371 Commits (v2.43.0)

Author SHA1 Message Date
Oleksandr Redko 9891daa585
refactor: simplify tests by using slog.DiscardHandler (#4058) 12 months ago
Kot C 95388bb27a
Add authproxy preferred_username header (#3950) 1 year ago
Mark Sagi-Kazar c7fd9620aa
chore: fix linter config and violations 1 year ago
Melroy Dsouza 8b93966357
Support for IssuerAlias and groups as maps (#3676) 1 year ago
Vladimir 3e00d33449
GitLab connector: add GitLab additional group with role (#2941) 1 year ago
siarhei-haurylau fe08a08923
saml connector: fix nil pointer on validate saml (#3793) 1 year ago
Maksim Nabokikh d2928d394b
Fix scheme for DialURL ldap connection (#3677) 2 years ago
Maksim Nabokikh 07a42839a3
Fix logger.Warnf error after merging 3661 (#3668) 2 years ago
Maksim Nabokikh 63f4410ac1
Update dependencies before Dex v2.41 (#3637) 2 years ago
Jack Warren 849d601e4a
Pass ctx with http.Client to verifier for OIDC connector (#3641) 2 years ago
Mathew Wicks fb20f3fa32
fix: always retrieve github emails when `preferredEmailDomain` is set (#3584) 2 years ago
Doug Goldstein f3ef7d46df
feat: allow domain names or IDs in keystone connector (#3506) 2 years ago
Sean Liao 0b6a78397e
use slog for structured logging (#3502) 2 years ago
sohgaura 064a409443
OIDC connector option to override jwksURI (#3543) 2 years ago
MichaelKo b0575946b1
Google: Implement groups fetch by default service account from metadata (support for GKE workload identity) (#2989) 2 years ago
mountcount c6fa45568b
chore: fix function names in comment (#3464) 2 years ago
Abhisek Datta 677ab36020
feat: Add support for configurable prompt type for Google connector (#3475) 2 years ago
Maksim Nabokikh 3705207f01
Do not escape password for LDAP connectors (#3470) 2 years ago
Maksim Nabokikh e5dce3d3b7
OIDC connector: Allow specifying empty prompt type (#3373) 2 years ago
hsinhoyeh 77333d619c
fix: add sanitizer to ldap account and password (#3372) 2 years ago
Maksim Nabokikh 60ddd188c0
Update go-jose to v4.0.1 (#3409) 2 years ago
Chris 79d5874b35
fix(tokenExchange): use correct token type for userInfo requests (#3336) 2 years ago
Patrick Pacher 8e07edc188
Also set the username in authproxy connector (#3307) 2 years ago
Maksim Nabokikh 665a5b627c
Override OIDC provider discovered claims (#3267) 2 years ago
Matt Pryor 366e53c1b6
Add support for extra claims to authproxy connector (#2851) 2 years ago
Jackson Argo 5df1605773 add regex for oidc group matching 2 years ago
Oded Ben-Ozer a6a72453b5 fix some small formatting issue 2 years ago
Oded Ben-Ozer 115425960c Address issues raised in review: 2 years ago
Oded Ben Ozer 033717a07e
Apply suggestions from code review 2 years ago
Márk Sági-Kazár b772ed55ba
feat(connector/microsoft): support custom api and graph URLs (#3084) 2 years ago
Pradeep Mudlapur 415ddaa3da
Minimalistic support for group filtering in oidc connector (#3074) 2 years ago
Oded Ben-Ozer 6875b64caf Address issues raised in review: 2 years ago
Oded Ben-Ozer 7f0056cf13 Fix lint issue 3 years ago
Oded Ben-Ozer b1f4bd0195 Address issues raised in review: 3 years ago
Oded Ben-Ozer a52848418a Rename configuration option to include a reference to groups 3 years ago
Oded Ben-Ozer 316296b0d3 Document each test case 3 years ago
Oded Ben Ozer 6d143f16c1 Composite claims in OIDC connector (#3) 3 years ago
Sean Liao affd4d4e49
verify access tokens by checking getuserinfo during a token exchange (#3031) 3 years ago
Sean Liao dcf7b18510
OAuth 2.0 Token Exchange (#2806) 3 years ago
MichaelKo 6cd5c8b867
#2895: Add Support for Multiple Admin Emails to Retrieve Group Lists (#2911) 3 years ago
Maksim Nabokikh bc8c2276e3
Fail if OIDC config contains hosted domains (#2937) 3 years ago
Josh Soref d8a9756df7 spelling: verified 3 years ago
Josh Soref ad1fc3b7c1 spelling: upon 3 years ago
Josh Soref acc568be4b spelling: running 3 years ago
Josh Soref 8fdc29da34 spelling: missing 3 years ago
Josh Soref b0803fbc77 spelling: gitlab 3 years ago
m.nabokikh 7208e28192 Fix openshift context and add a comment 3 years ago
m.nabokikh 96637cf0f7 feat: Bump dependencies and Makefile refactoring 3 years ago
m.nabokikh 777e162c0c feat: LDAP case-insensitive DN attribute 3 years ago
Maksim Nabokikh 2ea1a80c86
fix: propagate http client to userInfo requests for OIDC connector (#2781) 3 years ago