Commit Graph

  • 3fc73c21d2
    Merge pull request #968 from enj/enj/i/bump_0002 Mo Khan 2022-01-21 12:16:49 -0500
  • d55ae3f8bb
    Bump all deps to latest Monis Khan 2022-01-21 11:25:56 -0500
  • c8d4b73f94
    Merge pull request #967 from vmware-tanzu/refresh-token-test-warnings Ryan Richard 2022-01-21 04:20:46 -0800
  • b30dad72ed Fix new refresh token grace period test to have warnings Margo Crawford 2022-01-20 14:54:59 -0800
  • 31cdd808ac
    Merge pull request #951 from vmware-tanzu/short-session-warning Margo Crawford 2022-01-20 14:44:32 -0800
  • da80899a50
    Bump k8s.io/api from 0.23.1 to 0.23.2 dependabot[bot] 2022-01-20 22:17:03 +0000
  • e85a6c09f6
    Merge pull request #953 from vmware-tanzu/dependabot/go_modules/github.com/tdewolff/minify/v2-2.9.29 Ryan Richard 2022-01-20 14:16:05 -0800
  • 82b08e330a
    Bump k8s.io/apiserver from 0.23.1 to 0.23.2 dependabot[bot] 2022-01-20 22:04:52 +0000
  • f4b3e80718
    Bump k8s.io/apiextensions-apiserver from 0.23.1 to 0.23.2 dependabot[bot] 2022-01-20 22:04:40 +0000
  • 025ef6311b
    Merge pull request #943 from vmware-tanzu/dependabot/go_modules/github.com/ory/fosite-0.42.0 Mo Khan 2022-01-20 17:03:52 -0500
  • 842ef38868 Ensure warning is on stderr and not stdout. Margo Crawford 2022-01-20 13:43:29 -0800
  • acd23c4c37 Separate test for access token refresh Margo Crawford 2022-01-20 08:52:16 -0800
  • 38d184fe81 Integration test + making sure we get the session correctly in token handler Margo Crawford 2022-01-19 13:20:49 -0800
  • b0ea7063c7 Supervisor should emit a warning when access token lifetime is too short Margo Crawford 2022-01-18 15:34:19 -0800
  • fe819e3512 Empty commit to trigger CI Ryan Richard 2022-01-20 13:37:15 -0800
  • 42ca31055a Empty commit to trigger CI Ryan Richard 2022-01-20 13:25:29 -0800
  • 7f9867598c Merge branch 'main' into upstream-oidc-refresh-retries upstream-oidc-refresh-retries Ryan Richard 2022-01-20 13:14:06 -0800
  • ba83c12f93 Add a timeout to the upstream OIDC refresh calls Ryan Richard 2022-01-20 13:11:05 -0800
  • 652797ba0b
    Merge branch 'main' into dependabot/go_modules/github.com/tdewolff/minify/v2-2.9.29 Ryan Richard 2022-01-20 12:23:02 -0800
  • 89c40259f3 Use latest github.com/ory/x v0.0.336 Ryan Richard 2022-01-20 12:21:19 -0800
  • 520fcf195a Merge branch 'main' into dependabot/go_modules/github.com/ory/fosite-0.42.0 Ryan Richard 2022-01-20 12:16:54 -0800
  • 284ce00aef
    Merge pull request #957 from vmware-tanzu/dependabot/go_modules/github.com/ory/x-0.0.334 Ryan Richard 2022-01-20 12:10:57 -0800
  • db789dc2bf
    Merge branch 'main' into dependabot/go_modules/github.com/tdewolff/minify/v2-2.9.29 Ryan Richard 2022-01-20 12:10:24 -0800
  • 6ddc953989
    Merge branch 'main' into dependabot/go_modules/github.com/ory/fosite-0.42.0 Ryan Richard 2022-01-20 12:10:01 -0800
  • 1f21e30bb2
    Merge pull request #948 from vmware-tanzu/upstream-oidc-refresh-groups Ryan Richard 2022-01-20 12:07:42 -0800
  • 902802d4ed
    Merge branch 'main' into main anjalitelang 2022-01-20 10:45:38 -0500
  • 4c4a20c228
    Update site/content/posts/2022-01-18-idp-refresh-tls-ciphers-for-compliance.md anjalitelang 2022-01-20 10:44:06 -0500
  • 9efdbd0006
    Update site/content/posts/2022-01-18-idp-refresh-tls-ciphers-for-compliance.md anjalitelang 2022-01-20 10:43:59 -0500
  • d4c014ec07
    Update site/content/posts/2022-01-18-idp-refresh-tls-ciphers-for-compliance.md anjalitelang 2022-01-20 10:43:52 -0500
  • 4f61b6c6e2
    Update site/content/posts/2022-01-18-idp-refresh-tls-ciphers-for-compliance.md anjalitelang 2022-01-20 10:43:43 -0500
  • ae43738785
    Update site/content/posts/2022-01-18-idp-refresh-tls-ciphers-for-compliance.md anjalitelang 2022-01-20 10:43:27 -0500
  • fee30b2f0f
    Update site/content/posts/2022-01-18-idp-refresh-tls-ciphers-for-compliance.md anjalitelang 2022-01-20 10:43:19 -0500
  • 1f3ad0c0a4
    Update site/content/posts/2022-01-18-idp-refresh-tls-ciphers-for-compliance.md anjalitelang 2022-01-20 10:43:00 -0500
  • 3895312b0f
    Update site/content/posts/2022-01-18-idp-refresh-tls-ciphers-for-compliance.md anjalitelang 2022-01-20 10:42:49 -0500
  • 0c6afc71f2
    Bump k8s.io/apimachinery from 0.23.1 to 0.23.2 dependabot[bot] 2022-01-20 01:03:51 +0000
  • da9ecb0c6f
    Bump github.com/google/go-cmp from 0.5.6 to 0.5.7 dependabot[bot] 2022-01-20 01:03:45 +0000
  • 6c923d3bc6
    Merge pull request #956 from vmware-tanzu/fix-scopes-access-token-refresh-test Margo Crawford 2022-01-19 16:19:13 -0800
  • cd3d1333de
    Bump github.com/ory/x from 0.0.331 to 0.0.334 dependabot[bot] 2022-01-19 22:07:18 +0000
  • dff53b8144 Changes for Fosite's new RevokeRefreshTokenMaybeGracePeriod() interface Ryan Richard 2022-01-19 13:57:01 -0800
  • 513c943e87 Keep all scopes except offline_access in integration test Margo Crawford 2022-01-19 13:29:26 -0800
  • 3b1cc30e8d Update unit test to match new JS minify output after minify upgrade Ryan Richard 2022-01-19 13:29:07 -0800
  • a4ca44ca14 Improve error handling when upstream groups is invalid during refresh Ryan Richard 2022-01-19 12:57:47 -0800
  • 3301a62053 When upstream OIDC refresh fails inconclusively, retry a few times Ryan Richard 2022-01-19 12:23:11 -0800
  • d21012d39c Blog for v0.13.0 Anjali Telang 2022-01-19 12:49:32 -0500
  • 4ce2f9db50
    Bump github.com/tdewolff/minify/v2 from 2.9.26 to 2.9.29 dependabot[bot] 2022-01-19 01:05:43 +0000
  • 78bdb1928a
    Merge branch 'main' into upstream-oidc-refresh-groups Ryan Richard 2022-01-18 16:03:14 -0800
  • bf1a28297f
    Bump github.com/ory/x from 0.0.331 to 0.0.333 dependabot[bot] 2022-01-18 23:53:36 +0000
  • b2bdf01152
    Bump github.com/ory/fosite from 0.41.0 to 0.42.0 dependabot[bot] 2022-01-18 23:53:34 +0000
  • 956f6f1eab
    Merge pull request #945 from enj/enj/i/supervisor_ports Mo Khan 2022-01-18 18:52:32 -0500
  • 1e1789f6d1
    Allow configuration of supervisor endpoints Monis Khan 2021-12-15 15:48:55 -0500
  • 70bd831099
    Merge branch 'main' into upstream-oidc-refresh-groups Ryan Richard 2022-01-18 14:36:18 -0800
  • 01a7978387
    Merge pull request #940 from vmware-tanzu/ldap_and_activedirectory_status_conditions_bug Ryan Richard 2022-01-18 14:35:49 -0800
  • 1a2514f417
    Merge branch 'main' into ldap_and_activedirectory_status_conditions_bug Ryan Richard 2022-01-18 10:09:14 -0800
  • 6143d66504 Increase timeout on linter for when CI gets slow Ryan Richard 2022-01-18 10:06:53 -0800
  • 1602fca5ed Increase timeout on linter for when CI gets slow Ryan Richard 2022-01-18 10:06:53 -0800
  • ebcf71c30c
    Update ROADMAP.md anjalitelang 2022-01-18 10:34:09 -0500
  • 88f3b29515 Merge branch 'main' into upstream-oidc-refresh-groups Ryan Richard 2022-01-14 16:51:12 -0800
  • 75e4093067 Merge branch 'main' into ldap_and_activedirectory_status_conditions_bug Ryan Richard 2022-01-14 16:50:34 -0800
  • 619b0ba052
    Merge pull request #904 from vmware-tanzu/upstream_access_revocation_during_gc Ryan Richard 2022-01-14 16:45:29 -0800
  • 548977f579 Update group memberships during refresh for upstream OIDC providers Ryan Richard 2022-01-14 16:38:21 -0800
  • 7551af3eb8 Fix code that did not auto-merge correctly in previous merge from main Ryan Richard 2022-01-14 10:59:39 -0800
  • 814399324f Merge branch 'main' into upstream_access_revocation_during_gc Ryan Richard 2022-01-14 10:49:22 -0800
  • 50e4871d65
    Merge pull request #944 from vmware-tanzu/refresh-with-no-refresh-token Margo Crawford 2022-01-14 10:23:41 -0800
  • db0a765b98 Merge branch 'main' into ldap_and_activedirectory_status_conditions_bug Ryan Richard 2022-01-14 10:06:16 -0800
  • 092a80f849 Refactor some variable names and update one comment Ryan Richard 2022-01-14 10:06:00 -0800
  • 4b651c9020
    Bump github.com/tdewolff/minify/v2 from 2.9.26 to 2.9.28 dependabot[bot] 2022-01-14 01:06:07 +0000
  • 5b161be334 Refactored oidcUpstreamRefresh Margo Crawford 2022-01-12 14:28:52 -0800
  • 62be761ef1 Perform access token based refresh by fetching the userinfo Margo Crawford 2022-01-12 18:05:10 -0800
  • 651d392b00 Refuse logins when no upstream refresh token and no userinfo endpoint Ryan Richard 2022-01-11 15:40:38 -0800
  • 6f3977de9d Store access token when refresh not available for authcode flow. Margo Crawford 2022-01-11 11:00:54 -0800
  • 91924ec685 Revert adding allowAccessTokenBasedRefresh flag to OIDCIdentityProvider Ryan Richard 2022-01-10 17:03:31 -0800
  • 683a2c5b23 WIP adding access token to storage upon login Margo Crawford 2022-01-05 10:31:38 -0800
  • 1f146f905a Add struct field for storing upstream access token in downstream session Ryan Richard 2021-12-06 14:43:39 -0800
  • 82f54b5556
    Merge pull request #917 from vmware-tanzu/oidc-refresh-user-info-checks Mo Khan 2022-01-12 20:27:00 -0500
  • 2b744b2eef Add back comment about deferring validation when id token subject is missing Margo Crawford 2022-01-12 11:19:43 -0800
  • 31c58ee205
    Bump github.com/ory/x from 0.0.331 to 0.0.332 dependabot[bot] 2022-01-11 01:03:49 +0000
  • 438b58193d Empty commit to trigger CI Ryan Richard 2022-01-10 13:47:13 -0800
  • 2958461970 Addressing PR feedback Margo Crawford 2022-01-07 15:04:58 -0800
  • f2d2144932 rename ValidateToken to ValidateTokenAndMergeWithUserInfo to better reflect what it's doing Margo Crawford 2021-12-16 12:53:49 -0800
  • c9cf13a01f Check for issuer if available Margo Crawford 2021-12-14 15:27:08 -0800
  • 0cd086cf9c Check username claim is unchanged for oidc. Margo Crawford 2021-12-14 11:59:52 -0800
  • b098435290 Refactor validatetoken to handle refresh case without id token Margo Crawford 2021-12-13 16:40:13 -0800
  • 74b007ff66 Validate that issuer url and urls returned from discovery are https Margo Crawford 2021-12-03 16:11:53 -0800
  • ed96b597c7 Check for subject matching with upstream refresh Margo Crawford 2021-11-29 16:44:58 -0800
  • 6b9fc7aa59 Merge branch 'main' into ldap_and_activedirectory_status_conditions_bug Ryan Richard 2022-01-10 09:23:09 -0800
  • d438bfbc99
    Merge pull request #939 from vmware-tanzu/dependabot/go_modules/github.com/ory/x-0.0.331 Mo Khan 2022-01-09 12:04:56 -0500
  • 7f99d78462 Fix bug where LDAP or AD status conditions were not updated correctly Ryan Richard 2022-01-07 17:19:13 -0800
  • a7ff638f4c
    Bump github.com/ory/x from 0.0.330 to 0.0.331 dependabot[bot] 2022-01-07 13:45:37 +0000
  • 287d5094ec
    Merge pull request #938 from vmware-tanzu/dependabot/docker/golang-1.17.6 Mo Khan 2022-01-07 08:13:16 -0500
  • f2b4d667d1
    Bump golang from 1.17.5 to 1.17.6 dependabot[bot] 2022-01-07 01:04:10 +0000
  • e4074043b2
    Bump github.com/tdewolff/minify/v2 from 2.9.26 to 2.9.27 dependabot[bot] 2022-01-04 17:05:07 +0000
  • fff27a4270
    Merge pull request #935 from enj/enj/i/bump_0001 Mo Khan 2022-01-03 19:48:08 -0500
  • f90f173826
    Bump all deps to latest Monis Khan 2022-01-03 17:32:52 -0500
  • 03356f5e0d
    Bump k8s.io/klog/v2 from 2.30.0 to 2.40.1 dependabot[bot] 2022-01-03 16:26:00 +0000
  • cc88d2a334
    Merge pull request #931 from vmware-tanzu/dependabot/docker/distroless/static-80c956f Mo Khan 2022-01-03 10:49:08 -0500
  • aec369854d
    Bump github.com/ory/x from 0.0.321 to 0.0.330 dependabot[bot] 2021-12-31 01:28:51 +0000
  • 6241a36535
    Bump github.com/tdewolff/minify/v2 from 2.9.24 to 2.9.26 dependabot[bot] 2021-12-30 01:30:35 +0000
  • 4e3340f3ce
    Bump github.com/ory/x from 0.0.321 to 0.0.327 dependabot[bot] 2021-12-28 01:28:46 +0000
  • a0ddf4a945
    Bump distroless/static from bca3c20 to 80c956f dependabot[bot] 2021-12-27 01:17:24 +0000
  • a2cbe3f0c5
    Bump github.com/ory/x from 0.0.321 to 0.0.326 dependabot[bot] 2021-12-22 01:30:24 +0000