Willy Kloucek
1234429a8d
add tokenmanager to userlog to fix startup
2023-03-02 09:03:15 +01:00
David Christofas
b8470d567d
add new permission 'publiclink.create' and assign it to the 'Admin', 'SpaceAdmin' and 'User' roles
2023-03-01 11:53:39 +01:00
Benedikt Kulmann
8fbbaccec6
chore: bump web to v7.0.0-rc.16
2023-03-01 00:14:35 +01:00
kobergj
3fe51f4eb9
prevent userlog service from spreading panics ( #5681 )
...
Signed-off-by: jkoberg <jkoberg@owncloud.com >
2023-02-28 21:35:22 +01:00
David Christofas
0a2fc8d7d4
Merge pull request #5682 from owncloud/graph-education-errors
...
make graph/education API errors more consistent
2023-02-28 20:49:29 +01:00
David Christofas
0fadc79c32
make graph/education API errors more consistent
2023-02-28 15:25:45 +01:00
Martin
6290975c7b
Merge pull request #5680 from owncloud/add_global_envvar
...
Add a global variable for the metadata backend
2023-02-28 13:09:31 +01:00
mmattel
f526326d67
Add a global variable for the metadata backend
2023-02-28 11:09:52 +01:00
Benedikt Kulmann
b5954caa5b
chore: bump web to v7.0.0-rc.15
2023-02-28 09:27:38 +01:00
Martin
473cc7dae6
Merge pull request #5656 from jacobgkau/portrait-thumbnails
...
thumbnails: Add portrait resolutions to default config
2023-02-27 09:43:21 +01:00
Jacob Kauffmann
a742e943df
thumbnails: Add portrait resolutions to default config
2023-02-26 12:34:33 -07:00
jkoberg
afdb0d3908
fix panic from userlog service
...
Signed-off-by: jkoberg <jkoberg@owncloud.com >
2023-02-24 10:17:15 +01:00
Martin
fd5790d8dd
Merge pull request #5610 from kobergj/UserlogService
...
Userlog Service
2023-02-23 15:33:12 +01:00
jkoberg
a9561d85c8
sharpen userlog service
...
Signed-off-by: jkoberg <jkoberg@owncloud.com >
2023-02-23 14:21:56 +01:00
Martin
53cb40ff5e
Merge pull request #5634 from owncloud/update_quota_text
...
[docs-only] Update quota related texts and descriptions
2023-02-23 12:43:43 +01:00
jkoberg
733c9c25e5
add comments to exported structs
...
Signed-off-by: jkoberg <jkoberg@owncloud.com >
2023-02-23 11:44:23 +01:00
Jörn Friedrich Dreyer
a5fb068650
[full-ci] Bump reva to include ini metadata backend ( #5613 )
...
* bump reva
Signed-off-by: Jörn Friedrich Dreyer <jfd@butonic.de >
* default to ini backend
Signed-off-by: Jörn Friedrich Dreyer <jfd@butonic.de >
* bump reva, add metadata backend config
Signed-off-by: Jörn Friedrich Dreyer <jfd@butonic.de >
* update changelog
Signed-off-by: Jörn Friedrich Dreyer <jfd@butonic.de >
* fix tag
Signed-off-by: Jörn Friedrich Dreyer <jfd@butonic.de >
* Update services/storage-system/pkg/config/config.go
Co-authored-by: kobergj <jkoberg@owncloud.com >
* fix storage user metadata config desc and env var
Signed-off-by: Jörn Friedrich Dreyer <jfd@butonic.de >
---------
Signed-off-by: Jörn Friedrich Dreyer <jfd@butonic.de >
Co-authored-by: kobergj <jkoberg@owncloud.com >
2023-02-23 10:54:50 +01:00
mmattel
7f706f38cc
update quota text
2023-02-23 10:19:07 +01:00
David Christofas
3fbb6ca2fe
Merge pull request #5617 from owncloud/role-quota
...
add config option to set default quota per role
2023-02-22 17:08:16 +01:00
David Christofas
17b5706cc9
add config options for the max_quota and add the capability value
2023-02-22 16:22:51 +01:00
David Christofas
67549b4ebd
add config option to set default quota per role
2023-02-22 16:22:45 +01:00
Martin
cda2c0e57f
Merge pull request #5615 from owncloud/update_readme_and_descriptions
...
[docs-only] Add a basic storage-users readme only containing cli commands
2023-02-22 13:25:50 +01:00
Ralf Haferkamp
9e73b17a40
idp: Utilize ownCloudUserEnabled Attribute to filter users
...
This adds support for configuring an LDAP Attribute that can be used as a flag
to disallow users to login. We currently default to 'ownCloudUserEnabled' as
used in the default configuration of the graph service.
2023-02-22 11:23:26 +01:00
Ralf Haferkamp
d6bcba48eb
Add 'ownCloudUserEnabled' attribute to demo users
2023-02-22 11:23:26 +01:00
Martin
3e39e49a73
Update services/idp/README.md
2023-02-22 11:13:25 +01:00
Martin
9c7bc86902
Update services/idp/README.md
2023-02-22 11:13:25 +01:00
Martin
d30d042ec1
Update services/idp/README.md
2023-02-22 11:13:25 +01:00
Ralf Haferkamp
5dd374eb7a
Add README for idp service
2023-02-22 11:13:25 +01:00
Martin
21a0c0a90b
Apply suggestions from code review
...
Co-authored-by: Jan <j.ackermann91@gmail.com >
2023-02-22 10:26:00 +01:00
kobergj
68835fa697
Update services/storage-users/README.md
...
Co-authored-by: Martin <github@diemattels.at >
2023-02-22 10:22:04 +01:00
Michael Barz
04afa6d35a
Merge pull request #5607 from owncloud/configurable-bundles
...
load bundles from JSON
2023-02-21 21:58:14 +01:00
Michael Barz
7f6e52c39b
load bundles from JSON
2023-02-21 21:25:33 +01:00
mmattel
24e77820ab
fix quotes
2023-02-21 16:55:43 +01:00
mmattel
d25c600c27
[docs-only] improve eventhistory service readme
2023-02-21 16:37:12 +01:00
mmattel
ef54417b62
Add a basic storage-users readme only containing cli commands
2023-02-21 16:31:49 +01:00
jkoberg
d56565555b
introduce userlog service
...
Signed-off-by: jkoberg <jkoberg@owncloud.com >
2023-02-21 14:25:21 +01:00
kobergj
e631b74032
Merge pull request #5600 from kobergj/EventHistory
...
Eventhistory Service
2023-02-21 14:08:01 +01:00
Ralf Haferkamp
1dab0f7a54
graph: Improve appRoleAssignemts filters
...
This should improve the processing of filters for appRoleAssignments
a bit when combining them with other filters. We try to avoid reading
the full user list if possible. And delay the processing of an
appRoleAssignments filter so we can apply it on a subset of user.
E.g. a filter:
`appRoleAssignments/any(m:m/appRoleId eq 71881883-1768-46bd-a24d-a356a2afdf7f) and memberOf/any(m:m/id eq 509a9dcd-bb37-4f4f-a01a-19dca27d9cfa)`
Will be reordered to first process the memberOf filter (which can be
executed without reading the full user list) and only apply the
appRoleAssignments filter on the resultset of the memberOf filter.
2023-02-21 12:30:59 +01:00
Ralf Haferkamp
1552f6df5a
Add support for $filter on appRoleAssignment
...
This add support for filtering on the `appRoleAssignment` relation of
users. E.g.
```
$filter=appRoleAssignments/any(m:m/appRoleId eq '262982c1-2362-4afa-bfdf-8cbfef64a06e')
```
combining it with a filter on groupMemberShip does also work:
```
$filter=memberOf/any(m:m/id eq '262982c1-2362-4afa-bfdf-8cbfef64a06e') and appRoleAssignments/any(m:m/appRoleId eq 'd7beeea8-8ff4-406b-8fb6-ab2dd81e6b11')
```
The filter is still very inefficient as it always needs to get the full
users list. We need to adapt it to only filter on a subset of users when
using this filter 'and' combined with other filters.
Closes : #5488
2023-02-21 12:30:59 +01:00
Ralf Haferkamp
791c8a6c4f
proxy: Fix provsioning new users with the default role
...
With 078698fdf4 the semantics of the
ListRoleAssignments Call in the settings service change. It no
no longer returns a "not found" error when there is not RoleAssignment
for a user. We'll just get an empty list as the result.
This changes the behaviour of the default role assignment to work with
the new semantics.
2023-02-21 11:19:44 +01:00
jkoberg
c9dfb778a9
sharpen eventhistory service
...
Signed-off-by: jkoberg <jkoberg@owncloud.com >
2023-02-21 10:51:32 +01:00
Daniël Franke
3f39bb530e
Integrate feedback.
2023-02-20 14:40:10 +01:00
Daniël Franke
bea3ec6207
Add refint support to user rename.
...
When refint is enabled on an LDAP server, it will rename all references
to an entity if its DN is modified. If this happens, the member
renames will not be needed, and will also return an error.
This PR does the following:
* Detects the attribute error, and don't return an error.
* Log that the server has been misconfigured.
* Add config value that skips renaming if set.
2023-02-20 14:40:10 +01:00
Willy Kloucek
5a500ea17e
don't init bundles to nil
2023-02-20 12:50:24 +01:00
jkoberg
afe9e220b4
introduce eventhistory service
...
Signed-off-by: jkoberg <jkoberg@owncloud.com >
2023-02-20 10:29:04 +01:00
Willy Kloucek
a2422e8b9d
fix settings service bunldes config merge problems
2023-02-20 08:10:22 +01:00
Benedikt Kulmann
6239e09563
chore: bump web to v7.0.0-rc.14
2023-02-17 22:26:20 +01:00
Daniel Swärd
fcf5783a1b
graph: Add accountEnabled flag to ldap backend. ( #5588 )
...
* graph: Add accountEnabled flag to ldap backend.
* Add missing accountEnabled attribute to user listing.
2023-02-17 13:48:12 +01:00
Michael Barz
794f6cd07c
add constraints to permissions listing ( #5594 )
2023-02-17 13:45:47 +01:00
Michael Barz
eb2347e1db
Merge pull request #5589 from owncloud/settings-roles
...
make the default settings bundles part of the config
2023-02-16 16:05:29 +01:00