Qu Xuan
|
962e19bbd0
|
fix(keystone): tag list for keystone service
|
2021-04-26 11:40:25 +08:00 |
|
Qiu Jian
|
128f895c5c
|
fix(keystone): role_assignment effective list ignore groups without user
|
2021-04-05 17:21:21 +08:00 |
|
Qiu Jian
|
0c57a713e5
|
fix: adjust primary key length when sqlchemy utf8 default to utf8mb4
|
2021-04-02 15:06:19 +08:00 |
|
Qiu Jian
|
e6868d5d0f
|
fix(keystone): allow joint projects across domains by default
|
2021-03-19 00:00:22 +08:00 |
|
Qiu Jian
|
94f72124fe
|
fix(keystone): update default role associated policy name
|
2021-03-09 17:50:09 +08:00 |
|
Qiu Jian
|
b034a7a95d
|
fix(keystone): adjust default system policy names
|
2021-03-01 21:30:24 +08:00 |
|
Qiu Jian
|
601112dd7f
|
fix(keystone): ensure comparing id with non-utf8 string
|
2021-02-25 02:29:30 +08:00 |
|
rainzm
|
399bce619a
|
feat(keystone): support filter 'project_domain_id' in role_assignments
|
2021-02-18 11:45:15 +08:00 |
|
rainzm
|
0de209502f
|
fix(notify): get the receiver corresponding to the role correctly
|
2021-02-18 11:45:15 +08:00 |
|
 Jian QiuandQiu Jian
|
058a0a0729
|
fix(keystone): policy name duplication (#10200)
Co-authored-by: Qiu Jian <qiujian@yunionyun.com>
|
2021-02-14 19:14:14 +08:00 |
|
 Jian QiuandQiu Jian
|
e43bea673c
|
fix(keystone): hide system scope policies in domain scope view (#10195)
Co-authored-by: Qiu Jian <qiujian@yunionyun.com>
|
2021-02-08 12:17:01 -03:00 |
|
Zexi Li
|
ed23e6acb7
|
Merge pull request #10174 from swordqiu/automated-cherry-pick-of-#10173-upstream-release-3.7
Automated cherry pick of #10173: fix(keystone): cas sso may create new project whenever user login
|
2021-02-06 10:35:52 +08:00 |
|
Qiu Jian
|
34e5a36b2c
|
fix(keystone): cas sso may create new project whenever user login
|
2021-02-06 03:20:37 +08:00 |
|
Qiu Jian
|
1a24034c64
|
fix(keystone): idp filter by sso_domain returns domain's idp only
|
2021-02-06 02:56:31 +08:00 |
|
 Jian QiuandQiu Jian
|
739637b8f3
|
fix(keystone): add alertrecords to default dashboard permission (#10161)
Co-authored-by: Qiu Jian <qiujian@yunionyun.com>
|
2021-02-05 02:58:03 +08:00 |
|
Zexi Li
|
4352926737
|
Merge pull request #10068 from swordqiu/automated-cherry-pick-of-#10067-upstream-release-3.7
Automated cherry pick of #10067: fix(keystone): SSO created user name may be duplicated
|
2021-01-30 10:41:56 +08:00 |
|
rainzm
|
c4c3b925b8
|
fix(keystone): avoid repeated abnormal login notifications
|
2021-01-29 20:12:07 +08:00 |
|
Qiu Jian
|
9342987aa3
|
fix(keystone): SSO created user name may be duplicated
|
2021-01-28 23:38:58 +08:00 |
|
rainzm
|
46a1312336
|
feat(keystone): more specific error return during authentication
add error class UserNotFound, UserLocked, UserDisabled and WrongPassword
|
2021-01-27 19:58:42 +08:00 |
|
Qiu Jian
|
bc0a4a7b6f
|
fix(keystone): user create without password can login with any password
|
2021-01-23 23:50:59 +08:00 |
|
Qiu Jian
|
6428ca9a15
|
fix(keystone): allow delete sso imported non-local user
allow delete SSO imported non-local users
|
2021-01-21 23:50:49 +08:00 |
|
Zexi Li
|
3f9982ecd1
|
Merge pull request #9949 from rainzm/automated-cherry-pick-of-#9948-upstream-release-3.7
Automated cherry pick of #9948: feat(keystone,apigateway): return a readable message when the user is locked or disabled
|
2021-01-20 20:05:58 +08:00 |
|
Qiu Jian
|
db7a921785
|
fix(keystone): allow filter identity_providers with name of ssoDomain
allow filter identity_providers with name of ssoDomain
|
2021-01-20 01:05:57 +08:00 |
|
rainzm
|
9c4fd94d7a
|
feat(keystone,apigateway): return a readable message when the user is locked or disabled
|
2021-01-19 17:33:24 +08:00 |
|
rainzm
|
c5fd651604
|
fix(keystone): don't send the administrator’s message to the party
|
2021-01-18 14:58:26 +08:00 |
|
rainzm
|
988c90e8f6
|
fix(keystone): correctly pass domain id to role-assignments
|
2021-01-17 20:52:18 +08:00 |
|
rainzm
|
1b96a290d0
|
feat(keystone): add options to set admin and domain admin role to notify
|
2021-01-17 20:52:18 +08:00 |
|
rainzm
|
9c630dc313
|
fix(keystone): clear failed auth when enable user
|
2021-01-14 18:25:51 +08:00 |
|
rainzm
|
6976851993
|
fix(keystone): send to the admin and the party separately when Abnormal login occurs
|
2021-01-14 18:25:51 +08:00 |
|
rainzm
|
f41c840d85
|
feat(keystone): support alertNotify when abnormal login occur
|
2021-01-13 20:01:13 +08:00 |
|
rainzm
|
c22f221898
|
feat(keystone): add GetDefaultAdminSession
|
2021-01-13 20:01:12 +08:00 |
|
rainzm
|
afbb4a0470
|
feat(keystone): support projectDomainId in SAssignmentManager.FetchAll
|
2021-01-13 20:01:12 +08:00 |
|
Zexi Li
|
99da7238cb
|
Merge pull request #9837 from swordqiu/automated-cherry-pick-of-#9836-upstream-release-3.7
Automated cherry pick of #9836: fix(keystone): add suggestion previliges to meter admin
|
2021-01-12 10:26:26 +08:00 |
|
Yousong Zhou
|
a012496cbb
|
keystone: reword error messages
|
2021-01-11 17:50:12 +08:00 |
|
Qiu Jian
|
5ef93ed03c
|
fix(keystone): add suggestion previliges to meter admin
|
2021-01-11 02:07:20 +08:00 |
|
Qiu Jian
|
7c84554587
|
fix(keystone): add i18n description for policy and role
Add i18n support for descriptions of system policy and role
|
2020-12-23 23:34:21 +08:00 |
|
Qiu Jian
|
234c37c490
|
fix(keystone): ignore deleted policies when matching policies
ignore deleted policies when matching policies
|
2020-12-20 14:12:59 +08:00 |
|
Zexi Li
|
0ce19160d0
|
Merge pull request #9501 from swordqiu/feature/qj-user-add-lang-attribute
feature(keystone): user add language attribute
|
2020-12-19 20:05:21 +08:00 |
|
Qiu Jian
|
5cf5576e09
|
feature(keystone): user add language attribute
User add language attribute, notify and alarm will use this attribute to
send message in proper language
|
2020-12-19 09:18:17 +08:00 |
|
Qiu Jian
|
80229fa1e0
|
fix(keystone): always upload&refresh service config whenever service restart
Always upload&refresh service config whenever service restart
|
2020-12-19 00:49:32 +08:00 |
|
Qiu Jian
|
a0350d0537
|
fix(keystone): update user attributes whenever user login
update user attribtues whenever user login
|
2020-12-14 18:15:48 +08:00 |
|
Zexi Li
|
95d67b040b
|
Merge pull request #9361 from swordqiu/hotfix/qj-domain-unlink-action
fix(keystone): allow unlink a domain from an IDP
|
2020-12-12 00:16:22 +08:00 |
|
Qiu Jian
|
1d7b7057a7
|
fix(keystone): ignore service config update without changes
ignore service config updates that no changes happen. prevent service
config change infomrer messages from flushing the log.
|
2020-12-11 22:10:49 +08:00 |
|
Qiu Jian
|
076fa5498a
|
fix(keystone): allow unlink a domain from an IDP
allow unlink a domain from an IDP
|
2020-12-11 21:50:15 +08:00 |
|
Qiu Jian
|
0a7513cce4
|
fix(cloudcommon): disable quota check by default
1. add enable_quota_check common option
2. disable quota check by default
3. specify scope of quota limit in OutOfQuota error message
|
2020-12-10 01:19:06 +08:00 |
|
Zexi Li
|
c8a237886e
|
Merge pull request #9146 from ioito/hotfix/qx-keystone-refresh-scope-resource
fix(keystone): allow refresh scope resource
|
2020-12-08 09:39:48 +08:00 |
|
Zexi Li
|
b498c9b8da
|
Merge pull request #9251 from swordqiu/hotfix/qj-filter-role-policies-panic
fix(keystone): rolepolicies list panic if filter by domain scope
|
2020-12-08 09:34:16 +08:00 |
|
Qiu Jian
|
4411c4e5bb
|
fix(keystone): rolepolicies list panic if filter by domain scope
rolepolicies list panic if filter by scope=domain
|
2020-12-08 03:12:42 +08:00 |
|
Qiu Jian
|
57a0e8d63e
|
fix(keystone): oidc driver turn on debug mode if log-level is debug
oidc driver turn on debug mode if log-level is debug
|
2020-12-08 02:49:09 +08:00 |
|
Qu Xuan
|
c14b245fad
|
fix(keystone): allow refresh scope resource
|
2020-12-07 10:46:58 +08:00 |
|