mirror of
https://github.com/zitadel/zitadel.git
synced 2024-12-14 20:08:02 +00:00
db1d8f4efe
* feat: oidc config * fix: oidc configurations * feat: oidc idp config * feat: add oidc config test * fix: tests * fix: tests * feat: translate new events * feat: idp eventstore * feat: idp eventstore * fix: tests * feat: command side idp * feat: query side idp * feat: idp config on org * fix: tests * feat: authz idp on org * feat: org idps * feat: login policy * feat: login policy * feat: login policy * feat: add idp func on login policy * feat: add validation to loginpolicy and idp provider * feat: add default login policy * feat: login policy on org * feat: login policy on org * fix: id config handlers * fix: id config handlers * fix: create idp on org * fix: create idp on org * fix: not existing idp config * fix: default login policy * fix: add login policy on org * fix: idp provider search on org * fix: test * fix: remove idp on org * fix: test * fix: test * fix: remove admin idp * fix: logo src as byte * fix: migration * fix: tests * Update internal/iam/repository/eventsourcing/iam.go Co-authored-by: Silvan <silvan.reusser@gmail.com> * Update internal/iam/repository/eventsourcing/iam_test.go Co-authored-by: Silvan <silvan.reusser@gmail.com> * Update internal/iam/repository/eventsourcing/iam_test.go Co-authored-by: Silvan <silvan.reusser@gmail.com> * Update internal/iam/repository/eventsourcing/model/login_policy.go Co-authored-by: Silvan <silvan.reusser@gmail.com> * Update internal/iam/repository/eventsourcing/model/login_policy.go Co-authored-by: Silvan <silvan.reusser@gmail.com> * Update internal/org/repository/eventsourcing/org_test.go Co-authored-by: Silvan <silvan.reusser@gmail.com> * Update internal/iam/repository/eventsourcing/model/login_policy_test.go Co-authored-by: Silvan <silvan.reusser@gmail.com> * Update internal/iam/repository/eventsourcing/model/login_policy_test.go Co-authored-by: Silvan <silvan.reusser@gmail.com> * fix: pr comments * fix: tests * Update types.go * fix: merge request changes * fix: reduce optimization Co-authored-by: Silvan <silvan.reusser@gmail.com> Co-authored-by: Livio Amstutz <livio.a@gmail.com>
97 lines
2.7 KiB
Go
97 lines
2.7 KiB
Go
package model
|
|
|
|
import (
|
|
"encoding/json"
|
|
"github.com/caos/logging"
|
|
"github.com/caos/zitadel/internal/crypto"
|
|
es_models "github.com/caos/zitadel/internal/eventstore/models"
|
|
"github.com/caos/zitadel/internal/iam/model"
|
|
"github.com/lib/pq"
|
|
"reflect"
|
|
)
|
|
|
|
type OIDCIDPConfig struct {
|
|
es_models.ObjectRoot
|
|
IDPConfigID string `json:"idpConfigId"`
|
|
ClientID string `json:"clientId"`
|
|
ClientSecret *crypto.CryptoValue `json:"clientSecret,omitempty"`
|
|
Issuer string `json:"issuer,omitempty"`
|
|
Scopes pq.StringArray `json:"scopes,omitempty"`
|
|
}
|
|
|
|
func (c *OIDCIDPConfig) Changes(changed *OIDCIDPConfig) map[string]interface{} {
|
|
changes := make(map[string]interface{}, 1)
|
|
changes["idpConfigId"] = c.IDPConfigID
|
|
if c.ClientID != changed.ClientID {
|
|
changes["clientId"] = changed.ClientID
|
|
}
|
|
if c.ClientSecret != nil {
|
|
changes["clientSecret"] = changed.ClientSecret
|
|
}
|
|
if c.Issuer != changed.Issuer {
|
|
changes["issuer"] = changed.Issuer
|
|
}
|
|
if !reflect.DeepEqual(c.Scopes, changed.Scopes) {
|
|
changes["scopes"] = changed.Scopes
|
|
}
|
|
return changes
|
|
}
|
|
|
|
func OIDCIDPConfigFromModel(config *model.OIDCIDPConfig) *OIDCIDPConfig {
|
|
return &OIDCIDPConfig{
|
|
ObjectRoot: config.ObjectRoot,
|
|
IDPConfigID: config.IDPConfigID,
|
|
ClientID: config.ClientID,
|
|
ClientSecret: config.ClientSecret,
|
|
Issuer: config.Issuer,
|
|
Scopes: config.Scopes,
|
|
}
|
|
}
|
|
|
|
func OIDCIDPConfigToModel(config *OIDCIDPConfig) *model.OIDCIDPConfig {
|
|
return &model.OIDCIDPConfig{
|
|
ObjectRoot: config.ObjectRoot,
|
|
IDPConfigID: config.IDPConfigID,
|
|
ClientID: config.ClientID,
|
|
ClientSecret: config.ClientSecret,
|
|
Issuer: config.Issuer,
|
|
Scopes: config.Scopes,
|
|
}
|
|
}
|
|
|
|
func (iam *IAM) appendAddOIDCIDPConfigEvent(event *es_models.Event) error {
|
|
config := new(OIDCIDPConfig)
|
|
err := config.SetData(event)
|
|
if err != nil {
|
|
return err
|
|
}
|
|
config.ObjectRoot.CreationDate = event.CreationDate
|
|
if i, idpConfig := GetIDPConfig(iam.IDPs, config.IDPConfigID); idpConfig != nil {
|
|
iam.IDPs[i].Type = int32(model.IDPConfigTypeOIDC)
|
|
iam.IDPs[i].OIDCIDPConfig = config
|
|
}
|
|
return nil
|
|
}
|
|
|
|
func (iam *IAM) appendChangeOIDCIDPConfigEvent(event *es_models.Event) error {
|
|
config := new(OIDCIDPConfig)
|
|
err := config.SetData(event)
|
|
if err != nil {
|
|
return err
|
|
}
|
|
|
|
if i, idpConfig := GetIDPConfig(iam.IDPs, config.IDPConfigID); idpConfig != nil {
|
|
iam.IDPs[i].OIDCIDPConfig.SetData(event)
|
|
}
|
|
return nil
|
|
}
|
|
|
|
func (o *OIDCIDPConfig) SetData(event *es_models.Event) error {
|
|
o.ObjectRoot.AppendEvent(event)
|
|
if err := json.Unmarshal(event.Data, o); err != nil {
|
|
logging.Log("EVEN-Msh8s").WithError(err).Error("could not unmarshal event data")
|
|
return err
|
|
}
|
|
return nil
|
|
}
|