0bdcb41e20
Refactor peer expiry, inactivity, location and status update to remove get account
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-23 19:03:48 +03:00
97dbdd7940
fix group tests
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-18 10:48:28 +03:00
a82b5ce80e
Merge branch 'main' into refactor/get-account-usage
...
# Conflicts:
# management/server/account.go
2024-10-17 22:01:26 +03:00
83be99c849
refactor get peers posture checks
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-17 21:58:34 +03:00
ccd4ae6315
Fix domain information is up to date check ( #2754 )
2024-10-17 19:21:35 +02:00
ee96a81b83
fix handler tests
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-17 16:34:44 +03:00
b0edc5f1f7
Merge branch 'main' into refactor/get-account-usage
...
# Conflicts:
# management/server/sql_store.go
2024-10-17 16:10:16 +03:00
408d0cd504
Refactor policy save and delete
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-17 14:11:22 +03:00
b66f331711
get the first element when get record by ID
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-17 14:10:01 +03:00
d7a6996bed
check user accounts for setup keys
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-17 11:59:46 +03:00
96d2207684
Fix JSON function compatibility for SQLite and PostgreSQL ( #2746 )
...
resolves the issue with json_array_length compatibility between SQLite and PostgreSQL. It adjusts the query to conditionally cast types:
PostgreSQL: Casts to json with ::json.
SQLite: Uses the text representation directly.
2024-10-16 17:55:30 +02:00
d7c63d5c04
Remove get account from groups ops
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-16 16:04:34 +03:00
1123729c1c
fix merge
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-15 18:17:47 +03:00
a8c8b77df8
Merge branch 'main' into refactor/get-account-usage
...
# Conflicts:
# management/server/account.go
# management/server/file_store.go
# management/server/peer.go
# management/server/policy.go
# management/server/route.go
# management/server/sql_store.go
# management/server/store.go
# management/server/user.go
2024-10-14 14:31:55 +03:00
49e65109d2
Add session expire functionality based on inactivity ( #2326 )
...
Implemented inactivity expiration by checking the status of a peer: after a configurable period of time following netbird down, the peer shows login required.
2024-10-13 14:52:43 +02:00
da3a053e2b
[management] Refactor getAccountIDWithAuthorizationClaims ( #2715 )
...
This change restructures the getAccountIDWithAuthorizationClaims method to improve readability, maintainability, and performance.
- have dedicated methods to handle possible cases
- introduced Store.UpdateAccountDomainAttributes and Store.GetAccountUsers methods
- Remove GetAccount and SaveAccount dependency
- added tests
2024-10-12 08:35:51 +02:00
208a2b7169
Add billing user role ( #2714 )
2024-10-10 14:14:56 +02:00
8284ae959c
[management] Move testdata to sql files ( #2693 )
2024-10-10 12:35:03 +02:00
b79c1d64cc
[management] Make max open db conns configurable ( #2713 )
2024-10-09 20:17:25 +02:00
d4ef84fe6e
[management] Propagate error in store errors ( #2709 )
2024-10-09 14:33:58 +02:00
2c1f5e46d5
[management] Validate peer ownership during login ( #2704 )
...
* check peer ownership in login
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* update error message
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
---------
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-07 19:06:26 +03:00
dbec24b520
[management] Remove admin check on getAccountByID ( #2699 )
2024-10-06 17:01:13 +02:00
5897a48e29
fix wrong reference ( #2695 )
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-04 18:55:25 +03:00
8bf729c7b4
[management] Add AccountExists to AccountManager ( #2694 )
...
* Add AccountExists method to account manager interface
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* remove unused code
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
---------
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-04 18:09:40 +03:00
7f09b39769
[management] Refactor User JWT group sync ( #2690 )
...
* Refactor GetAccountIDByUserOrAccountID
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* sync user jwt group changes
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* propagate jwt group changes to peers
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* fix no jwt groups synced
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* fix tests and lint
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* Move the account peer update outside the transaction
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* move updateUserPeersInGroups to account manager
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* move event store outside of transaction
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* get user with update lock
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* Run jwt sync in transaction
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
---------
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-04 17:17:01 +03:00
158936fb15
[management] Remove file store ( #2689 )
2024-10-03 15:50:35 +02:00
ff7863785f
[management, client] Add access control support to network routes ( #2100 )
2024-10-02 13:41:00 +02:00
0297b5f142
wip: refactoring
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-02 11:56:47 +03:00
78e238646c
refactor groups methods
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-01 16:32:31 +03:00
f9ed25f8b1
wip refactor peer methods
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-01 01:07:48 +03:00
f43a006c34
Fix posture check name uniqueness per account
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-01 01:06:52 +03:00
1a37b12d1b
refactor user PAT
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-01 00:55:32 +03:00
d36d30dec4
refactor name server groups
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-01 00:54:53 +03:00
43eb7261e3
refactor account and dns settings
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-10-01 00:54:28 +03:00
16179db599
[management] Propagate metrics ( #2667 )
2024-09-30 22:18:10 +02:00
9e47c94a7f
refactor setup keys
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-09-30 14:02:55 +03:00
edf67672ad
fix merge
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-09-27 22:31:26 +03:00
58ff7ab797
[management] improve zitadel idp error response detail by decoding errors ( #2634 )
...
* [management] improve zitadel idp error response detail by decoding errors
* [management] extend readZitadelError to be used for requestJWTToken
more generically parse the error returned by zitadel.
* fix lint
---------
Co-authored-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-09-27 22:21:34 +03:00
bc520412ba
Merge branch 'main' into refactor/get-account-usage
...
# Conflicts:
# management/server/file_store.go
# management/server/http/posture_checks_handler.go
# management/server/mock_server/account_mock.go
# management/server/policy.go
# management/server/sql_store.go
# management/server/store.go
2024-09-27 20:27:05 +03:00
acb73bd64a
[management] Remove redundant get account calls in GetAccountFromToken ( #2615 )
...
* refactor access control middleware and user access by JWT groups
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* refactor jwt groups extractor
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* refactor handlers to get account when necessary
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* refactor getAccountFromToken
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* refactor getAccountWithAuthorizationClaims
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* fix merge
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* revert handles change
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* remove GetUserByID from account manager
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* fix tests
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* refactor getAccountWithAuthorizationClaims to return account id
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* refactor handlers to use GetAccountIDFromToken
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* fix tests
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* remove locks
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* refactor
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* add GetGroupByName from store
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* add GetGroupByID from store and refactor
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* Refactor retrieval of policy and posture checks
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* Refactor user permissions and retrieves PAT
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* Refactor route, setupkey, nameserver and dns to get record(s) from store
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* Refactor store
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* fix lint
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* fix tests
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* fix add missing policy source posture checks
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* add store lock
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* fix tests
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
* add get account
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
---------
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-09-27 17:10:50 +03:00
96f18c2c8c
fix tests
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-09-26 19:46:37 +03:00
73be8c8a32
fix merge
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-09-26 19:00:59 +03:00
f61c914fd7
Merge branch 'refactor-get-account-by-token' into refactor/get-account-usage
...
# Conflicts:
# management/server/file_store.go
2024-09-26 18:51:47 +03:00
4575ae2841
add store lock
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-09-26 18:46:23 +03:00
ca6a9fd602
Merge branch 'refactor-get-account-by-token' into refactor/get-account-usage
2024-09-26 16:39:52 +03:00
871595d15f
Merge branch 'main' into refactor-get-account-by-token
...
# Conflicts:
# management/server/sql_store.go
2024-09-26 16:39:17 +03:00
30253b0565
Merge branch 'refactor-get-account-by-token' into refactor/get-account-usage
2024-09-26 16:34:36 +03:00
dc82c2d1ce
fix add missing policy source posture checks
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-09-26 16:34:19 +03:00
3b4bcdf5a4
refactor posture checks save and deletion
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-09-26 16:28:49 +03:00
87c8430e99
add store policy save and method
...
Signed-off-by: bcmmbaga <bethuelmbaga12@gmail.com >
2024-09-25 22:47:54 +03:00