mirror of
https://github.com/zitadel/zitadel.git
synced 2024-12-18 22:07:32 +00:00
bc951985ed
* feat: lock users if lockout policy is set * feat: setup * feat: lock user on password failes * feat: render error * feat: lock user on command side * feat: auth_req tests * feat: lockout policy docs * feat: remove show lockout failures from proto * fix: console lockout * feat: tests * fix: tests * unlock function * add unlock button * fix migration version * lockout policy * lint * Update internal/auth/repository/eventsourcing/eventstore/auth_request.go Co-authored-by: Silvan <silvan.reusser@gmail.com> * fix: err message * Update internal/command/setup_step4.go Co-authored-by: Silvan <silvan.reusser@gmail.com> Co-authored-by: Max Peintner <max@caos.ch> Co-authored-by: Livio Amstutz <livio.a@gmail.com> Co-authored-by: Silvan <silvan.reusser@gmail.com>
112 lines
4.1 KiB
Go
112 lines
4.1 KiB
Go
package handler
|
|
|
|
import (
|
|
"time"
|
|
|
|
"github.com/caos/zitadel/internal/eventstore/v1"
|
|
"github.com/caos/zitadel/internal/static"
|
|
|
|
"github.com/caos/zitadel/internal/config/systemdefaults"
|
|
"github.com/caos/zitadel/internal/config/types"
|
|
"github.com/caos/zitadel/internal/eventstore/v1/query"
|
|
"github.com/caos/zitadel/internal/management/repository/eventsourcing/view"
|
|
)
|
|
|
|
type Configs map[string]*Config
|
|
|
|
type Config struct {
|
|
MinimumCycleDuration types.Duration
|
|
}
|
|
|
|
type handler struct {
|
|
view *view.View
|
|
bulkLimit uint64
|
|
cycleDuration time.Duration
|
|
errorCountUntilSkip uint64
|
|
|
|
es v1.Eventstore
|
|
}
|
|
|
|
func (h *handler) Eventstore() v1.Eventstore {
|
|
return h.es
|
|
}
|
|
|
|
func Register(configs Configs, bulkLimit, errorCount uint64, view *view.View, es v1.Eventstore, defaults systemdefaults.SystemDefaults, staticStorage static.Storage) []query.Handler {
|
|
return []query.Handler{
|
|
newProject(
|
|
handler{view, bulkLimit, configs.cycleDuration("Project"), errorCount, es}),
|
|
newProjectGrant(
|
|
handler{view, bulkLimit, configs.cycleDuration("ProjectGrant"), errorCount, es}),
|
|
newProjectRole(handler{view, bulkLimit, configs.cycleDuration("ProjectRole"), errorCount, es}),
|
|
newProjectMember(handler{view, bulkLimit, configs.cycleDuration("ProjectMember"), errorCount, es}),
|
|
newProjectGrantMember(handler{view, bulkLimit, configs.cycleDuration("ProjectGrantMember"), errorCount, es}),
|
|
newApplication(handler{view, bulkLimit, configs.cycleDuration("Application"), errorCount, es}),
|
|
newUser(handler{view, bulkLimit, configs.cycleDuration("User"), errorCount, es},
|
|
defaults.IamID),
|
|
newUserGrant(handler{view, bulkLimit, configs.cycleDuration("UserGrant"), errorCount, es}),
|
|
newOrg(
|
|
handler{view, bulkLimit, configs.cycleDuration("Org"), errorCount, es}),
|
|
newOrgMember(
|
|
handler{view, bulkLimit, configs.cycleDuration("OrgMember"), errorCount, es}),
|
|
newOrgDomain(
|
|
handler{view, bulkLimit, configs.cycleDuration("OrgDomain"), errorCount, es}),
|
|
newUserMembership(
|
|
handler{view, bulkLimit, configs.cycleDuration("UserMembership"), errorCount, es}),
|
|
newAuthNKeys(
|
|
handler{view, bulkLimit, configs.cycleDuration("MachineKeys"), errorCount, es}),
|
|
newIDPConfig(
|
|
handler{view, bulkLimit, configs.cycleDuration("IDPConfig"), errorCount, es}),
|
|
newLoginPolicy(
|
|
handler{view, bulkLimit, configs.cycleDuration("LoginPolicy"), errorCount, es}),
|
|
newLabelPolicy(
|
|
handler{view, bulkLimit, configs.cycleDuration("LabelPolicy"), errorCount, es},
|
|
staticStorage),
|
|
newIDPProvider(
|
|
handler{view, bulkLimit, configs.cycleDuration("IDPProvider"), errorCount, es},
|
|
defaults),
|
|
newExternalIDP(
|
|
handler{view, bulkLimit, configs.cycleDuration("ExternalIDP"), errorCount, es},
|
|
defaults),
|
|
newPasswordComplexityPolicy(
|
|
handler{view, bulkLimit, configs.cycleDuration("PasswordComplexityPolicy"), errorCount, es}),
|
|
newPasswordAgePolicy(
|
|
handler{view, bulkLimit, configs.cycleDuration("PasswordAgePolicy"), errorCount, es}),
|
|
newLockoutPolicy(
|
|
handler{view, bulkLimit, configs.cycleDuration("LockoutPolicy"), errorCount, es}),
|
|
newOrgIAMPolicy(
|
|
handler{view, bulkLimit, configs.cycleDuration("OrgIAMPolicy"), errorCount, es}),
|
|
newMailTemplate(
|
|
handler{view, bulkLimit, configs.cycleDuration("MailTemplate"), errorCount, es}),
|
|
newMessageText(
|
|
handler{view, bulkLimit, configs.cycleDuration("MessageText"), errorCount, es}),
|
|
newFeatures(
|
|
handler{view, bulkLimit, configs.cycleDuration("Features"), errorCount, es}),
|
|
newPrivacyPolicy(
|
|
handler{view, bulkLimit, configs.cycleDuration("PrivacyPolicy"), errorCount, es}),
|
|
newCustomText(
|
|
handler{view, bulkLimit, configs.cycleDuration("CustomText"), errorCount, es}),
|
|
newMetadata(
|
|
handler{view, bulkLimit, configs.cycleDuration("Metadata"), errorCount, es}),
|
|
}
|
|
}
|
|
|
|
func (configs Configs) cycleDuration(viewModel string) time.Duration {
|
|
c, ok := configs[viewModel]
|
|
if !ok {
|
|
return 3 * time.Minute
|
|
}
|
|
return c.MinimumCycleDuration.Duration
|
|
}
|
|
|
|
func (h *handler) MinimumCycleDuration() time.Duration {
|
|
return h.cycleDuration
|
|
}
|
|
|
|
func (h *handler) LockDuration() time.Duration {
|
|
return h.cycleDuration / 3
|
|
}
|
|
|
|
func (h *handler) QueryLimit() uint64 {
|
|
return h.bulkLimit
|
|
}
|