Commit Graph

28 Commits (0586a777e7fb535e99793dd6f8f3baf865aa1f04)

Author SHA1 Message Date
Dominik Frantisek Bucik e721d7abe9
refactor: ๐Ÿ’ก Removed UMA package (not used)
Several tables have been dropped from the database. Also, access_token
does not contain permissions anymore. To update the DB accordingly, run
following:

```sql
DROP TABLE access_token_permissions;
DROP TABLE resource_set;
DROP TABLE resource_set_scope;
DROP TABLE permission_ticket;
DROP TABLE permission;
DROP TABLE permission_scope;
DROP TABLE claim;
DROP TABLE claim_to_policy;
DROP TABLE claim_to_permission_ticket;
DROP TABLE policy;
DROP TABLE policy_scope;
DROP TABLE claim_token_format;
DROP TABLE claim_issuer;
DROP TABLE saved_registered_client;
```
2021-11-24 12:35:21 +01:00
Dominik Frantisek Bucik a44556577c
refactor: ๐Ÿ’ก Refactored all models 2021-11-24 11:42:55 +01:00
Dominik Frantisek Bucik f85cd5c1c5
refactor: ๐Ÿ’ก Removed PerunACR and PerunDeviceACR
Removed models and repositories, removed scheduled tasks tied to these
classes. Acr is now instead stored together with the User authentication
2021-11-23 18:12:05 +01:00
Dominik Frantisek Bucik b2599cef5a
refactor: ๐Ÿ’ก Updated some DB entities, added missing cascades
Updated AuthenticationHolder, AuthorizationCode, DeviceCode,
AccessToken, RefreshToken, UserAuthN representations of DB entries.
Added missing cascades for some elements, to prevent leaving orphaned
records in the DB (i.e. for UserAuthN entries).
2021-11-23 12:18:54 +01:00
semantic-release-bot b2ae1875ab chore(release): 4.0.1 [skip ci]
## [4.0.1](https://github.com/CESNET/OpenID-Connect-Java-Spring-Server/compare/v4.0.0...v4.0.1) (2021-11-19)

### Bug Fixes

* ๐Ÿ› Fixed missing ACRs code and device_code flows ([4d3b072](4d3b07225c))
2021-11-19 17:26:47 +00:00
Dominik Frantisek Bucik 4d3b07225c
fix: ๐Ÿ› Fixed missing ACRs code and device_code flows 2021-11-19 18:16:53 +01:00
semantic-release-bot bcb0b0b66e chore(release): 4.0.0 [skip ci]
# [4.0.0](https://github.com/CESNET/OpenID-Connect-Java-Spring-Server/compare/v3.5.0...v4.0.0) (2021-11-19)

### Bug Fixes

* ๐Ÿ› Fix ACR for implicit and authorization_code flows ([39bc00a](39bc00a3b0))

### BREAKING CHANGES

* ๐Ÿงจ Database needs to be updated: `ALTER TABLE saved_user_auth DROP
source_class; ALTER TABLE saved_user_auth ADD COLUMN acr VARCHAR(1024);`
2021-11-19 15:21:26 +00:00
Dominik Frantisek Bucik 39bc00a3b0
fix: ๐Ÿ› Fix ACR for implicit and authorization_code flows
BREAKING CHANGE: ๐Ÿงจ Database needs to be updated: `ALTER TABLE saved_user_auth DROP
source_class; ALTER TABLE saved_user_auth ADD COLUMN acr VARCHAR(1024);`
2021-11-19 16:14:21 +01:00
Dominik Frantisek Bucik b4cd6a4642
refactor: ๐Ÿ’ก Got rid of PerunPrincipal class 2021-11-19 13:36:14 +01:00
semantic-release-bot 52e5c01776 chore(release): 3.5.0 [skip ci]
# [3.5.0](https://github.com/CESNET/OpenID-Connect-Java-Spring-Server/compare/v3.4.1...v3.5.0) (2021-11-16)

### Features

* ๐ŸŽธ AARC_IDP_HINTING implemented ([ebd1459](ebd1459ba3))
2021-11-16 06:31:00 +00:00
Dominik Frantisek Bucik ebd1459ba3
feat: ๐ŸŽธ AARC_IDP_HINTING implemented 2021-11-16 07:22:38 +01:00
semantic-release-bot 9c135ec304 chore(release): 3.4.1 [skip ci]
## [3.4.1](https://github.com/CESNET/OpenID-Connect-Java-Spring-Server/compare/v3.4.0...v3.4.1) (2021-11-15)

### Bug Fixes

* ๐Ÿ› Added missing PostgreSQL dependency ([e12c164](e12c164b46))
2021-11-15 11:54:56 +00:00
Dominik Frantisek Bucik e12c164b46
fix: ๐Ÿ› Added missing PostgreSQL dependency
Added dependency to be able to use PSQL connector
2021-11-15 11:41:48 +01:00
Dominik Frantisek Bucik 2b94aff58e
refactor: ๐Ÿ’ก Code inspection by IDEA 2021-11-15 11:20:39 +01:00
Dominik Frantisek Bucik 1056d6acdc
refactor: ๐Ÿ’ก removed unneeded imports 2021-11-15 11:20:39 +01:00
Dominik Frantisek Bucik 26b5a99817
refactor: ๐Ÿ’ก Loggers via Lombok 2021-11-15 11:20:39 +01:00
semantic-release-bot f8f499c17a chore(release): 3.4.0 [skip ci]
# [3.4.0](https://github.com/CESNET/OpenID-Connect-Java-Spring-Server/compare/v3.3.0...v3.4.0) (2021-11-12)

### Features

* ๐ŸŽธ Forward client_id in AuthenticationContextClass ([6a6d1e3](6a6d1e3ad9))
2021-11-12 12:34:13 +00:00
Dominik Frantisek Bucik 6a6d1e3ad9
feat: ๐ŸŽธ Forward client_id in AuthenticationContextClass
Forward client_id in the AuthenticationContextClass element. This can be
used by the proxy to i.e. display name of the service on WAYF.
2021-11-12 13:28:38 +01:00
semantic-release-bot 8cf4b64531 chore(release): 3.3.0 [skip ci]
# [3.3.0](https://github.com/CESNET/OpenID-Connect-Java-Spring-Server/compare/v3.2.0...v3.3.0) (2021-11-11)

### Features

* ๐ŸŽธ Extended list of internal referrers for sess. invalider ([9aa16ff](9aa16ffe5c))
* ๐ŸŽธ Make SAML identifier attribute configurable ([3949857](39498573c3))
2021-11-11 13:23:35 +00:00
Dominik Frantisek Bucik 9aa16ffe5c
feat: ๐ŸŽธ Extended list of internal referrers for sess. invalider
Via property _saml.internalReferrers_ it can be configured which
referrers are considered as internal and in such a cases session will
not be invalidated. The property has to be list of URLs, separated by a
comma, and the matching is done as a prefix of the current referrer
2021-11-11 10:23:20 +01:00
Dominik Frantisek Bucik 39498573c3
feat: ๐ŸŽธ Make SAML identifier attribute configurable
Attribute is configured via property _saml.user.attrIdentifier_ and has
to be one of values eppn|epuid|eptid|uid|uniqueIdentifier
2021-11-11 10:22:56 +01:00
semantic-release-bot cf3c19c046 chore(release): 3.2.0 [skip ci]
# [3.2.0](https://github.com/CESNET/OpenID-Connect-Java-Spring-Server/compare/v3.1.0...v3.2.0) (2021-11-09)

### Features

* ๐ŸŽธ Adderd e-INFRA CZ template ([5eb50f6](5eb50f6441))
2021-11-09 10:53:55 +00:00
Dominik Frantisek Bucik 0b68a720fb
refactor: ๐Ÿ’ก Disable metadata signature check 2021-11-09 11:13:36 +01:00
semantic-release-bot 0e58108645 chore(release): 3.1.0 [skip ci]
# [3.1.0](https://github.com/CESNET/OpenID-Connect-Java-Spring-Server/compare/v3.0.1...v3.1.0) (2021-11-08)

### Features

* ๐ŸŽธ Sign refresh tokens ([23a6354](23a6354fc7))
2021-11-08 06:57:26 +00:00
Dominik Frantisek Bucik 23a6354fc7
feat: ๐ŸŽธ Sign refresh tokens
Add signature to the refresh_token JWT. Previously it has been missing
it.
2021-11-08 07:46:23 +01:00
semantic-release-bot b2b8efe516 chore(release): 3.0.1 [skip ci]
## [3.0.1](https://github.com/CESNET/OpenID-Connect-Java-Spring-Server/compare/v3.0.0...v3.0.1) (2021-11-05)

### Bug Fixes

* ๐Ÿ› fix loading JWKS ([371adc1](371adc13fb))
2021-11-05 10:40:38 +00:00
Dominik Frantisek Bucik b42e50ebe3
chore: fix versions in pom.xml 2021-11-04 14:41:49 +01:00
Dominik Frantisek Bucik 11fdf85d5f
feat: ๐ŸŽธ Merge with perun-mitreid overlay, add SAML auth
Merge with overlay repository into one big repo. Added SAML
authentication

BREAKING CHANGE: ๐Ÿงจ Merge and auth
2021-11-03 08:23:34 +01:00