zitadel/internal/api/grpc
Stefan Benz 2847806531
fix: generalise permission check for query user information (#8458)
# Which Problems Are Solved

IDPLinks list and other list endpoints can provide you with empty
results if the used user has no permission for the information.

# How the Problems Are Solved

List endpoints with subelements to users, and provided userIDQuery, will
return a PermissionDenied error if no permission for the user exsists.

# Additional Changes

Function to check for permission is re-used from the GetUserByID.

# Additional Context

Closes #8451
2024-08-23 06:44:18 +00:00
..
action feat(v3alpha): write actions (#8225) 2024-07-31 14:42:12 +02:00
admin fix: generalise permission check for query user information (#8458) 2024-08-23 06:44:18 +00:00
auth fix: generalise permission check for query user information (#8458) 2024-08-23 06:44:18 +00:00
authn chore(v2): move to new org (#3499) 2022-04-26 23:01:45 +00:00
change refactor(fmt): run gci on complete project (#7557) 2024-04-03 10:43:43 +00:00
client/middleware refactor(fmt): run gci on complete project (#7557) 2024-04-03 10:43:43 +00:00
event refactor: rename package errors to zerrors (#7039) 2023-12-08 15:30:55 +01:00
feature feat(oidc): allow returning of parent errors to client (#8376) 2024-08-20 06:45:24 +00:00
gerrors fix: exclude db connection error details (#7785) 2024-04-23 08:35:25 +00:00
idp feat: idp v2 api GetIDPByID (#8425) 2024-08-14 18:18:29 +00:00
instance feat: trusted (instance) domains (#8369) 2024-07-31 18:00:38 +03:00
management fix: generalise permission check for query user information (#8458) 2024-08-23 06:44:18 +00:00
member refactor: cleanup unused code (#7130) 2024-01-02 14:26:31 +00:00
metadata fix(api): correct mapping of metadata queries (#7609) 2024-03-21 14:56:58 +00:00
object feat: api v2beta to api v2 (#8283) 2024-07-26 22:39:55 +02:00
oidc feat: trusted (instance) domains (#8369) 2024-07-31 18:00:38 +03:00
org feat: org v2 ListOrganizations (#8411) 2024-08-15 06:37:06 +02:00
policy feat(cnsl): docs link can be customized and custom button is available (#7840) 2024-05-13 16:01:50 +02:00
project feat(oidc): token exchange impersonation (#7516) 2024-03-20 10:18:46 +00:00
resources feat(v3alpha): web key resource (#8262) 2024-08-14 14:18:14 +00:00
server feat(v3alpha): read actions (#8357) 2024-08-12 22:32:01 +02:00
session feat: api v2beta to api v2 (#8283) 2024-07-26 22:39:55 +02:00
settings feat: trusted (instance) domains (#8369) 2024-07-31 18:00:38 +03:00
system feat(v3alpha): read actions (#8357) 2024-08-12 22:32:01 +02:00
text feat: password age policy (#8132) 2024-06-18 11:27:44 +00:00
user fix: generalise permission check for query user information (#8458) 2024-08-23 06:44:18 +00:00
config.go remove pointers on configs 2020-03-27 13:57:16 +01:00
fields.go fix: provide more information in the retrieve idp information (#5927) 2023-06-20 14:39:50 +02:00
header_test.go remove negated integration tags 2023-04-26 19:55:13 +03:00
header.go chore(v2): move to new org (#3499) 2022-04-26 23:01:45 +00:00
probes_test.go add server reflection to Probes list 2023-05-07 16:47:43 +02:00
probes.go add server reflection to Probes list 2023-05-07 16:47:43 +02:00