-
Notifications
You must be signed in to change notification settings - Fork 77
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Snyk] Security upgrade org.eclipse.jetty:jetty-deploy from 11.0.15 to 12.0.0 #9761
base: main
Are you sure you want to change the base?
Conversation
* Prefixed bootstrap properties CEDERLING_ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Signed-off-by: Michael Schwartz * Edits to Cedarling docs ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Signed-off-by: Michael Schwartz
…e buckets (#9003) * feat(jans-linux-setup): overwrite minimum mem allocation for couchbase buckets Signed-off-by: Mustafa Baser <mbaser@mail.com> * fix(jans-linux-setup): add custom libs to jans-auth if any Signed-off-by: Mustafa Baser <mbaser@mail.com> --------- Signed-off-by: Mustafa Baser <mbaser@mail.com>
Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com> Co-authored-by: Mohammad Abudayyeh <47318409+moabu@users.noreply.github.com>
…8960) * feat(cloud-native): modify images to conform to configuration schema Signed-off-by: iromli <isman.firmansyah@gmail.com> * fix: allow empty value for configmaps and secrets Signed-off-by: iromli <isman.firmansyah@gmail.com> * docs(cloud-native): conform to new configuration schema Signed-off-by: iromli <isman.firmansyah@gmail.com> * fix: revert allow empty value for configmaps and secrets Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore(charts): conform to new configuration schema Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore: update JANS_SOURCE_VERSION Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore: conform to optional_scopes configmap changes Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore: update JANS_SOURCE_VERSION Signed-off-by: iromli <isman.firmansyah@gmail.com> * docs(charts): update configurator reference docs Signed-off-by: iromli <isman.firmansyah@gmail.com> --------- Signed-off-by: iromli <isman.firmansyah@gmail.com> Co-authored-by: Mohammad Abudayyeh <47318409+moabu@users.noreply.github.com>
* docs: correct typos in scim docs * docs: correct typos in scim docs Signed-off-by: Rehket <aalbright425@gmail.com> --------- Signed-off-by: Rehket <aalbright425@gmail.com> Co-authored-by: Dhaval D <343411+ossdhaval@users.noreply.github.com>
Signed-off-by: moabu <47318409+moabu@users.noreply.github.com>
* feat(cloud-native): import SSL cert of internal proxy service Signed-off-by: iromli <isman.firmansyah@gmail.com> * docs(cloud-native): update docker-jans-config-api reference Signed-off-by: iromli <isman.firmansyah@gmail.com> --------- Signed-off-by: iromli <isman.firmansyah@gmail.com> Co-authored-by: Mohammad Abudayyeh <47318409+moabu@users.noreply.github.com>
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Signed-off-by: Michael Schwartz Co-authored-by: Mohammad Abudayyeh <47318409+moabu@users.noreply.github.com>
* docs(jans-lock): add default schema Signed-off-by: SafinWasi <6601566+SafinWasi@users.noreply.github.com> * docs(jans-lock): update names and location Signed-off-by: SafinWasi <6601566+SafinWasi@users.noreply.github.com> --------- Signed-off-by: SafinWasi <6601566+SafinWasi@users.noreply.github.com> Co-authored-by: Mohammad Abudayyeh <47318409+moabu@users.noreply.github.com>
Signed-off-by: Mustafa Baser <mbaser@mail.com>
#9024) * feat(jans-auth-server): introduce client authentication custom script #8081 Signed-off-by: YuriyZ <yzabrovarniy@gmail.com> * feat(jans-auth-server): added external client authn context for custom script #8081 Signed-off-by: YuriyZ <yzabrovarniy@gmail.com> * feat(jans-auth-server): added external client authn service #8081 Signed-off-by: YuriyZ <yzabrovarniy@gmail.com> * feat(jans-auth-server): injected external client authn service into authentication filter #8081 Signed-off-by: YuriyZ <yzabrovarniy@gmail.com> * feat(jans-auth-server): added client authn sample script #8081 Signed-off-by: YuriyZ <yzabrovarniy@gmail.com> * doc(jans-auth-server): added documentation for new client authn custom script #8081 Signed-off-by: YuriyZ <yzabrovarniy@gmail.com> --------- Signed-off-by: YuriyZ <yzabrovarniy@gmail.com>
Signed-off-by: Mustafa Baser <mbaser@mail.com>
Signed-off-by: Mustafa Baser <mbaser@mail.com>
Signed-off-by: Mustafa Baser <mbaser@mail.com>
…9042) * Lock Docs Update ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Signed-off-by: Michael Schwartz * Lock Diagram Update ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Signed-off-by: Michael Schwartz * docs(lock): proofread and fix Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com> * docs(lock): proofread and fix Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com> * docs(lock): nav changes Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com> --------- Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com> Signed-off-by: Dhaval D <343411+ossdhaval@users.noreply.github.com> Co-authored-by: ossdhaval <343411+ossdhaval@users.noreply.github.com>
…9044) Signed-off-by: iromli <isman.firmansyah@gmail.com> Co-authored-by: Mohammad Abudayyeh <47318409+moabu@users.noreply.github.com>
* feat(config-api): lock endpoind wip Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): telemetry audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoints Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoints Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoints Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoints Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock telemery endpoint - wip Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat:(config-api): lock telemetry endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): sync with origin Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock telemetry endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock telemetry audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat: audit health endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api); lock health endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock log audit Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api) lock telemetry endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoints Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock audit endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(jans-linux-setup): jans-lock client Signed-off-by: Mustafa Baser <mbaser@mail.com> --------- Signed-off-by: pujavs <pujas.works@gmail.com> Signed-off-by: Mustafa Baser <mbaser@mail.com> Co-authored-by: Mustafa Baser <mbaser@mail.com> Co-authored-by: Mohammad Abudayyeh <47318409+moabu@users.noreply.github.com>
Signed-off-by: Mustafa Baser <mbaser@mail.com>
* fix(jans-lock): fix lock startup in jans-auth service mode Signed-off-by: Yuriy Movchan <Yuriy.Movchan@gmail.com> * fix(jans-lock): fix lock startup in jans-auth service mode --------- Signed-off-by: Yuriy Movchan <Yuriy.Movchan@gmail.com>
#9066) Signed-off-by: iromli <isman.firmansyah@gmail.com>
* docs: create custom asset config document Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com> * docs(config): proofreading Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com> * docs(config): minor updates Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com> * docs: fix format issue Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com> * docs(config): fix add and update sections Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com> --------- Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com>
…#9070) Signed-off-by: Mustafa Baser <mbaser@mail.com>
* docs(ldap): ldap config add-update document changes Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com> * docs(config): update LDAP conf instructions Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com> --------- Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com>
* docs(config): fix format issue and add new outputs Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com> * docs(custom-assests): fix format issue Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com> --------- Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com>
Signed-off-by: shekhar16 <shekharlaad1609@gmail.com>
…ost-setup (#9079) Signed-off-by: Mustafa Baser <mbaser@mail.com>
Signed-off-by: ossdhaval <343411+ossdhaval@users.noreply.github.com>
Signed-off-by: iromli <isman.firmansyah@gmail.com>
Update logmanager.sh Refactoring log manager script for Janssen setup Signed-off-by: mzico <mohib@gluu.org>
Signed-off-by: Mustafa Baser <mbaser@mail.com>
…instead (#9739) * fix(config-api): asset mgt endpoint fixes Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): asset upload mgt ehancement and fido Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): asset upload mgt ehancement and fido Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): asset upload mgt ehancement and fido Signed-off-by: pujavs <pujas.works@gmail.com> * fix(config-api): asset upload Signed-off-by: pujavs <pujas.works@gmail.com> * fix(config-api): lock review comments Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock code review comments Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock master renamed to lock server Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock master renamed to lock server Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock master renamed to lock server Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock master renamed to lock server Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): fido2 delete functionality Signed-off-by: pujavs <pujas.works@gmail.com> * fix(config-api): acr validation Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): doc(config-api): IDP schema attribute descriptions #9187 Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): sync with main Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): uploading assets via API generates 2 entries #9178 Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): asset mgt, fido and IDP changes Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): fido2 device endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): fido2 endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): fido2 endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): sync with main Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): sync with main Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): sync with main Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): resolved sonar review issues Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): sonar review comment fix Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): swagger spec Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): saml config attribute description Signed-off-by: pujavs <pujas.works@gmail.com> * doc(config-api): added SAML attribute description Signed-off-by: pujavs <pujas.works@gmail.com> * doc(config-api): added SAML attribute description Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): sync with main Signed-off-by: pujavs <pujas.works@gmail.com> * fix(jans-lock): code review comment fix isssue#9305 Signed-off-by: pujavs <pujas.works@gmail.com> * fix(jans-lock): code review comment fix isssue#9305 Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock review point Signed-off-by: pujavs <pujas.works@gmail.com> * fix(lock): code review comment Signed-off-by: pujavs <pujas.works@gmail.com> * fix(lock): code review comment Signed-off-by: pujavs <pujas.works@gmail.com> * fix(config-api): sync with main Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): lock endpoint fixes and SAML IDP NPE Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): asset enhancement Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): implement timer for asset mgt to fetch and deploy assets forconfig-api #9403 Signed-off-by: pujavs <pujas.works@gmail.com> * fix(config-api): scope validation issue #9426 Signed-off-by: pujavs <pujas.works@gmail.com> * fix(config-api): asset delete error fix Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): sysnc with main Signed-off-by: pujavs <pujas.works@gmail.com> * fix(config-ap): lock audit endpoint parameter declaration error#9460 Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): client token functionality Signed-off-by: pujavs <pujas.works@gmail.com> * fix(Config-api): lock audit endpoint path param rectification Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): clint token endpoint - wip Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): clint token endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): client token endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): client token endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): token endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): token endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): token endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): session ednpoint wip Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): session ednpoint wip Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): session and token endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): session endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): session endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): session and fido2 endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * test(config-api): marked session failing test case Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): asset mgt dir mapping changes wip Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): asset mgt dir changes Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): asset mgt changes for dir Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): asset mgt endpoint -wip Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): asset mgt endpoint Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): custom asset mgt wip Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): custom asset mgt Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): custom asset mgt Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): session endpoint changes to remove sessionId Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api) session endpoint changes to hide id Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api) session endpoint changes to hide id Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): session endpoint mgt Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): session enhancement for removing id Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): session endpoint changes to remove session id Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): session endpoint changes to remove session id Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): session endpoint changes to remove session id Signed-off-by: pujavs <pujas.works@gmail.com> * feat(config-api): session endpoint changes to remove session id Signed-off-by: pujavs <pujas.works@gmail.com> --------- Signed-off-by: pujavs <pujas.works@gmail.com> Co-authored-by: YuriyZ <yzabrovarniy@gmail.com>
* chore(jans-linux-setup): remove ldap Signed-off-by: Mustafa Baser <mbaser@mail.com> * docs(jans-linux-setup): remove ldap related informations Signed-off-by: Mustafa Baser <mbaser@mail.com> * chore(jans-linux-setup): remove opendj schema files Signed-off-by: Mustafa Baser <mbaser@mail.com> * chore(jans-linux-setup): drop unused modules in rdbm installer Signed-off-by: Mustafa Baser <mbaser@mail.com> * chore(jans-linux-setup): code smells Signed-off-by: Mustafa Baser <mbaser@mail.com> --------- Signed-off-by: Mustafa Baser <mbaser@mail.com> Co-authored-by: YuriyZ <yzabrovarniy@gmail.com>
* feat(jans-cedarling): add type hints for cedarling_python Signed-off-by: Oleh Bohzok <olehbozhok@gmail.com> * chore(jans-cedarling): fix mypy errors Signed-off-by: Oleh Bohzok <olehbozhok@gmail.com> * chore(jans-cedarling): remove from tox.ini python version lower than 3.10 Signed-off-by: Oleh Bohzok <olehbozhok@gmail.com> --------- Signed-off-by: Oleh Bohzok <olehbozhok@gmail.com>
Signed-off-by: Mustafa Baser <mbaser@mail.com>
* feat(cloud-native): remove support for ldap persistence Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore(cloud-native): partially remove ldap support from OCI images Signed-off-by: iromli <isman.firmansyah@gmail.com> * fix(docker-jans-scim): remove invalid conditional block Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore(cloud-native): partially remove ldap-related code Signed-off-by: iromli <isman.firmansyah@gmail.com> * feat(cloud-native): add support to migrate from ldap to sql Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore: add notes for ldap3 library Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore: remove ldap-related configuration Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore: remove ldap-related configuration Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore(charts): remove ldap support from janssen chart Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore(charts): remove ldap support from janssen-all-in-one chart Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore(charts): remove unsupported storageClass Signed-off-by: iromli <isman.firmansyah@gmail.com> * docs(cloud-native): update reference docs for k8s env Signed-off-by: iromli <isman.firmansyah@gmail.com> * fix(charts): resolve incorrect conditional block Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore(monolith): remove ldap support Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore(automation): remove ldap support for cloud-native installation Signed-off-by: iromli <isman.firmansyah@gmail.com> * fix(automation): resolve path to k8s reference Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore(workflow): remove LDAP support from microk8s workflow Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore(jans-pycloudlib): revert local changes in favor of main branch Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore: update JANS_SOURCE_VERSION Signed-off-by: iromli <isman.firmansyah@gmail.com> * chore: add missing logger for com.couchbase.client Signed-off-by: iromli <isman.firmansyah@gmail.com> * docs: initial removal of opendj from CN docs Signed-off-by: moabu <47318409+moabu@users.noreply.github.com> * docs: removal of opendj from docs Signed-off-by: moabu <47318409+moabu@users.noreply.github.com> * fix: add missing storageClass Signed-off-by: iromli <isman.firmansyah@gmail.com> * docs: removal of ldap from docs Signed-off-by: Amro Misbah <amromisba7@gmail.com> * chore: update JANS_SOURCE_VERSION Signed-off-by: iromli <isman.firmansyah@gmail.com> --------- Signed-off-by: iromli <isman.firmansyah@gmail.com> Signed-off-by: moabu <47318409+moabu@users.noreply.github.com> Signed-off-by: Amro Misbah <amromisba7@gmail.com> Signed-off-by: Isman Firmansyah <iromli@users.noreply.github.com> Co-authored-by: moabu <47318409+moabu@users.noreply.github.com> Co-authored-by: Amro Misbah <amromisba7@gmail.com>
* fix(jans-linux-setup): jans cli argument Signed-off-by: Mustafa Baser <mbaser@mail.com> * fix(jans-linux-setup): add opt folder to profile path Signed-off-by: Mustafa Baser <mbaser@mail.com> --------- Signed-off-by: Mustafa Baser <mbaser@mail.com>
Signed-off-by: Yuriy Movchan <Yuriy.Movchan@gmail.com> Co-authored-by: YuriyZ <yzabrovarniy@gmail.com>
* feat(jans-orm): add search support in json path Signed-off-by: Yuriy Movchan <Yuriy.Movchan@gmail.com> * feat(jans-orm): add search support in json path Signed-off-by: Yuriy Movchan <Yuriy.Movchan@gmail.com> --------- Signed-off-by: Yuriy Movchan <Yuriy.Movchan@gmail.com>
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JAVA-ORGECLIPSEJETTY-8186141 - https://snyk.io/vuln/SNYK-JAVA-ORGECLIPSEJETTY-8186158 - https://snyk.io/vuln/SNYK-JAVA-ORGECLIPSEJETTY-8186142
DryRun Security SummaryThe code changes for the Janssen Project demonstrate a comprehensive approach to application security by implementing various GitHub Actions workflows that focus on runner hardening, secure authentication, dependency management, vulnerability scanning, code signing, and secure deployment processes. Expand for full summarySummary: The provided code changes cover a wide range of GitHub Actions workflows and configurations for the Janssen Project, an open-source identity and access management (IAM) platform. These changes focus on various aspects of the project's development and deployment processes, with a strong emphasis on application security. The key security-related aspects of these changes include:
Overall, these code changes demonstrate a strong commitment to application security throughout the Janssen Project's development and deployment lifecycle. The use of security-conscious practices, such as hardening the runner, managing sensitive information, and integrating security checks, is a positive sign that the project's maintainers are taking a proactive approach to securing the application. Files Changed:
Code AnalysisWe ran |
d83ad26
to
a787ecd
Compare
a787ecd
to
d5ac016
Compare
Snyk has created this PR to fix 3 vulnerabilities in the maven dependencies of this project.
Snyk changed the following file(s):
jans-config-api/pom.xml
Vulnerabilities that will be fixed with an upgrade:
SNYK-JAVA-ORGECLIPSEJETTY-8186141
11.0.15
->12.0.0
Major version upgrade
Proof of Concept
SNYK-JAVA-ORGECLIPSEJETTY-8186158
11.0.15
->12.0.0
Major version upgrade
Proof of Concept
SNYK-JAVA-ORGECLIPSEJETTY-8186142
11.0.15
->12.0.0
No Known Exploit
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Denial of Service (DoS)