mikefarah/yq in /dockerfiles/integration-test-runner-beta dependabot[bot] 2024-11-18 01:45:08 +00:00
  • 16a27bddf7 Bump mikefarah/yq in /dockerfiles/integration-test-runner dependabot[bot] 2024-11-18 01:43:00 +00:00
  • 4467f11d93 Bump amazon/aws-cli from 2.21.1 to 2.21.3 in /dockerfiles/eks-deployer dependabot[bot] 2024-11-18 01:13:35 +00:00
  • eaeda83d42 Use GOMEMLIMIT to reduce the likelihood of an OOM issue jtc/use-soft-memory-limit-1103 Joshua Casey 2024-07-26 15:43:16 -05:00
  • fbaf16a208 proof of concept for changing session lifetime for GitHub PATs poc/session_length Ryan Richard 2024-11-15 13:03:03 -08:00
  • e1464c379c improve how scripts check for gcloud auth Ryan Richard 2024-11-15 09:40:22 -08:00
  • 9446262246 Merge pull request #2122 from vmware-tanzu/dependabot/docker/dockerfiles/eks-deployer/ci/amazon/aws-cli-2.21.1 Joshua Casey 2024-11-15 10:10:36 -06:00
  • e86f3cc594 Merge pull request #2123 from vmware-tanzu/pinny/bump-deps Joshua Casey 2024-11-15 10:10:21 -06:00
  • be6243c446 Bump dependencies Pinny 2024-11-15 14:01:52 +00:00
  • e187065900 Bump amazon/aws-cli from 2.21.0 to 2.21.1 in /dockerfiles/eks-deployer dependabot[bot] 2024-11-15 01:25:07 +00:00
  • 4263ee52f3 Merge pull request #2121 from vmware-tanzu/pinny/bump-deps Joshua Casey 2024-11-14 10:59:03 -06:00
  • ee942a1263 Merge pull request #2120 from vmware-tanzu/dependabot/docker/dockerfiles/eks-deployer/ci/amazon/aws-cli-2.21.0 Joshua Casey 2024-11-14 09:11:14 -06:00
  • d6f1c91b9c Bump dependencies Pinny 2024-11-14 14:02:35 +00:00
  • e290bf19e6 Bump amazon/aws-cli from 2.20.0 to 2.21.0 in /dockerfiles/eks-deployer dependabot[bot] 2024-11-14 01:57:55 +00:00
  • 105dc4a249 Merge pull request #2119 from vmware-tanzu/pinny/bump-deps Joshua Casey 2024-11-13 14:21:09 -06:00
  • 6254bbccd4 Merge pull request #2110 from vmware-tanzu/dependabot/docker/dockerfiles/test-forward-proxy/ci/debian-12.8-slim Joshua Casey 2024-11-13 08:16:33 -06:00
  • 3b6b3534dc Merge pull request #2111 from vmware-tanzu/dependabot/docker/dockerfiles/eks-deployer/ci/amazon/aws-cli-2.20.0 Joshua Casey 2024-11-13 08:16:29 -06:00
  • 290227762c Merge pull request #2112 from vmware-tanzu/dependabot/docker/dockerfiles/deployment-yaml-formatter/ci/debian-12.8-slim Joshua Casey 2024-11-13 08:16:26 -06:00
  • fb5e550057 Merge pull request #2113 from vmware-tanzu/dependabot/docker/dockerfiles/integration-test-runner-beta/ci/google/cloud-sdk-501.0.0-slim Joshua Casey 2024-11-13 08:16:23 -06:00
  • 78b9707fde Merge pull request #2114 from vmware-tanzu/dependabot/docker/dockerfiles/code-coverage-uploader/ci/debian-12.8-slim Joshua Casey 2024-11-13 08:16:19 -06:00
  • 7b3ae89420 Merge pull request #2115 from vmware-tanzu/dependabot/docker/dockerfiles/gh-cli/ci/debian-12.8-slim Joshua Casey 2024-11-13 08:16:16 -06:00
  • db1fcfe116 Merge pull request #2116 from vmware-tanzu/dependabot/docker/dockerfiles/k8s-app-deployer/ci/google/cloud-sdk-501.0.0-slim Joshua Casey 2024-11-13 08:16:13 -06:00
  • 0423e49ffa Merge pull request #2117 from vmware-tanzu/dependabot/docker/dockerfiles/pool-trigger-resource/ci/debian-12.8-slim Joshua Casey 2024-11-13 08:16:09 -06:00
  • 6829c3095d Merge pull request #2118 from vmware-tanzu/dependabot/docker/dockerfiles/integration-test-runner/ci/google/cloud-sdk-501.0.0-slim Joshua Casey 2024-11-13 08:16:06 -06:00
  • aa80c8d0b2 Bump dependencies Pinny 2024-11-13 14:02:04 +00:00
  • 4c3d6721a5 Bump google/cloud-sdk in /dockerfiles/integration-test-runner dependabot[bot] 2024-11-13 02:09:43 +00:00
  • 5f9d2bb7d9 Bump debian in /dockerfiles/pool-trigger-resource dependabot[bot] 2024-11-13 02:08:53 +00:00
  • 4639b4e7c3 Bump google/cloud-sdk in /dockerfiles/k8s-app-deployer dependabot[bot] 2024-11-13 02:07:43 +00:00
  • 7137399964 Bump debian from 12.7-slim to 12.8-slim in /dockerfiles/gh-cli dependabot[bot] 2024-11-13 02:04:36 +00:00
  • f1181fce54 Bump debian in /dockerfiles/code-coverage-uploader dependabot[bot] 2024-11-13 01:48:13 +00:00
  • 63e03cded9 Bump google/cloud-sdk in /dockerfiles/integration-test-runner-beta dependabot[bot] 2024-11-13 01:41:03 +00:00
  • 76489c840c Bump debian in /dockerfiles/deployment-yaml-formatter dependabot[bot] 2024-11-13 01:36:47 +00:00
  • e7845e2cd9 Bump amazon/aws-cli from 2.19.5 to 2.20.0 in /dockerfiles/eks-deployer dependabot[bot] 2024-11-13 01:24:22 +00:00