ErickSkrauch
060a4e960a
Handle legacy refresh tokens
2019-12-04 13:40:12 +03:00
ErickSkrauch
a9a56c9e1d
Extract encryption key into the configuration param
2019-12-04 13:24:30 +03:00
ErickSkrauch
72cbf16c97
Merge branch 'master' into oauth_jwt_tokens
...
# Conflicts:
# api/components/OAuth2/Entities/AccessTokenEntity.php
# api/components/OAuth2/Entities/RefreshTokenEntity.php
# api/components/OAuth2/Grants/RefreshTokenGrant.php
# api/components/OAuth2/Storage/SessionStorage.php
# api/components/User/OAuth2Identity.php
2019-12-04 01:17:12 +03:00
ErickSkrauch
8dad8a3eeb
Fix https detection on nginx from haproxy
2019-12-03 17:22:18 +03:00
ErickSkrauch
46b771a061
Fixes ACCOUNTS-5VE
2019-12-02 22:28:47 +03:00
ErickSkrauch
9557064a97
Fixes ACCOUNTS-5VF
2019-12-02 22:22:51 +03:00
ErickSkrauch
01028cf378
Fixes ACCOUNTS-5VC. Handle the case when there is missing session for access or refresh token
2019-12-02 22:15:52 +03:00
ErickSkrauch
22ef41ac7c
Fixes ACCOUNTS-5V9. Handle case when access token don't have associated account
2019-12-02 21:15:18 +03:00
ErickSkrauch
a5f6a2d437
Tune nginx conf
2019-11-27 03:41:27 +03:00
ErickSkrauch
9f645d0934
Add CSP header
2019-11-26 22:47:22 +03:00
ErickSkrauch
9eea03df73
Enable gzip and brotli for all response types
2019-11-26 22:32:26 +03:00
ErickSkrauch
885729fcde
Replace nginx image to enable gzpi and brotli encoding
2019-11-26 21:30:53 +03:00
ErickSkrauch
b47522e6f9
Fix CI for bitmani mariadb image
2019-11-15 20:09:19 +03:00
ErickSkrauch
2fe3ede4ea
Replace basic mariadb image with the bitnami
2019-11-15 20:04:45 +03:00
ErickSkrauch
db8e13d749
Hotfix to handle Chrly's long responses
2019-11-09 17:46:27 +03:00
ErickSkrauch
e52dbdbf19
Do not include offline_access scope into access_token
2019-11-07 01:12:18 +03:00
ErickSkrauch
da318ef2ed
Merge branch 'master' into oauth_jwt_tokens
2019-11-07 00:00:26 +03:00
ErickSkrauch
0dc8ca8c78
Define vars for cleanup step
2019-11-05 15:31:23 +03:00
ErickSkrauch
d8b68f7be0
Rename cleanup step [skip ci]
2019-11-05 15:28:18 +03:00
ErickSkrauch
6cd50f759c
Fix gitlab-ci configuration
2019-11-05 15:27:07 +03:00
ErickSkrauch
80edf03b52
Upgrade PHP version to avoid CVE-2019-11043
2019-11-05 15:15:55 +03:00
ErickSkrauch
7505bc8262
Upgrade gitlab-ci
2019-11-05 15:10:37 +03:00
ErickSkrauch
22982b319b
Fix all tests
2019-09-24 01:56:32 +03:00
ErickSkrauch
2beacd0827
Add tests for the legacy tokens, fix some tests cases [skip ci]
2019-09-23 01:03:36 +03:00
ErickSkrauch
a148da2ecf
Add tests for the legacy tokens
2019-09-23 00:53:13 +03:00
ErickSkrauch
cf62c686b1
Rework identity provider for the legacy OAuth2 tokens [skip ci]
2019-09-22 19:24:22 +03:00
ErickSkrauch
c722c46ad5
Add support for the legacy refresh tokens, make the new refresh tokens non-expire [skip ci]
2019-09-22 02:42:08 +03:00
ErickSkrauch
5536c34b9c
Restore full functionality of OAuth2 server [skip ci]
2019-09-22 00:19:11 +03:00
ErickSkrauch
45101d6453
Completely restored authorization_code grant for user side.
...
Reworked oauth_sessions table.
Added extension to use MariaDB's JSON columns.
Rewritten tests for authorization_code grant for client side.
Deprecate some old shit.
[skip ci]
2019-09-18 02:15:12 +03:00
ErickSkrauch
8a1d7148d0
Implemented public scopes repository. Fix some auth cases [skip ci]
2019-09-13 01:19:03 +03:00
ErickSkrauch
4dc2a3025b
Rewrite tests for OAuth2 validate and auth code complete steps [skip ci]
2019-09-06 02:33:16 +03:00
ErickSkrauch
6c4ce8cb8d
Increase cleanup timout for minecraft access tokens
2019-09-01 23:16:13 +03:00
ErickSkrauch
29fc267148
Do not delete minecraft access token after its validation
2019-09-01 23:10:47 +03:00
ErickSkrauch
0b63dc2d84
Upgrade oauth2-server to 8.0.0 version, rewrite repositories and entities, start rewriting tests. Intermediate commit [skip ci]
2019-08-23 11:28:04 +03:00
ErickSkrauch
23a220637c
Define default value for AUTHSERVER_HOST
2019-08-08 02:49:04 +03:00
ErickSkrauch
89f7195a37
Fix index usage for OauthSessions relation from Account model
2019-08-08 02:47:36 +03:00
ErickSkrauch
25df1c711a
Slightly improved configuration for gitlab-ci [skip ci]
2019-08-03 22:49:17 +03:00
ErickSkrauch
663cfd9dbc
Improve caching for the build step
2019-08-03 22:20:13 +03:00
ErickSkrauch
d333798919
Define VERSION env variable as a step
2019-08-03 21:50:34 +03:00
ErickSkrauch
80b99db0f8
Use 2-spaces for gitlab-ci.yml definitions
2019-08-03 16:16:08 +03:00
ErickSkrauch
492118a0c0
Improve gitlab-ci configuration
2019-08-03 16:15:17 +03:00
ErickSkrauch
c90331c372
Fixes ACCOUNTS-5J2. Ensure, that JWT certs has correct owners.
2019-08-03 02:26:46 +03:00
ErickSkrauch
6cfefcebc8
Fix dist docker-compose configuration for dev environment
2019-08-03 02:21:28 +03:00
ErickSkrauch
fff358e038
Merge branch 'jwt-encryption-algorithm' into 'master'
...
Implemented Rs256 jwt encryption algorithm
See merge request elyby/accounts!7
2019-08-02 21:27:07 +00:00
ErickSkrauch
7f5cf76488
Merge branch 'change-skin-scope' into 'master'
...
Implemented change skin scope
See merge request elyby/accounts!8
2019-08-02 21:03:14 +00:00
ErickSkrauch
34bb8da936
Merge branch 'reafactor-tokens-system' into jwt-encryption-algorithm
2019-08-02 23:47:15 +03:00
ErickSkrauch
6ad66b28cf
Generate keys pair if they aren't exists
2019-08-02 19:16:34 +03:00
ErickSkrauch
967d8b11a0
Improve tests coverage
2019-08-02 18:32:08 +03:00
ErickSkrauch
d9f2b1a8c9
Upgrade PHPUnit to 8. Replace codeception/base with codeception/codeception due to release bug in the base version.
2019-08-02 15:57:17 +03:00
ErickSkrauch
7b11366a5a
Fix rbac generator
2019-08-02 03:36:24 +03:00