ibuler
|
3749a0c6a1
|
perf: 修复 middleware 导致的内存增长
|
2 years ago |
ibuler
|
ac20bc05ba
|
perf: 优化 css
|
2 years ago |
fit2bot
|
7e2f81a418
|
perf: 重构 ticket (#8281)
* perf: 重构 ticket
* perf: 优化 tickets
* perf: 暂存
* perf: 建立 ticket model
* perf: 暂存一下
* perf: 修改 tickets
* perf: 修改 import
* perf: 修改model
* perf: 暂存一波
* perf: 修改...
* del process_map field
* 工单重构
* 资产 应用对接前端
* perf: 修改 ticket
* fix: bug
* 修改迁移文件
* 添加其他api
* 去掉process_map
* perf: 优化去掉 signal
* perf: 修改这里
* 修改一点
* perf: 修改工单
* perf: 修改状态
* perf: 修改工单流转
* step 状态切换
* perf: 修改 ticket open
* perf: 修改流程
* perf: stash it
* 改又改
* stash it
* perf: stash
* stash
* migrate
* perf migrate
* 调整一下
* 修复bug
* 修改一点
* 修改一点
* 优化一波
* perf: ticket migrations
Co-authored-by: ibuler <ibuler@qq.com>
Co-authored-by: feng626 <1304903146@qq.com>
|
2 years ago |
ibuler
|
fa51465485
|
perf: 修改去掉 导入 certs
|
2 years ago |
ibuler
|
8f59bb2a48
|
perf: 优化登陆
|
2 years ago |
ibuler
|
2366da1485
|
perf: redis AND login page
|
2 years ago |
ibuler
|
f1a22575d3
|
perf: 优化登录页面
|
2 years ago |
ibuler
|
7c1882bb53
|
perf: login
|
2 years ago |
ibuler
|
8b819f3779
|
perf: 优化登录
|
2 years ago |
feng626
|
75a72fb182
|
fix: user confirm bug
|
2 years ago |
Jiangjie.Bai
|
9e16b79abe
|
fix: 修复openid用户登录时默认邮件后缀使用配置项
|
2 years ago |
ibuler
|
10adb4e6b7
|
perf: 优化签名认证
|
2 years ago |
ibuler
|
c6949b4f68
|
perf: 去掉 remote app 的加密
|
3 years ago |
fit2bot
|
a5acdb9f60
|
perf: 统一校验当前用户api (#8324)
Co-authored-by: feng626 <1304903146@qq.com>
|
3 years ago |
Jiangjie.Bai
|
810c500402
|
feat: 添加配置项 CONNECTION_TOKEN_EXPIRATION
|
3 years ago |
Jiangjie.Bai
|
af1150bb86
|
feat: OIDC 用户添加属性映射值
|
3 years ago |
Jiangjie.Bai
|
15423291cc
|
fix: 修复ldap用户登录时用户组不设置
|
3 years ago |
fit2bot
|
c8d7c7c56f
|
fix: 修复oidc认证不区分大小写 (#8267)
Co-authored-by: feng626 <1304903146@qq.com>
|
3 years ago |
ibuler
|
aa7540045b
|
feat: 添加 session guard
|
3 years ago |
ibuler
|
e5f4b8000e
|
stash
|
3 years ago |
Jiangjie.Bai
|
0fc5a33983
|
fix: 修复企业微信、钉钉、飞书登录跳转问题
|
3 years ago |
fit2bot
|
aff5b0035d
|
perf: 优化加密 (#8206)
* perf: 优化加密
* perf: 优化加密
* perf: 优化加密传输
Co-authored-by: ibuler <ibuler@qq.com>
|
3 years ago |
fit2bot
|
031077c298
|
perf: password 等使用 rsa 加密传输 (#8188)
* perf: 修改 model fields 路径
* stash it
* pref: 统一加密方式,密码字段采用 rsa 加密
* pref: 临时密码使用 rsa
* perf: 去掉 debug msg
* perf: 去掉 Debug
* perf: 去掉 debug
* perf: 抽出来
Co-authored-by: ibuler <ibuler@qq.com>
|
3 years ago |
jiangweidong
|
c56179e9e4
|
feat: 支持企业微信、钉钉直接审批工单 (#8115)
|
3 years ago |
feng626
|
d23953932f
|
perf: connection token 分api权限
|
3 years ago |
Jiangjie.Bai
|
00ed7bb025
|
perf: 优化 OIDC 支持选择认证方式
|
3 years ago |
xiaziheng
|
b1aadf1ee9
|
Fix oidc (#8165)
|
3 years ago |
jiangweidong
|
3a3f7eaf71
|
feat: 优化SAML2生成的metadata文件内容及属性映射
|
3 years ago |
fit2bot
|
af9248ef7c
|
fix: 还原connection token 逻辑 (#8101)
Co-authored-by: feng626 <1304903146@qq.com>
|
3 years ago |
feng626
|
611a00a5fa
|
fix: 修复super user perm bug
|
3 years ago |
Jiangjie.Bai
|
5f370c1c04
|
perf: 优化内置系统用户角色权限
|
3 years ago |
ibuler
|
3e3835dc28
|
perf: 修改用户权限
|
3 years ago |
ibuler
|
f4ed4e1176
|
perf: 添加 temp token 排序
|
3 years ago |
fit2bot
|
a647e73c02
|
feat: 设置SessionCookieNamePrefix (#8071)
* feat: 设置SessionCookieNamePrefix
* feat: 设置SessionCookieNamePrefix
Co-authored-by: Jiangjie.Bai <bugatti_it@163.com>
|
3 years ago |
Jiangjie.Bai
|
97e59384e0
|
fix: connection token API 返回有效时间
|
3 years ago |
fit2bot
|
b610d71e11
|
feat: 添加 临时 password (#8035)
* perf: 添加 template password
* perf: 修改id
* perf: 修改 翻译
* perf: 修改 tmp token
* perf: 修改 token
Co-authored-by: ibuler <ibuler@qq.com>
|
3 years ago |
fit2bot
|
c630b11bd5
|
fix: port str (#8055)
Co-authored-by: feng626 <1304903146@qq.com>
|
3 years ago |
fit2bot
|
f481463c64
|
feat: 添加Endpoint (#8041)
* feat: add Endpoint EndpointRule EndpointProtocol model
* feat: add Endpoint EndpointRule EndpointProtocol API
* feat: modify protocols field
* feat: 修改序列类
* feat: 获取connect-url连接地址
* feat: 获取connect-url连接地址
* feat: 优化后台获取smart-endpoint逻辑
* feat: 优化后台获取smart-endpoint逻辑
* feat: 删除配置KOKO、XRDP、MAGNUS
* feat: 删除配置KOKO、XRDP、MAGNUS
* feat: 修改翻译
* feat: 修改smart endpoint
* feat: 修改翻译
* feat: smart API 添加token解析
* feat: 删除 smart serializer
* feat: 修改迁移逻辑
* feat: 解决冲突
* feat: 修改匹配 endpoint
Co-authored-by: Jiangjie.Bai <bugatti_it@163.com>
|
3 years ago |
ibuler
|
ffd98c6e3f
|
fix: 修改 import
|
3 years ago |
fit2bot
|
1f8ded49fa
|
feat: 工作台区分组织 (#8040)
* perf: 工作台受组织角色控制
* perf: workspace => workbench
* perf: 修改 workspace codename
Co-authored-by: ibuler <ibuler@qq.com>
|
3 years ago |
Jiangjie.Bai
|
54d1996507
|
feat: 支持续期Connection Token
|
3 years ago |
feng626
|
d856f1364a
|
feat: 拉起ssh api
|
3 years ago |
fit2bot
|
52709d2efa
|
feat: 企业微信、钉钉 工作台免密登录(飞书已实现) (#7855)
* feat: 添加oauth接口
* feat: 企业微信支持OAuth认证,工作台免密登录
* feat: 钉钉支持OAuth认证,工作台免密登录
* fix: 修复参数错误
Co-authored-by: halo <wuyihuangw@gmail.com>
|
3 years ago |
jiangweidong
|
03fdaa03e4
|
feat: 支持日语
|
3 years ago |
Eric
|
fc06295d04
|
perf: 优化 windows rdp 窗口显示
|
3 years ago |
fit2bot
|
ec9e5da653
|
fix: 修复apikey perm (#7918)
Co-authored-by: feng626 <1304903146@qq.com>
|
3 years ago |
fit2bot
|
08ff8fa285
|
fix: login confirm bug (#7914)
Co-authored-by: feng626 <1304903146@qq.com>
|
3 years ago |
fit2bot
|
34e75099a3
|
perf: 设置默认的角色,系统用户角色添加权限 (#7898)
* perf: 修改 role handler
* perf: 设置默认的角色,系统用户角色添加权限
* perf: authentication 还是放到系统中吧
Co-authored-by: ibuler <ibuler@qq.com>
Co-authored-by: Jiangjie.Bai <32935519+BaiJiangJie@users.noreply.github.com>
|
3 years ago |
fit2bot
|
aa022a02c1
|
fix: 修复用户认证失败的详细信息显示 (#7886)
* fix: 修复用户认证失败的详细信息显示
* fix: 更新授权树翻译
Co-authored-by: Jiangjie.Bai <bugatti_it@163.com>
Co-authored-by: Jiangjie.Bai <32935519+BaiJiangJie@users.noreply.github.com>
|
3 years ago |
Jiangjie.Bai
|
efb26132f6
|
fix: 修复sso用户登录失败的问题
|
3 years ago |
ibuler
|
8839e6293b
|
perf: 修改 mfa 地址
|
3 years ago |
feng626
|
ca5708988a
|
fix: 修复saml2 auth
|
3 years ago |
Jiangjie.Bai
|
b017e68a56
|
Perf: 优化RBAC权限树 (#7782)
* fix: 优化权限树(1)
* fix: 优化权限树(2)
* fix: 优化权限树(3)
* fix: 优化权限树(4)
* fix: 优化权限树(5)
* fix: 优化权限树(添加迁移文件)
* fix: 优化权限树(6)
* fix: 优化权限树(7)
* fix: 优化权限树(8)
* fix: 优化权限树(9)
|
3 years ago |
ibuler
|
5081fb5fe7
|
perf: 优化perm tree, 并添加缓存
|
3 years ago |
fit2bot
|
a20884e2ad
|
perf: 修改 rbac tree (#7743)
* perf: 修改 rbac tree
* perf: 修改verbose name
* fix: 修复系统用户
* fix: 还原 xpack
Co-authored-by: ibuler <ibuler@qq.com>
|
3 years ago |
Jiangjie.Bai
|
8a8ed90eef
|
fix: 保留之前的jms_oidc_rp包
|
3 years ago |
Jiangjie.Bai
|
75825f5baa
|
fix: 删除jms_oidc_rp包中的表jms_oidc_rp_oidcuser
|
3 years ago |
fit2bot
|
dafc416783
|
Fix rbac (#7728)
* perf: 重命名 signal handlers
* fix: 修复 ticket processor 问题
* perf: 修改 ticket 处理人api
* fix: 修复创建系统账号bug
* fix: 升级celery_beat==2.2.1和flower==1.0.0;修改celery进程启动参数先后顺序
* perf: 修改 authentication token
* fix: 修复上传权限bug
* fix: 登录页面增加i18n切换;
* fix: 系统角色删除限制
* perf: 修改一下 permissions tree
* perf: 生成 i18n
* perf: 修改一点点
Co-authored-by: ibuler <ibuler@qq.com>
Co-authored-by: feng626 <1304903146@qq.com>
Co-authored-by: Jiangjie.Bai <bugatti_it@163.com>
|
3 years ago |
Jiangjie.Bai
|
03afa4f974
|
Fix rbac (#7713)
* fix: token 系统用户增加 protocol
* fix: 修复清除orphan session时同时清除对应的 session_task
* perf: 修改 connection token api
* fix: 修复无法获取系统角色绑定的问题
* perf: 增加 db terminal 及 magnus 组件
* perf: 修改 migrations
* fix: 修复AUTHENTICATION_BACKENDS相关的逻辑
* fix: 修改判断backend认证逻辑
* fix: 修复资产账号查看密码跳过mfa
* fix: 修复用户组授权权限错误
* feat: 支持COS对象存储
* feat: 升级依赖 jms_storage==0.0.42
* fix: 修复 koko api 问题
* feat: 修改存储翻译信息
* perf: 修改 ticket 权限
* fix: 修复获取资产授权系统用户 get_queryset
* perf: 抽取 ticket
* perf: 修改 cmd filter 的权限
* fix: 修改 ticket perm
* fix: 修复oidc依赖问题
Co-authored-by: Eric <xplzv@126.com>
Co-authored-by: ibuler <ibuler@qq.com>
Co-authored-by: 小冯 <xiaofeng@xiaofengdeMacBook-Pro.local>
Co-authored-by: feng626 <1304903146@qq.com>
|
3 years ago |
Jiangjie.Bai
|
edfca5eb24
|
Fix rbac (#7699)
* perf: 优化 suggesstion
* perf: 修改 migrations
* feat: 添加OIDC认证逻辑
* perf: 修改 backend
* perf: 优化认证backends
* perf: 优化认证backends
* perf: 优化CAS认证, 用户多域名进行访问时回调到各自域名
Co-authored-by: ibuler <ibuler@qq.com>
|
3 years ago |
fit2bot
|
63de4e1806
|
perf: 添加 is_org_admin (#7644)
* fix: 修复 org members 的问题
* perf: 修改 org member
* perf: 修改 is sa
* perf: 修改 active
* perf: 修复写法
* perf: is_sa to is_service_account
Co-authored-by: ibuler <ibuler@qq.com>
|
3 years ago |
ibuler
|
20cc8a124f
|
perf: 修改connection token domain
perf: 添加 org_id
|
3 years ago |
ibuler
|
db050e405d
|
fix: 修改 migrations
|
3 years ago |
fit2bot
|
e259d2a9e9
|
fix: fix rbac to dev (#7636)
* feat: 添加 RBAC 应用模块
* feat: 添加 RBAC Model、API
* feat: 添加 RBAC Model、API 2
* feat: 添加 RBAC Model、API 3
* feat: 添加 RBAC Model、API 4
* feat: RBAC
* feat: RBAC
* feat: RBAC
* feat: RBAC
* feat: RBAC
* feat: RBAC 整理权限位
* feat: RBAC 整理权限位2
* feat: RBAC 整理权限位2
* feat: RBAC 整理权限位
* feat: RBAC 添加默认角色
* feat: RBAC 添加迁移文件;迁移用户角色->用户角色绑定
* feat: RBAC 添加迁移文件;迁移用户角色->用户角色绑定
* feat: RBAC 修改用户模块API
* feat: RBAC 添加组织模块迁移文件 & 修改组织模块API
* feat: RBAC 添加组织模块迁移文件 & 修改组织模块API
* feat: RBAC 修改用户角色属性的使用
* feat: RBAC No.1
* xxx
* perf: 暂存
* perf: ...
* perf(rbac): 添加 perms 到 profile serializer 中
* stash
* perf: 使用init
* perf: 修改migrations
* perf: rbac
* stash
* stash
* pref: 修改rbac
* stash it
* stash: 先去修复其他bug
* perf: 修改 role 添加 users
* pref: 修改 RBAC Model
* feat: 添加权限的 tree api
* stash: 暂存一下
* stash: 暂存一下
* perf: 修改 model verbose name
* feat: 添加model各种 verbose name
* perf: 生成 migrations
* perf: 优化权限位
* perf: 添加迁移脚本
* feat: 添加组织角色迁移
* perf: 添加迁移脚本
* stash
* perf: 添加migrateion
* perf: 暂存一下
* perf: 修改rbac
* perf: stash it
* fix: 迁移冲突
* fix: 迁移冲突
* perf: 暂存一下
* perf: 修改 rbac 逻辑
* stash: 暂存一下
* perf: 修改内置角色
* perf: 解决 root 组织的问题
* perf: stash it
* perf: 优化 rbac
* perf: 优化 rolebinding 处理
* perf: 完成用户离开组织的问题
* perf: 暂存一下
* perf: 修改翻译
* perf: 去掉了 IsSuperUser
* perf: IsAppUser 去掉完成
* perf: 修改 connection token 的权限
* perf: 去掉导入的问题
* perf: perms define 格式,修改 app 用户 的全新啊
* perf: 修改 permission
* perf: 去掉一些 org admin
* perf: 去掉部分 org admin
* perf: 再去掉点 org admin role
* perf: 再去掉部分 org admin
* perf: user 角色搜索
* perf: 去掉很多 js
* perf: 添加权限位
* perf: 修改权限
* perf: 去掉一个 todo
* merge: with dev
* fix: 修复冲突
Co-authored-by: Bai <bugatti_it@163.com>
Co-authored-by: Michael Bai <baijiangjie@gmail.com>
Co-authored-by: ibuler <ibuler@qq.com>
|
3 years ago |
xinwen
|
35c6b581e2
|
feat: 远程应用支持磁盘挂载
|
3 years ago |
ibuler
|
824d10ce93
|
pref: connection token 添加 secret
|
3 years ago |
jiangweidong
|
ab34b9906e
|
perf: 切割一次就可以了
|
3 years ago |
jiangweidong
|
755fa8efa8
|
perf: 兼容不同版本间JumpServer获取的SAML2协议用户属性
|
3 years ago |
Michael Bai
|
8085db7acc
|
feat: 增加系统设置(安全)控制第三方认证用户是否进行MFA认证
|
3 years ago |
xinwen
|
1faba95a48
|
fix: 修复 xrdp 连接资产时会生成用户登录日志
|
3 years ago |
fit2bot
|
c43ad981bd
|
perf: 优化写法 (#7498)
* fix: 修复登录页输入 mfa 时不支持 某 mfa 的错误提示
fix tapd 1145454465001008371
* perf: 优化 send code api,避免暴力常识
* perf: 优化写法
* Update mfa.py
Co-authored-by: ibuler <ibuler@qq.com>
Co-authored-by: Jiangjie.Bai <32935519+BaiJiangJie@users.noreply.github.com>
|
3 years ago |
jiangweidong
|
106bb9b63d
|
perf: SAML2属性映射去掉域名前缀
|
3 years ago |
xinwen
|
cce34f4939
|
fix: 用户登录失败时,登陆日志中的认证方式不准确
|
3 years ago |
fit2bot
|
4343b6487d
|
fix: 修复登录页输入 mfa 时不支持 某 mfa 的错误提示 (#7495)
* fix: 修复登录页输入 mfa 时不支持 某 mfa 的错误提示
fix tapd 1145454465001008371
* perf: 优化 send code api,避免暴力常识
Co-authored-by: ibuler <ibuler@qq.com>
|
3 years ago |
xinwen
|
414137cd73
|
fix: 三方认证绑定发通知文案
|
3 years ago |
xinwen
|
1e3a15a3d0
|
feat: 三方认证绑定发通知
|
3 years ago |
Michael Bai
|
de9516dee5
|
feat: 应用授权增加Action动作控制
|
3 years ago |
xinwen
|
89cad224c5
|
fix: SSO 限制用户删除
|
3 years ago |
Michael Bai
|
5aed04d58b
|
fix: 修改SAML2.0 Logo
|
3 years ago |
ibuler
|
b92530f0b9
|
perf: 优化通知,对支持 markdown 的发 markdown
|
3 years ago |
ibuler
|
eb3165f8e7
|
perf: 优化 saml
|
3 years ago |
Michael Bai
|
4cbf6dd5e6
|
fix: 修复获取系统用户认证信息API
|
3 years ago |
jiangweidong
|
5139f9c4b9
|
feat: saml2认证支持https协议
|
3 years ago |
ibuler
|
330917df4c
|
fix: 修复 saml2 登陆的问题
|
3 years ago |
ibuler
|
5024d0d739
|
perf: 优化 saml2 log
|
3 years ago |
jiangweidong
|
c5013dcbd6
|
feat: saml2协议单点登录支持在页面上配置saml2协议的高级配置 (#7362)
|
3 years ago |
ibuler
|
b6249e9a63
|
fix: 修复登录时跳转问题
|
3 years ago |
ibuler
|
ade3f3ae6c
|
fix: 修复需要设置 mfa 的 bug
|
3 years ago |
fit2bot
|
3962af7c4f
|
feat: 支持saml2协议的单点登录,合并代码 (#7347)
* fix: 支持saml2协议的单点登录
* feat: 支持saml2协议的单点登录,合并代码
Co-authored-by: jiangweidong <weidong.jiang@fit2cloud.com>
|
3 years ago |
xinwen
|
16fae00e0e
|
feat: xrdp 远程应用
|
3 years ago |
ibuler
|
84bce19a92
|
perf: 去掉登录页面更好
|
3 years ago |
ibuler
|
7f0ad7e27f
|
fix: 修复 oidc cas 登录时跳转问题
perf: 优化一波,容易debug
perf: 还原回来的世界
|
3 years ago |
ibuler
|
5ace5a752e
|
fix: 修复 cas/oidc 登录 MFA 产生的bug
perf: 优化更严谨
|
3 years ago |
ibuler
|
1132c6a4e4
|
fix: 修复 mfa radius 登录的bug
|
3 years ago |
feng626
|
24d0d52a0a
|
perf: 优化ip黑白名单
|
3 years ago |
fit2bot
|
086ecfc046
|
perf: 优化全局ip限制逻辑 (#7220)
* perf: 优化全局ip限制逻辑
* perf: 优化全局ip限制逻辑 2
* perf: 优化全局ip限制逻辑 3
Co-authored-by: feng626 <1304903146@qq.com>
Co-authored-by: Michael Bai <baijiangjie@gmail.com>
|
3 years ago |
fit2bot
|
8af88cd2c6
|
fix: 修复otp verify msg引起的500 (#7210)
Co-authored-by: ibuler <ibuler@qq.com>
|
3 years ago |
ibuler
|
cc2d47e6dc
|
perf: 修复首页登录mfa错误提示
|
3 years ago |
fit2bot
|
ed01f2f1fb
|
fix: 修复xrdp连接时报错 (#7202)
* fix: 修复xrdp连接时报错
perf: 添加注释
* perf: 去掉import
Co-authored-by: ibuler <ibuler@qq.com>
|
3 years ago |
ibuler
|
cb1c906db4
|
fix: 修复登录时没有绑定mfa,没有跳转的问题
fix: 首页登录如果没有则后续登录
|
3 years ago |