Commit Graph

  • 0b106c245e Add LDAP browser flow login test to supervisor_login_test.go Ryan Richard 2022-05-10 12:54:40 -0700
  • ab302cf2b7 Add AD via browser login e2e test and refactor e2e tests to share code Ryan Richard 2022-05-10 10:30:32 -0700
  • a4e32d8f3d Extract browsertest.LoginToUpstreamLDAP() integration test helper Ryan Richard 2022-05-09 15:43:36 -0700
  • 831abc315e Update audit log proposal key names and timestamp format Ryan Richard 2022-05-09 14:45:18 -0700
  • 6bb34130fe
    Add asymmetric crypto based client secret generation Monis Khan 2022-05-09 15:58:52 -0400
  • 22aea6ab9d Address some small comments to make the doc more understandable Margo Crawford 2022-05-09 12:55:32 -0700
  • 58f8a10919
    Add data model and secret generation alternatives Monis Khan 2022-05-09 00:05:06 -0400
  • 7724a69653
    Bump github.com/felixge/httpsnoop from 1.0.2 to 1.0.3 dependabot[bot] 2022-05-09 02:02:14 +0000
  • 1c4ed8b404
    Add recommendation for solving the audience confusion problem Monis Khan 2022-05-06 18:08:24 -0400
  • afc73221d6 Updated versions in docs for v0.17.0 release Pinny 2022-05-06 19:28:56 +0000
  • 4c44f583e9 Don't add pinniped_idp_name pinniped_idp_type params into upstream state Ryan Richard 2022-05-06 12:00:46 -0700
  • 408e390094 Add more detail on how we should display errors Margo Crawford 2022-05-06 11:00:01 -0700
  • ec22b5715b Add Pinniped favicon to login UI page 🦭 Ryan Richard 2022-05-05 14:46:07 -0700
  • 6e6e1f4add Update login page CSS selectors in e2e test Ryan Richard 2022-05-05 13:56:38 -0700
  • 00d68845c4 Add --flow to choose login flow in prepare-supervisor-on-kind.sh Ryan Richard 2022-05-05 13:42:23 -0700
  • cffa353ffb Login page styling/structure for users, screen readers, passwd managers Ryan Richard 2022-05-05 13:12:06 -0700
  • 6ca7c932ae Add unit test for rendering form_post response from POST /login Ryan Richard 2022-05-04 12:12:14 -0700
  • b458cd43b9
    Merge pull request #1159 from vmware-tanzu/fix-openldap-typo v0.17.0 Margo Crawford 2022-05-05 12:50:43 -0700
  • 07a3faf449
    Merge branch 'main' into fix-openldap-typo Margo Crawford 2022-05-05 10:51:09 -0700
  • 329d41aac7 Add the full end to end test for ldap web ui Margo Crawford 2022-05-05 08:49:58 -0700
  • 079908fb50 Update to reflect further conversations we've had Margo Crawford 2022-05-04 13:28:54 -0700
  • 1a59b6a686
    Update ROADMAP.md anjalitelang 2022-05-04 16:06:33 -0400
  • eb891d77a5 Tiny fix: pinninpeds->pinnipeds Margo Crawford 2022-05-04 12:42:55 -0700
  • 572474605f
    Merge pull request #1151 from vmware-tanzu/more_unit_tests_for_ldap_escaping Ryan Richard 2022-05-04 09:49:20 -0700
  • 656f221fb7 Merge branch 'main' into ldap-login-ui Ryan Richard 2022-05-04 09:29:15 -0700
  • a36688573b
    Merge pull request #1150 from vmware-tanzu/prepare_supervisor_on_kind_active_directory Ryan Richard 2022-05-04 09:16:13 -0700
  • 2dd3524d1f
    Bump k8s.io/client-go from 0.23.6 to 0.24.0 dependabot[bot] 2022-05-04 01:04:25 +0000
  • 4ecce6bbce
    Bump k8s.io/apiextensions-apiserver from 0.23.6 to 0.24.0 dependabot[bot] 2022-05-04 01:04:19 +0000
  • f6d133aecd
    Bump k8s.io/kube-aggregator from 0.23.6 to 0.24.0 dependabot[bot] 2022-05-04 01:04:11 +0000
  • 05c01f99cc
    Bump k8s.io/apimachinery from 0.23.6 to 0.24.0 dependabot[bot] 2022-05-04 01:04:04 +0000
  • 7df55b48ad
    Bump k8s.io/component-base from 0.23.6 to 0.24.0 dependabot[bot] 2022-05-04 01:03:57 +0000
  • 9977123a41
    Bump k8s.io/apiserver from 0.23.6 to 0.24.0 dependabot[bot] 2022-05-04 01:03:50 +0000
  • 42b662e163
    Bump k8s.io/api from 0.23.6 to 0.24.0 dependabot[bot] 2022-05-04 01:03:43 +0000
  • 2e031f727b Use security headers for the form_post page in the POST /login endpoint Ryan Richard 2022-05-03 16:46:09 -0700
  • acc6c50e48 More unit tests for LDAP DNs which contain special chars Ryan Richard 2022-05-03 15:43:01 -0700
  • 388cdb6ddd Fix bug where form was posting to the wrong path Margo Crawford 2022-05-03 15:18:38 -0700
  • eaa87c7628 support AD in hack/prepare-supervisor-on-kind.sh Ryan Richard 2022-05-03 12:59:39 -0700
  • d6e61012c6
    Merge pull request #1149 from vmware-tanzu/update_kube_versions Ryan Richard 2022-05-02 15:35:49 -0700
  • cc1f0b8db9
    Merge pull request #1148 from vmware-tanzu/ldap_group_search_escape Ryan Richard 2022-05-02 14:44:45 -0700
  • 90e88bb83c Update kube codegen versions Ryan Richard 2022-05-02 14:33:33 -0700
  • 2ad181c7dd Merge branch 'main' into ldap_group_search_escape Ryan Richard 2022-05-02 13:49:55 -0700
  • ee881aa406
    Merge pull request #1146 from enj/enj/i/bump_0007 Mo Khan 2022-05-02 16:44:49 -0400
  • c74dea6405 Escape special characters in LDAP DNs when used in search filters Ryan Richard 2022-05-02 13:37:32 -0700
  • dfbc33b933
    Apply suggestions from code review Ryan Richard 2022-05-02 09:47:09 -0700
  • 69e5169fc5 Implement post_login_handler.go to accept form post and auth to LDAP/AD Ryan Richard 2022-04-29 16:01:51 -0700
  • 56c8b9f884
    Add recommendations to dynamic client proposal Ryan Richard 2022-04-29 12:48:03 -0700
  • 646c6ec9ed Show error message on login page Margo Crawford 2022-04-29 10:36:13 -0700
  • 2cdb55e7da
    Bump deps to latest and go mod compat to 1.17 Monis Khan 2022-04-28 15:31:50 -0400
  • 453c69af7d Fix some errors and pass state as form element Margo Crawford 2022-04-28 12:07:04 -0700
  • 07b2306254 Add basic outline of login get handler Margo Crawford 2022-04-28 09:11:51 -0700
  • 77f016fb64 Allow browser_authcode flow for pinniped login command Margo Crawford 2022-04-27 08:53:53 -0700
  • ae60d4356b Some refactoring of shared code between OIDC and LDAP browser flows Margo Crawford 2022-04-27 08:51:37 -0700
  • a5288be805
    Bump github.com/google/go-cmp from 0.5.7 to 0.5.8 dependabot[bot] 2022-04-27 01:04:31 +0000
  • fe1957f3a8
    Bump github.com/tdewolff/minify/v2 from 2.11.1 to 2.11.2 dependabot[bot] 2022-04-27 01:04:25 +0000
  • 379a803509 when password header but not username is sent to password grant, error Margo Crawford 2022-04-26 16:46:58 -0700
  • 65eed7e742 Implement login_handler.go to defer to other handlers Ryan Richard 2022-04-26 15:30:39 -0700
  • eb1d3812ec Update authorization endpoint to redirect to new login page Margo Crawford 2022-04-26 12:51:56 -0700
  • 8832362b94 WIP: Add login handler for LDAP/AD web login Margo Crawford 2022-04-25 16:41:55 -0700
  • 694e4d6df6 Advertise browser_authcode flow in ldap idp discovery Margo Crawford 2022-04-20 14:58:09 -0700
  • 973c3102bb add audit logging proposal Ryan Richard 2022-04-21 14:50:48 -0700
  • 24b0ddf600
    Merge pull request #1140 from vmware-tanzu/bump_kube_deps_v0.23.6 Ryan Richard 2022-04-21 10:18:43 -0700
  • cab9ac8368 bump kube deps from v0.23.5 to v0.23.6 Ryan Richard 2022-04-21 09:17:24 -0700
  • 40e746d4ff
    Bump k8s.io/apimachinery from 0.23.5 to 0.23.6 dependabot[bot] 2022-04-21 01:04:05 +0000
  • 8f53f5f699
    Bump k8s.io/client-go from 0.23.5 to 0.23.6 dependabot[bot] 2022-04-21 01:03:59 +0000
  • 40bf32405c
    Bump k8s.io/component-base from 0.23.5 to 0.23.6 dependabot[bot] 2022-04-21 01:03:53 +0000
  • 30c7443780
    Bump k8s.io/apiextensions-apiserver from 0.23.5 to 0.23.6 dependabot[bot] 2022-04-21 01:03:47 +0000
  • 9864c221d7
    Bump k8s.io/kube-aggregator from 0.23.5 to 0.23.6 dependabot[bot] 2022-04-21 01:03:41 +0000
  • 0a5e19b09c
    Bump k8s.io/api from 0.23.5 to 0.23.6 dependabot[bot] 2022-04-21 01:03:34 +0000
  • 7f97982b09
    Bump k8s.io/apiserver from 0.23.5 to 0.23.6 dependabot[bot] 2022-04-21 01:03:28 +0000
  • 444cf111d0 Add more detail about how the flow should work Margo Crawford 2022-04-20 16:17:49 -0700
  • 7552d851da Advertise browser_authcode flow in ldap idp discovery Margo Crawford 2022-04-20 14:58:09 -0700
  • 793b8b9260
    Merge pull request #1121 from anjaltelang/main Ryan Richard 2022-04-20 11:54:20 -0700
  • 4071b48f01 Updated versions in docs for v0.16.0 release Pinny 2022-04-20 18:52:59 +0000
  • 46e61bdea9
    Update 2022-04-15-fips-and-more.md Ryan Richard 2022-04-20 10:56:21 -0700
  • 52341f4e49
    Merge pull request #1083 from vmware-tanzu/dependabot/go_modules/k8s.io/klog/v2-2.60.1 v0.16.0 Ryan Richard 2022-04-19 15:22:08 -0700
  • cd982655a2
    Bump k8s.io/klog/v2 from 2.40.1 to 2.60.1 dependabot[bot] 2022-04-19 20:33:38 +0000
  • 311bb05993
    Merge pull request #1130 from vmware-tanzu/kube-versions-april-22 Margo Crawford 2022-04-19 13:30:40 -0700
  • 0ec5e57114
    Merge pull request #1131 from vmware-tanzu/bump_some_deps Ryan Richard 2022-04-19 13:29:28 -0700
  • 63779ddac2
    Merge pull request #1129 from vmware-tanzu/jwt-authenticator-client-field Margo Crawford 2022-04-19 13:28:43 -0700
  • 4de8004094 Empty commit to trigger CI Ryan Richard 2022-04-19 12:12:45 -0700
  • 0b72f7084c JWTAuthenticator distributed claims resolution honors tls config Margo Crawford 2022-04-18 11:46:33 -0700
  • 132d2aac72 add a code comment Ryan Richard 2022-04-19 11:35:46 -0700
  • 2d4f4e4efd Merge branch 'main' into bump_some_deps Ryan Richard 2022-04-19 11:32:53 -0700
  • c40bca5e65
    Merge pull request #1127 from hectorj2f/add_code_challenge_method_support Margo Crawford 2022-04-19 11:23:57 -0700
  • 019750a292 Update kube versions to latest patch Margo Crawford 2022-04-19 10:48:48 -0700
  • 9e5d4ae51c Blog for v0.16.0 Anjali Telang 2022-04-14 09:45:54 -0400
  • 5b9831d319 bump the kube direct deps Ryan Richard 2022-04-19 11:13:52 -0700
  • fb8083d024 bump some direct deps Ryan Richard 2022-04-19 11:09:24 -0700
  • a3f7afaec4 oidc: add code challenge supported methods hectorj2f 2022-04-18 01:06:59 +0200
  • a5f3d0e03e
    Bump github.com/ory/fosite from 0.42.1 to 0.42.2 dependabot[bot] 2022-04-18 01:26:34 +0000
  • 19149ff043 Update proposal state to "in-review" Ryan Richard 2022-04-15 13:35:07 -0700
  • e2836fbdb5 Dynamic Supervisor OIDC Clients proposal Ryan Richard 2022-04-15 13:23:40 -0700
  • f5cf3276d5
    Merge pull request #1123 from vmware-tanzu/macos-untrusted-certificate-errors Margo Crawford 2022-04-14 20:15:31 -0700
  • d5337c9c19 Error format of untrusted certificate errors should depend on OS Margo Crawford 2022-04-14 17:37:36 -0700
  • 96137cd0ee ldap/ad web ui proposal Margo Crawford 2022-04-12 16:27:42 -0700
  • c624846eaa
    Merge pull request #1122 from vmware-tanzu/impersonator-only-http2 Mo Khan 2022-04-14 16:55:50 -0400
  • 03f19da21c the http2RoundTripper should only use http2 Margo Crawford 2022-04-14 09:59:19 -0700
  • 8fe635e7ce
    Merge pull request #1096 from vmware-tanzu/dependabot/docker/distroless/static-2556293 Mo Khan 2022-04-14 12:53:59 -0400
  • 2fa81546f3
    Bump distroless/static from 80c956f to 2556293 dependabot[bot] 2022-04-14 14:51:17 +0000
  • 43485563ff
    Merge pull request #1120 from vmware-tanzu/dependabot/docker/hack/google.com/api-project-999119582588/go-boringcrypto/golang-1.18.1b7 Mo Khan 2022-04-14 10:26:04 -0400