Commit Graph

  • 82f54b5556 Merge pull request #917 from vmware-tanzu/oidc-refresh-user-info-checks Mo Khan 2022-01-12 20:27:00 -05:00
  • 2b744b2eef Add back comment about deferring validation when id token subject is missing Margo Crawford 2022-01-12 11:19:43 -08:00
  • 438b58193d Empty commit to trigger CI Ryan Richard 2022-01-10 13:47:13 -08:00
  • 2958461970 Addressing PR feedback Margo Crawford 2022-01-07 15:04:58 -08:00
  • f2d2144932 rename ValidateToken to ValidateTokenAndMergeWithUserInfo to better reflect what it's doing Margo Crawford 2021-12-16 12:53:49 -08:00
  • c9cf13a01f Check for issuer if available Margo Crawford 2021-12-14 15:27:08 -08:00
  • 0cd086cf9c Check username claim is unchanged for oidc. Margo Crawford 2021-12-14 11:59:52 -08:00
  • b098435290 Refactor validatetoken to handle refresh case without id token Margo Crawford 2021-12-13 16:40:13 -08:00
  • 74b007ff66 Validate that issuer url and urls returned from discovery are https Margo Crawford 2021-12-03 16:11:53 -08:00
  • ed96b597c7 Check for subject matching with upstream refresh Margo Crawford 2021-11-29 16:44:58 -08:00
  • 6b9fc7aa59 Merge branch 'main' into ldap_and_activedirectory_status_conditions_bug Ryan Richard 2022-01-10 09:23:09 -08:00
  • d438bfbc99 Merge pull request #939 from vmware-tanzu/dependabot/go_modules/github.com/ory/x-0.0.331 Mo Khan 2022-01-09 12:04:56 -05:00
  • 7f99d78462 Fix bug where LDAP or AD status conditions were not updated correctly Ryan Richard 2022-01-07 17:19:13 -08:00
  • a7ff638f4c Bump github.com/ory/x from 0.0.330 to 0.0.331 dependabot[bot] 2022-01-07 13:45:37 +00:00
  • 287d5094ec Merge pull request #938 from vmware-tanzu/dependabot/docker/golang-1.17.6 Mo Khan 2022-01-07 08:13:16 -05:00
  • f2b4d667d1 Bump golang from 1.17.5 to 1.17.6 dependabot[bot] 2022-01-07 01:04:10 +00:00
  • fff27a4270 Merge pull request #935 from enj/enj/i/bump_0001 Mo Khan 2022-01-03 19:48:08 -05:00
  • f90f173826 Bump all deps to latest Monis Khan 2022-01-03 17:32:52 -05:00
  • cc88d2a334 Merge pull request #931 from vmware-tanzu/dependabot/docker/distroless/static-80c956f Mo Khan 2022-01-03 10:49:08 -05:00
  • a0ddf4a945 Bump distroless/static from bca3c20 to 80c956f dependabot[bot] 2021-12-27 01:17:24 +00:00
  • 05277a5579 Merge pull request #925 from enj/enj/i/flexible_cli_redirect Mo Khan 2021-12-17 15:51:44 -05:00
  • c155c6e629 Clean up nits in AD code Monis Khan 2021-12-15 10:30:36 -05:00
  • a6085c9678 Drop unsafe unwrapper for exec.roundTripper Monis Khan 2021-12-15 09:39:46 -05:00
  • 86f2bea8c5 pinniped CLI: allow all forms of http redirects Monis Khan 2021-12-14 15:55:35 -05:00
  • adf04d29f7 Merge pull request #914 from enj/enj/i/bump_0.23.0 Mo Khan 2021-12-16 21:45:32 -05:00
  • 9599ffcfb9 Update all deps to latest where possible, bump Kube deps to v0.23.1 Monis Khan 2021-12-10 17:22:36 -05:00
  • 69d5951296 Merge pull request #919 from microwavables/updating-community-details Mo Khan 2021-12-16 17:14:21 -05:00
  • b148359337 Merge pull request #918 from vmware-tanzu/replace_reflections Mo Khan 2021-12-16 17:10:28 -05:00
  • e31a410096 Updated community and resources pages Nanci Lancaster 2021-12-16 15:46:14 -06:00
  • 6bf67f44ef replace reflections in go.mod Ryan Richard 2021-12-16 11:15:24 -08:00
  • fdc91ec56c Merge pull request #909 from vmware-tanzu/dependabot/docker/golang-1.17.5 Mo Khan 2021-12-10 12:41:02 -05:00
  • 884d18bade Bump golang from 1.17.4 to 1.17.5 dependabot[bot] 2021-12-10 17:03:50 +00:00
  • ca2ee26c86 Merge pull request #884 from vmware-tanzu/upstream-ad-refresh Mo Khan 2021-12-09 20:51:46 -05:00
  • 59d999956c Move ad specific stuff to controller Margo Crawford 2021-12-09 14:02:40 -08:00
  • acaad05341 Make pwdLastSet stuff more generic and not require parsing the timestamp Margo Crawford 2021-12-08 15:03:57 -08:00
  • 65f3464995 Fix issue with very high integer value parsing, add unit tests Margo Crawford 2021-12-07 16:57:39 -08:00
  • ee4f725209 Incorporate PR feedback Margo Crawford 2021-12-06 16:24:31 -08:00
  • ef5a04c7ce Check for locked users on ad upstream refresh Margo Crawford 2021-11-16 16:31:32 -08:00
  • f62e9a2d33 Active directory checks for deactivated user Margo Crawford 2021-11-05 11:53:07 -07:00
  • da9b4620b3 Active Directory checks whether password has changed recently during upstream refresh Margo Crawford 2021-10-28 12:00:56 -07:00
  • 8db0203839 Add test for upstream ldap idp not found, wrong idp uid, and malformed fosite session storage Margo Crawford 2021-10-25 14:25:43 -07:00
  • 92bd3b49c8 Merge branch 'main' into upstream_access_revocation_during_gc Ryan Richard 2021-12-09 14:16:52 -08:00
  • 4110297a8f Update ROADMAP.md anjalitelang 2021-12-09 16:59:09 -05:00
  • dbcb213691 Merge branch 'main' into upstream_access_revocation_during_gc Ryan Richard 2021-12-08 14:29:59 -08:00
  • f410d2bd00 Add revocation of upstream access tokens to garbage collector Ryan Richard 2021-12-08 14:29:25 -08:00
  • 7a3b5e3571 Merge pull request #908 from vmware-tanzu/microwavables-main Mo Khan 2021-12-08 14:38:21 -05:00
  • 505bc47ae1 Added GOVERNANCE.md file to repo Nanci Lancaster 2021-12-07 13:08:26 -06:00
  • c9c218fdf0 Merge branch 'main' into upstream_access_revocation_during_gc Ryan Richard 2021-12-06 14:47:27 -08:00
  • 46008a7235 Add struct field for storing upstream access token in downstream session Ryan Richard 2021-12-06 14:43:39 -08:00
  • 2c5b74c960 Merge pull request #905 from vmware-tanzu/dependabot/docker/golang-1.17.4 Mo Khan 2021-12-06 15:44:42 -05:00
  • db68fc3a2b Bump golang from 1.17.3 to 1.17.4 dependabot[bot] 2021-12-06 01:14:25 +00:00
  • 29490ee665 ran go mod tidy Ryan Richard 2021-12-03 16:40:01 -08:00
  • b981055d31 Support revocation of access tokens in UpstreamOIDCIdentityProviderI Ryan Richard 2021-12-03 13:44:24 -08:00
  • edd3547977 Merge pull request #903 from vmware-tanzu/code-walkthrough-doc Ryan Richard 2021-12-03 12:19:29 -08:00
  • aa361a70a7 clarifications to code walkthrough doc Ryan Richard 2021-12-03 10:50:02 -08:00
  • 7b6bdd8129 fix link to blog and add another in doc Ryan Richard 2021-12-03 10:31:46 -08:00
  • 4aed3385b6 Merge branch 'main' into code-walkthrough-doc Ryan Richard 2021-12-03 09:17:35 -08:00
  • 2736c3603a fix typo in doc Ryan Richard 2021-12-03 09:17:17 -08:00
  • 3ea90467b7 add first draft of code walk-through doc Ryan Richard 2021-12-02 17:18:50 -08:00
  • 683027468e Update ROADMAP.md anjalitelang 2021-12-02 12:00:54 -05:00
  • 269cae3a9f Merge pull request #895 from enj/enj/f/warning_rt Mo Khan 2021-11-30 16:15:39 -05:00
  • 9d4a932656 phttp: add generic support for RFC 2616 14.46 warnings headers Monis Khan 2021-11-30 12:55:19 -05:00
  • 1611cf681a Merge pull request #876 from vmware-tanzu/upstream_refresh_revocation_during_gc Mo Khan 2021-11-23 20:15:37 -05:00
  • 78474cfae9 Merge branch 'main' into upstream_refresh_revocation_during_gc Mo Khan 2021-11-23 19:29:13 -05:00
  • aaf847040f Merge pull request #893 from vmware-tanzu/fix_unit_test Mo Khan 2021-11-23 19:25:16 -05:00
  • e44540043d Attempt to fix a unit test that always failed on my laptop Ryan Richard 2021-11-23 15:47:19 -08:00
  • 69be273e01 Merge branch 'main' into upstream_refresh_revocation_during_gc Ryan Richard 2021-11-23 14:55:44 -08:00
  • 5a1de2f54c Merge pull request #888 from vmware-tanzu/customize_ports Mo Khan 2021-11-23 17:51:04 -05:00
  • 91eed1ab24 Merge branch 'main' into upstream_refresh_revocation_during_gc Ryan Richard 2021-11-23 12:11:39 -08:00
  • 3ca8c49334 Improve garbage collector log format and some comments Ryan Richard 2021-11-23 12:11:17 -08:00
  • f28b33bbf0 Merge branch 'main' into customize_ports Mo Khan 2021-11-23 08:30:48 -05:00
  • 537f85205d Merge pull request #889 from enj/enj/i/strict_tls_acceptance Mo Khan 2021-11-18 16:37:15 -05:00
  • b8a93b6b90 Merge branch 'main' into customize_ports Ryan Richard 2021-11-18 09:31:18 -08:00
  • 764a1ad7e4 tls: fix integration tests for long lived environments Monis Khan 2021-11-18 03:35:30 -05:00
  • 6a68c6532c Merge pull request #873 from enj/enj/i/strict_tls Mo Khan 2021-11-17 19:17:13 -05:00
  • 3b3641568a GC retries failed upstream revocations for a while, but not forever Ryan Richard 2021-11-17 15:58:44 -08:00
  • cd686ffdf3 Force the use of secure TLS config Monis Khan 2021-10-20 07:59:24 -04:00
  • ca2cc40769 Add impersonationProxyServerPort to the Concierge's static ConfigMap Ryan Richard 2021-11-17 13:27:59 -08:00
  • 2383a88612 Add aggregatedAPIServerPort to the Concierge's static ConfigMap Ryan Richard 2021-11-16 16:43:51 -08:00
  • 48518e9513 Add trace logging to help observe upstream OIDC refresh token revocation Ryan Richard 2021-11-11 12:24:05 -08:00
  • de79f15068 Merge branch 'main' into upstream_refresh_revocation_during_gc Ryan Richard 2021-11-10 15:35:42 -08:00
  • 2388e25235 Revoke upstream OIDC refresh tokens during GC Ryan Richard 2021-11-10 15:34:19 -08:00
  • c570f08b2b Merge pull request #885 from vmware-tanzu/dependabot/docker/golang-1.17.3 Mo Khan 2021-11-05 21:45:56 -04:00
  • 2aeb464b43 Bump golang from 1.17.2 to 1.17.3 dependabot[bot] 2021-11-06 00:55:39 +00:00
  • 5a3f83f90f Merge pull request #877 from vmware-tanzu/upstream-ldap-refresh Mo Khan 2021-11-05 18:08:45 -04:00
  • cb60a44f8a extract ldap refresh search into helper function Margo Crawford 2021-11-05 14:18:54 -07:00
  • b5b8cab717 Refactors: Margo Crawford 2021-11-03 15:17:50 -07:00
  • c84329d7a4 Fix broken ldap_client_test Margo Crawford 2021-11-03 11:41:29 -07:00
  • f988879b6e Addressing code review changes Margo Crawford 2021-11-03 10:33:22 -07:00
  • 84edfcb541 Refactor out a function, add tests for getting the wrong idp uid Margo Crawford 2021-10-26 17:03:16 -07:00
  • 722b5dcc1b Test for change to stored username or subject. Margo Crawford 2021-10-26 16:24:02 -07:00
  • 8396937503 Updates to tests and some error assertions Margo Crawford 2021-10-26 15:01:09 -07:00
  • 2c4dc2951d resolved a couple of testing related todos Margo Crawford 2021-10-25 16:45:30 -07:00
  • 7a58086040 Check that username and subject remain the same for ldap refresh Margo Crawford 2021-10-25 14:25:43 -07:00
  • 19281313dd Basic upstream LDAP/AD refresh Margo Crawford 2021-10-22 13:57:30 -07:00
  • 71f7ea686d Fix typo in community meeting time Mo Khan 2021-11-04 12:02:46 -04:00
  • d5d957f6ee Fix CONTRIBUTING zoom link Mo Khan 2021-11-04 11:53:14 -04:00
  • e371c34237 Fix README zoom link Mo Khan 2021-11-04 11:52:28 -04:00
  • b5be763631 Fix typo in community meeting time Mo Khan 2021-11-04 08:38:33 -04:00
  • f03e5f4fef Merge pull request #883 from enj/enj/i/dockerfile_tweaks Mo Khan 2021-11-03 14:45:23 -04:00