75 Commits (358c35ef708567032f8bdcc216db95dff6d5b71b)

Author SHA1 Message Date
skpratt 9199e99e21
Update token language to distinguish Accessor and Secret ID usage (#16044) 2 years ago
skpratt a010902978
Remove legacy acl policies (#15922) 2 years ago
skpratt ad43846755
Remove legacy acl tokens (#15947) 2 years ago
Chris S. Kim a7b34d50fc
Output user-friendly name for anonymous token (#15884) 2 years ago
Florian Apolloner 077b0a48a3
Allow Operator Generated bootstrap token (#14437) 2 years ago
freddygv 02d3ce1039 Add server certificate manager 2 years ago
freddygv 0e5131bd33 Generate ACL token for server management 2 years ago
Freddy f99df57840
[OSS] Add new peering ACL rule (#13848) 2 years ago
Dan Upton a668c36930
acl: gRPC login and logout endpoints (#12935) 3 years ago
Mark Anderson 05eded4f1d Manual Structs fixup 3 years ago
Dhia Ayachi 16b19dd82d
auto-reload configuration when config files change (#12329) 3 years ago
Kyle Havlovitz b21b4346b4 Add expanded token read flag and endpoint option 3 years ago
Daniel Nephin a5e8af79c3 acl: return a resposne from ResolveToken that includes the ACLIdentity 3 years ago
Dan Upton ca3aca92c4
[OSS] Remove remaining references to master (#11827) 3 years ago
Daniel Nephin 8ba760a2fc acl: remove id and revision from Policy constructors 3 years ago
Daniel Nephin 65d48e5042 state: remove support for updating legacy ACL tokens 3 years ago
Daniel Nephin c77e5747b1 acl: remove EmbeddedPolicy 3 years ago
Daniel Nephin 3ac910606c acl: remove reading of serf acl tags 3 years ago
Daniel Nephin 8e9773e20b acl: remove ACL.GetPolicy endpoint and resolve legacy acls 3 years ago
Daniel Nephin 6e1ebd3df7 acl: remove the last of the legacy FSM 3 years ago
Daniel Nephin 05f0cc3993 acl: remove ACLDelete FSM command, and state store function 3 years ago
Daniel Nephin 966e50e00e acl: remove legacy field to ACLBoostrap 3 years ago
Daniel Nephin e7c63004a8 acl: remove a couple legacy ACL operation constants 3 years ago
Daniel Nephin 868bfc7a0a acl: Remove unused ACLPolicyIDType 3 years ago
Freddy fcef19f94b
acl: small resolver changes to account for partitions (#11052) 3 years ago
Daniel Nephin d63cef1219 acl: remove legacy ACL replication 3 years ago
R.B. Boyer ee372a854a acl: adding a new mesh resource 3 years ago
R.B. Boyer a6d22efb49
acl: some acl authz refactors for nodes (#10909) 3 years ago
R.B. Boyer 188e8dc51f
agent/structs: add a bunch more EnterpriseMeta helper functions to help with partitioning (#10669) 3 years ago
Evan Culver 0527dcff57
acls: Show `AuthMethodNamespace` when reading/listing ACL token meta (#10598) 3 years ago
Giulio Micheloni 814ef6b103 acl: fix error type into a string type for serialization issue 3 years ago
Giulio Micheloni 529fe737ef acl: acl replication routine to report the last error message 3 years ago
Evan Culver 13bd86527b
Add support for returning ACL secret IDs for accessors with acl:write (#10546) 3 years ago
Matt Keeler bbf5993534
Move static token resolution into the ACLResolver (#10013) 4 years ago
Mark Anderson b9d22f48cd
Add fields to the /acl/auth-methods endpoint. (#9741) 4 years ago
R.B. Boyer d921690bfe
acl: global tokens created by auth methods now correctly replicate to secondary datacenters (#9351) 4 years ago
Kyle Havlovitz 0bfda4481f Add CA server delegate interface for testing 4 years ago
Matt Keeler d3881dd754
ACL Node Identities (#7970) 5 years ago
Hans Hasselberg 242994a016
acl: do not resolve local tokens from remote dcs (#8068) 5 years ago
R.B. Boyer 833211c14c
acl: allow auth methods created in the primary datacenter to optionally create global tokens (#7899) 5 years ago
R.B. Boyer a854e4d9c5
acl: oss plumbing to support auth method namespace rules in enterprise (#7794) 5 years ago
R.B. Boyer 22eb016153
acl: add MaxTokenTTL field to auth methods (#7779) 5 years ago
R.B. Boyer ca52ba7068
acl: add DisplayName field to auth methods (#7769) 5 years ago
Alejandro Baez bafa69bb69
Add PolicyReadByName for API (#6615) 5 years ago
R.B. Boyer 85a08bf8ed
server: strip local ACL tokens from RPCs during forwarding if crossing datacenters (#7419) 5 years ago
Matt Keeler e231d62bc9
Make the config entry and leaf cert cache types ns aware (#7256) 5 years ago
R.B. Boyer 8c596953b0
agent: ensure that we always use the same settings for msgpack (#7245) 5 years ago
Matt Keeler 663cf1e9a8
AuthMethod updates to support alternate namespace logins (#7029) 5 years ago
Matt Keeler 80d13d500b
Miscellaneous acl package cleanup 5 years ago
Matt Keeler 0b346616e9
Rename EnterpriseAuthorizerContext -> AuthorizerContext 5 years ago