Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[pull] master from dexidp:master #224

Open
wants to merge 1,321 commits into
base: master
Choose a base branch
from
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
1321 commits
Select commit Hold shift + click to select a range
fa4f09c
build(deps): bump anchore/sbom-action from 0.15.6 to 0.15.8
dependabot[bot] Feb 1, 2024
13afbbb
build(deps): bump github/codeql-action from 3.23.1 to 3.24.0
dependabot[bot] Feb 5, 2024
6a78022
build(deps): bump github.com/mattn/go-sqlite3 from 1.14.19 to 1.14.22
dependabot[bot] Feb 5, 2024
0d6261b
Merge pull request #3328 from dexidp/dependabot/go_modules/github.com…
sagikazarmark Feb 5, 2024
0deca25
Merge pull request #3327 from dexidp/dependabot/github_actions/github…
sagikazarmark Feb 5, 2024
e36a3d6
Merge pull request #3325 from dexidp/dependabot/github_actions/anchor…
sagikazarmark Feb 5, 2024
76312a5
build(deps): bump sigstore/cosign-installer from 3.2.0 to 3.4.0
dependabot[bot] Feb 5, 2024
f0dbaa8
Merge pull request #3323 from dexidp/dependabot/go_modules/go.etcd.io…
sagikazarmark Feb 5, 2024
6350a91
Merge pull request #3317 from dexidp/dependabot/go_modules/google.gol…
sagikazarmark Feb 5, 2024
f0bc3fe
Merge pull request #3311 from dexidp/dependabot/docker/alpine-3.19.1
sagikazarmark Feb 5, 2024
0ec151e
build(deps): bump go.etcd.io/etcd/client/v3 from 3.5.11 to 3.5.12
dependabot[bot] Feb 5, 2024
5a3e04e
Merge pull request #3310 from dexidp/dependabot/docker/golang-3354c3a
sagikazarmark Feb 5, 2024
9aabf9e
Merge pull request #3308 from dexidp/dependabot/github_actions/mheap/…
sagikazarmark Feb 5, 2024
5dc3146
Merge pull request #3324 from dexidp/dependabot/github_actions/sigsto…
sagikazarmark Feb 5, 2024
9a67dbd
Merge pull request #3321 from dexidp/dependabot/go_modules/go.etcd.io…
sagikazarmark Feb 5, 2024
75195bd
build(deps): bump golang.org/x/oauth2 from 0.16.0 to 0.17.0 in /examp…
dependabot[bot] Feb 9, 2024
fdb4dc6
build(deps): bump tonistiigi/xx from 1.3.0 to 1.4.0 (#3333)
dependabot[bot] Feb 9, 2024
e593d12
build(deps): bump golang from 1.21.6-alpine3.18 to 1.22.0-alpine3.18
dependabot[bot] Feb 9, 2024
79d5874
fix(tokenExchange): use correct token type for userInfo requests (#3336)
MrDeerly Feb 9, 2024
b4af716
build(deps): bump haya14busa/action-cond from 1.1.1 to 1.2.1
dependabot[bot] Feb 12, 2024
a0cf8b2
fix: Do not evaluate skipApproval on approval page (#3086)
MM53 Feb 13, 2024
457e133
Log failed login attempt (#2454)
i-amelia Feb 13, 2024
85c158e
build(deps): bump golang.org/x/oauth2 from 0.16.0 to 0.17.0 (#3341)
dependabot[bot] Feb 15, 2024
27c6a16
build(deps): bump google.golang.org/grpc in /examples (#3352)
dependabot[bot] Feb 15, 2024
0740dae
build(deps): bump distroless/static from `9be3fcc` to `a43abc8` (#3350)
dependabot[bot] Feb 15, 2024
ec2d934
build(deps): bump aquasecurity/trivy-action from 0.16.1 to 0.17.0 (#3…
dependabot[bot] Feb 15, 2024
62ccd58
build(deps): bump docker/metadata-action from 5.5.0 to 5.5.1 (#3330)
dependabot[bot] Feb 15, 2024
fbddae6
build(deps): bump mheap/github-action-required-labels (#3347)
dependabot[bot] Feb 15, 2024
80d530d
build(deps): bump helm/kind-action from 1.8.0 to 1.9.0 (#3345)
dependabot[bot] Feb 15, 2024
510054a
build(deps): bump github/codeql-action from 3.24.0 to 3.24.3 (#3360)
dependabot[bot] Feb 16, 2024
35c323d
build(deps): bump google.golang.org/api from 0.161.0 to 0.165.0 (#3355)
dependabot[bot] Feb 16, 2024
ed920dc
build(deps): bump actions/dependency-review-action from 4.0.0 to 4.1.…
dependabot[bot] Feb 17, 2024
9fa0b8c
build(deps): bump actions/dependency-review-action from 4.1.0 to 4.1.3
dependabot[bot] Feb 21, 2024
c9e7bae
build(deps): bump google.golang.org/grpc in /examples
dependabot[bot] Feb 22, 2024
d37877d
build(deps): bump distroless/static from `a43abc8` to `072d78b`
dependabot[bot] Feb 26, 2024
d85f63b
build(deps): bump github/codeql-action from 3.24.3 to 3.24.5
dependabot[bot] Feb 26, 2024
d32bc95
build(deps): bump google.golang.org/api from 0.165.0 to 0.167.0
dependabot[bot] Feb 26, 2024
1d11a6d
build(deps): bump golang.org/x/crypto from 0.19.0 to 0.20.0
dependabot[bot] Feb 27, 2024
83d2f09
Merge pull request #3377 from dexidp/dependabot/go_modules/golang.org…
sagikazarmark Feb 27, 2024
3a9985e
Merge pull request #3376 from dexidp/dependabot/go_modules/google.gol…
sagikazarmark Feb 27, 2024
dde1cac
Merge pull request #3375 from dexidp/dependabot/github_actions/github…
sagikazarmark Feb 27, 2024
9bbb6ff
Merge pull request #3374 from dexidp/dependabot/docker/distroless/sta…
sagikazarmark Feb 27, 2024
0b1e148
Merge pull request #3368 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark Feb 27, 2024
2f51252
Merge pull request #3363 from dexidp/dependabot/github_actions/action…
sagikazarmark Feb 27, 2024
c5597b4
Merge pull request #3346 from dexidp/dependabot/github_actions/haya14…
sagikazarmark Feb 27, 2024
d375c73
build(deps): bump google.golang.org/grpc from 1.61.0 to 1.62.0
dependabot[bot] Feb 27, 2024
1ee75ce
Merge pull request #3334 from dexidp/dependabot/docker/golang-1.22.0-…
sagikazarmark Feb 27, 2024
033cf8b
Merge pull request #3367 from dexidp/dependabot/go_modules/google.gol…
sagikazarmark Feb 27, 2024
9ce65f3
chore: update flake
sagikazarmark Feb 27, 2024
70b32ee
chore: regenerate proto
sagikazarmark Feb 27, 2024
3905389
chore: update ent
sagikazarmark Feb 27, 2024
0537d5b
chore: update tool versions
sagikazarmark Feb 27, 2024
d59145b
Merge pull request #3379 from dexidp/update-ent
sagikazarmark Feb 27, 2024
34f5634
build(deps): bump google.golang.org/grpc in /api/v2
dependabot[bot] Feb 27, 2024
8652a7c
Merge pull request #3365 from dexidp/dependabot/go_modules/api/v2/goo…
sagikazarmark Feb 27, 2024
6f8e3fd
build(deps): bump github.com/go-jose/go-jose/v3 from 3.0.1 to 3.0.3 (…
dependabot[bot] Mar 11, 2024
daa27ee
build(deps): bump github.com/prometheus/client_golang (#3380)
dependabot[bot] Mar 11, 2024
047abc3
build(deps): bump golang from 1.22.0-alpine3.18 to 1.22.1-alpine3.18 …
dependabot[bot] Mar 11, 2024
3b0951b
build(deps): bump github.com/go-jose/go-jose/v3 in /examples (#3406)
dependabot[bot] Mar 11, 2024
d4f4bb7
build(deps): bump google.golang.org/api from 0.167.0 to 0.169.0 (#3407)
dependabot[bot] Mar 11, 2024
60ddd18
Update go-jose to v4.0.1 (#3409)
nabokihms Mar 11, 2024
cc98349
build(deps): bump distroless/static from `072d78b` to `9235ad9` (#3381)
dependabot[bot] Mar 11, 2024
22d94bb
build(deps): bump docker/setup-buildx-action from 3.0.0 to 3.1.0 (#3382)
dependabot[bot] Mar 11, 2024
eee7005
build(deps): bump aquasecurity/trivy-action from 0.17.0 to 0.18.0 (#3…
dependabot[bot] Mar 11, 2024
09b57cb
build(deps): bump github/codeql-action from 3.24.5 to 3.24.6 (#3386)
dependabot[bot] Mar 11, 2024
75557f6
build(deps): bump anchore/sbom-action from 0.15.8 to 0.15.9 (#3397)
dependabot[bot] Mar 11, 2024
82d881d
build(deps): bump golang.org/x/oauth2 from 0.17.0 to 0.18.0 (#3393)
dependabot[bot] Mar 11, 2024
54ff639
build(deps): bump golang.org/x/oauth2 from 0.17.0 to 0.18.0 in /examp…
dependabot[bot] Mar 11, 2024
77333d6
fix: add sanitizer to ldap account and password (#3372)
hsinhoyeh Mar 11, 2024
088339f
Add headers control to dex web server (#3339)
nabokihms Mar 11, 2024
b4bc42c
build(deps): bump google.golang.org/grpc in /examples (#3401)
dependabot[bot] Mar 11, 2024
e5dce3d
OIDC connector: Allow specifying empty prompt type (#3373)
nabokihms Mar 12, 2024
fb63f7f
build(deps): bump github.com/go-sql-driver/mysql from 1.7.1 to 1.8.0 …
dependabot[bot] Mar 12, 2024
053331d
build(deps): bump google.golang.org/protobuf from 1.32.0 to 1.33.0 (#…
dependabot[bot] Mar 12, 2024
1d973dd
Set read only permissions to the check job (#3415)
nabokihms Mar 12, 2024
a69ede0
build(deps): bump distroless/static from `9235ad9` to `7e5c6a2` (#3410)
dependabot[bot] Mar 12, 2024
91a34c7
build(deps): bump docker/build-push-action from 5.1.0 to 5.2.0 (#3411)
dependabot[bot] Mar 12, 2024
7e1babb
build(deps): bump google.golang.org/grpc from 1.62.0 to 1.62.1 (#3412)
dependabot[bot] Mar 12, 2024
aa1c6a4
build(deps): bump github.com/stretchr/testify from 1.8.4 to 1.9.0 (#3…
dependabot[bot] Mar 12, 2024
158a2a2
build(deps): bump actions/checkout from 4.1.1 to 4.1.2 (#3417)
dependabot[bot] Mar 22, 2024
8e6a314
build(deps): bump github/codeql-action from 3.24.6 to 3.24.8 (#3422)
dependabot[bot] Mar 22, 2024
6832ab5
build(deps): bump google.golang.org/api from 0.169.0 to 0.171.0 (#3426)
dependabot[bot] Mar 22, 2024
5c72115
build(deps): bump docker/login-action from 3.0.0 to 3.1.0 (#3418)
dependabot[bot] Mar 22, 2024
f0966f8
build(deps): bump github.com/coreos/go-oidc/v3 in /examples (#3424)
dependabot[bot] Mar 22, 2024
e9f998c
build(deps): bump github.com/coreos/go-oidc/v3 from 3.9.0 to 3.10.0 (…
dependabot[bot] Mar 22, 2024
3871b84
build(deps): bump docker/build-push-action from 5.2.0 to 5.3.0 (#3420)
dependabot[bot] Mar 22, 2024
c14eef3
build(deps): bump golang from `010f3b3` to `ede158f` (#3421)
dependabot[bot] Mar 22, 2024
5589826
build(deps): bump google.golang.org/grpc in /api/v2 (#3399)
dependabot[bot] Mar 22, 2024
f611470
build(deps): bump google.golang.org/protobuf in /api/v2 (#3400)
dependabot[bot] Mar 22, 2024
9bea2e0
build(deps): bump docker/setup-buildx-action from 3.1.0 to 3.2.0
dependabot[bot] Mar 25, 2024
fe45a29
build(deps): bump github.com/go-sql-driver/mysql from 1.8.0 to 1.8.1
dependabot[bot] Mar 27, 2024
5a80a70
build(deps): bump actions/dependency-review-action from 4.1.3 to 4.2.5
dependabot[bot] Mar 27, 2024
8755308
[RFC7662] Add introspect endpoint to introspect access & refresh toke…
supercairos Mar 28, 2024
38cef0c
Update Distroless to Debian 12 (#3432)
haydentherapper Mar 28, 2024
7225198
Update max length of kubernetes object to fit kubernetes policy (#3439)
RomanenkoDenys Mar 28, 2024
3b61d9a
build(deps): bump distroless/static-debian12 from `67686c9` to `42c8865`
dependabot[bot] Mar 29, 2024
86e92aa
fix: wrong error code returned in case of inactive token (#3441)
supercairos Mar 31, 2024
1e76411
build(deps): bump go.etcd.io/etcd/client/pkg/v3 from 3.5.12 to 3.5.13
dependabot[bot] Apr 1, 2024
b40f964
build(deps): bump golang from 1.22.1-alpine3.18 to 1.22.2-alpine3.18
dependabot[bot] Apr 4, 2024
9222b70
build(deps): bump golang.org/x/net from 0.22.0 to 0.24.0
dependabot[bot] Apr 5, 2024
65d8125
build(deps): bump golang.org/x/oauth2 from 0.18.0 to 0.19.0 in /examples
dependabot[bot] Apr 5, 2024
af38034
build(deps): bump github/codeql-action from 3.24.8 to 3.24.10
dependabot[bot] Apr 8, 2024
84954fc
use the default cosign version from the action
cpanato Apr 8, 2024
76f2c8b
run release note label ci only in dexidp/dex repo not in forks
cpanato Apr 8, 2024
65c18a1
Merge pull request #3459 from cpanato/update-ci
sagikazarmark Apr 8, 2024
b740a26
build(deps): bump mheap/github-action-required-labels
dependabot[bot] Apr 8, 2024
a3d3f3b
Merge pull request #3458 from cpanato/update-cosign
sagikazarmark Apr 9, 2024
f88b7cf
Merge pull request #3457 from dexidp/dependabot/github_actions/github…
sagikazarmark Apr 9, 2024
b12883c
Merge pull request #3452 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark Apr 9, 2024
0261110
Merge pull request #3451 from dexidp/dependabot/go_modules/golang.org…
sagikazarmark Apr 9, 2024
e5123f1
Merge pull request #3446 from dexidp/dependabot/docker/golang-1.22.2-…
sagikazarmark Apr 9, 2024
3b1b174
Merge pull request #3443 from dexidp/dependabot/go_modules/go.etcd.io…
sagikazarmark Apr 9, 2024
f1772cb
Merge pull request #3440 from dexidp/dependabot/docker/distroless/sta…
sagikazarmark Apr 9, 2024
b2e0f96
Merge pull request #3435 from dexidp/dependabot/github_actions/action…
sagikazarmark Apr 9, 2024
090d3b0
build(deps): bump go.etcd.io/etcd/client/v3 from 3.5.12 to 3.5.13
dependabot[bot] Apr 9, 2024
e53e962
Merge pull request #3434 from dexidp/dependabot/go_modules/github.com…
sagikazarmark Apr 9, 2024
68d8ad0
build(deps): bump google.golang.org/api from 0.171.0 to 0.172.0
dependabot[bot] Apr 9, 2024
231481f
Merge pull request #3430 from dexidp/dependabot/github_actions/mheap/…
sagikazarmark Apr 9, 2024
4078a17
Merge pull request #3428 from dexidp/dependabot/github_actions/docker…
sagikazarmark Apr 9, 2024
ca27d3c
Merge pull request #3442 from dexidp/dependabot/go_modules/go.etcd.io…
sagikazarmark Apr 9, 2024
98980ca
Merge pull request #3438 from dexidp/dependabot/go_modules/google.gol…
sagikazarmark Apr 9, 2024
b13f5ac
build(deps): bump docker/setup-buildx-action from 3.2.0 to 3.3.0
dependabot[bot] Apr 9, 2024
cd693d3
build(deps): bump distroless/static-debian12 from `42c8865` to `e9ac71e`
dependabot[bot] Apr 9, 2024
3705207
Do not escape password for LDAP connectors (#3470)
nabokihms Apr 9, 2024
7cd76c8
build(deps): bump sigstore/cosign-installer from 3.4.0 to 3.5.0
dependabot[bot] Apr 11, 2024
1ca4583
fix k8s guide link in README (#3474)
elehcim Apr 12, 2024
677ab36
feat: Add support for configurable prompt type for Google connector (…
abhisek Apr 15, 2024
c96c493
build(deps): bump golang.org/x/net in /api/v2 in the go_modules group
dependabot[bot] Apr 19, 2024
d5b22a6
build(deps): bump anchore/sbom-action from 0.15.9 to 0.15.11
dependabot[bot] Apr 29, 2024
d3ae7e2
build(deps): bump golang.org/x/oauth2 from 0.19.0 to 0.20.0 in /examples
dependabot[bot] May 6, 2024
2c74baa
build(deps): bump aquasecurity/trivy-action from 0.18.0 to 0.20.0
dependabot[bot] May 8, 2024
3a541eb
build(deps): bump golang from 1.22.2-alpine3.18 to 1.22.3-alpine3.18
dependabot[bot] May 8, 2024
5e7fb02
build(deps): bump google.golang.org/api from 0.172.0 to 0.179.0
dependabot[bot] May 10, 2024
bdb2836
Merge pull request #3516 from dexidp/dependabot/go_modules/google.gol…
sagikazarmark May 12, 2024
3e13398
Merge pull request #3514 from dexidp/dependabot/docker/golang-1.22.3-…
sagikazarmark May 12, 2024
4129017
Merge pull request #3512 from dexidp/dependabot/github_actions/aquase…
sagikazarmark May 12, 2024
c1caa2f
Merge pull request #3508 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark May 12, 2024
f9c12cb
Merge pull request #3497 from dexidp/dependabot/github_actions/anchor…
sagikazarmark May 12, 2024
c240288
Merge pull request #3483 from dexidp/dependabot/go_modules/api/v2/go_…
sagikazarmark May 12, 2024
d2cce5d
Merge pull request #3472 from dexidp/dependabot/github_actions/sigsto…
sagikazarmark May 12, 2024
d7fb98e
Merge pull request #3469 from dexidp/dependabot/docker/distroless/sta…
sagikazarmark May 12, 2024
c333aee
Merge pull request #3462 from dexidp/dependabot/github_actions/docker…
sagikazarmark May 12, 2024
8288210
build(deps): bump google.golang.org/protobuf in /api/v2
dependabot[bot] May 12, 2024
dbb28db
Merge pull request #3510 from dexidp/dependabot/go_modules/api/v2/goo…
sagikazarmark May 12, 2024
2c93bf2
build(deps): bump google.golang.org/grpc in /examples
dependabot[bot] May 12, 2024
e5de464
build(deps): bump google.golang.org/grpc in /api/v2
dependabot[bot] May 12, 2024
ae016b4
build(deps): bump actions/setup-go from 5.0.0 to 5.0.1
dependabot[bot] May 13, 2024
659784a
build(deps): bump mheap/github-action-required-labels
dependabot[bot] May 13, 2024
8e0aec1
build(deps): bump github/codeql-action from 3.24.10 to 3.25.4
dependabot[bot] May 13, 2024
d6a4d9e
build(deps): bump helm/kind-action from 1.9.0 to 1.10.0
dependabot[bot] May 13, 2024
cfd085e
build(deps): bump actions/dependency-review-action from 4.2.5 to 4.3.2
dependabot[bot] May 13, 2024
76ec7f1
build(deps): bump google.golang.org/api from 0.179.0 to 0.180.0
dependabot[bot] May 13, 2024
7e21fd6
build(deps): bump github.com/prometheus/client_golang
dependabot[bot] May 13, 2024
b1c86e2
Merge pull request #3526 from dexidp/dependabot/go_modules/github.com…
sagikazarmark May 13, 2024
117bb24
Merge pull request #3525 from dexidp/dependabot/go_modules/google.gol…
sagikazarmark May 13, 2024
e695f13
Merge pull request #3524 from dexidp/dependabot/github_actions/action…
sagikazarmark May 13, 2024
0c841ca
Merge pull request #3523 from dexidp/dependabot/github_actions/helm/k…
sagikazarmark May 13, 2024
94e060d
Merge pull request #3522 from dexidp/dependabot/github_actions/github…
sagikazarmark May 13, 2024
e32431a
Merge pull request #3521 from dexidp/dependabot/github_actions/mheap/…
sagikazarmark May 13, 2024
a04fc49
Merge pull request #3520 from dexidp/dependabot/github_actions/action…
sagikazarmark May 13, 2024
4236cb1
Merge pull request #3465 from dexidp/dependabot/go_modules/api/v2/goo…
sagikazarmark May 13, 2024
2e823e3
Merge pull request #3460 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark May 13, 2024
c6fa455
chore: fix function names in comment (#3464)
mountcount May 13, 2024
347beba
Revert autogenerated columnChecker description (#3528)
nabokihms May 13, 2024
369369c
build(deps): bump github.com/beevik/etree from 1.3.0 to 1.4.0
dependabot[bot] May 14, 2024
0088565
build(deps): bump github.com/go-jose/go-jose/v4 from 4.0.1 to 4.0.2
dependabot[bot] May 14, 2024
6951f8d
build(deps): bump ossf/scorecard-action from 2.3.1 to 2.3.3
dependabot[bot] May 14, 2024
524f2b5
build(deps): bump google.golang.org/grpc in /examples
dependabot[bot] May 15, 2024
fca8571
build(deps): bump golang from `4531927` to `ff6ab2b`
dependabot[bot] May 15, 2024
7eadefe
build(deps): bump google.golang.org/api from 0.180.0 to 0.181.0
dependabot[bot] May 17, 2024
7415e88
build(deps): bump actions/checkout from 4.1.2 to 4.1.6
dependabot[bot] May 17, 2024
d3f8c0c
---
dependabot[bot] May 21, 2024
83a8bc6
---
dependabot[bot] May 21, 2024
25959fc
build(deps): bump alpine from 3.19.1 to 3.20.0
dependabot[bot] May 23, 2024
9fd4c74
add provanance
cpanato May 27, 2024
6b21e6a
Merge pull request #3548 from cpanato/attestation
sagikazarmark May 28, 2024
6c49f9f
Merge pull request #3547 from dexidp/dependabot/docker/alpine-3.20.0
sagikazarmark May 28, 2024
0d6861b
Merge pull request #3545 from dexidp/dependabot/github_actions/anchor…
sagikazarmark May 28, 2024
805080c
Merge pull request #3544 from dexidp/dependabot/github_actions/github…
sagikazarmark May 28, 2024
c2b5fd0
Merge pull request #3542 from dexidp/dependabot/github_actions/action…
sagikazarmark May 28, 2024
02424be
Merge pull request #3541 from dexidp/dependabot/go_modules/google.gol…
sagikazarmark May 28, 2024
59f06cf
Merge pull request #3536 from dexidp/dependabot/docker/golang-ff6ab2b
sagikazarmark May 28, 2024
6fd2e9c
Merge pull request #3534 from dexidp/dependabot/github_actions/ossf/s…
sagikazarmark May 28, 2024
4f9398b
Merge pull request #3531 from dexidp/dependabot/go_modules/github.com…
sagikazarmark May 28, 2024
b081933
Merge pull request #3530 from dexidp/dependabot/go_modules/github.com…
sagikazarmark May 28, 2024
a5a47ef
Merge pull request #3535 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark May 28, 2024
088c3e5
build(deps): bump docker/login-action from 3.1.0 to 3.2.0 (#3551)
dependabot[bot] May 29, 2024
b057594
Google: Implement groups fetch by default service account from metada…
vsychov May 29, 2024
bea63b9
build(deps): bump golang from `ff6ab2b` to `d1a601b` (#3550)
dependabot[bot] May 29, 2024
c8187ab
build(deps): bump aquasecurity/trivy-action from 0.20.0 to 0.21.0 (#3…
dependabot[bot] May 29, 2024
cdfe6f5
Fix slight grammar errors. (#3538)
adeinega May 29, 2024
caae8a8
Bump google.golang.org/grpc to v1.64.0 (#3553)
nabokihms May 29, 2024
569e0cc
build(deps): bump go.etcd.io/etcd/client/pkg/v3 from 3.5.13 to 3.5.14…
dependabot[bot] May 31, 2024
064a409
OIDC connector option to override jwksURI (#3543)
sohgaura May 31, 2024
d7d82b6
build(deps): bump go.etcd.io/etcd/client/v3 from 3.5.13 to 3.5.14 (#3…
dependabot[bot] May 31, 2024
8e59b6d
Look for secrets before using them (#2918)
jsoref May 31, 2024
0b6a783
use slog for structured logging (#3502)
seankhliao Jun 1, 2024
f3ef7d4
feat: allow domain names or IDs in keystone connector (#3506)
cardoe Jun 3, 2024
7b37bbb
Build containers for branches (#3560)
nabokihms Jun 3, 2024
9769f9b
build(deps): bump github/codeql-action from 3.25.6 to 3.25.7 (#3561)
dependabot[bot] Jun 3, 2024
203b084
Fix slog nil pointer error (#3563)
nabokihms Jun 3, 2024
369707b
Fix trivy scanning job (#3564)
nabokihms Jun 3, 2024
23efe92
Bump gomplate 3.11.8 (#3565)
nabokihms Jun 3, 2024
a174846
Prevent double clicking of the submit button on login (#3554)
pcorliss Jun 13, 2024
50e0892
build(deps): bump github.com/spf13/cobra in /examples (#3582)
dependabot[bot] Jun 17, 2024
17a9c1c
build(deps): bump actions/attest-build-provenance from 1.1.2 to 1.3.1…
dependabot[bot] Jun 17, 2024
1189cc0
build(deps): bump docker/build-push-action from 5.3.0 to 6.3.0
dependabot[bot] Jul 4, 2024
e785de8
build(deps): bump distroless/static-debian12 from `e9ac71e` to `8dd8d3c`
dependabot[bot] Jul 5, 2024
6f809c8
build(deps): bump google.golang.org/grpc
dependabot[bot] Jul 9, 2024
e51440a
build(deps): bump aquasecurity/trivy-action from 0.21.0 to 0.24.0
dependabot[bot] Jul 10, 2024
092f414
build(deps): bump google.golang.org/grpc from 1.64.0 to 1.65.0
dependabot[bot] Jul 10, 2024
3d7370a
build(deps): bump actions/dependency-review-action from 4.3.2 to 4.3.4
dependabot[bot] Jul 12, 2024
deaaa2b
build(deps): bump github/codeql-action from 3.25.7 to 3.25.12
dependabot[bot] Jul 15, 2024
8854ffb
Merge pull request #3619 from dexidp/dependabot/github_actions/github…
sagikazarmark Jul 15, 2024
5f4aa3e
Merge pull request #3618 from dexidp/dependabot/github_actions/action…
sagikazarmark Jul 15, 2024
f334bfb
Merge pull request #3617 from dexidp/dependabot/go_modules/google.gol…
sagikazarmark Jul 15, 2024
68883b3
Merge pull request #3615 from dexidp/dependabot/github_actions/aquase…
sagikazarmark Jul 15, 2024
6aa5ab7
Merge pull request #3612 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark Jul 15, 2024
fddabe1
Merge pull request #3604 from dexidp/dependabot/docker/distroless/sta…
sagikazarmark Jul 15, 2024
fd19c90
build(deps): bump golang.org/x/net from 0.25.0 to 0.27.0
dependabot[bot] Jul 15, 2024
e0433e3
build(deps): bump golang.org/x/crypto from 0.23.0 to 0.25.0
dependabot[bot] Jul 15, 2024
c76a573
Merge pull request #3603 from dexidp/dependabot/github_actions/docker…
sagikazarmark Jul 15, 2024
f4c2e67
build(deps): bump github.com/coreos/go-oidc/v3 in /examples
dependabot[bot] Jul 15, 2024
12c54e2
build(deps): bump alpine from 3.20.0 to 3.20.1
dependabot[bot] Jul 15, 2024
56397a9
Merge pull request #3609 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark Jul 15, 2024
5a27b66
Merge pull request #3606 from dexidp/dependabot/go_modules/golang.org…
sagikazarmark Jul 15, 2024
862317d
Merge pull request #3605 from dexidp/dependabot/go_modules/golang.org…
sagikazarmark Jul 15, 2024
7d27fcc
Merge pull request #3591 from dexidp/dependabot/docker/alpine-3.20.1
sagikazarmark Jul 15, 2024
2f72d20
build(deps): bump google.golang.org/grpc in /examples
dependabot[bot] Jul 15, 2024
2891d29
build(deps): bump golang.org/x/oauth2 from 0.20.0 to 0.21.0
dependabot[bot] Jul 15, 2024
57749f4
Merge pull request #3600 from dexidp/dependabot/go_modules/examples/g…
sagikazarmark Jul 15, 2024
9024d4c
Merge pull request #3567 from dexidp/dependabot/go_modules/golang.org…
sagikazarmark Jul 15, 2024
6fca251
Gracefully handle no args being passed to entrypoint (#3589)
rgmz Jul 15, 2024
bd73825
new Prometheus metrics build_info (#3558)
nlamirault Jul 15, 2024
fb20f3f
fix: always retrieve github emails when `preferredEmailDomain` is set…
thesuperzapper Jul 15, 2024
bacb76f
build(deps): bump github.com/coreos/go-oidc/v3 from 3.10.0 to 3.11.0 …
dependabot[bot] Jul 16, 2024
4c8f5a4
build(deps): bump actions/checkout from 4.1.6 to 4.1.7 (#3621)
dependabot[bot] Jul 16, 2024
f5e1ed8
build(deps): bump docker/setup-qemu-action from 3.0.0 to 3.1.0 (#3625)
dependabot[bot] Jul 16, 2024
2669b61
build(deps): bump actions/attest-build-provenance from 1.3.1 to 1.3.3…
dependabot[bot] Jul 16, 2024
b07e1bc
gRPC Connectors API (#3245)
twoojoo Jul 16, 2024
c4bd537
build(deps): bump google.golang.org/protobuf from 1.34.1 to 1.34.2 (#…
dependabot[bot] Jul 17, 2024
90fa5d7
build(deps): bump anchore/sbom-action from 0.16.0 to 0.17.0 (#3630)
dependabot[bot] Jul 17, 2024
6f952cc
build(deps): bump github.com/go-jose/go-jose/v4 from 4.0.2 to 4.0.3 (…
dependabot[bot] Jul 17, 2024
b66befa
build(deps): bump actions/setup-go from 5.0.1 to 5.0.2 (#3622)
dependabot[bot] Jul 17, 2024
f4e420d
build(deps): bump docker/build-push-action from 6.3.0 to 6.4.0 (#3623)
dependabot[bot] Jul 17, 2024
9d844a2
build(deps): bump docker/setup-buildx-action from 3.3.0 to 3.4.0 (#3629)
dependabot[bot] Jul 17, 2024
c92ecb5
build(deps): bump github.com/AppsFlyer/go-sundheit from 0.5.0 to 0.5.…
dependabot[bot] Jul 18, 2024
fae1e6c
build(deps): bump docker/build-push-action from 6.4.0 to 6.4.1 (#3633)
dependabot[bot] Jul 18, 2024
23a53a8
build(deps): bump github.com/spf13/cobra from 1.8.0 to 1.8.1 (#3634)
dependabot[bot] Jul 18, 2024
849d601
Pass ctx with http.Client to verifier for OIDC connector (#3641)
jack-r-warren Jul 24, 2024
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
6 changes: 6 additions & 0 deletions .envrc
Original file line number Diff line number Diff line change
@@ -0,0 +1,6 @@
if ! has nix_direnv_version || ! nix_direnv_version 1.5.0; then
source_url "https://raw.githubusercontent.com/nix-community/nix-direnv/1.5.0/direnvrc" "sha256-carKk9aUFHMuHt+IWh74hFj58nY4K3uywpZbwXX0BTI="
fi
use flake

dotenv_if_exists
38 changes: 0 additions & 38 deletions .github/ISSUE_TEMPLATE/bug_report.md

This file was deleted.

102 changes: 102 additions & 0 deletions .github/ISSUE_TEMPLATE/bug_report.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,102 @@
name: 🐛 Bug report
description: Report a bug to help us improve Dex
body:
- type: markdown
attributes:
value: |
Thank you for submitting a bug report!

Please fill out the template below to make it easier to debug your problem.

If you are not sure if it is a bug or not, you can contact us via the available [support channels](https://github.com/dexidp/dex/issues/new/choose).
- type: checkboxes
attributes:
label: Preflight Checklist
description: Please ensure you've completed all of the following.
options:
- label: I agree to follow the [Code of Conduct](https://github.com/dexidp/dex/blob/master/.github/CODE_OF_CONDUCT.md) that this project adheres to.
required: true
- label: I have searched the [issue tracker](https://www.github.com/dexidp/dex/issues) for an issue that matches the one I want to file, without success.
required: true
- label: I am not looking for support or already pursued the available [support channels](https://github.com/dexidp/dex/issues/new/choose) without success.
required: true
- type: input
attributes:
label: Version
description: What version of Dex are you running?
placeholder: 2.29.0
validations:
required: true
- type: dropdown
attributes:
label: Storage Type
description: Which persistent storage type are you using?
options:
- etcd
- Kubernetes
- In-memory
- Postgres
- MySQL
- SQLite
validations:
required: true
- type: dropdown
attributes:
label: Installation Type
description: How did you install Dex?
options:
- Binary
- Official container image
- Official Helm chart
- Custom container image
- Custom Helm chart
- Other (specify below)
multiple: true
validations:
required: true
- type: textarea
attributes:
label: Expected Behavior
description: A clear and concise description of what you expected to happen.
validations:
required: true
- type: textarea
attributes:
label: Actual Behavior
description: A clear description of what actually happens.
validations:
required: true
- type: textarea
attributes:
label: Steps To Reproduce
description: Steps to reproduce the behavior if it is not self-explanatory.
placeholder: |
1. In this environment...
2. With this config...
3. Run '...'
4. See error...
- type: textarea
attributes:
label: Additional Information
description: Links? References? Anything that will give us more context about the issue that you are encountering!
- type: textarea
attributes:
label: Configuration
description: Contents of your configuration file (if relevant).
render: yaml
placeholder: |
issuer: http://127.0.0.1:5556/dex

storage:
# ...

connectors:
# ...

staticClients:
# ...
- type: textarea
attributes:
label: Logs
description: Dex application logs (if relevant).
render: shell
10 changes: 9 additions & 1 deletion .github/ISSUE_TEMPLATE/config.yml
Original file line number Diff line number Diff line change
@@ -1,8 +1,12 @@
blank_issues_enabled: false
contact_links:
- name: 📖 Documentation enhancement
url: https://github.com/dexidp/website/issues
about: Suggest an improvement to the documentation

- name: ❓ Ask a question
url: https://github.com/dexidp/dex/discussions/new?category=q-a
about: Ask and discuss questions with other Dex community members
about: Ask and discuss questions with other Dex community members

- name: 📚 Documentation
url: https://dexidp.io/docs/
Expand All @@ -11,3 +15,7 @@ contact_links:
- name: 💬 Slack channel
url: https://cloud-native.slack.com/messages/dexidp
about: Please ask and answer questions here

- name: 💡 Dex Enhancement Proposal
url: https://github.com/dexidp/dex/tree/master/enhancements/README.md
about: Open a proposal for significant architectural change
20 changes: 0 additions & 20 deletions .github/ISSUE_TEMPLATE/feature_request.md

This file was deleted.

40 changes: 40 additions & 0 deletions .github/ISSUE_TEMPLATE/feature_request.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,40 @@
name: 🎉 Feature request
description: Suggest an idea for Dex
body:
- type: markdown
attributes:
value: |
Thank you for submitting a feature request!

Please describe what you would like to change/add and why in detail by filling out the template below.

If you are not sure if your request fits into Dex, you can contact us via the available [support channels](https://github.com/dexidp/dex/issues/new/choose).
- type: checkboxes
attributes:
label: Preflight Checklist
description: Please ensure you've completed all of the following.
options:
- label: I agree to follow the [Code of Conduct](https://github.com/dexidp/dex/blob/master/.github/CODE_OF_CONDUCT.md) that this project adheres to.
required: true
- label: I have searched the [issue tracker](https://www.github.com/dexidp/dex/issues) for an issue that matches the one I want to file, without success.
required: true
- type: textarea
attributes:
label: Problem Description
description: A clear and concise description of the problem you are seeking to solve with this feature request.
validations:
required: true
- type: textarea
attributes:
label: Proposed Solution
description: A clear and concise description of what would you like to happen.
validations:
required: true
- type: textarea
attributes:
label: Alternatives Considered
description: A clear and concise description of any alternative solutions or features you've considered.
- type: textarea
attributes:
label: Additional Information
description: Add any other context about the problem here.
14 changes: 1 addition & 13 deletions .github/PULL_REQUEST_TEMPLATE.md
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
<!--
Thank you for sending a pull request! Here some tips for contributors:
Thank you for sending a pull request! Here are some tips for contributors:

1. Fill the description template below.
2. Sign a DCO (if you haven't already signed it).
Expand All @@ -21,15 +21,3 @@ Thank you for sending a pull request! Here some tips for contributors:
-->

#### Special notes for your reviewer

#### Does this PR introduce a user-facing change?

<!--
If no, just write "NONE" in the release-note block below.
If yes, a release note is required:
Enter your extended release note in the block below. If the PR requires additional action from users switching to the new release, include the string "action required".
-->

```release-note

```
24 changes: 24 additions & 0 deletions .github/SECURITY.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,24 @@
# Security Policy

## Reporting a vulnerability

To report a vulnerability, send an email to [cncf-dex-maintainers@lists.cncf.io](mailto:cncf-dex-maintainers@lists.cncf.io)
detailing the issue and steps to reproduce. The reporter(s) can expect a
response within 48 hours acknowledging the issue was received. If a response is
not received within 48 hours, please reach out to any maintainer directly
to confirm receipt of the issue.

## Review Process

Once a maintainer has confirmed the relevance of the report, a draft security
advisory will be created on GitHub. The draft advisory will be used to discuss
the issue with maintainers, the reporter(s).
If the reporter(s) wishes to participate in this discussion, then provide
reporter GitHub username(s) to be invited to the discussion. If the reporter(s)
does not wish to participate directly in the discussion, then the reporter(s)
can request to be updated regularly via email.

If the vulnerability is accepted, a timeline for developing a patch, public
disclosure, and patch release will be determined. The reporter(s) are expected
to participate in the discussion of the timeline and abide by agreed upon dates
for public disclosure.
14 changes: 14 additions & 0 deletions .github/dependabot.yml → .github/dependabot.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -8,6 +8,20 @@ updates:
schedule:
interval: "daily"

- package-ecosystem: "gomod"
directory: "/api/v2"
labels:
- "area/dependencies"
schedule:
interval: "daily"

- package-ecosystem: "gomod"
directory: "/examples"
labels:
- "area/dependencies"
schedule:
interval: "daily"

- package-ecosystem: "docker"
directory: "/"
labels:
Expand Down
30 changes: 30 additions & 0 deletions .github/release.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,30 @@
changelog:
exclude:
labels:
- release-note/ignore
categories:
- title: Exciting New Features 🎉
labels:
- kind/feature
- release-note/new-feature
- title: Enhancements 🚀
labels:
- kind/enhancement
- release-note/enhancement
- title: Bug Fixes 🐛
labels:
- kind/bug
- release-note/bug-fix
- title: Breaking Changes 🛠
labels:
- release-note/breaking-change
- title: Deprecations ❌
labels:
- release-note/deprecation
- title: Dependency Updates ⬆️
labels:
- area/dependencies
- release-note/dependency-update
- title: Other Changes
labels:
- "*"
47 changes: 47 additions & 0 deletions .github/workflows/analysis-scorecard.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,47 @@
name: OpenSSF Scorecard

on:
branch_protection_rule:
push:
branches: [ main ]
schedule:
- cron: '30 0 * * 5'

permissions:
contents: read

jobs:
analyze:
name: Analyze
runs-on: ubuntu-latest

permissions:
actions: read
contents: read
id-token: write
security-events: write

steps:
- name: Checkout repository
uses: actions/checkout@692973e3d937129bcbf40652eb9f2f61becf3332 # v4.1.7
with:
persist-credentials: false

- name: Run analysis
uses: ossf/scorecard-action@dc50aa9510b46c811795eb24b2f1ba02a914e534 # v2.3.3
with:
results_file: results.sarif
results_format: sarif
publish_results: true

- name: Upload results as artifact
uses: actions/upload-artifact@a8a3f3ad30e3422c9c7b888a15615d19a852ae32 # v3.1.3
with:
name: OpenSSF Scorecard results
path: results.sarif
retention-days: 5

- name: Upload results to GitHub Security tab
uses: github/codeql-action/upload-sarif@4fa2a7953630fd2f3fb380f21be14ede0169dd4f # v3.25.12
with:
sarif_file: results.sarif
Loading