Releases: devlive-community/grantforge
Releases · devlive-community/grantforge
Release list
GrantForge 2026.0.0
完整变更:1.0.6...v2026.0.0,共 194 个提交。
不兼容变更
- rename AuthX to GrantForge and refresh branding (84f83254)
- replace the legacy backend with a Spring Boot 4.1 skeleton (223a12dd)
新功能
- release: cut releases with one script and list their commits (362546cc)
- hdfs: add the NameNode agent for Hadoop 3.5.0 (1445466e)
- agent: let agents credit GrantForge for a strict default deny (0c109094)
- hdfs: bound path lookups and validate cluster settings (1d20eac3)
- hdfs: talk to clusters with Hadoop's client like Apache Ranger (02bd6d1a)
- plugin-host: load the repository's plugins when run from sources (43591418)
- hdfs: add the HDFS service type plugin shipped with the release (e8b651b7)
- agent: add the agent core that keeps policies current in systems (f7be272e)
- import accounts, roles and menus from a 1.x database (169ea055)
- web: drop the JSON workbench from the console (18a7f0ba)
- deploy with a Docker image, Compose examples and a Helm chart (cb013c07)
- benchmark authorization and list APIs at a million accounts (57654a40)
- review who holds roles in periodic access reviews (a0823d40)
- let users ask for roles that approvers grant for a while (07b8790a)
- keep apart roles nobody may hold together (d8fa25b2)
- let users sign in with OpenID Connect providers (b77f314f)
- let users sign in with LDAP directories (8438c977)
- add two-step sign-in with authenticator apps (3254a92c)
- add sample applications and integration guides (29b7eccc)
- add a JavaScript client with Vue directives (5581d99d)
- let applications apply data policies to their own rows (68e45ab5)
- add a Spring Boot starter for applications (1f428395)
- let applications ask what their users may do (d7e72122)
- sign users in to applications with OpenID Connect (2f58406a)
- register OAuth clients of catalog applications (01d6b14c)
- search and export the audit log (cf6a8bea)
- record permission changes with them and keep audit append-only (e8b50fca)
- simulate what an account would gain or lose (01b68209)
- show a user's effective permissions and why (f645830b)
- answer and explain what accounts may use (c71ea138)
- set a role's field permissions in the console (f1c7cf04)
- refuse changes of read-only secured fields (a2f0fe50)
- hide and mask secured fields as roles' field policies say (30aa2420)
- register the secured fields APIs return and accept (2891ce2a)
- keep built-in lists to readers' data permissions (ad97b40d)
- set a role's data permissions in the console (6d766bfc)
- limit rows to what readers' data policies allow (2bf42cd4)
- give roles data policies with checked conditions (c0515e78)
- let entities declare themselves under data permissions (b52e39a5)
- keep the plugin API compatible and prove it with an example (47de7d26)
- keep what agents decided and let the console search it (16976c4e)
- hand agents signed policy snapshots for their service (55ed41eb)
- write access, masking and row filter policies for services (e22381da)
- register data services, with their secrets encrypted (01cd7bd4)
- decide access requests against policies in a Java 8 engine (7649d756)
- load service type plugins, each in its own class loader (0e4b772f)
- show what a change would do before it is made (f7c95b26)
- let roles inherit from other roles (1c3c4e5f)
- check the catalog for settings that silently do not work (b9b1abaf)
- show each user only the pages and buttons they may use (bde4ab68)
- refuse API calls the caller has no permission for (ff753df5)
- work out each user's permissions from all of their roles (82274c83)
- grant pages, buttons and APIs to roles (38619909)
- give roles to users, groups, departments and positions (a394a436)
- manage the roles of a tenant (521f6430)
- declare the console's pages and buttons in a permission manifest (36727158)
- record what pages and buttons need to work (c88c709c)
- register every API endpoint and its permission at start-up (43adbb11)
- maintain the resource catalo...