mirror of
https://github.com/zitadel/zitadel.git
synced 2025-07-15 19:28:35 +00:00

This PR summarizes multiple changes specifically only available with ZITADEL v3: - feat: Web Keys management (https://github.com/zitadel/zitadel/pull/9526) - fix(cmd): ensure proper working of mirror (https://github.com/zitadel/zitadel/pull/9509) - feat(Authz): system user support for permission check v2 (https://github.com/zitadel/zitadel/pull/9640) - chore(license): change from Apache to AGPL (https://github.com/zitadel/zitadel/pull/9597) - feat(console): list v2 sessions (https://github.com/zitadel/zitadel/pull/9539) - fix(console): add loginV2 feature flag (https://github.com/zitadel/zitadel/pull/9682) - fix(feature flags): allow reading "own" flags (https://github.com/zitadel/zitadel/pull/9649) - feat(console): add Actions V2 UI (https://github.com/zitadel/zitadel/pull/9591) BREAKING CHANGE - feat(webkey): migrate to v2beta API (https://github.com/zitadel/zitadel/pull/9445) - chore!: remove CockroachDB Support (https://github.com/zitadel/zitadel/pull/9444) - feat(actions): migrate to v2beta API (https://github.com/zitadel/zitadel/pull/9489) --------- Co-authored-by: Livio Spring <livio.a@gmail.com> Co-authored-by: Stefan Benz <46600784+stebenz@users.noreply.github.com> Co-authored-by: Silvan <27845747+adlerhurst@users.noreply.github.com> Co-authored-by: Ramon <mail@conblem.me> Co-authored-by: Elio Bischof <elio@zitadel.com> Co-authored-by: Kenta Yamaguchi <56732734+KEY60228@users.noreply.github.com> Co-authored-by: Harsha Reddy <harsha.reddy@klaviyo.com> Co-authored-by: Livio Spring <livio@zitadel.com> Co-authored-by: Max Peintner <max@caos.ch> Co-authored-by: Iraq <66622793+kkrime@users.noreply.github.com> Co-authored-by: Florian Forster <florian@zitadel.com> Co-authored-by: Tim Möhlmann <tim+github@zitadel.com> Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> Co-authored-by: Max Peintner <peintnerm@gmail.com>
149 lines
3.2 KiB
Go
149 lines
3.2 KiB
Go
package initialise
|
|
|
|
import (
|
|
"context"
|
|
"embed"
|
|
|
|
"github.com/spf13/cobra"
|
|
"github.com/spf13/viper"
|
|
"github.com/zitadel/logging"
|
|
|
|
"github.com/zitadel/zitadel/internal/database"
|
|
)
|
|
|
|
var (
|
|
//go:embed sql/*.sql
|
|
stmts embed.FS
|
|
|
|
createUserStmt string
|
|
grantStmt string
|
|
databaseStmt string
|
|
createEventstoreStmt string
|
|
createProjectionsStmt string
|
|
createSystemStmt string
|
|
createEncryptionKeysStmt string
|
|
createEventsStmt string
|
|
createUniqueConstraints string
|
|
|
|
roleAlreadyExistsCode = "42710"
|
|
dbAlreadyExistsCode = "42P04"
|
|
)
|
|
|
|
func New() *cobra.Command {
|
|
cmd := &cobra.Command{
|
|
Use: "init",
|
|
Short: "initialize ZITADEL instance",
|
|
Long: `Sets up the minimum requirements to start ZITADEL.
|
|
|
|
Prerequisites:
|
|
- PostgreSql database
|
|
|
|
The user provided by flags needs privileges to
|
|
- create the database if it does not exist
|
|
- see other users and create a new one if the user does not exist
|
|
- grant all rights of the ZITADEL database to the user created if not yet set
|
|
`,
|
|
Run: func(cmd *cobra.Command, args []string) {
|
|
config := MustNewConfig(viper.GetViper())
|
|
|
|
InitAll(cmd.Context(), config)
|
|
},
|
|
}
|
|
|
|
cmd.AddCommand(newZitadel(), newDatabase(), newUser(), newGrant())
|
|
return cmd
|
|
}
|
|
|
|
func InitAll(ctx context.Context, config *Config) {
|
|
err := initialise(ctx, config.Database,
|
|
VerifyUser(config.Database.Username(), config.Database.Password()),
|
|
VerifyDatabase(config.Database.DatabaseName()),
|
|
VerifyGrant(config.Database.DatabaseName(), config.Database.Username()),
|
|
)
|
|
logging.OnError(err).Fatal("unable to initialize the database")
|
|
|
|
err = verifyZitadel(ctx, config.Database)
|
|
logging.OnError(err).Fatal("unable to initialize ZITADEL")
|
|
}
|
|
|
|
func initialise(ctx context.Context, config database.Config, steps ...func(context.Context, *database.DB) error) error {
|
|
logging.Info("initialization started")
|
|
|
|
err := ReadStmts()
|
|
if err != nil {
|
|
return err
|
|
}
|
|
|
|
db, err := database.Connect(config, true)
|
|
if err != nil {
|
|
return err
|
|
}
|
|
defer db.Close()
|
|
|
|
return Init(ctx, db, steps...)
|
|
}
|
|
|
|
func Init(ctx context.Context, db *database.DB, steps ...func(context.Context, *database.DB) error) error {
|
|
for _, step := range steps {
|
|
if err := step(ctx, db); err != nil {
|
|
return err
|
|
}
|
|
}
|
|
|
|
return nil
|
|
}
|
|
|
|
func ReadStmts() (err error) {
|
|
createUserStmt, err = readStmt("01_user")
|
|
if err != nil {
|
|
return err
|
|
}
|
|
|
|
databaseStmt, err = readStmt("02_database")
|
|
if err != nil {
|
|
return err
|
|
}
|
|
|
|
grantStmt, err = readStmt("03_grant_user")
|
|
if err != nil {
|
|
return err
|
|
}
|
|
|
|
createEventstoreStmt, err = readStmt("04_eventstore")
|
|
if err != nil {
|
|
return err
|
|
}
|
|
|
|
createProjectionsStmt, err = readStmt("05_projections")
|
|
if err != nil {
|
|
return err
|
|
}
|
|
|
|
createSystemStmt, err = readStmt("06_system")
|
|
if err != nil {
|
|
return err
|
|
}
|
|
|
|
createEncryptionKeysStmt, err = readStmt("07_encryption_keys_table")
|
|
if err != nil {
|
|
return err
|
|
}
|
|
|
|
createEventsStmt, err = readStmt("08_events_table")
|
|
if err != nil {
|
|
return err
|
|
}
|
|
|
|
createUniqueConstraints, err = readStmt("10_unique_constraints_table")
|
|
if err != nil {
|
|
return err
|
|
}
|
|
|
|
return nil
|
|
}
|
|
|
|
func readStmt(step string) (string, error) {
|
|
stmt, err := stmts.ReadFile("sql/" + step + ".sql")
|
|
return string(stmt), err
|
|
}
|