margaretha | 89836f3 | 2019-10-17 10:50:50 +0200 | [diff] [blame^] | 1 | # version 0.62.2 |
| 2 | 17/10/2019 |
| 3 | - Handled vulnerability CVE-2019-17195. |
| 4 | |
margaretha | 2544cdf | 2019-07-08 11:39:43 +0200 | [diff] [blame] | 5 | # version 0.62.1 |
| 6 | 08/07/2019 |
margaretha | 93e602e | 2019-08-07 15:19:56 +0200 | [diff] [blame] | 7 | - Added tests for public metadata response in search api (margaretha, |
| 8 | issue #43) |
margaretha | 2544cdf | 2019-07-08 11:39:43 +0200 | [diff] [blame] | 9 | - Disabled some tests of unused/disabled web-services (margaretha) |
margaretha | 93e602e | 2019-08-07 15:19:56 +0200 | [diff] [blame] | 10 | 07/08/2019 |
| 11 | - Fixed missing scopes after requesting access token with refresh token |
| 12 | (margaretha) |
margaretha | c9f40e2 | 2019-08-07 17:32:19 +0200 | [diff] [blame] | 13 | - Fixed post requests with status OK and empty body (margaretha) |
margaretha | 0e1fc55 | 2019-08-08 15:31:01 +0200 | [diff] [blame] | 14 | 07/08/2019 |
margaretha | bdd47ac | 2019-08-15 14:22:38 +0200 | [diff] [blame] | 15 | - Resolved #40 (margaretha) |
| 16 | 15/08/2019 |
margaretha | 89836f3 | 2019-10-17 10:50:50 +0200 | [diff] [blame^] | 17 | - Updated the response statuses of VC PUT requests (margaretha) |
margaretha | 2544cdf | 2019-07-08 11:39:43 +0200 | [diff] [blame] | 18 | |
margaretha | 3ccaeb7 | 2019-02-28 18:40:22 +0100 | [diff] [blame] | 19 | # version 0.62 |
| 20 | 28/02/2019 |
| 21 | - Removed old VC controllers and updated tests (margaretha, issue #34) |
| 22 | - Updated VC access controllers (margaretha) |
margaretha | 3d55b00 | 2019-03-19 12:00:44 +0100 | [diff] [blame] | 23 | 19/03/2019 |
margaretha | 47a72a8 | 2019-07-03 16:00:54 +0200 | [diff] [blame] | 24 | - Added close index controller (margaretha) |
margaretha | 4b0eb3d | 2019-04-11 10:25:56 +0200 | [diff] [blame] | 25 | 11/04/2019 |
| 26 | - Fixed unknown authentication scheme, missing VC entity, and parameter |
| 27 | checker (margaretha) |
margaretha | ed053fb | 2019-04-11 15:15:13 +0200 | [diff] [blame] | 28 | - Fixed sharing unknown VC, updating corpusQuery, and handling non- |
| 29 | unique group name and unknown VC access (margaretha) |
margaretha | 03ae28d | 2019-06-27 14:20:30 +0200 | [diff] [blame] | 30 | 27/06/2019 |
| 31 | - Handled LDAP errors, fixed #45 (margaretha) |
margaretha | 47a72a8 | 2019-07-03 16:00:54 +0200 | [diff] [blame] | 32 | 03/07/2019 |
| 33 | - Added re-caching VC at closing-index service, resolved #44 (margaretha) |
| 34 | - Changed the response media-type of authentication controllers (margaretha) |
| 35 | - Fixed bugs: allow guest to retrieve system VC, |
| 36 | remove VC from cache when it is deleted (margaretha) |
margaretha | 3a57940 | 2019-07-04 15:40:46 +0200 | [diff] [blame] | 37 | 04/07/2019 |
| 38 | - Updated VC name pattern and tests (margaretha) |
margaretha | 3ccaeb7 | 2019-02-28 18:40:22 +0100 | [diff] [blame] | 39 | |
margaretha | 85273f1 | 2019-02-04 18:13:17 +0100 | [diff] [blame] | 40 | # version 0.61.6 |
| 41 | 04/02/2019 |
| 42 | - Fixed SQL data and merged oauth2_client_url and oauth2_client (margaretha) |
| 43 | - Updated client deregistration behavior (margaretha) |
margaretha | 39cec60 | 2019-02-05 19:48:49 +0100 | [diff] [blame] | 44 | 05/02/2019 |
| 45 | - Added delete-group-by-name controller (margaretha) |
| 46 | - Added unique index to group name (margaretha) |
margaretha | 798e8bd | 2019-02-06 15:48:58 +0100 | [diff] [blame] | 47 | 06/02/2019 |
| 48 | - Updated a user setting test using array for multiple values (margaretha) |
margaretha | 351f769 | 2019-02-06 19:36:52 +0100 | [diff] [blame] | 49 | - Added metadata controller tests (margaretha) |
margaretha | 2558a7c | 2019-02-18 16:48:54 +0100 | [diff] [blame] | 50 | 18/02/2019 |
| 51 | - Fixed tests (margaretha) |
margaretha | 852a0f6 | 2019-02-19 12:14:30 +0100 | [diff] [blame] | 52 | - Updated handling errors from Koral (margaretha) |
| 53 | 19/02/2019 |
| 54 | - Added fields to metadata controller (margaretha, issue #39) |
margaretha | 85273f1 | 2019-02-04 18:13:17 +0100 | [diff] [blame] | 55 | |
margaretha | 79d738c | 2018-12-17 16:45:47 +0100 | [diff] [blame] | 56 | # version 0.61.5 |
margaretha | 5c67dd5 | 2018-12-18 17:27:05 +0100 | [diff] [blame] | 57 | 17/12/2018 |
margaretha | 79d738c | 2018-12-17 16:45:47 +0100 | [diff] [blame] | 58 | - Added a search timeout test (margaretha) |
margaretha | 5c67dd5 | 2018-12-18 17:27:05 +0100 | [diff] [blame] | 59 | 18/12/2018 |
| 60 | - Updated tests using BeanConfigTest to use SpringJerseyTest (margaretha) |
margaretha | 0b90391 | 2019-01-08 17:41:39 +0100 | [diff] [blame] | 61 | 08/01/2019 |
| 62 | - Improved predefined vc caching (issue #28, margaretha) |
margaretha | 398f472 | 2019-01-09 19:07:20 +0100 | [diff] [blame] | 63 | 09/01/2019 |
| 64 | - Added comments (margaretha) |
| 65 | - Updated code structure (margaretha) |
margaretha | 2ea9a1e | 2019-01-11 16:37:21 +0100 | [diff] [blame] | 66 | 11/01/2019 |
| 67 | - Degraded API version to 1.0 (margaretha) |
| 68 | - Added OAuth2 client info tests (margaretha) |
margaretha | 8c20396 | 2019-01-14 17:01:33 +0100 | [diff] [blame] | 69 | 14/01/2019 |
| 70 | - Added retrieveVCByName and deleteVCByName controllers (margaretha) |
margaretha | 4af3f1e | 2019-01-16 17:53:26 +0100 | [diff] [blame] | 71 | 16/01/2019 |
| 72 | - Added a PUT request for both creating and editing vc (margaretha) |
| 73 | - Added aliases to some VC controllers (margaretha) |
margaretha | 0866a53 | 2019-01-22 17:52:40 +0100 | [diff] [blame] | 74 | - Merged VC access list controllers (margaretha) |
| 75 | 21/01/2019 |
| 76 | - Removed codes related to user registration & password management (margaretha) |
| 77 | 22/01/2019 |
| 78 | - Added create, edit, retrieve user default setting controllers (margaretha) |
margaretha | 62c0676 | 2019-01-23 16:58:30 +0100 | [diff] [blame] | 79 | 22/01/2019 |
| 80 | - Updated default setting controllers & added tests (margaretha) |
margaretha | 0bcde4c | 2019-01-23 19:08:51 +0100 | [diff] [blame] | 81 | - Added delete key in setting controllers (margaretha) |
margaretha | 6cd27f3 | 2019-01-24 14:47:47 +0100 | [diff] [blame] | 82 | 23/01/2019 |
| 83 | - Added default setting key validation (margaretha) |
| 84 | - Fixed UserdataTest (margaretha) |
margaretha | 4a33812 | 2019-01-25 16:02:18 +0100 | [diff] [blame] | 85 | 24/01/2019 |
| 86 | - Added default setting key validation & fixed UserdataTest (margaretha) |
| 87 | 25/01/2019 |
margaretha | 4fa4b06 | 2019-01-28 19:43:30 +0100 | [diff] [blame] | 88 | - Added VC reference and MapUtil tests (margaretha) |
| 89 | 28/01/2019 |
| 90 | - Fixed username verification in DefaultSettingService (margaretha) |
| 91 | - Added foundry rewrite with user default setting (margaretha) |
| 92 | - Added default foundry for morphology layer (margaretha) |
margaretha | 1b8bc4d | 2019-01-29 12:19:54 +0100 | [diff] [blame] | 93 | 29/01/2019 |
| 94 | - Fixed share VC type (margaretha) |
margaretha | b5e1e0a | 2019-01-29 22:11:57 +0100 | [diff] [blame] | 95 | - Added delete setting controller (margaretha) |
| 96 | - Handled "no resource found" cases (margaretha, issue #37) |
margaretha | bab55d5 | 2019-01-30 16:09:07 +0100 | [diff] [blame] | 97 | 30/01/2019 |
| 98 | - Added server shutdown description in readme (margaretha) |
margaretha | 79d738c | 2018-12-17 16:45:47 +0100 | [diff] [blame] | 99 | |
margaretha | 2df0660 | 2018-11-14 19:10:30 +0100 | [diff] [blame] | 100 | # version 0.61.4 |
| 101 | 14/11/2018 |
| 102 | - Integrated lite and full services and controllers in core (margaretha) |
margaretha | 6f0b738 | 2018-11-21 17:42:02 +0100 | [diff] [blame] | 103 | 21/11/2018 |
| 104 | - Updated OAuth2 refresh token request to create a new refresh token and |
margaretha | e72355a | 2018-11-28 16:53:09 +0100 | [diff] [blame] | 105 | revoke the old one per request (margaretha) |
| 106 | 28/11/2018 |
| 107 | - Updated NamedVCLoader to delete existing VC in DB (margaretha) |
| 108 | - Handled storing cached VC with VC reference (margaretha) |
margaretha | 230effb | 2018-11-29 17:28:18 +0100 | [diff] [blame] | 109 | 29/11/2018 |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 110 | - Added a controller for listing user clients having active refresh tokens |
margaretha | dda4ef7 | 2018-12-06 14:20:51 +0100 | [diff] [blame] | 111 | (margaretha) |
| 112 | 6/12/2018 |
| 113 | - Added debug flags to mitigate log4j debugging performance (margaretha) |
margaretha | d6f39d5 | 2018-12-06 14:21:39 +0100 | [diff] [blame] | 114 | - Fixed KoralNode at() method (margaretha) |
margaretha | c750cbb | 2018-12-11 12:47:02 +0100 | [diff] [blame] | 115 | 11/12/2018 |
| 116 | - Implemented revoking all tokens of a user client via a super client |
| 117 | (margaretha) |
margaretha | 420db0e | 2018-12-11 15:04:19 +0100 | [diff] [blame] | 118 | - Removed document controllers and KustvaktResource (margaretha) |
margaretha | 1bc9cca | 2018-12-11 15:09:44 +0100 | [diff] [blame] | 119 | - Fixed rewrite bugs (updated rewriteQuery & KoralNode) (margaretha) |
margaretha | 420db0e | 2018-12-11 15:04:19 +0100 | [diff] [blame] | 120 | |
margaretha | 2df0660 | 2018-11-14 19:10:30 +0100 | [diff] [blame] | 121 | |
margaretha | 51e5e3f | 2018-10-17 15:10:03 +0200 | [diff] [blame] | 122 | # version 0.61.3 |
| 123 | 17/10/2018 |
| 124 | - Updated NamedVCLoader to be optional (margaretha) |
| 125 | - Updated annotation tables & implemented key-value structure (margaretha) |
| 126 | - Added annotation parser for annotation data from kalamar (margaretha) |
margaretha | 2c50c73 | 2018-10-17 18:48:52 +0200 | [diff] [blame] | 127 | - Implemented parsing free resource info from json (margaretha) |
margaretha | 3da7cd3 | 2018-10-22 17:42:52 +0200 | [diff] [blame] | 128 | 22/10/2018 |
| 129 | - Updated jetty, spring and hibernate versions (margaretha) |
margaretha | 0c18622 | 2018-10-22 17:48:33 +0200 | [diff] [blame] | 130 | - Fixed the order of annotation keys and values, and added tests (margaretha) |
| 131 | - Fixed resource DAO & added tests (margaretha) |
margaretha | 3495447 | 2018-10-24 20:05:17 +0200 | [diff] [blame] | 132 | 24/10/2018 |
| 133 | - Fixed query serialization service (margaretha) |
| 134 | - Added "highlights" parameter to matchInfo controller (margaretha) |
| 135 | - Added "fields" parameter to search controllers (margaretha) |
| 136 | - Integrated lite controllers, services and tests in full version (margaretha) |
margaretha | 439ad57 | 2018-10-29 12:15:28 +0100 | [diff] [blame] | 137 | 29/10/2018 |
margaretha | 339fd2e | 2018-11-13 12:14:53 +0100 | [diff] [blame] | 138 | - Moved javax.servlet-api to core (margaretha) |
Akron | 6365605 | 2018-11-07 12:20:13 +0100 | [diff] [blame] | 139 | 07/11/2018 |
| 140 | - OpenJDK8u181-workaround (see Debian Bug report #911925; diewald) |
margaretha | 339fd2e | 2018-11-13 12:14:53 +0100 | [diff] [blame] | 141 | 13/11/2018 |
| 142 | - Added Shutdown handler to Jetty server (margaretha) |
| 143 | - Fixed storing VC order in NamedVCLoader (margaretha) |
margaretha | 51e5e3f | 2018-10-17 15:10:03 +0200 | [diff] [blame] | 144 | |
margaretha | 6ef00dd | 2018-09-12 14:06:38 +0200 | [diff] [blame] | 145 | # version 0.61.2 |
| 146 | 12/09/2018 |
margaretha | 563aabe | 2018-09-13 20:39:45 +0200 | [diff] [blame] | 147 | - Added various log4j2 configurations (margaretha) |
| 148 | 13/09/2018 |
| 149 | - Implemented VirtualCorpusRewrite (margaretha) |
margaretha | 9e53bb2 | 2018-09-14 19:39:15 +0200 | [diff] [blame] | 150 | 14/09/2018 |
| 151 | - Fixed SpringJerseyTest ApplicationContext (margaretha) |
| 152 | - Handled VCRef with username in VirtualCorpusRewrite (margaretha) |
| 153 | - Enabled VCReferenceTest in maven test suite (margaretha) |
margaretha | f7abb36 | 2018-09-18 20:09:37 +0200 | [diff] [blame] | 154 | 18/09/2018 |
margaretha | 51e5e3f | 2018-10-17 15:10:03 +0200 | [diff] [blame] | 155 | - Handled unique constraints / inserting duplicate items to DB (margaretha) |
margaretha | f7abb36 | 2018-09-18 20:09:37 +0200 | [diff] [blame] | 156 | - Added a controller for editing user group member roles (margaretha) |
margaretha | 488e04b | 2018-09-19 18:17:45 +0200 | [diff] [blame] | 157 | 19/09/2018 |
margaretha | 51e5e3f | 2018-10-17 15:10:03 +0200 | [diff] [blame] | 158 | - Fixed cached-VC ref with username (margaretha) |
margaretha | 6ef00dd | 2018-09-12 14:06:38 +0200 | [diff] [blame] | 159 | |
margaretha | ee0cbfe | 2018-08-28 17:47:14 +0200 | [diff] [blame] | 160 | # version 0.61.1 |
| 161 | 28/08/2018 |
margaretha | 51e5e3f | 2018-10-17 15:10:03 +0200 | [diff] [blame] | 162 | - Added API URL versioning (margaretha) |
margaretha | ee0cbfe | 2018-08-28 17:47:14 +0200 | [diff] [blame] | 163 | - Deactivated IdRewrite (margaretha) |
| 164 | - Fixed kustvakt controller (margaretha) |
margaretha | 7926adc | 2018-08-30 13:45:33 +0200 | [diff] [blame] | 165 | 30/08/2018 |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 166 | - Fixed root packages & added api version properties in kustvakt.conf |
| 167 | (margaretha) |
margaretha | 7926adc | 2018-08-30 13:45:33 +0200 | [diff] [blame] | 168 | - Fixed versioning in SearchController (margaretha) |
| 169 | - Added API versioning tests (margaretha) |
margaretha | ee0cbfe | 2018-08-28 17:47:14 +0200 | [diff] [blame] | 170 | |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 171 | # version 0.61.0 |
margaretha | 1b32045 | 2018-08-02 16:56:25 +0200 | [diff] [blame] | 172 | |
margaretha | 0666ddb | 2018-08-02 16:54:04 +0200 | [diff] [blame] | 173 | 02/08/2018 |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 174 | - Added VC reference tests (margaretha) |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 175 | - Implemented loading and caching named VCs (margaretha) |
| 176 | 03/08/2018 |
| 177 | - Implemented OAuth2 revoke token (margaretha) |
| 178 | - Updated OAuth2 refresh token implementation (margaretha) |
| 179 | 14/08/2018 |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 180 | - Implemented revoke all OAuth2 access tokens and authorization codes of |
| 181 | client users when deregistering/deleting a client (margaretha) |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 182 | - Fixed update OAuth2 access token (margaretha) |
| 183 | - Implemented reset client secret (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 184 | - Fixed revoking latest access token when refreshing OAuth2 access token |
| 185 | (margaretha) |
margaretha | 835178d | 2018-08-15 19:04:03 +0200 | [diff] [blame] | 186 | 15/08/2018 |
| 187 | - Implemented OAuth2 client info controller (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 188 | - Implemented update OAuth2 client privilege controller for admins |
| 189 | (margaretha) |
| 190 | - Implemented unlimited authorization scope for super clients with OAuth2 |
| 191 | password grant (margaretha) |
| 192 | - Marked native clients implementation to deprecated in favour of super |
| 193 | clients (margaretha) |
| 194 | - Enabled using Bearer tokens as user authentication tokens (Authorization |
| 195 | header value) for many controllers including OAuth2 controllers (margaretha) |
margaretha | f008512 | 2018-08-16 16:19:53 +0200 | [diff] [blame] | 196 | 16/08/2018 |
| 197 | - Implemented degrading super clients (margaretha) |
margaretha | 2e1781f | 2018-08-21 11:45:26 +0200 | [diff] [blame] | 198 | - Improved and added OAuth2 tests (margaretha) |
| 199 | 21/08/2018 |
| 200 | - Added VC name pattern check (margaretha) |
margaretha | 6ad08b4 | 2018-08-22 18:33:54 +0200 | [diff] [blame] | 201 | 22/08/2018 |
| 202 | - Implemented loading VC from gz files (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 203 | - Updated OAuth2 authorization codes' & access tokens' expiry check |
| 204 | (margaretha) |
margaretha | f370f54 | 2018-08-23 18:51:49 +0200 | [diff] [blame] | 205 | 23/08/2018 |
| 206 | - Updated RefreshToken implementations with separate DB tables (margaretha) |
| 207 | - Allows multiple access tokens per refresh token (margaretha) |
margaretha | c7196d2 | 2018-08-27 14:20:03 +0200 | [diff] [blame] | 208 | 27/08/2018 |
| 209 | - Added statistic with VC reference tests (margaretha) |
| 210 | - Fixed OAuth2 SQL files (margaretha) |
margaretha | 45211af | 2018-08-28 12:49:07 +0200 | [diff] [blame] | 211 | 28/08/2018 |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 212 | - Added c3p0 datasource configuration to Spring default-config-xml |
| 213 | (margaretha) |
| 214 | - Added running Kustvakt server with custom spring config in the readme |
| 215 | (margaretha) |
margaretha | 45211af | 2018-08-28 12:49:07 +0200 | [diff] [blame] | 216 | - Removed old OAuth2 codes (margaretha) |
| 217 | - Moved non-config test codes to misc (margaretha) |
| 218 | |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 219 | |
| 220 | # version 0.60.5 |
| 221 | |
| 222 | 09/07/2018 |
margaretha | 20f3123 | 2018-07-09 17:49:39 +0200 | [diff] [blame] | 223 | - Added service layer to the search controller (margaretha) |
| 224 | - Added OAuth2 scope checking in search and VC controllers (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 225 | - Added handling OAuth2 bearer token for VC access and User group |
| 226 | controllers (margaretha) |
margaretha | 20f3123 | 2018-07-09 17:49:39 +0200 | [diff] [blame] | 227 | - Added default scope to password grant (margaretha) |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 228 | 10/07/2018 |
margaretha | 064eb6f | 2018-07-10 18:33:01 +0200 | [diff] [blame] | 229 | - Made createBasicAuthorizationHeaderValue static (margaretha) |
| 230 | - Added store access token in openID token service (margaretha) |
| 231 | - Fixed empty scope in openID authorization and token service (margaretha) |
| 232 | - Implemented storing authorization code in cache (margaretha) |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 233 | 11/07/2018 |
margaretha | 07a356a | 2018-07-11 19:12:21 +0200 | [diff] [blame] | 234 | - Fixed authentication time in authentication controller (margaretha) |
margaretha | 0a45be1 | 2018-07-12 15:06:30 +0200 | [diff] [blame] | 235 | - Added OAuth2 access token tests (margaretha) |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 236 | 12/07/2018 |
margaretha | 0a45be1 | 2018-07-12 15:06:30 +0200 | [diff] [blame] | 237 | - Updated maven surefire setting for faster test suite runtime (margaretha) |
margaretha | 03b8286 | 2018-07-12 20:09:26 +0200 | [diff] [blame] | 238 | - Implemented refreshing OAuth2 access token (margaretha) |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 239 | 26/07/2018 |
margaretha | 0666ddb | 2018-08-02 16:54:04 +0200 | [diff] [blame] | 240 | - Fixed issue #27 (margaretha) |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 241 | 02/08/2018 |
margaretha | 0666ddb | 2018-08-02 16:54:04 +0200 | [diff] [blame] | 242 | - Fixed clientId encoding in OAuth2ClientControllerTest (margaretha) |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 243 | |
margaretha | 20f3123 | 2018-07-09 17:49:39 +0200 | [diff] [blame] | 244 | |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 245 | # version 0.60.4 |
| 246 | |
Akron | d505816 | 2018-07-05 11:17:15 +0200 | [diff] [blame] | 247 | 05/07/2018 |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 248 | - implemented OAuth2 authorization code request with OpenID Authentication |
| 249 | (margaretha) |
| 250 | - enabled OAuth2 authorization without OpenID authentication using Nimbus |
| 251 | library (margaretha) |
| 252 | - implemented response handler for OpenID authentication errors in authorization |
| 253 | requests (margaretha) |
| 254 | - added tests regarding OpenID authentication in authorization requests |
| 255 | (margaretha) |
| 256 | - implemented OAuth2 authorization error response via redirect URI instead of |
| 257 | JSON (margaretha) |
margaretha | b36b1a3 | 2018-06-20 20:13:07 +0200 | [diff] [blame] | 258 | - added state to OAuth2 authorization error response (margaretha) |
| 259 | - implemented OpenID token service for authorization code flow (margaretha) |
margaretha | 5225ed0 | 2018-06-25 18:38:40 +0200 | [diff] [blame] | 260 | - implemented signed OpenID token with default algorithm RSA256 (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 261 | - implemented JSON Web Key (JWK) set web-controller listing kustvakt public |
| 262 | keys (margaretha) |
margaretha | 9c78e1a | 2018-06-27 14:12:35 +0200 | [diff] [blame] | 263 | - implemented OpenId configuration (margaretha) |
margaretha | a2ce63d | 2018-06-28 10:11:43 +0200 | [diff] [blame] | 264 | - added authentication time and support for auth_time in id_token (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 265 | - implemented support for nonce and max_age parameters in OpenID authentication |
| 266 | (margaretha) |
| 267 | - implemented OAuth2 token request with password grant using Nimbus library |
| 268 | (margaretha) |
margaretha | d7cab21 | 2018-07-02 19:01:43 +0200 | [diff] [blame] | 269 | - updated redirect URI validator (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 270 | - updated client registration requirement to allow desktop applications |
| 271 | (margaretha) |
margaretha | d7cab21 | 2018-07-02 19:01:43 +0200 | [diff] [blame] | 272 | - fixed RSA key configuration (margaretha) |
margaretha | 80ea0dd | 2018-07-03 14:22:59 +0200 | [diff] [blame] | 273 | - merged OAuth2 client deregistration controllers (margaretha) |
margaretha | b1081b1 | 2018-07-03 23:35:01 +0200 | [diff] [blame] | 274 | - fixed OAuth2 client unique URL-hashcode (margaretha) |
margaretha | 49cb688 | 2018-07-04 04:19:54 +0200 | [diff] [blame] | 275 | - migrated logging to log4j 2 and adapted java.util.logging to log4j(margaretha) |
Akron | 6091cf3 | 2018-07-03 20:45:49 +0200 | [diff] [blame] | 276 | - Added support for unrestricted corpus statistics (ndiewald) |
margaretha | 226ec1e | 2018-07-04 15:45:59 +0200 | [diff] [blame] | 277 | - updated paths of user-group deletion-controllers (margaretha) |
Akron | d505816 | 2018-07-05 11:17:15 +0200 | [diff] [blame] | 278 | - Do not pass broken queries to Krill (diewald) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 279 | - added OAuth2 token request with client authentication via Authorization |
| 280 | header (margaretha) |
margaretha | 00c28c0 | 2018-07-05 18:09:09 +0200 | [diff] [blame] | 281 | - added port checking in test suite (margaretha) |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 282 | |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 283 | # version 0.60.3 |
| 284 | |
margaretha | 235a680 | 2018-06-06 19:21:53 +0200 | [diff] [blame] | 285 | 06/06/2018 |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 286 | - improved user authentication by using authentication filter for authorization |
| 287 | code request (margaretha) |
| 288 | - limited client authentication to client id checking in authorization code |
| 289 | request (margaretha) |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 290 | - added user_id in the oauth2_access_token database table (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 291 | - implemented OAuth2Authentication provider for token context management |
| 292 | (margaretha) |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 293 | - added parameter checking for authorization DAO (margaretha) |
| 294 | - added controller tests using OAuth2 access token (margaretha) |
| 295 | - added database tables for MySQL (margaretha) |
| 296 | - updated JWT library and related codes (margaretha) |
| 297 | |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 298 | # version 0.60.2 |
| 299 | |
margaretha | be4c5c9 | 2018-05-03 18:55:49 +0200 | [diff] [blame] | 300 | 03/05/2018 |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 301 | - implemented OAuth2 client registration (margaretha) |
| 302 | - implemented OAuth2 client authentication (margaretha) |
| 303 | - changed virtual corpus search to retrieval (margaretha) |
| 304 | - implemented public client deregistration task (margaretha) |
| 305 | - added client registration and deregistration tests (margaretha) |
| 306 | - implemented confidential client deregistration task (margaretha) |
| 307 | - fixed storing client secret (margaretha) |
| 308 | - implemented OAuth2 response handler (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 309 | - implemented OAuth2 request access token with client credentials grant |
| 310 | (margaretha) |
| 311 | - implemented OAuth2 request access token with resource owner password grant |
| 312 | (margaretha) |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 313 | - implemented OAuth2 authorization code request (margaretha) |
| 314 | - added OAuth2 error codes (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 315 | - added OAuth2 authorization, scope and access token tables for SQLite |
| 316 | (margaretha) |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 317 | - implemented OAuth2 authorization, scope and access token DAO (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 318 | - implemented OAuth2 request access token with authorization code grant |
| 319 | (margaretha) |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 320 | - added setting default scopes in the config file (margaretha) |
| 321 | - fixed loading spring config multiple times in the test suite (margaretha) |
| 322 | - added SQLite created_date trigger for access token (margaretha) |
| 323 | - added a join table for access token scopes (margaretha) |
| 324 | - added access scopes handling (margaretha) |
| 325 | - added tests about request token with authorization code (margaretha) |
| 326 | |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 327 | # version 0.60.1 |
| 328 | |
margaretha | 18533fd | 2018-03-28 16:01:06 +0200 | [diff] [blame] | 329 | 28/03/2018 |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 330 | - added admin-related SQL codes (margaretha) |
| 331 | - updated AdminDao (margaretha) |
| 332 | - added optional username query parameter to group list controller (margaretha) |
| 333 | - fixed non hierarchical URI of kustvakt conf files (margaretha) |
| 334 | - added delete group member triggers (margaretha) |
| 335 | - added list user-group by username and status for system admin (margaretha) |
| 336 | - added user-group status in user-group DTO (margaretha) |
| 337 | - added check for hidden groups in user-group tests (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 338 | - added database trigger test on deleting members when deleting group |
| 339 | (margaretha) |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 340 | - renamed VC type PREDEFINED to SYSTEM (margaretha) |
| 341 | - added VC list controller for system admin (margaretha) |
| 342 | - added VC controller tests with for system admin (margaretha) |
| 343 | - added hidden access removal when deleting published VC (margaretha) |
| 344 | - added check for hidden groups in VC controller tests (margaretha) |
| 345 | - added search user-group controller (margaretha) |
| 346 | - removed createdBy from VirtualCorpusJson (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 347 | - moved member role setting from the invitation phase to the after-subscription |
| 348 | phase (margaretha) |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 349 | - added member role removal after deleting members (margaretha) |
| 350 | - added add and delete member role controllers (margaretha) |
| 351 | |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 352 | # version 0.60 |
| 353 | |
margaretha | 97bb3bd | 2018-03-14 18:41:14 +0100 | [diff] [blame] | 354 | 14/03/2018 |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 355 | - set up mail settings using localhost port 25 (margaretha) |
| 356 | - added mail template in kustvakt configuration (margaretha) |
| 357 | - added mail settings to readme (margaretha) |
| 358 | - disabled email notification for auto group (margaretha) |
| 359 | - added metadata retrieval (diewald) |
| 360 | - enabled custom implementation for email address retrieval (margaretha) |
| 361 | - removed old policy and deprecated code (margaretha) |
| 362 | - moved authentication related code to /full (margaretha) |
| 363 | - added userRoles attribute to UserGroupDto. (margaretha) |
| 364 | - fixed sqlite trigger (margaretha) |
| 365 | - fixed member exist error message (margaretha) |
| 366 | - fixed member invitation to join deleted group (margaretha) |
| 367 | - added checking deleted group (margaretha) |
margaretha | a86b141 | 2018-02-21 20:40:35 +0100 | [diff] [blame] | 368 | |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 369 | # version 0.59.10 |
| 370 | |
margaretha | aecee1b | 2018-02-20 14:44:21 +0100 | [diff] [blame] | 371 | 20/02/2018 |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 372 | - added sort VC by id (margaretha) |
| 373 | - added test cases regarding VC sharing (margaretha) |
| 374 | - implemented withdraw VC from publication (margaretha) |
| 375 | - added Changes file (margaretha) |
| 376 | - implemented add/invite users to group (margaretha) |
| 377 | - implemented delete user-group and member tasks (margaretha) |
| 378 | - added userMemberStatus in group lists (margaretha) |
| 379 | - updated and added SQL test data (margaretha) |
| 380 | - added user group related tests (margaretha) |
| 381 | - implemented custom configuration for deleting user groups and members (margaretha) |
| 382 | - updated library versions and java environment (margaretha) |
| 383 | - added expiration time check for member invitation (margaretha) |
| 384 | - moved .properties files (margaretha) |
| 385 | - merged changelog file to Changes (margaretha) |
| 386 | - updated status codes and error messages to be more detailed (margaretha) |
| 387 | - testing mail implementation using embedded jetty jndi (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 388 | - fixed collection rewrite regarding OR operation with other fields |
| 389 | (margaretha) |
| 390 | - implemented sending mail using spring injection and removed jetty jndi |
| 391 | (margaretha) |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 392 | - fixed unrecognized application/json (margaretha) |
| 393 | - fixed and updated velocity template (margaretha) |
| 394 | |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 395 | # version 0.59.9 |
| 396 | |
margaretha | c9f1dfa | 2018-02-07 17:50:33 +0100 | [diff] [blame] | 397 | 19/01/2018 |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 398 | - restructured basic authentication (margaretha) |
| 399 | - fixed AuthenticationException to include authentication scheme (margaretha) |
| 400 | - fixed rewrite redundancy in collection rewrite (margaretha) |
| 401 | - fixed foundry rewrite for constituents (margaretha) |
| 402 | - introduced authentication methods, schemes and tokens (margaretha) |
| 403 | - implemented collection rewrite with multiple licenses (margaretha) |
| 404 | - fixed foundry rewrite for korap span without wrap node (margaretha) |
| 405 | - implemented list user group (margaretha) |
| 406 | - implemented delete VC task (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 407 | - implemented create user-group, subscribe to user-groups, unsubscribe to |
| 408 | user-groups tasks(margaretha) |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 409 | - fixed handling JSON mapping exception for missing enums (margaretha) |
margaretha | b874ef5 | 2018-01-23 20:26:31 +0100 | [diff] [blame] | 410 | - implemented list VC task (margaretha) |
margaretha | 4566792 | 2018-01-25 21:23:03 +0100 | [diff] [blame] | 411 | - added KoralQuery in VC lists (margaretha) |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 412 | - implemented edit VC task (margaretha) |
| 413 | - implemented publish VC task (margaretha) |
margaretha | b874ef5 | 2018-01-23 20:26:31 +0100 | [diff] [blame] | 414 | - implemented share VC task (margaretha) |
| 415 | - implemented list only owned VC task (margaretha) |
| 416 | - implemented list VC access task (margaretha) |
| 417 | - implemented search VC by id task (margaretha) |
| 418 | - implemented delete VC access (margaretha) |
| 419 | - implemented search for project VC (margaretha) |
| 420 | - added search VC related tests (margaretha) |
| 421 | - removed PredefinedUserGroup.ALL and related codes (margaretha) |
| 422 | - implemented search for published VC (margaretha) |
| 423 | |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 424 | # version 0.59.8 |
| 425 | |
margaretha | c9f1dfa | 2018-02-07 17:50:33 +0100 | [diff] [blame] | 426 | 21/09/2017 |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 427 | - restructured statistics service (margaretha) |
| 428 | - removed deprecated loader codes and tests (margaretha) |
| 429 | - removed old Spring java configurations (margaretha) |
| 430 | - implemented entity classes for the new database (margaretha) |
| 431 | - added MySQL codes regarding VC and for testing (margaretha) |
| 432 | - added dao methods regarding VC (margaretha) |
| 433 | - added similar SQL codes (to MySQL) for sqlite (margaretha) |
| 434 | - added dao methods regarding user groups (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 435 | - restructured web-service codes into controller and logic/business-service |
| 436 | (margaretha) |
margaretha | ec247dd | 2018-06-12 21:55:46 +0200 | [diff] [blame] | 437 | - implemented user role and privilege, and added tests (margaretha) |
| 438 | - prepared test suite using new database (margaretha) |
| 439 | - implemented UserGroupDao and tests (margaretha) |
| 440 | - fixed missing exceptions in JsonUtils (margaretha) |
| 441 | - restructured web filters and authentication codes (margaretha) |
| 442 | - implemented create/store VC (margaretha) |
margaretha | 5a2c34e | 2018-11-29 19:35:13 +0100 | [diff] [blame] | 443 | - fixed collection rewrite bug regarding availability with operation or |
| 444 | (margaretha) |
margaretha | c9f1dfa | 2018-02-07 17:50:33 +0100 | [diff] [blame] | 445 | |
margaretha | 7f5071f | 2018-08-14 15:58:51 +0200 | [diff] [blame] | 446 | # version 0.59.7 |
| 447 | |
margaretha | c9f1dfa | 2018-02-07 17:50:33 +0100 | [diff] [blame] | 448 | 13/10/2016 |
| 449 | - MOD: updated search to use new siglen (diewald) |
| 450 | - MOD: fixed matchinfo retrieval in light service (diewald) |
| 451 | |
| 452 | 05/05/2015 |
| 453 | - ADD: rest test suite for user service (hanl) |
| 454 | - MOD: setup parameter modification (hanl) |
| 455 | - ADD: oauth2 client unique constraint (hanl) |