-
-
Notifications
You must be signed in to change notification settings - Fork 991
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
core: fix permissions for admin device listing #12787
Conversation
Signed-off-by: Jens Langhammer <[email protected]>
/cherry-pick version-2024.12 |
✅ Deploy Preview for authentik-storybook canceled.
|
✅ Deploy Preview for authentik-docs canceled.
|
Codecov ReportAll modified and coverable lines are covered by tests ✅
✅ All tests successful. No failed tests found. Additional details and impacted files@@ Coverage Diff @@
## main #12787 +/- ##
==========================================
+ Coverage 92.70% 92.76% +0.06%
==========================================
Files 769 769
Lines 38912 38911 -1
==========================================
+ Hits 36072 36097 +25
+ Misses 2840 2814 -26
Flags with carried forward coverage won't be shown. Click here to find out more. ☔ View full report in Codecov by Sentry. |
authentik PR Installation instructions Instructions for docker-composeAdd the following block to your AUTHENTIK_IMAGE=ghcr.io/goauthentik/dev-server
AUTHENTIK_TAG=gh-7cb41391e9152bd7e7a95318d05dfa278418635a
AUTHENTIK_OUTPOSTS__CONTAINER_IMAGE_BASE=ghcr.io/goauthentik/dev-%(type)s:gh-%(build_hash)s Afterwards, run the upgrade commands from the latest release notes. Instructions for KubernetesAdd the following block to your authentik:
outposts:
container_image_base: ghcr.io/goauthentik/dev-%(type)s:gh-%(build_hash)s
global:
image:
repository: ghcr.io/goauthentik/dev-server
tag: gh-7cb41391e9152bd7e7a95318d05dfa278418635a Afterwards, run the upgrade commands from the latest release notes. |
Signed-off-by: Jens Langhammer <[email protected]>
…12791) core: fix permissions for admin device listing (#12787) Signed-off-by: Jens Langhammer <[email protected]> Co-authored-by: Jens L. <[email protected]>
* main: (26 commits) website: bump docusaurus-plugin-openapi-docs from 4.3.1 to 4.3.2 in /website (#12844) core: bump aws-cdk-lib from 2.176.0 to 2.177.0 (#12842) lifecycle/aws: bump aws-cdk from 2.176.0 to 2.177.0 in /lifecycle/aws (#12845) web: Fix issue where Codemirror partially applies OneDark theme. (#12811) ci: fix container build always attempting to push (#12810) lifecycle: better pre release test (#12806) rbac: exclude permissions for internal models (#12803) web: bump store2 from 2.14.3 to 2.14.4 in /web (#12805) website: integrations-all: update doc titles to start with "integrate with" (#12775) web/flows: fix `login` / `log in` inconsistency (#12526) flows: clear flow state before redirecting to final URL (#12788) core: bump goauthentik.io/api/v3 from 3.2024122.2 to 3.2024122.3 (#12793) core: bump kubernetes from 31.0.0 to 32.0.0 (#12794) core: bump pydantic from 2.10.5 to 2.10.6 (#12795) core: bump msgraph-sdk from 1.17.0 to 1.18.0 (#12796) core: bump selenium from 4.28.0 to 4.28.1 (#12797) core: bump ruff from 0.9.2 to 0.9.3 (#12798) website/integrations: Add troubleshooting part to Synology guide (#12681) core: fix permissions for admin device listing (#12787) website/docs: Flesh out Google Workspaces SAML. (#12701) ...
Details
Previously we required view permissions for all device types to access this endpoint. This PR changes the behaviour to filter based on the accessible devices by view permission
Checklist
ak test authentik/
)make lint-fix
)If an API change has been made
make gen-build
)If changes to the frontend have been made
make web
)If applicable
make website
)