Commit Graph

6037 Commits

Author SHA1 Message Date
Max Peintner
5fab1ba08a doc 2024-12-16 16:57:05 +01:00
Kenta Yamaguchi
b7e9ae266d docs: fix typo where Enpoints should be Endpoints (#9055)
# Which Problems Are Solved

- Fixed a typo in docs/docs/apis/observability/health.md where
`Enpoints` should be `Endpoints`

<!--
# How the Problems Are Solved

# Additional Changes

# Additional Context
-->

Co-authored-by: Fabi <fabienne@zitadel.com>
Co-authored-by: Livio Spring <livio.a@gmail.com>
2024-12-16 12:54:59 +00:00
Max Peintner
01b7d47551 consider idp to be a valid mfa 2024-12-16 11:42:57 +01:00
Max Peintner
53c0892614 org discovery on idp callback 2024-12-16 11:15:01 +01:00
Max Peintner
6aa4137fe9 register page cleanup 2024-12-16 10:41:37 +01:00
Max Peintner
94413db9f5 log error 2024-12-16 10:36:40 +01:00
Max Peintner
5860b79ab3 show loading state, p styles 2024-12-16 10:30:18 +01:00
Max Peintner
495d02241b change user id 2024-12-16 10:21:00 +01:00
Max Peintner
8c9302250e linking with userid 2024-12-16 10:14:38 +01:00
Max Peintner
b93f00d124 branding context 2024-12-16 10:00:43 +01:00
Max Peintner
725d03131b linking success page 2024-12-16 09:58:55 +01:00
Max Peintner
18d8655838 missing params 2024-12-16 09:43:56 +01:00
Max Peintner
b99c73ff24 add authrequest to context 2024-12-16 09:43:37 +01:00
Max Peintner
9e8b11fb60 clean 2024-12-16 09:36:41 +01:00
Max Peintner
d7c79c6cb8 log on server 2024-12-16 09:33:18 +01:00
Max Peintner
32be5140ea wrap around login 2024-12-16 09:24:31 +01:00
Max Peintner
adb08333ed continue with session 2024-12-16 09:21:12 +01:00
dependabot[bot]
fabcec287f chore(deps): bump cross-spawn from 7.0.3 to 7.0.6 in /e2e (#8960)
Bumps [cross-spawn](https://github.com/moxystudio/node-cross-spawn) from
7.0.3 to 7.0.6.
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/moxystudio/node-cross-spawn/blob/master/CHANGELOG.md">cross-spawn's
changelog</a>.</em></p>
<blockquote>
<h3><a
href="https://github.com/moxystudio/node-cross-spawn/compare/v7.0.5...v7.0.6">7.0.6</a>
(2024-11-18)</h3>
<h3>Bug Fixes</h3>
<ul>
<li>update cross-spawn version to 7.0.5 in package-lock.json (<a
href="f700743918">f700743</a>)</li>
</ul>
<h3><a
href="https://github.com/moxystudio/node-cross-spawn/compare/v7.0.4...v7.0.5">7.0.5</a>
(2024-11-07)</h3>
<h3>Bug Fixes</h3>
<ul>
<li>fix escaping bug introduced by backtracking (<a
href="640d391fde">640d391</a>)</li>
</ul>
<h3><a
href="https://github.com/moxystudio/node-cross-spawn/compare/v7.0.3...v7.0.4">7.0.4</a>
(2024-11-07)</h3>
<h3>Bug Fixes</h3>
<ul>
<li>disable regexp backtracking (<a
href="https://redirect.github.com/moxystudio/node-cross-spawn/issues/160">#160</a>)
(<a
href="5ff3a07d9a">5ff3a07</a>)</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="77cd97f3ca"><code>77cd97f</code></a>
chore(release): 7.0.6</li>
<li><a
href="6717de49ff"><code>6717de4</code></a>
chore: upgrade standard-version</li>
<li><a
href="f700743918"><code>f700743</code></a>
fix: update cross-spawn version to 7.0.5 in package-lock.json</li>
<li><a
href="9a7e3b2165"><code>9a7e3b2</code></a>
chore: fix build status badge</li>
<li><a
href="085268352d"><code>0852683</code></a>
chore(release): 7.0.5</li>
<li><a
href="640d391fde"><code>640d391</code></a>
fix: fix escaping bug introduced by backtracking</li>
<li><a
href="bff0c87c8b"><code>bff0c87</code></a>
chore: remove codecov</li>
<li><a
href="a7c6abc6fe"><code>a7c6abc</code></a>
chore: replace travis with github workflows</li>
<li><a
href="9b9246e096"><code>9b9246e</code></a>
chore(release): 7.0.4</li>
<li><a
href="5ff3a07d9a"><code>5ff3a07</code></a>
fix: disable regexp backtracking (<a
href="https://redirect.github.com/moxystudio/node-cross-spawn/issues/160">#160</a>)</li>
<li>Additional commits viewable in <a
href="https://github.com/moxystudio/node-cross-spawn/compare/v7.0.3...v7.0.6">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=cross-spawn&package-manager=npm_and_yarn&previous-version=7.0.3&new-version=7.0.6)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)
You can disable automated security fix PRs for this repo from the
[Security Alerts
page](https://github.com/zitadel/zitadel/network/alerts).

</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Max Peintner <max@caos.ch>
2024-12-16 08:12:28 +00:00
Max Peintner
188eb42fc7 Merge pull request #312 from zitadel/add-acceptance-to-pr-template
chore: add acceptance checkbox to pr template
2024-12-16 09:08:57 +01:00
Max Peintner
a56e4bded2 Merge branch 'main' into add-acceptance-to-pr-template 2024-12-16 08:56:18 +01:00
Max Peintner
23f834a940 Merge pull request #318 from surya-sanity/refactor/login
refactor: SignInWithIDP optimization.
2024-12-13 17:00:39 +01:00
Max Peintner
c38debc5cd Merge branch 'main' into refactor/login 2024-12-13 16:53:31 +01:00
Max Peintner
9c782dfed9 handle session creation at the end of linking / finish OIDC flow 2024-12-13 16:31:51 +01:00
Max Peintner
9e03daeeef Merge pull request #316 from zitadel/qa
Promote qa to prod: smaller fixes
2024-12-13 16:29:14 +01:00
Livio Spring
f20539ef8f fix(login): make sure first email verification is done before MFA check (#9039)
# Which Problems Are Solved

During authentication in the login UI, there is a check if the user's
MFA is already checked or needs to be setup.
In cases where the user was just set up or especially, if the user was
just federated without a verified email address, this can lead to the
problem, where OTP Email cannot be setup as there's no verified email
address.

# How the Problems Are Solved

- Added a check if there's no verified email address on the user and
require a mail verification check before checking for MFA.
Note: that if the user had a verified email address, but changed it and
has not verified it, they will still be prompted with an MFA check
before the email verification. This is make sure, we don't break the
existing behavior and the user's authentication is properly checked.

# Additional Changes

None

# Additional Context

- closes https://github.com/zitadel/zitadel/issues/9035
2024-12-13 11:37:20 +00:00
Livio Spring
fd70a7de5f fix(api): map REST request body in user invite requests (#9054)
# Which Problems Are Solved

The `CreateInviteCode` and `VerifyInviteCode` methods missed the body
mapping.

# How the Problems Are Solved

Added the mapping.

# Additional Changes

None

# Additional Context

Noticed during internal login UI tests using REST
2024-12-13 10:24:14 +00:00
Livio Spring
40fedace3c docs(oidc): add back-channel logout (#9034)
# Which Problems Are Solved

OIDC Back-Channel Logout released with
[V2.65.0](https://github.com/zitadel/zitadel/releases/tag/v2.65.0) were
not yet documented

# How the Problems Are Solved

- Added small guide and description
- Updated claims (added `sid` and `events`)

# Additional Changes

None

# Additional Context

relates to https://github.com/zitadel/zitadel/issues/8467
2024-12-13 09:47:04 +00:00
Stefan Benz
0a859fe416 docs: correct list users endpoint description (#9050)
# Which Problems Are Solved

There is a wrong description on the ListUsers endpoint on the users v2
API.

# How the Problems Are Solved

Correctly rewrote it with mention of instance instead of organization.

# Additional Changes

None

# Additional Context

Closes #8961
2024-12-13 09:33:20 +00:00
Max Peintner
d68e752686 rm duplicate prop 2024-12-13 10:18:57 +01:00
Max Peintner
d09b45d8f5 default org on account chooser 2024-12-13 10:18:00 +01:00
Max Peintner
8c6c41072d fix u2f hostname, layout, check for password change required before all other checks after pws check, totp design 2024-12-13 10:16:36 +01:00
surya-sanity
72df8b285e refactor: SignInWithIDP optimization. 2024-12-13 10:51:30 +05:30
Stephan Besser
a077771bff docs (adopters): add OpenAIP (#9045)
# Which Problems Are Solved

Replace this example text with a concise list of problems that this PR
solves.
For example:
- If the property XY is not given, the system crashes with a nil pointer
exception.

# How the Problems Are Solved

Replace this example text with a concise list of changes that this PR
introduces.
For example:
- Validates if property XY is given and throws an error if not

# Additional Changes

Replace this example text with a concise list of additional changes that
this PR introduces, that are not directly solving the initial problem
but are related.
For example:
- The docs explicitly describe that the property XY is mandatory
- Adds missing translations for validations.

# Additional Context

Replace this example with links to related issues, discussions, discord
threads, or other sources with more context.
Use the Closing #issue syntax for issues that are resolved with this PR.
- Closes #xxx
- Discussion #xxx
- Follow-up for PR #xxx
- https://discord.com/channels/xxx/xxx
2024-12-12 19:21:48 +00:00
Max Peintner
e087711cf2 Merge branch 'main' into qa 2024-12-12 18:14:09 +01:00
Max Peintner
16822afe83 fix server action 2024-12-12 18:13:49 +01:00
Max Peintner
8dc0e14f13 clean settings fetch 2024-12-12 17:52:41 +01:00
Max Peintner
911edd39b0 streamlined resend code buttons 2024-12-12 17:46:11 +01:00
Tim Möhlmann
6f6e2234eb fix(migrations): clean stale org fields using events (#9051)
# Which Problems Are Solved

Migration step 39 is supposed to cleanup stale organization entries in
the eventstore.fields table. In order to do this it used the projection
to check which orgs still exist.

During initial setup of ZITADEL the first instance with the organization
is created. Howevet, the projections are filled after all migrations are
done. With the organization projection empty, the fields of the first
org would be deleted.

This was discovered during development of a new field type. The
accosiated events did not yet have any projection based filled assigned.
It seems fields with a pre-fill projection are somehow restored.
Therefore a restoration migration isn't required IMO.

# How the Problems Are Solved

Query the event store for `org.removed` events instead. This has the
drawback of using a sequential scan on the eventstore, making the
migration more expensive.

# Additional Changes

- none

# Additional Context

- Introduced in https://github.com/zitadel/zitadel/pull/8946
2024-12-12 18:37:18 +02:00
Max Peintner
b68ea32748 let users change their password if mfa is enforce but no mfa is yet set 2024-12-12 16:37:58 +01:00
Lucas Verdiell
25b013bf14 docs(adopters): add smat.io (#9010)
# Which Problems Are Solved
Letting the 🌏  know we use Zitadel at [smat.io](https://smat.io)

# Additional Changes
- Updated `ADOPTERS.md`.

Co-authored-by: Tim Möhlmann <tim+github@zitadel.com>
2024-12-11 18:16:22 +00:00
Silvan
e130467b7a docs(benchmarks): add v2.66.0 (#9038)
# Which Problems Are Solved

Add benchmarks for v2.66.0
2024-12-11 12:14:33 +02:00
Max Peintner
5319705428 Merge pull request #317 from zitadel/fix-rm-log
fix: remove `JSON.stringify` as log
2024-12-11 10:48:41 +01:00
David Skewis
72064de7fd Merge branch 'main' into fix-rm-log 2024-12-11 09:40:23 +00:00
Max Peintner
1a26192a0d missing zh translations 2024-12-11 09:56:49 +01:00
Max Peintner
91f1b250a8 Merge branch 'main' into qa 2024-12-11 09:53:21 +01:00
Max Peintner
f6b257bd47 Merge pull request #298 from JimmyKmi/translation
Add translation for Simplified Chinese
2024-12-11 09:52:49 +01:00
Max Peintner
61701d037e Merge branch 'main' into translation 2024-12-11 09:36:24 +01:00
Max Peintner
fb331ce935 improve language handling 2024-12-11 09:20:40 +01:00
Max Peintner
20c85bb97b rm stringify 2024-12-11 08:52:56 +01:00
Tim Möhlmann
83bdaf43c3 docs(events-api): user auth example using OIDC session events (#9020)
# Which Problems Are Solved

Integration guide with event API examples used outdated
`user.token.added` events which are no longer produced by ZITADEL.

# How the Problems Are Solved

Modify the example to use events from the `oidc_session` aggregate.

# Additional Changes

- Add a TODO for related SAML events.

# Additional Context

- Related to https://github.com/zitadel/zitadel/issues/8983
2024-12-10 10:54:07 +00:00