mirror of
https://github.com/coder/coder.git
synced 2026-09-24 15:04:27 +08:00
chore!: ensure consistent secret token generation and hashing (#20388)
This PR uses the same sha256 hashing technique as we use for APIKeys. So now all randomly generated secrets will be hashed with sha256 for consistency. This is a breaking change for the oauth tokens. Since oauth is only allowed for dev builds and experimental, this is ok.
This commit is contained in:
Generated
+6
-2
@@ -1274,7 +1274,9 @@ curl -X GET http://coder-server:8080/api/v2/oauth2/clients/{client_id} \
|
||||
"redirect_uris": [
|
||||
"string"
|
||||
],
|
||||
"registration_access_token": "string",
|
||||
"registration_access_token": [
|
||||
0
|
||||
],
|
||||
"registration_client_uri": "string",
|
||||
"response_types": [
|
||||
"string"
|
||||
@@ -1368,7 +1370,9 @@ curl -X PUT http://coder-server:8080/api/v2/oauth2/clients/{client_id} \
|
||||
"redirect_uris": [
|
||||
"string"
|
||||
],
|
||||
"registration_access_token": "string",
|
||||
"registration_access_token": [
|
||||
0
|
||||
],
|
||||
"registration_client_uri": "string",
|
||||
"response_types": [
|
||||
"string"
|
||||
|
||||
Generated
+25
-23
@@ -5350,7 +5350,9 @@ Only certain features set these fields: - FeatureManagedAgentLimit|
|
||||
"redirect_uris": [
|
||||
"string"
|
||||
],
|
||||
"registration_access_token": "string",
|
||||
"registration_access_token": [
|
||||
0
|
||||
],
|
||||
"registration_client_uri": "string",
|
||||
"response_types": [
|
||||
"string"
|
||||
@@ -5365,28 +5367,28 @@ Only certain features set these fields: - FeatureManagedAgentLimit|
|
||||
|
||||
### Properties
|
||||
|
||||
| Name | Type | Required | Restrictions | Description |
|
||||
|------------------------------|-----------------|----------|--------------|-------------|
|
||||
| `client_id` | string | false | | |
|
||||
| `client_id_issued_at` | integer | false | | |
|
||||
| `client_name` | string | false | | |
|
||||
| `client_secret_expires_at` | integer | false | | |
|
||||
| `client_uri` | string | false | | |
|
||||
| `contacts` | array of string | false | | |
|
||||
| `grant_types` | array of string | false | | |
|
||||
| `jwks` | object | false | | |
|
||||
| `jwks_uri` | string | false | | |
|
||||
| `logo_uri` | string | false | | |
|
||||
| `policy_uri` | string | false | | |
|
||||
| `redirect_uris` | array of string | false | | |
|
||||
| `registration_access_token` | string | false | | |
|
||||
| `registration_client_uri` | string | false | | |
|
||||
| `response_types` | array of string | false | | |
|
||||
| `scope` | string | false | | |
|
||||
| `software_id` | string | false | | |
|
||||
| `software_version` | string | false | | |
|
||||
| `token_endpoint_auth_method` | string | false | | |
|
||||
| `tos_uri` | string | false | | |
|
||||
| Name | Type | Required | Restrictions | Description |
|
||||
|------------------------------|------------------|----------|--------------|-------------|
|
||||
| `client_id` | string | false | | |
|
||||
| `client_id_issued_at` | integer | false | | |
|
||||
| `client_name` | string | false | | |
|
||||
| `client_secret_expires_at` | integer | false | | |
|
||||
| `client_uri` | string | false | | |
|
||||
| `contacts` | array of string | false | | |
|
||||
| `grant_types` | array of string | false | | |
|
||||
| `jwks` | object | false | | |
|
||||
| `jwks_uri` | string | false | | |
|
||||
| `logo_uri` | string | false | | |
|
||||
| `policy_uri` | string | false | | |
|
||||
| `redirect_uris` | array of string | false | | |
|
||||
| `registration_access_token` | array of integer | false | | |
|
||||
| `registration_client_uri` | string | false | | |
|
||||
| `response_types` | array of string | false | | |
|
||||
| `scope` | string | false | | |
|
||||
| `software_id` | string | false | | |
|
||||
| `software_version` | string | false | | |
|
||||
| `token_endpoint_auth_method` | string | false | | |
|
||||
| `tos_uri` | string | false | | |
|
||||
|
||||
## codersdk.OAuth2ClientRegistrationRequest
|
||||
|
||||
|
||||
Reference in New Issue
Block a user