2023-02-15 09:14:59 +01:00
|
|
|
package command
|
|
|
|
|
2023-02-28 21:20:58 +01:00
|
|
|
import (
|
|
|
|
"context"
|
2023-03-24 16:18:56 +01:00
|
|
|
"time"
|
2023-02-28 21:20:58 +01:00
|
|
|
|
|
|
|
"github.com/zitadel/zitadel/internal/api/authz"
|
|
|
|
"github.com/zitadel/zitadel/internal/command/preparation"
|
|
|
|
"github.com/zitadel/zitadel/internal/repository/idp"
|
|
|
|
)
|
2023-02-15 09:14:59 +01:00
|
|
|
|
2023-02-24 15:16:06 +01:00
|
|
|
type GenericOAuthProvider struct {
|
|
|
|
Name string
|
|
|
|
ClientID string
|
|
|
|
ClientSecret string
|
|
|
|
AuthorizationEndpoint string
|
|
|
|
TokenEndpoint string
|
|
|
|
UserEndpoint string
|
|
|
|
Scopes []string
|
2023-03-03 11:38:49 +01:00
|
|
|
IDAttribute string
|
2023-02-24 15:16:06 +01:00
|
|
|
IDPOptions idp.Options
|
|
|
|
}
|
|
|
|
|
2023-02-27 16:32:18 +01:00
|
|
|
type GenericOIDCProvider struct {
|
2023-03-16 16:47:22 +01:00
|
|
|
Name string
|
|
|
|
Issuer string
|
|
|
|
ClientID string
|
|
|
|
ClientSecret string
|
|
|
|
Scopes []string
|
|
|
|
IsIDTokenMapping bool
|
|
|
|
IDPOptions idp.Options
|
2023-02-27 16:32:18 +01:00
|
|
|
}
|
|
|
|
|
|
|
|
type JWTProvider struct {
|
|
|
|
Name string
|
|
|
|
Issuer string
|
|
|
|
JWTEndpoint string
|
|
|
|
KeyEndpoint string
|
|
|
|
HeaderName string
|
|
|
|
IDPOptions idp.Options
|
|
|
|
}
|
|
|
|
|
2023-03-15 07:48:37 +01:00
|
|
|
type AzureADProvider struct {
|
|
|
|
Name string
|
|
|
|
ClientID string
|
|
|
|
ClientSecret string
|
|
|
|
Scopes []string
|
|
|
|
Tenant string
|
|
|
|
EmailVerified bool
|
|
|
|
IDPOptions idp.Options
|
|
|
|
}
|
|
|
|
|
2023-03-08 11:17:28 +01:00
|
|
|
type GitHubProvider struct {
|
|
|
|
Name string
|
|
|
|
ClientID string
|
|
|
|
ClientSecret string
|
|
|
|
Scopes []string
|
|
|
|
IDPOptions idp.Options
|
|
|
|
}
|
|
|
|
|
|
|
|
type GitHubEnterpriseProvider struct {
|
|
|
|
Name string
|
|
|
|
ClientID string
|
|
|
|
ClientSecret string
|
|
|
|
AuthorizationEndpoint string
|
|
|
|
TokenEndpoint string
|
|
|
|
UserEndpoint string
|
|
|
|
Scopes []string
|
|
|
|
IDPOptions idp.Options
|
|
|
|
}
|
|
|
|
|
2023-03-13 17:34:29 +01:00
|
|
|
type GitLabProvider struct {
|
|
|
|
Name string
|
|
|
|
ClientID string
|
|
|
|
ClientSecret string
|
|
|
|
Scopes []string
|
|
|
|
IDPOptions idp.Options
|
|
|
|
}
|
|
|
|
|
|
|
|
type GitLabSelfHostedProvider struct {
|
|
|
|
Name string
|
|
|
|
Issuer string
|
|
|
|
ClientID string
|
|
|
|
ClientSecret string
|
|
|
|
Scopes []string
|
|
|
|
IDPOptions idp.Options
|
|
|
|
}
|
|
|
|
|
2023-02-21 18:18:28 +01:00
|
|
|
type GoogleProvider struct {
|
|
|
|
Name string
|
|
|
|
ClientID string
|
|
|
|
ClientSecret string
|
|
|
|
Scopes []string
|
|
|
|
IDPOptions idp.Options
|
|
|
|
}
|
|
|
|
|
2023-02-15 09:14:59 +01:00
|
|
|
type LDAPProvider struct {
|
2023-03-24 16:18:56 +01:00
|
|
|
Name string
|
|
|
|
Servers []string
|
|
|
|
StartTLS bool
|
|
|
|
BaseDN string
|
|
|
|
BindDN string
|
|
|
|
BindPassword string
|
|
|
|
UserBase string
|
|
|
|
UserObjectClasses []string
|
|
|
|
UserFilters []string
|
|
|
|
Timeout time.Duration
|
|
|
|
LDAPAttributes idp.LDAPAttributes
|
|
|
|
IDPOptions idp.Options
|
2023-02-15 09:14:59 +01:00
|
|
|
}
|
2023-02-28 21:20:58 +01:00
|
|
|
|
|
|
|
func ExistsIDP(ctx context.Context, filter preparation.FilterToQueryReducer, id, orgID string) (exists bool, err error) {
|
|
|
|
writeModel := NewOrgIDPRemoveWriteModel(orgID, id)
|
|
|
|
events, err := filter(ctx, writeModel.Query())
|
|
|
|
if err != nil {
|
|
|
|
return false, err
|
|
|
|
}
|
|
|
|
|
|
|
|
if len(events) > 0 {
|
|
|
|
writeModel.AppendEvents(events...)
|
|
|
|
if err := writeModel.Reduce(); err != nil {
|
|
|
|
return false, err
|
|
|
|
}
|
|
|
|
return writeModel.State.Exists(), nil
|
|
|
|
}
|
|
|
|
|
|
|
|
instanceWriteModel := NewInstanceIDPRemoveWriteModel(authz.GetInstance(ctx).InstanceID(), id)
|
|
|
|
events, err = filter(ctx, instanceWriteModel.Query())
|
|
|
|
if err != nil {
|
|
|
|
return false, err
|
|
|
|
}
|
|
|
|
|
|
|
|
if len(events) == 0 {
|
|
|
|
return false, nil
|
|
|
|
}
|
|
|
|
instanceWriteModel.AppendEvents(events...)
|
|
|
|
if err := instanceWriteModel.Reduce(); err != nil {
|
|
|
|
return false, err
|
|
|
|
}
|
|
|
|
return instanceWriteModel.State.Exists(), nil
|
|
|
|
}
|