3727 Commits (2dcd9b937d5c15fe36cfec05964c84044ef8a158)
 

Author SHA1 Message Date
Mathias Gebbe 2dcd9b937d
docs(example): modify comment for client_credentials 1 month ago
Mathias Gebbe 2f3c5a5314
refactor(oauth2): remove dead feature flag check from server.go 1 month ago
Mathias Gebbe 36ea47c0f0
fix(cmd): include client_credentials in default grants when feature flag is enabled 1 month ago
Mathias Gebbe afc02eecc6
feat(oauth2): gate client_credentials behind feature flag 1 month ago
Mathias Gebbe 3c10d71ed7
fix(oauth2): use empty connector ID and pass nonce for client_credentials 1 month ago
Mathias Gebbe d9d679930d
revert(api): remove reserved connector ID prefix check 1 month ago
Mathias Gebbe 21d7739692
style: fix gci formatting in handlers and handlers_test 1 month ago
Mathias Gebbe 0f246405a6
docs: comment out oauth2 section in example config 1 month ago
Mathias Gebbe 259e785529
feat(api): reject connector IDs with reserved __ prefix 1 month ago
Mathias Gebbe b652d5b2a0
fix(oauth2): scope-conditional claims and reserved connector ID for client_credentials 1 month ago
Mathias Gebbe a2d713a13c
refactor(oauth2): gate client_credentials via grantTypes instead of config flag 1 month ago
Mathias Gebbe aaac9998ce
style: fix unnecessary whitespace changes in constants and test config 1 month ago
Mathias Gebbe 0778edeb45
fix(oauth2): restore client_credentials in default grant types list 1 month ago
Mathias Gebbe b3c62556a0
docs: add clientCredentialsEnabled option to example config 1 month ago
Mathias Gebbe e5c8e6d0ef
feat(oauth2): add client_credentials grant with opt-in config flag 1 month ago
dependabot[bot] 2ecf64e8b8
build(deps): bump google.golang.org/api from 0.268.0 to 0.269.0 (#4582) 1 month ago
Michiel De Backker a6962a8ba4
fix(mysql): quote `groups` reserved word in query replacer (#4580) 1 month ago
dependabot[bot] 0963bbe780
build(deps): bump google.golang.org/api from 0.267.0 to 0.268.0 (#4577) 1 month ago
Maksim Nabokikh bcc2283694
feat: enhance test commands to support GitHub Actions formatting (#4575) 1 month ago
dependabot[bot] ec26e19e79
build(deps): bump github/codeql-action from 4.32.3 to 4.32.4 (#4573) 1 month ago
dependabot[bot] 51c66d2523
build(deps): bump aquasecurity/trivy-action from 0.34.0 to 0.34.1 (#4574) 1 month ago
Maksim Nabokikh 8db7699e0f
feat: implement device code flow in example-app (#4570) 1 month ago
Maksim Nabokikh cf17fc68c8
test: update HandleCallback after merging OIDC PKCE (#4572) 1 month ago
Aljoscha Bollmann 83697b06a6
fix(server): respond with forbidden if failed to authenticate (#4200) 1 month ago
Giovanni Vella 25591eeaf4
Add support to PKCE in OIDC connector (#3777) 1 month ago
Maksim Nabokikh 5d27abc117
feat: refactor example-app with a new config (#4569) 2 months ago
Maksim Nabokikh 08079303c9
feat: add debug step to check image metadata in workflow (#4566) 2 months ago
dependabot[bot] 49c8228d30
build(deps): bump actions/dependency-review-action from 4.8.2 to 4.8.3 (#4563) 2 months ago
Maksim Nabokikh 0108be9e9f
feat: add skopeo copy command to transfer image from OCI layout (#4564) 2 months ago
dependabot[bot] 548b0f54e8
build(deps): bump filippo.io/edwards25519 from 1.1.0 to 1.1.1 (#4562) 2 months ago
Maksim Nabokikh 29c7b6f4e3
feat: validate redirect URIs and safely append parameters (#4559) 2 months ago
dependabot[bot] 69f9b7eef9
build(deps): bump google.golang.org/api from 0.266.0 to 0.267.0 (#4558) 2 months ago
dependabot[bot] be13b1f4d2
build(deps): bump helm/kind-action from 1.13.0 to 1.14.0 (#4557) 2 months ago
Maksim Nabokikh dce46384d9
build(deps): update gRPC to v1.79.1 and other dependencies (#4554) 2 months ago
Maksim Nabokikh 955142bae2
feat: enhance git-version script to generate pseudo-versions with timestamp (#4553) 2 months ago
Maksim Nabokikh adec8b481a
Add steps to fetch and extract OCI image tarball (#4552) 2 months ago
Maksim Nabokikh eb9f04b468
Debug trivy scans (#4545) 2 months ago
dependabot[bot] 5593fb7fcf
build(deps): bump github/codeql-action from 4.32.2 to 4.32.3 (#4547) 2 months ago
dependabot[bot] c331bb9608
build(deps): bump the etcd group with 2 updates (#4548) 2 months ago
dependabot[bot] e640a40a47
build(deps): bump google.golang.org/grpc from 1.79.0 to 1.79.1 (#4549) 2 months ago
dependabot[bot] 2976b2363a
build(deps): bump google.golang.org/grpc in /examples (#4551) 2 months ago
dependabot[bot] 7c74dd8ad8
build(deps): bump distroless/static-debian13 from `f9f84bd` to `01e550f` (#4546) 2 months ago
Maksim Nabokikh a5f49565a1
Add permissions section to trivydb-cache workflow (#4544) 2 months ago
Maksim Nabokikh 9bee809252
feat(crd): add CRD handling behavior and configuration options (#4543) 2 months ago
Maksim Nabokikh ad3a83ebcf
build(gomplate): update gomplate version to v5.0.0 and add update script (#4542) 2 months ago
Maksim Nabokikh 785033767c
feat: refactor signer configuration with local and vault options (#4532) 2 months ago
Logan d90827cc30
fix: use correct id value for label (#4541) 2 months ago
Maksim Nabokikh 489e37d07a
fix: suppress deprecation warning for userAttr when not set (#4539) 2 months ago
dependabot[bot] 76d7ed49ed
build(deps): bump aquasecurity/trivy-action from 0.33.1 to 0.34.0 (#4533) 2 months ago
dependabot[bot] 4955d43d45
build(deps): bump docker/build-push-action from 6.19.1 to 6.19.2 (#4535) 2 months ago