Commit Graph

17255 Commits

Author SHA1 Message Date
x032205
2c736c7a5d address reviews 2025-12-08 15:45:38 -05:00
=
24d7bcf0b3 feat: improved ui based of feedback 2025-12-09 01:51:24 +05:30
x032205
10e9eebc25 Merge branch 'main' into PLATFRM-114 2025-12-08 12:56:20 -05:00
Victor Hugo dos Santos
33b12ad417 Merge pull request #4989 from Infisical/feature/aws-iam-pam
feature(pam): add support to AWS IAM PAM
2025-12-08 14:52:55 -03:00
Victor Santos
2e4a1acd03 fix: enhance error messaging and improve resource selection in PAM components
- Updated error message in AWS IAM resource factory to include the PAM role ARN for better debugging.
- Added functionality to clear the search input when a value is selected in the ResourceSelect component, improving user experience.
- Refactored AwsIamAccountForm to fetch PAM resource details based on account or provided resourceId and resourceType, ensuring accurate role ARN usage in trust policy.
2025-12-08 14:28:05 -03:00
Victor Santos
d09849d9dc refactor: update PAM session status handling and improve enum definitions
- Changed PAM session status from 'Expired' to 'Ended' in the database update logic and service layer for clarity.
- Updated the PamSessionStatus enum to consolidate the definitions of 'Ended' and 'Expired', reflecting that 'Ended' can result from both user action and automatic expiration.
- Removed references to 'Expired' in the frontend components and adjusted related UI elements for consistency.
2025-12-08 12:19:19 -03:00
varonix
a6631217f1 Merge pull request #4990 from Infisical/fix-additional-privilege-old-projects
fix(additional-privileges): return correct project membership ID
2025-12-08 03:25:01 -05:00
x032205
e1ab9d4e42 lint 2025-12-08 00:35:19 -05:00
x032205
1d7ab2af69 request & grant cleanup job 2025-12-08 00:25:51 -05:00
x032205
4f41673c38 audit log all endpoints 2025-12-07 23:51:22 -05:00
x032205
bfb682b715 grant permissions 2025-12-07 22:26:41 -05:00
x032205
2fe316c81c approval request permissions 2025-12-07 22:16:31 -05:00
Victor Santos
a0718321e7 fix: improve error handling in AWS IAM role assumption methods
- Added try-catch blocks to handle errors during role assumption in both assumePamRole and assumeTargetRole functions.
- Enhanced error messages to include specific details about the failure, improving debugging and user feedback.
- Updated console URL generation to directly use the SigninToken from the token response, ensuring correct URL formation.
2025-12-07 20:48:15 -03:00
Victor Santos
3e77c33532 feat: enhance AWS IAM resource handling with new gateway access schema and improved project ID management
- Introduced GatewayAccessResponseSchema for consistent response structures across Postgres, MySQL, and SSH resources.
- Updated PAM account router to utilize the new schema, streamlining response validation.
- Refactored AWS IAM service to improve project ID handling during role assumption and credential management.
- Enhanced AWS IAM resource schemas to support gateway-specific configurations, improving flexibility and type safety.
2025-12-07 20:32:59 -03:00
=
fcd8e28b76 feat: reorganization of files and more ui changes 2025-12-07 20:10:17 +05:30
=
75de20132e fix: resolved path incorrect joining 2025-12-07 20:09:55 +05:30
=
75e15b2831 feat: added grant management screen and cancel for request 2025-12-07 18:47:03 +05:30
=
5d580f9d4b feat: resolved changes made in backend 2025-12-07 16:58:38 +05:30
=
273a899500 fix: corrected update backend schema 2025-12-07 16:58:27 +05:30
=
f4cf0c3545 feat: improved ui for request detail table 2025-12-07 14:41:15 +05:30
=
2a783d3057 feat: returns the membership group information in permission 2025-12-07 14:40:14 +05:30
x032205
68eef39dd7 grant endpoints 2025-12-06 20:25:42 -05:00
x032205
c60c397e6a get rid of resource from policies, only using account path 2025-12-06 19:48:24 -05:00
x032205
6c7d708c98 generate pam access grant as part of post approval flow 2025-12-06 19:44:57 -05:00
x032205
89c1c5ffc4 cancel requests endpoint 2025-12-06 18:11:41 -05:00
x032205
e82d810ac7 allow resourceId to be undefined 2025-12-06 17:59:01 -05:00
x032205
8b22e7c417 lint & a few fixes 2025-12-06 17:55:07 -05:00
x032205
3694658203 swap durations to string format & a few db migration changes 2025-12-06 16:31:34 -05:00
Daniel Hougaard
20570094be Update types.tsx 2025-12-06 09:39:46 -05:00
Daniel Hougaard
0f3108f6fb fix: removed projectMembershipId entirely 2025-12-06 09:37:25 -05:00
=
6a292838ff fix: corrected folder path 2025-12-06 14:31:33 +05:30
=
9b1dee101d feat: completed request list page 2025-12-06 14:21:50 +05:30
=
f6180f8c12 feat: implemented approval request hooks 2025-12-06 14:21:50 +05:30
=
22b6e304d8 feat: completed policy management ui 2025-12-06 14:21:50 +05:30
=
d192f1e3e1 feat: added hooks for policies 2025-12-06 14:21:50 +05:30
x032205
bb60fb2f08 approval requests 2025-12-06 14:21:49 +05:30
x032205
e34df4c6e5 list policies endpoint 2025-12-06 14:21:49 +05:30
x032205
24f7445d56 fix policy matching 2025-12-06 14:21:49 +05:30
x032205
5859293c33 policy api improvements 2025-12-06 14:20:49 +05:30
x032205
18256d6af2 partial factory, endpoint, and service implementation 2025-12-06 14:20:48 +05:30
x032205
62cd45d0c5 Database schema 2025-12-06 14:11:54 +05:30
Victor Santos
69fd05bc1e style: enhance UI elements in AWS IAM forms with transition effects
- Updated the target role and AWS IAM role setup sections to include a transition effect on hover, improving user experience and visual feedback.
- Ensured consistency in styling across both AWS IAM account and resource forms.
2025-12-05 17:43:01 -03:00
Victor Santos
c5169217a4 refactor: streamline account path handling in PAM components
- Updated PamAccessAccountModal and PamAccountsTable to simplify account path construction by removing leading and trailing slashes.
- Enhanced readability and consistency in path handling across components.
2025-12-05 17:09:59 -03:00
Victor Santos
6db5188b36 feat: update AWS IAM session duration handling and improve account access functionality
- Changed session duration parameter from maxSessionDuration to defaultSessionDuration for consistency.
- Refactored AWS STS client creation to use a hardcoded default region, simplifying the configuration.
- Enhanced PAM account access modal to include account path and project ID in the access request.
- Updated various components and schemas to reflect the new session duration naming and improve type safety.
2025-12-05 16:56:55 -03:00
Piyush Gupta
1269e7c245 Merge pull request #4976 from Infisical/chore/external-kms-api-refactor
chore: external-kms API refactor
2025-12-06 01:23:05 +05:30
Piyush Gupta
32ecbd2d6d fix: edge cases 2025-12-05 23:46:37 +05:30
carlosmonastyrski
bf93644ce0 Merge pull request #4992 from Infisical/fix/pki-renewals
fix: renewals for internal CAs and minor improvement on the export certificate modal
2025-12-05 15:03:24 -03:00
Carlos Monastyrski
9e1a3c6fe0 Improve pkcs12 error message 2025-12-05 14:55:55 -03:00
Piyush Gupta
1f0daf447e fix: review changes 2025-12-05 22:17:42 +05:30
Victor Santos
feb1d9b854 Merge branch 'main' into feature/aws-iam-pam 2025-12-05 13:29:30 -03:00