mirror of
https://github.com/awatertrevi/infisical.git
synced 2026-10-04 09:26:14 +00:00
feat: adds support for last logged in auth method field
This commit is contained in:
@@ -0,0 +1,41 @@
|
|||||||
|
import { Knex } from "knex";
|
||||||
|
|
||||||
|
import { TableName } from "../schemas";
|
||||||
|
|
||||||
|
export async function up(knex: Knex): Promise<void> {
|
||||||
|
const lastUserLoggedInAuthMethod = await knex.schema.hasColumn(TableName.OrgMembership, "lastLoggedInAuthMethod");
|
||||||
|
const lastIdentityLoggedInAuthMethod = await knex.schema.hasColumn(
|
||||||
|
TableName.IdentityOrgMembership,
|
||||||
|
"lastLoggedInAuthMethod"
|
||||||
|
);
|
||||||
|
if (!lastUserLoggedInAuthMethod) {
|
||||||
|
await knex.schema.alterTable(TableName.OrgMembership, (t) => {
|
||||||
|
t.string("lastLoggedInAuthMethod").nullable();
|
||||||
|
});
|
||||||
|
}
|
||||||
|
|
||||||
|
if (!lastIdentityLoggedInAuthMethod) {
|
||||||
|
await knex.schema.alterTable(TableName.IdentityOrgMembership, (t) => {
|
||||||
|
t.string("lastLoggedInAuthMethod").nullable();
|
||||||
|
});
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
export async function down(knex: Knex): Promise<void> {
|
||||||
|
const lastUserLoggedInAuthMethod = await knex.schema.hasColumn(TableName.OrgMembership, "lastLoggedInAuthMethod");
|
||||||
|
const lastIdentityLoggedInAuthMethod = await knex.schema.hasColumn(
|
||||||
|
TableName.IdentityOrgMembership,
|
||||||
|
"lastLoggedInAuthMethod"
|
||||||
|
);
|
||||||
|
if (!lastUserLoggedInAuthMethod) {
|
||||||
|
await knex.schema.alterTable(TableName.OrgMembership, (t) => {
|
||||||
|
t.dropColumn("lastLoggedInAuthMethod");
|
||||||
|
});
|
||||||
|
}
|
||||||
|
|
||||||
|
if (!lastIdentityLoggedInAuthMethod) {
|
||||||
|
await knex.schema.alterTable(TableName.IdentityOrgMembership, (t) => {
|
||||||
|
t.dropColumn("lastLoggedInAuthMethod");
|
||||||
|
});
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -14,7 +14,8 @@ export const IdentityOrgMembershipsSchema = z.object({
|
|||||||
orgId: z.string().uuid(),
|
orgId: z.string().uuid(),
|
||||||
createdAt: z.date(),
|
createdAt: z.date(),
|
||||||
updatedAt: z.date(),
|
updatedAt: z.date(),
|
||||||
identityId: z.string().uuid()
|
identityId: z.string().uuid(),
|
||||||
|
lastLoggedInAuthMethod: z.string().nullable().optional()
|
||||||
});
|
});
|
||||||
|
|
||||||
export type TIdentityOrgMemberships = z.infer<typeof IdentityOrgMembershipsSchema>;
|
export type TIdentityOrgMemberships = z.infer<typeof IdentityOrgMembershipsSchema>;
|
||||||
|
|||||||
@@ -19,7 +19,8 @@ export const OrgMembershipsSchema = z.object({
|
|||||||
roleId: z.string().uuid().nullable().optional(),
|
roleId: z.string().uuid().nullable().optional(),
|
||||||
projectFavorites: z.string().array().nullable().optional(),
|
projectFavorites: z.string().array().nullable().optional(),
|
||||||
isActive: z.boolean().default(true),
|
isActive: z.boolean().default(true),
|
||||||
lastInvitedAt: z.date().nullable().optional()
|
lastInvitedAt: z.date().nullable().optional(),
|
||||||
|
lastLoggedInAuthMethod: z.string().nullable().optional()
|
||||||
});
|
});
|
||||||
|
|
||||||
export type TOrgMemberships = z.infer<typeof OrgMembershipsSchema>;
|
export type TOrgMemberships = z.infer<typeof OrgMembershipsSchema>;
|
||||||
|
|||||||
@@ -148,9 +148,12 @@ export const authLoginServiceFactory = ({
|
|||||||
|
|
||||||
if (organizationId) {
|
if (organizationId) {
|
||||||
const org = await orgDAL.findById(organizationId);
|
const org = await orgDAL.findById(organizationId);
|
||||||
if (org && org.userTokenExpiration) {
|
if (org) {
|
||||||
tokenSessionExpiresIn = getMinExpiresIn(cfg.JWT_AUTH_LIFETIME, org.userTokenExpiration);
|
await orgMembershipDAL.update({ userId: user.id, orgId: org.id }, { lastLoggedInAuthMethod: authMethod });
|
||||||
refreshTokenExpiresIn = org.userTokenExpiration;
|
if (org.userTokenExpiration) {
|
||||||
|
tokenSessionExpiresIn = getMinExpiresIn(cfg.JWT_AUTH_LIFETIME, org.userTokenExpiration);
|
||||||
|
refreshTokenExpiresIn = org.userTokenExpiration;
|
||||||
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|||||||
@@ -38,7 +38,7 @@ type TIdentityAliCloudAuthServiceFactoryDep = {
|
|||||||
TIdentityAliCloudAuthDALFactory,
|
TIdentityAliCloudAuthDALFactory,
|
||||||
"findOne" | "transaction" | "create" | "updateById" | "delete"
|
"findOne" | "transaction" | "create" | "updateById" | "delete"
|
||||||
>;
|
>;
|
||||||
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne">;
|
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne" | "updateById">;
|
||||||
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
||||||
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
||||||
};
|
};
|
||||||
@@ -87,6 +87,13 @@ export const identityAliCloudAuthServiceFactory = ({
|
|||||||
|
|
||||||
// Generate the token
|
// Generate the token
|
||||||
const identityAccessToken = await identityAliCloudAuthDAL.transaction(async (tx) => {
|
const identityAccessToken = await identityAliCloudAuthDAL.transaction(async (tx) => {
|
||||||
|
await identityOrgMembershipDAL.updateById(
|
||||||
|
identityMembershipOrg.id,
|
||||||
|
{
|
||||||
|
lastLoggedInAuthMethod: IdentityAuthMethod.ALICLOUD_AUTH
|
||||||
|
},
|
||||||
|
tx
|
||||||
|
);
|
||||||
const newToken = await identityAccessTokenDAL.create(
|
const newToken = await identityAccessTokenDAL.create(
|
||||||
{
|
{
|
||||||
identityId: identityAliCloudAuth.identityId,
|
identityId: identityAliCloudAuth.identityId,
|
||||||
|
|||||||
@@ -36,7 +36,7 @@ import {
|
|||||||
type TIdentityAwsAuthServiceFactoryDep = {
|
type TIdentityAwsAuthServiceFactoryDep = {
|
||||||
identityAccessTokenDAL: Pick<TIdentityAccessTokenDALFactory, "create" | "delete">;
|
identityAccessTokenDAL: Pick<TIdentityAccessTokenDALFactory, "create" | "delete">;
|
||||||
identityAwsAuthDAL: Pick<TIdentityAwsAuthDALFactory, "findOne" | "transaction" | "create" | "updateById" | "delete">;
|
identityAwsAuthDAL: Pick<TIdentityAwsAuthDALFactory, "findOne" | "transaction" | "create" | "updateById" | "delete">;
|
||||||
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne">;
|
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne" | "updateById">;
|
||||||
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
||||||
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
||||||
};
|
};
|
||||||
@@ -152,6 +152,13 @@ export const identityAwsAuthServiceFactory = ({
|
|||||||
}
|
}
|
||||||
|
|
||||||
const identityAccessToken = await identityAwsAuthDAL.transaction(async (tx) => {
|
const identityAccessToken = await identityAwsAuthDAL.transaction(async (tx) => {
|
||||||
|
await identityOrgMembershipDAL.updateById(
|
||||||
|
identityMembershipOrg.id,
|
||||||
|
{
|
||||||
|
lastLoggedInAuthMethod: IdentityAuthMethod.AWS_AUTH
|
||||||
|
},
|
||||||
|
tx
|
||||||
|
);
|
||||||
const newToken = await identityAccessTokenDAL.create(
|
const newToken = await identityAccessTokenDAL.create(
|
||||||
{
|
{
|
||||||
identityId: identityAwsAuth.identityId,
|
identityId: identityAwsAuth.identityId,
|
||||||
|
|||||||
@@ -33,7 +33,7 @@ type TIdentityAzureAuthServiceFactoryDep = {
|
|||||||
TIdentityAzureAuthDALFactory,
|
TIdentityAzureAuthDALFactory,
|
||||||
"findOne" | "transaction" | "create" | "updateById" | "delete"
|
"findOne" | "transaction" | "create" | "updateById" | "delete"
|
||||||
>;
|
>;
|
||||||
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne">;
|
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne" | "updateById">;
|
||||||
identityAccessTokenDAL: Pick<TIdentityAccessTokenDALFactory, "create" | "delete">;
|
identityAccessTokenDAL: Pick<TIdentityAccessTokenDALFactory, "create" | "delete">;
|
||||||
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
||||||
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
||||||
@@ -80,6 +80,13 @@ export const identityAzureAuthServiceFactory = ({
|
|||||||
}
|
}
|
||||||
|
|
||||||
const identityAccessToken = await identityAzureAuthDAL.transaction(async (tx) => {
|
const identityAccessToken = await identityAzureAuthDAL.transaction(async (tx) => {
|
||||||
|
await identityOrgMembershipDAL.updateById(
|
||||||
|
identityMembershipOrg.id,
|
||||||
|
{
|
||||||
|
lastLoggedInAuthMethod: IdentityAuthMethod.AZURE_AUTH
|
||||||
|
},
|
||||||
|
tx
|
||||||
|
);
|
||||||
const newToken = await identityAccessTokenDAL.create(
|
const newToken = await identityAccessTokenDAL.create(
|
||||||
{
|
{
|
||||||
identityId: identityAzureAuth.identityId,
|
identityId: identityAzureAuth.identityId,
|
||||||
|
|||||||
@@ -31,7 +31,7 @@ import {
|
|||||||
|
|
||||||
type TIdentityGcpAuthServiceFactoryDep = {
|
type TIdentityGcpAuthServiceFactoryDep = {
|
||||||
identityGcpAuthDAL: Pick<TIdentityGcpAuthDALFactory, "findOne" | "transaction" | "create" | "updateById" | "delete">;
|
identityGcpAuthDAL: Pick<TIdentityGcpAuthDALFactory, "findOne" | "transaction" | "create" | "updateById" | "delete">;
|
||||||
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne">;
|
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne" | "updateById">;
|
||||||
identityAccessTokenDAL: Pick<TIdentityAccessTokenDALFactory, "create" | "delete">;
|
identityAccessTokenDAL: Pick<TIdentityAccessTokenDALFactory, "create" | "delete">;
|
||||||
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
||||||
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
||||||
@@ -119,6 +119,13 @@ export const identityGcpAuthServiceFactory = ({
|
|||||||
}
|
}
|
||||||
|
|
||||||
const identityAccessToken = await identityGcpAuthDAL.transaction(async (tx) => {
|
const identityAccessToken = await identityGcpAuthDAL.transaction(async (tx) => {
|
||||||
|
await identityOrgMembershipDAL.updateById(
|
||||||
|
identityMembershipOrg.id,
|
||||||
|
{
|
||||||
|
lastLoggedInAuthMethod: IdentityAuthMethod.GCP_AUTH
|
||||||
|
},
|
||||||
|
tx
|
||||||
|
);
|
||||||
const newToken = await identityAccessTokenDAL.create(
|
const newToken = await identityAccessTokenDAL.create(
|
||||||
{
|
{
|
||||||
identityId: identityGcpAuth.identityId,
|
identityId: identityGcpAuth.identityId,
|
||||||
|
|||||||
@@ -43,7 +43,7 @@ import {
|
|||||||
|
|
||||||
type TIdentityJwtAuthServiceFactoryDep = {
|
type TIdentityJwtAuthServiceFactoryDep = {
|
||||||
identityJwtAuthDAL: TIdentityJwtAuthDALFactory;
|
identityJwtAuthDAL: TIdentityJwtAuthDALFactory;
|
||||||
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne">;
|
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne" | "updateById">;
|
||||||
identityAccessTokenDAL: Pick<TIdentityAccessTokenDALFactory, "create" | "delete">;
|
identityAccessTokenDAL: Pick<TIdentityAccessTokenDALFactory, "create" | "delete">;
|
||||||
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
||||||
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
||||||
@@ -209,6 +209,13 @@ export const identityJwtAuthServiceFactory = ({
|
|||||||
}
|
}
|
||||||
|
|
||||||
const identityAccessToken = await identityJwtAuthDAL.transaction(async (tx) => {
|
const identityAccessToken = await identityJwtAuthDAL.transaction(async (tx) => {
|
||||||
|
await identityOrgMembershipDAL.updateById(
|
||||||
|
identityMembershipOrg.id,
|
||||||
|
{
|
||||||
|
lastLoggedInAuthMethod: IdentityAuthMethod.JWT_AUTH
|
||||||
|
},
|
||||||
|
tx
|
||||||
|
);
|
||||||
const newToken = await identityAccessTokenDAL.create(
|
const newToken = await identityAccessTokenDAL.create(
|
||||||
{
|
{
|
||||||
identityId: identityJwtAuth.identityId,
|
identityId: identityJwtAuth.identityId,
|
||||||
|
|||||||
@@ -49,7 +49,7 @@ type TIdentityKubernetesAuthServiceFactoryDep = {
|
|||||||
"create" | "findOne" | "transaction" | "updateById" | "delete"
|
"create" | "findOne" | "transaction" | "updateById" | "delete"
|
||||||
>;
|
>;
|
||||||
identityAccessTokenDAL: Pick<TIdentityAccessTokenDALFactory, "create" | "delete">;
|
identityAccessTokenDAL: Pick<TIdentityAccessTokenDALFactory, "create" | "delete">;
|
||||||
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne" | "findById">;
|
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne" | "findById" | "updateById">;
|
||||||
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
||||||
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
||||||
kmsService: Pick<TKmsServiceFactory, "createCipherPairWithDataKey">;
|
kmsService: Pick<TKmsServiceFactory, "createCipherPairWithDataKey">;
|
||||||
@@ -380,6 +380,13 @@ export const identityKubernetesAuthServiceFactory = ({
|
|||||||
}
|
}
|
||||||
|
|
||||||
const identityAccessToken = await identityKubernetesAuthDAL.transaction(async (tx) => {
|
const identityAccessToken = await identityKubernetesAuthDAL.transaction(async (tx) => {
|
||||||
|
await identityOrgMembershipDAL.updateById(
|
||||||
|
identityMembershipOrg.id,
|
||||||
|
{
|
||||||
|
lastLoggedInAuthMethod: IdentityAuthMethod.KUBERNETES_AUTH
|
||||||
|
},
|
||||||
|
tx
|
||||||
|
);
|
||||||
const newToken = await identityAccessTokenDAL.create(
|
const newToken = await identityAccessTokenDAL.create(
|
||||||
{
|
{
|
||||||
identityId: identityKubernetesAuth.identityId,
|
identityId: identityKubernetesAuth.identityId,
|
||||||
|
|||||||
@@ -44,7 +44,7 @@ type TIdentityLdapAuthServiceFactoryDep = {
|
|||||||
TIdentityLdapAuthDALFactory,
|
TIdentityLdapAuthDALFactory,
|
||||||
"findOne" | "transaction" | "create" | "updateById" | "delete"
|
"findOne" | "transaction" | "create" | "updateById" | "delete"
|
||||||
>;
|
>;
|
||||||
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne">;
|
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne" | "updateById">;
|
||||||
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
||||||
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
||||||
kmsService: TKmsServiceFactory;
|
kmsService: TKmsServiceFactory;
|
||||||
@@ -144,6 +144,13 @@ export const identityLdapAuthServiceFactory = ({
|
|||||||
}
|
}
|
||||||
|
|
||||||
const identityAccessToken = await identityLdapAuthDAL.transaction(async (tx) => {
|
const identityAccessToken = await identityLdapAuthDAL.transaction(async (tx) => {
|
||||||
|
await identityOrgMembershipDAL.updateById(
|
||||||
|
identityMembershipOrg.id,
|
||||||
|
{
|
||||||
|
lastLoggedInAuthMethod: IdentityAuthMethod.LDAP_AUTH
|
||||||
|
},
|
||||||
|
tx
|
||||||
|
);
|
||||||
const newToken = await identityAccessTokenDAL.create(
|
const newToken = await identityAccessTokenDAL.create(
|
||||||
{
|
{
|
||||||
identityId: identityLdapAuth.identityId,
|
identityId: identityLdapAuth.identityId,
|
||||||
|
|||||||
@@ -36,7 +36,7 @@ import {
|
|||||||
type TIdentityOciAuthServiceFactoryDep = {
|
type TIdentityOciAuthServiceFactoryDep = {
|
||||||
identityAccessTokenDAL: Pick<TIdentityAccessTokenDALFactory, "create" | "delete">;
|
identityAccessTokenDAL: Pick<TIdentityAccessTokenDALFactory, "create" | "delete">;
|
||||||
identityOciAuthDAL: Pick<TIdentityOciAuthDALFactory, "findOne" | "transaction" | "create" | "updateById" | "delete">;
|
identityOciAuthDAL: Pick<TIdentityOciAuthDALFactory, "findOne" | "transaction" | "create" | "updateById" | "delete">;
|
||||||
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne">;
|
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne" | "updateById">;
|
||||||
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
||||||
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
||||||
};
|
};
|
||||||
@@ -91,6 +91,13 @@ export const identityOciAuthServiceFactory = ({
|
|||||||
|
|
||||||
// Generate the token
|
// Generate the token
|
||||||
const identityAccessToken = await identityOciAuthDAL.transaction(async (tx) => {
|
const identityAccessToken = await identityOciAuthDAL.transaction(async (tx) => {
|
||||||
|
await identityOrgMembershipDAL.updateById(
|
||||||
|
identityMembershipOrg.id,
|
||||||
|
{
|
||||||
|
lastLoggedInAuthMethod: IdentityAuthMethod.OCI_AUTH
|
||||||
|
},
|
||||||
|
tx
|
||||||
|
);
|
||||||
const newToken = await identityAccessTokenDAL.create(
|
const newToken = await identityAccessTokenDAL.create(
|
||||||
{
|
{
|
||||||
identityId: identityOciAuth.identityId,
|
identityId: identityOciAuth.identityId,
|
||||||
|
|||||||
@@ -43,7 +43,7 @@ import {
|
|||||||
|
|
||||||
type TIdentityOidcAuthServiceFactoryDep = {
|
type TIdentityOidcAuthServiceFactoryDep = {
|
||||||
identityOidcAuthDAL: TIdentityOidcAuthDALFactory;
|
identityOidcAuthDAL: TIdentityOidcAuthDALFactory;
|
||||||
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne">;
|
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne" | "updateById">;
|
||||||
identityAccessTokenDAL: Pick<TIdentityAccessTokenDALFactory, "create" | "delete">;
|
identityAccessTokenDAL: Pick<TIdentityAccessTokenDALFactory, "create" | "delete">;
|
||||||
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
||||||
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
||||||
@@ -178,6 +178,13 @@ export const identityOidcAuthServiceFactory = ({
|
|||||||
}
|
}
|
||||||
|
|
||||||
const identityAccessToken = await identityOidcAuthDAL.transaction(async (tx) => {
|
const identityAccessToken = await identityOidcAuthDAL.transaction(async (tx) => {
|
||||||
|
await identityOrgMembershipDAL.updateById(
|
||||||
|
identityMembershipOrg.id,
|
||||||
|
{
|
||||||
|
lastLoggedInAuthMethod: IdentityAuthMethod.OIDC_AUTH
|
||||||
|
},
|
||||||
|
tx
|
||||||
|
);
|
||||||
const newToken = await identityAccessTokenDAL.create(
|
const newToken = await identityAccessTokenDAL.create(
|
||||||
{
|
{
|
||||||
identityId: identityOidcAuth.identityId,
|
identityId: identityOidcAuth.identityId,
|
||||||
|
|||||||
@@ -30,7 +30,7 @@ type TIdentityTlsCertAuthServiceFactoryDep = {
|
|||||||
TIdentityTlsCertAuthDALFactory,
|
TIdentityTlsCertAuthDALFactory,
|
||||||
"findOne" | "transaction" | "create" | "updateById" | "delete"
|
"findOne" | "transaction" | "create" | "updateById" | "delete"
|
||||||
>;
|
>;
|
||||||
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne">;
|
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne" | "updateById">;
|
||||||
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
licenseService: Pick<TLicenseServiceFactory, "getPlan">;
|
||||||
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
permissionService: Pick<TPermissionServiceFactory, "getOrgPermission">;
|
||||||
kmsService: Pick<TKmsServiceFactory, "createCipherPairWithDataKey">;
|
kmsService: Pick<TKmsServiceFactory, "createCipherPairWithDataKey">;
|
||||||
@@ -118,6 +118,13 @@ export const identityTlsCertAuthServiceFactory = ({
|
|||||||
|
|
||||||
// Generate the token
|
// Generate the token
|
||||||
const identityAccessToken = await identityTlsCertAuthDAL.transaction(async (tx) => {
|
const identityAccessToken = await identityTlsCertAuthDAL.transaction(async (tx) => {
|
||||||
|
await identityOrgMembershipDAL.updateById(
|
||||||
|
identityMembershipOrg.id,
|
||||||
|
{
|
||||||
|
lastLoggedInAuthMethod: IdentityAuthMethod.TLS_CERT_AUTH
|
||||||
|
},
|
||||||
|
tx
|
||||||
|
);
|
||||||
const newToken = await identityAccessTokenDAL.create(
|
const newToken = await identityAccessTokenDAL.create(
|
||||||
{
|
{
|
||||||
identityId: identityTlsCertAuth.identityId,
|
identityId: identityTlsCertAuth.identityId,
|
||||||
|
|||||||
@@ -35,7 +35,7 @@ type TIdentityTokenAuthServiceFactoryDep = {
|
|||||||
TIdentityTokenAuthDALFactory,
|
TIdentityTokenAuthDALFactory,
|
||||||
"transaction" | "create" | "findOne" | "updateById" | "delete"
|
"transaction" | "create" | "findOne" | "updateById" | "delete"
|
||||||
>;
|
>;
|
||||||
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne">;
|
identityOrgMembershipDAL: Pick<TIdentityOrgDALFactory, "findOne" | "updateById">;
|
||||||
identityAccessTokenDAL: Pick<
|
identityAccessTokenDAL: Pick<
|
||||||
TIdentityAccessTokenDALFactory,
|
TIdentityAccessTokenDALFactory,
|
||||||
"create" | "find" | "update" | "findById" | "findOne" | "updateById" | "delete"
|
"create" | "find" | "update" | "findById" | "findOne" | "updateById" | "delete"
|
||||||
@@ -345,6 +345,13 @@ export const identityTokenAuthServiceFactory = ({
|
|||||||
const identityTokenAuth = await identityTokenAuthDAL.findOne({ identityId });
|
const identityTokenAuth = await identityTokenAuthDAL.findOne({ identityId });
|
||||||
|
|
||||||
const identityAccessToken = await identityTokenAuthDAL.transaction(async (tx) => {
|
const identityAccessToken = await identityTokenAuthDAL.transaction(async (tx) => {
|
||||||
|
await identityOrgMembershipDAL.updateById(
|
||||||
|
identityMembershipOrg.id,
|
||||||
|
{
|
||||||
|
lastLoggedInAuthMethod: IdentityAuthMethod.TOKEN_AUTH
|
||||||
|
},
|
||||||
|
tx
|
||||||
|
);
|
||||||
const newToken = await identityAccessTokenDAL.create(
|
const newToken = await identityAccessTokenDAL.create(
|
||||||
{
|
{
|
||||||
identityId: identityTokenAuth.identityId,
|
identityId: identityTokenAuth.identityId,
|
||||||
|
|||||||
@@ -59,6 +59,11 @@ export const identityUaServiceFactory = ({
|
|||||||
}
|
}
|
||||||
|
|
||||||
const identityMembershipOrg = await identityOrgMembershipDAL.findOne({ identityId: identityUa.identityId });
|
const identityMembershipOrg = await identityOrgMembershipDAL.findOne({ identityId: identityUa.identityId });
|
||||||
|
if (!identityMembershipOrg) {
|
||||||
|
throw new NotFoundError({
|
||||||
|
message: "No identity with the org membership was found"
|
||||||
|
});
|
||||||
|
}
|
||||||
|
|
||||||
checkIPAgainstBlocklist({
|
checkIPAgainstBlocklist({
|
||||||
ipAddress: ip,
|
ipAddress: ip,
|
||||||
@@ -127,7 +132,13 @@ export const identityUaServiceFactory = ({
|
|||||||
|
|
||||||
const identityAccessToken = await identityUaDAL.transaction(async (tx) => {
|
const identityAccessToken = await identityUaDAL.transaction(async (tx) => {
|
||||||
const uaClientSecretDoc = await identityUaClientSecretDAL.incrementUsage(validClientSecretInfo!.id, tx);
|
const uaClientSecretDoc = await identityUaClientSecretDAL.incrementUsage(validClientSecretInfo!.id, tx);
|
||||||
|
await identityOrgMembershipDAL.updateById(
|
||||||
|
identityMembershipOrg.id,
|
||||||
|
{
|
||||||
|
lastLoggedInAuthMethod: IdentityAuthMethod.UNIVERSAL_AUTH
|
||||||
|
},
|
||||||
|
tx
|
||||||
|
);
|
||||||
const newToken = await identityAccessTokenDAL.create(
|
const newToken = await identityAccessTokenDAL.create(
|
||||||
{
|
{
|
||||||
identityId: identityUa.identityId,
|
identityId: identityUa.identityId,
|
||||||
|
|||||||
@@ -254,6 +254,7 @@ export const identityOrgDALFactory = (db: TDbClient) => {
|
|||||||
db.ref("role").withSchema("paginatedIdentity"),
|
db.ref("role").withSchema("paginatedIdentity"),
|
||||||
db.ref("roleId").withSchema("paginatedIdentity"),
|
db.ref("roleId").withSchema("paginatedIdentity"),
|
||||||
db.ref("orgId").withSchema("paginatedIdentity"),
|
db.ref("orgId").withSchema("paginatedIdentity"),
|
||||||
|
db.ref("lastLoggedInAuthMethod").withSchema("paginatedIdentity"),
|
||||||
db.ref("createdAt").withSchema("paginatedIdentity"),
|
db.ref("createdAt").withSchema("paginatedIdentity"),
|
||||||
db.ref("updatedAt").withSchema("paginatedIdentity"),
|
db.ref("updatedAt").withSchema("paginatedIdentity"),
|
||||||
db.ref("identityId").withSchema("paginatedIdentity").as("identityId"),
|
db.ref("identityId").withSchema("paginatedIdentity").as("identityId"),
|
||||||
@@ -319,7 +320,8 @@ export const identityOrgDALFactory = (db: TDbClient) => {
|
|||||||
ldapId,
|
ldapId,
|
||||||
tlsCertId,
|
tlsCertId,
|
||||||
createdAt,
|
createdAt,
|
||||||
updatedAt
|
updatedAt,
|
||||||
|
lastLoggedInAuthMethod
|
||||||
}) => ({
|
}) => ({
|
||||||
role,
|
role,
|
||||||
roleId,
|
roleId,
|
||||||
@@ -328,6 +330,7 @@ export const identityOrgDALFactory = (db: TDbClient) => {
|
|||||||
orgId,
|
orgId,
|
||||||
createdAt,
|
createdAt,
|
||||||
updatedAt,
|
updatedAt,
|
||||||
|
lastLoggedInAuthMethod,
|
||||||
customRole: roleId
|
customRole: roleId
|
||||||
? {
|
? {
|
||||||
id: crId,
|
id: crId,
|
||||||
@@ -497,6 +500,7 @@ export const identityOrgDALFactory = (db: TDbClient) => {
|
|||||||
db.ref("orgId").withSchema(TableName.IdentityOrgMembership),
|
db.ref("orgId").withSchema(TableName.IdentityOrgMembership),
|
||||||
db.ref("createdAt").withSchema(TableName.IdentityOrgMembership),
|
db.ref("createdAt").withSchema(TableName.IdentityOrgMembership),
|
||||||
db.ref("updatedAt").withSchema(TableName.IdentityOrgMembership),
|
db.ref("updatedAt").withSchema(TableName.IdentityOrgMembership),
|
||||||
|
db.ref("lastLoggedInAuthMethod").withSchema(TableName.IdentityOrgMembership),
|
||||||
db.ref("identityId").withSchema(TableName.IdentityOrgMembership).as("identityId"),
|
db.ref("identityId").withSchema(TableName.IdentityOrgMembership).as("identityId"),
|
||||||
db.ref("name").withSchema(TableName.Identity).as("identityName"),
|
db.ref("name").withSchema(TableName.Identity).as("identityName"),
|
||||||
db.ref("hasDeleteProtection").withSchema(TableName.Identity),
|
db.ref("hasDeleteProtection").withSchema(TableName.Identity),
|
||||||
@@ -576,7 +580,8 @@ export const identityOrgDALFactory = (db: TDbClient) => {
|
|||||||
tokenId,
|
tokenId,
|
||||||
ldapId,
|
ldapId,
|
||||||
createdAt,
|
createdAt,
|
||||||
updatedAt
|
updatedAt,
|
||||||
|
lastLoggedInAuthMethod
|
||||||
}) => ({
|
}) => ({
|
||||||
role,
|
role,
|
||||||
roleId,
|
roleId,
|
||||||
@@ -586,6 +591,7 @@ export const identityOrgDALFactory = (db: TDbClient) => {
|
|||||||
orgId,
|
orgId,
|
||||||
createdAt,
|
createdAt,
|
||||||
updatedAt,
|
updatedAt,
|
||||||
|
lastLoggedInAuthMethod,
|
||||||
customRole: roleId
|
customRole: roleId
|
||||||
? {
|
? {
|
||||||
id: crId,
|
id: crId,
|
||||||
|
|||||||
@@ -32,6 +32,7 @@ export const orgMembershipDALFactory = (db: TDbClient) => {
|
|||||||
db.ref("roleId").withSchema(TableName.OrgMembership),
|
db.ref("roleId").withSchema(TableName.OrgMembership),
|
||||||
db.ref("status").withSchema(TableName.OrgMembership),
|
db.ref("status").withSchema(TableName.OrgMembership),
|
||||||
db.ref("isActive").withSchema(TableName.OrgMembership),
|
db.ref("isActive").withSchema(TableName.OrgMembership),
|
||||||
|
db.ref("lastLoggedInAuthMethod").withSchema(TableName.OrgMembership),
|
||||||
db.ref("email").withSchema(TableName.Users),
|
db.ref("email").withSchema(TableName.Users),
|
||||||
db.ref("username").withSchema(TableName.Users),
|
db.ref("username").withSchema(TableName.Users),
|
||||||
db.ref("firstName").withSchema(TableName.Users),
|
db.ref("firstName").withSchema(TableName.Users),
|
||||||
@@ -64,7 +65,8 @@ export const orgMembershipDALFactory = (db: TDbClient) => {
|
|||||||
role,
|
role,
|
||||||
status,
|
status,
|
||||||
isActive,
|
isActive,
|
||||||
inviteEmail
|
inviteEmail,
|
||||||
|
lastLoggedInAuthMethod
|
||||||
}) => ({
|
}) => ({
|
||||||
roleId,
|
roleId,
|
||||||
orgId,
|
orgId,
|
||||||
@@ -73,6 +75,7 @@ export const orgMembershipDALFactory = (db: TDbClient) => {
|
|||||||
status,
|
status,
|
||||||
isActive,
|
isActive,
|
||||||
inviteEmail,
|
inviteEmail,
|
||||||
|
lastLoggedInAuthMethod,
|
||||||
user: {
|
user: {
|
||||||
id: userId,
|
id: userId,
|
||||||
email,
|
email,
|
||||||
|
|||||||
@@ -285,6 +285,7 @@ export const orgDALFactory = (db: TDbClient) => {
|
|||||||
db.ref("roleId").withSchema(TableName.OrgMembership),
|
db.ref("roleId").withSchema(TableName.OrgMembership),
|
||||||
db.ref("status").withSchema(TableName.OrgMembership),
|
db.ref("status").withSchema(TableName.OrgMembership),
|
||||||
db.ref("isActive").withSchema(TableName.OrgMembership),
|
db.ref("isActive").withSchema(TableName.OrgMembership),
|
||||||
|
db.ref("lastLoggedInAuthMethod").withSchema(TableName.OrgMembership),
|
||||||
db.ref("email").withSchema(TableName.Users),
|
db.ref("email").withSchema(TableName.Users),
|
||||||
db.ref("isEmailVerified").withSchema(TableName.Users),
|
db.ref("isEmailVerified").withSchema(TableName.Users),
|
||||||
db.ref("username").withSchema(TableName.Users),
|
db.ref("username").withSchema(TableName.Users),
|
||||||
|
|||||||
@@ -0,0 +1,23 @@
|
|||||||
|
import { faEnvelope } from "@fortawesome/free-solid-svg-icons";
|
||||||
|
import { FontAwesomeIcon } from "@fortawesome/react-fontawesome";
|
||||||
|
|
||||||
|
type Props = {
|
||||||
|
lastLoggedInAuthMethod: string;
|
||||||
|
};
|
||||||
|
|
||||||
|
export const LastLoginSection = ({ lastLoggedInAuthMethod }: Props) => (
|
||||||
|
<div className="">
|
||||||
|
<div className="mb-2 flex items-center gap-2 border-b border-mineshaft-600 pb-1">
|
||||||
|
<div className="font-medium">Last Login Details</div>
|
||||||
|
</div>
|
||||||
|
<div className="flex items-center gap-2 text-sm">
|
||||||
|
<div className="rounded bg-mineshaft-700 p-1 px-2">
|
||||||
|
<FontAwesomeIcon icon={faEnvelope} />
|
||||||
|
</div>
|
||||||
|
<div className="flex flex-col">
|
||||||
|
<div className="text-sm font-medium">Authentication Method</div>
|
||||||
|
<div className="text-sm">{lastLoggedInAuthMethod}</div>
|
||||||
|
</div>
|
||||||
|
</div>
|
||||||
|
</div>
|
||||||
|
);
|
||||||
@@ -0,0 +1 @@
|
|||||||
|
export { LastLoginSection } from "./LastLoginSection";
|
||||||
@@ -1,3 +1,4 @@
|
|||||||
|
import { forwardRef } from "react";
|
||||||
import { cva, VariantProps } from "cva";
|
import { cva, VariantProps } from "cva";
|
||||||
import { twMerge } from "tailwind-merge";
|
import { twMerge } from "tailwind-merge";
|
||||||
|
|
||||||
@@ -24,13 +25,16 @@ const badgeVariants = cva(
|
|||||||
|
|
||||||
export type BadgeProps = VariantProps<typeof badgeVariants> & IProps;
|
export type BadgeProps = VariantProps<typeof badgeVariants> & IProps;
|
||||||
|
|
||||||
export const Badge = ({ children, className, variant, ...props }: BadgeProps) => {
|
export const Badge = forwardRef<HTMLDivElement, BadgeProps>(
|
||||||
return (
|
({ children, className, variant, ...props }, ref) => {
|
||||||
<div
|
return (
|
||||||
className={twMerge(badgeVariants({ variant: variant || "primary" }), className)}
|
<div
|
||||||
{...props}
|
className={twMerge(badgeVariants({ variant: variant || "primary" }), className)}
|
||||||
>
|
{...props}
|
||||||
{children}
|
ref={ref}
|
||||||
</div>
|
>
|
||||||
);
|
{children}
|
||||||
};
|
</div>
|
||||||
|
);
|
||||||
|
}
|
||||||
|
);
|
||||||
|
|||||||
@@ -41,6 +41,7 @@ export type IdentityMembershipOrg = {
|
|||||||
id: string;
|
id: string;
|
||||||
identity: Identity;
|
identity: Identity;
|
||||||
organization: string;
|
organization: string;
|
||||||
|
lastLoggedInAuthMethod?: IdentityAuthMethod;
|
||||||
metadata: { key: string; value: string; id: string }[];
|
metadata: { key: string; value: string; id: string }[];
|
||||||
role: "admin" | "member" | "viewer" | "no-access" | "custom";
|
role: "admin" | "member" | "viewer" | "no-access" | "custom";
|
||||||
customRole?: TOrgRole;
|
customRole?: TOrgRole;
|
||||||
|
|||||||
@@ -68,6 +68,7 @@ export type OrgUser = {
|
|||||||
deniedPermissions: any[];
|
deniedPermissions: any[];
|
||||||
roleId: string;
|
roleId: string;
|
||||||
isActive: boolean;
|
isActive: boolean;
|
||||||
|
lastLoggedInAuthMethod?: AuthMethod;
|
||||||
};
|
};
|
||||||
|
|
||||||
export type TProjectMembership = {
|
export type TProjectMembership = {
|
||||||
|
|||||||
+122
-102
@@ -7,6 +7,7 @@ import {
|
|||||||
faEdit,
|
faEdit,
|
||||||
faEllipsisV,
|
faEllipsisV,
|
||||||
faFilter,
|
faFilter,
|
||||||
|
faInfoCircle,
|
||||||
faMagnifyingGlass,
|
faMagnifyingGlass,
|
||||||
faServer,
|
faServer,
|
||||||
faTrash
|
faTrash
|
||||||
@@ -16,6 +17,7 @@ import { useNavigate } from "@tanstack/react-router";
|
|||||||
import { twMerge } from "tailwind-merge";
|
import { twMerge } from "tailwind-merge";
|
||||||
|
|
||||||
import { createNotification } from "@app/components/notifications";
|
import { createNotification } from "@app/components/notifications";
|
||||||
|
import { LastLoginSection } from "@app/components/organization/LastLoginSection";
|
||||||
import { OrgPermissionCan } from "@app/components/permissions";
|
import { OrgPermissionCan } from "@app/components/permissions";
|
||||||
import {
|
import {
|
||||||
DropdownMenu,
|
DropdownMenu,
|
||||||
@@ -40,6 +42,7 @@ import {
|
|||||||
Td,
|
Td,
|
||||||
Th,
|
Th,
|
||||||
THead,
|
THead,
|
||||||
|
Tooltip,
|
||||||
Tr
|
Tr
|
||||||
} from "@app/components/v2";
|
} from "@app/components/v2";
|
||||||
import { OrgPermissionIdentityActions, OrgPermissionSubjects, useOrganization } from "@app/context";
|
import { OrgPermissionIdentityActions, OrgPermissionSubjects, useOrganization } from "@app/context";
|
||||||
@@ -284,112 +287,129 @@ export const IdentityTable = ({ handlePopUpOpen }: Props) => {
|
|||||||
<TBody>
|
<TBody>
|
||||||
{isPending && <TableSkeleton columns={3} innerKey="org-identities" />}
|
{isPending && <TableSkeleton columns={3} innerKey="org-identities" />}
|
||||||
{!isPending &&
|
{!isPending &&
|
||||||
data?.identities?.map(({ identity: { id, name }, role, customRole }) => {
|
data?.identities?.map(
|
||||||
return (
|
({ identity: { id, name }, role, customRole, lastLoggedInAuthMethod }) => {
|
||||||
<Tr
|
return (
|
||||||
className="h-10 cursor-pointer transition-colors duration-100 hover:bg-mineshaft-700"
|
<Tr
|
||||||
key={`identity-${id}`}
|
className="h-10 cursor-pointer transition-colors duration-100 hover:bg-mineshaft-700"
|
||||||
onClick={() =>
|
key={`identity-${id}`}
|
||||||
navigate({
|
onClick={() =>
|
||||||
to: "/organization/identities/$identityId",
|
navigate({
|
||||||
params: {
|
to: "/organization/identities/$identityId",
|
||||||
identityId: id
|
params: {
|
||||||
}
|
identityId: id
|
||||||
})
|
}
|
||||||
}
|
})
|
||||||
>
|
}
|
||||||
<Td>{name}</Td>
|
>
|
||||||
<Td>
|
<Td className="group">
|
||||||
<OrgPermissionCan
|
{name}
|
||||||
I={OrgPermissionIdentityActions.Edit}
|
{lastLoggedInAuthMethod && (
|
||||||
a={OrgPermissionSubjects.Identity}
|
<Tooltip
|
||||||
>
|
className="min-w-52 max-w-96"
|
||||||
{(isAllowed) => {
|
content={
|
||||||
return (
|
<LastLoginSection lastLoggedInAuthMethod={lastLoggedInAuthMethod} />
|
||||||
<Select
|
}
|
||||||
value={role === "custom" ? (customRole?.slug as string) : role}
|
|
||||||
isDisabled={!isAllowed}
|
|
||||||
className="h-8 w-48 bg-mineshaft-700"
|
|
||||||
position="popper"
|
|
||||||
dropdownContainerClassName="border border-mineshaft-600 bg-mineshaft-800"
|
|
||||||
onValueChange={(selectedRole) =>
|
|
||||||
handleChangeRole({
|
|
||||||
identityId: id,
|
|
||||||
role: selectedRole
|
|
||||||
})
|
|
||||||
}
|
|
||||||
>
|
|
||||||
{(roles || []).map(({ slug, name: roleName }) => (
|
|
||||||
<SelectItem value={slug} key={`owner-option-${slug}`}>
|
|
||||||
{roleName}
|
|
||||||
</SelectItem>
|
|
||||||
))}
|
|
||||||
</Select>
|
|
||||||
);
|
|
||||||
}}
|
|
||||||
</OrgPermissionCan>
|
|
||||||
</Td>
|
|
||||||
<Td>
|
|
||||||
<DropdownMenu>
|
|
||||||
<DropdownMenuTrigger asChild>
|
|
||||||
<IconButton
|
|
||||||
ariaLabel="Options"
|
|
||||||
className="w-6"
|
|
||||||
colorSchema="secondary"
|
|
||||||
variant="plain"
|
|
||||||
>
|
>
|
||||||
<FontAwesomeIcon icon={faEllipsisV} />
|
<FontAwesomeIcon
|
||||||
</IconButton>
|
icon={faInfoCircle}
|
||||||
</DropdownMenuTrigger>
|
className="ml-2 text-mineshaft-400 opacity-0 transition-all group-hover:opacity-100"
|
||||||
<DropdownMenuContent sideOffset={2} align="end">
|
/>
|
||||||
<OrgPermissionCan
|
</Tooltip>
|
||||||
I={OrgPermissionIdentityActions.Edit}
|
)}
|
||||||
a={OrgPermissionSubjects.Identity}
|
</Td>
|
||||||
>
|
<Td>
|
||||||
{(isAllowed) => (
|
<OrgPermissionCan
|
||||||
<DropdownMenuItem
|
I={OrgPermissionIdentityActions.Edit}
|
||||||
icon={<FontAwesomeIcon icon={faEdit} />}
|
a={OrgPermissionSubjects.Identity}
|
||||||
onClick={(e) => {
|
>
|
||||||
e.stopPropagation();
|
{(isAllowed) => {
|
||||||
navigate({
|
return (
|
||||||
to: "/organization/identities/$identityId",
|
<Select
|
||||||
params: {
|
value={role === "custom" ? (customRole?.slug as string) : role}
|
||||||
identityId: id
|
|
||||||
}
|
|
||||||
});
|
|
||||||
}}
|
|
||||||
isDisabled={!isAllowed}
|
isDisabled={!isAllowed}
|
||||||
>
|
className="h-8 w-48 bg-mineshaft-700"
|
||||||
Edit Identity
|
position="popper"
|
||||||
</DropdownMenuItem>
|
dropdownContainerClassName="border border-mineshaft-600 bg-mineshaft-800"
|
||||||
)}
|
onValueChange={(selectedRole) =>
|
||||||
</OrgPermissionCan>
|
handleChangeRole({
|
||||||
<OrgPermissionCan
|
|
||||||
I={OrgPermissionIdentityActions.Delete}
|
|
||||||
a={OrgPermissionSubjects.Identity}
|
|
||||||
>
|
|
||||||
{(isAllowed) => (
|
|
||||||
<DropdownMenuItem
|
|
||||||
onClick={(e) => {
|
|
||||||
e.stopPropagation();
|
|
||||||
handlePopUpOpen("deleteIdentity", {
|
|
||||||
identityId: id,
|
identityId: id,
|
||||||
name
|
role: selectedRole
|
||||||
});
|
})
|
||||||
}}
|
}
|
||||||
isDisabled={!isAllowed}
|
|
||||||
icon={<FontAwesomeIcon icon={faTrash} />}
|
|
||||||
>
|
>
|
||||||
Delete Identity
|
{(roles || []).map(({ slug, name: roleName }) => (
|
||||||
</DropdownMenuItem>
|
<SelectItem value={slug} key={`owner-option-${slug}`}>
|
||||||
)}
|
{roleName}
|
||||||
</OrgPermissionCan>
|
</SelectItem>
|
||||||
</DropdownMenuContent>
|
))}
|
||||||
</DropdownMenu>
|
</Select>
|
||||||
</Td>
|
);
|
||||||
</Tr>
|
}}
|
||||||
);
|
</OrgPermissionCan>
|
||||||
})}
|
</Td>
|
||||||
|
<Td>
|
||||||
|
<DropdownMenu>
|
||||||
|
<DropdownMenuTrigger asChild>
|
||||||
|
<IconButton
|
||||||
|
ariaLabel="Options"
|
||||||
|
className="w-6"
|
||||||
|
colorSchema="secondary"
|
||||||
|
variant="plain"
|
||||||
|
>
|
||||||
|
<FontAwesomeIcon icon={faEllipsisV} />
|
||||||
|
</IconButton>
|
||||||
|
</DropdownMenuTrigger>
|
||||||
|
<DropdownMenuContent sideOffset={2} align="end">
|
||||||
|
<OrgPermissionCan
|
||||||
|
I={OrgPermissionIdentityActions.Edit}
|
||||||
|
a={OrgPermissionSubjects.Identity}
|
||||||
|
>
|
||||||
|
{(isAllowed) => (
|
||||||
|
<DropdownMenuItem
|
||||||
|
icon={<FontAwesomeIcon icon={faEdit} />}
|
||||||
|
onClick={(e) => {
|
||||||
|
e.stopPropagation();
|
||||||
|
navigate({
|
||||||
|
to: "/organization/identities/$identityId",
|
||||||
|
params: {
|
||||||
|
identityId: id
|
||||||
|
}
|
||||||
|
});
|
||||||
|
}}
|
||||||
|
isDisabled={!isAllowed}
|
||||||
|
>
|
||||||
|
Edit Identity
|
||||||
|
</DropdownMenuItem>
|
||||||
|
)}
|
||||||
|
</OrgPermissionCan>
|
||||||
|
<OrgPermissionCan
|
||||||
|
I={OrgPermissionIdentityActions.Delete}
|
||||||
|
a={OrgPermissionSubjects.Identity}
|
||||||
|
>
|
||||||
|
{(isAllowed) => (
|
||||||
|
<DropdownMenuItem
|
||||||
|
onClick={(e) => {
|
||||||
|
e.stopPropagation();
|
||||||
|
handlePopUpOpen("deleteIdentity", {
|
||||||
|
identityId: id,
|
||||||
|
name
|
||||||
|
});
|
||||||
|
}}
|
||||||
|
isDisabled={!isAllowed}
|
||||||
|
icon={<FontAwesomeIcon icon={faTrash} />}
|
||||||
|
>
|
||||||
|
Delete Identity
|
||||||
|
</DropdownMenuItem>
|
||||||
|
)}
|
||||||
|
</OrgPermissionCan>
|
||||||
|
</DropdownMenuContent>
|
||||||
|
</DropdownMenu>
|
||||||
|
</Td>
|
||||||
|
</Tr>
|
||||||
|
);
|
||||||
|
}
|
||||||
|
)}
|
||||||
</TBody>
|
</TBody>
|
||||||
</Table>
|
</Table>
|
||||||
{!isPending && data && totalCount > 0 && (
|
{!isPending && data && totalCount > 0 && (
|
||||||
|
|||||||
+28
-2
@@ -7,6 +7,7 @@ import {
|
|||||||
faEdit,
|
faEdit,
|
||||||
faEllipsisV,
|
faEllipsisV,
|
||||||
faFilter,
|
faFilter,
|
||||||
|
faInfoCircle,
|
||||||
faMagnifyingGlass,
|
faMagnifyingGlass,
|
||||||
faSearch,
|
faSearch,
|
||||||
faUsers,
|
faUsers,
|
||||||
@@ -19,6 +20,7 @@ import { useNavigate } from "@tanstack/react-router";
|
|||||||
import { twMerge } from "tailwind-merge";
|
import { twMerge } from "tailwind-merge";
|
||||||
|
|
||||||
import { createNotification } from "@app/components/notifications";
|
import { createNotification } from "@app/components/notifications";
|
||||||
|
import { LastLoginSection } from "@app/components/organization/LastLoginSection";
|
||||||
import { OrgPermissionCan } from "@app/components/permissions";
|
import { OrgPermissionCan } from "@app/components/permissions";
|
||||||
import {
|
import {
|
||||||
Badge,
|
Badge,
|
||||||
@@ -471,7 +473,16 @@ export const OrgMembersTable = ({
|
|||||||
{isLoading && <TableSkeleton columns={5} innerKey="org-members" />}
|
{isLoading && <TableSkeleton columns={5} innerKey="org-members" />}
|
||||||
{!isLoading &&
|
{!isLoading &&
|
||||||
filteredMembersPage.map(
|
filteredMembersPage.map(
|
||||||
({ user: u, inviteEmail, role, roleId, id: orgMembershipId, status, isActive }) => {
|
({
|
||||||
|
user: u,
|
||||||
|
inviteEmail,
|
||||||
|
role,
|
||||||
|
roleId,
|
||||||
|
id: orgMembershipId,
|
||||||
|
status,
|
||||||
|
isActive,
|
||||||
|
lastLoggedInAuthMethod
|
||||||
|
}) => {
|
||||||
const name =
|
const name =
|
||||||
u && u.firstName ? `${u.firstName} ${u.lastName ?? ""}`.trim() : null;
|
u && u.firstName ? `${u.firstName} ${u.lastName ?? ""}`.trim() : null;
|
||||||
const email = u?.email || inviteEmail;
|
const email = u?.email || inviteEmail;
|
||||||
@@ -504,7 +515,9 @@ export const OrgMembersTable = ({
|
|||||||
}}
|
}}
|
||||||
/>
|
/>
|
||||||
</Td>
|
</Td>
|
||||||
<Td className={twMerge("max-w-0", isActive ? "" : "text-mineshaft-400")}>
|
<Td
|
||||||
|
className={twMerge("group max-w-0", isActive ? "" : "text-mineshaft-400")}
|
||||||
|
>
|
||||||
<div className="flex items-center">
|
<div className="flex items-center">
|
||||||
<p className="truncate">
|
<p className="truncate">
|
||||||
{name ?? <span className="text-mineshaft-400">Not Set</span>}
|
{name ?? <span className="text-mineshaft-400">Not Set</span>}
|
||||||
@@ -517,6 +530,19 @@ export const OrgMembersTable = ({
|
|||||||
</Tooltip>
|
</Tooltip>
|
||||||
</Badge>
|
</Badge>
|
||||||
)}
|
)}
|
||||||
|
{lastLoggedInAuthMethod && (
|
||||||
|
<Tooltip
|
||||||
|
className="min-w-52 max-w-96"
|
||||||
|
content={
|
||||||
|
<LastLoginSection lastLoggedInAuthMethod={lastLoggedInAuthMethod} />
|
||||||
|
}
|
||||||
|
>
|
||||||
|
<FontAwesomeIcon
|
||||||
|
icon={faInfoCircle}
|
||||||
|
className="ml-2 text-mineshaft-400 opacity-0 transition-all group-hover:opacity-100"
|
||||||
|
/>
|
||||||
|
</Tooltip>
|
||||||
|
)}
|
||||||
</div>
|
</div>
|
||||||
</Td>
|
</Td>
|
||||||
<Td className={twMerge("max-w-0", isActive ? "" : "text-mineshaft-400")}>
|
<Td className={twMerge("max-w-0", isActive ? "" : "text-mineshaft-400")}>
|
||||||
|
|||||||
+4
@@ -138,6 +138,10 @@ export const IdentityDetailsSection = ({ identityId, handlePopUpOpen }: Props) =
|
|||||||
<p className="text-sm font-semibold text-mineshaft-300">Name</p>
|
<p className="text-sm font-semibold text-mineshaft-300">Name</p>
|
||||||
<p className="text-sm text-mineshaft-300">{data.identity.name}</p>
|
<p className="text-sm text-mineshaft-300">{data.identity.name}</p>
|
||||||
</div>
|
</div>
|
||||||
|
<div className="mb-4">
|
||||||
|
<p className="text-sm font-semibold text-mineshaft-300">Last Login Auth Method</p>
|
||||||
|
<p className="text-sm text-mineshaft-300">{data.lastLoggedInAuthMethod || "-"}</p>
|
||||||
|
</div>
|
||||||
<div className="mb-4">
|
<div className="mb-4">
|
||||||
<p className="text-sm font-semibold text-mineshaft-300">Delete Protection</p>
|
<p className="text-sm font-semibold text-mineshaft-300">Delete Protection</p>
|
||||||
<p className="text-sm text-mineshaft-300">
|
<p className="text-sm text-mineshaft-300">
|
||||||
|
|||||||
@@ -159,6 +159,14 @@ export const UserDetailsSection = ({ membershipId, handlePopUpOpen }: Props) =>
|
|||||||
</p>
|
</p>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
|
<div className="mb-4">
|
||||||
|
<p className="text-sm font-semibold text-mineshaft-300">Last Login Auth Method</p>
|
||||||
|
<div className="group flex align-top">
|
||||||
|
<p className="break-all text-sm text-mineshaft-300">
|
||||||
|
{membership.lastLoggedInAuthMethod || "-"}
|
||||||
|
</p>
|
||||||
|
</div>
|
||||||
|
</div>
|
||||||
<div className="mb-4">
|
<div className="mb-4">
|
||||||
<p className="text-sm font-semibold text-mineshaft-300">Organization Role</p>
|
<p className="text-sm font-semibold text-mineshaft-300">Organization Role</p>
|
||||||
<p className="text-sm text-mineshaft-300">{roleName ?? "-"}</p>
|
<p className="text-sm text-mineshaft-300">{roleName ?? "-"}</p>
|
||||||
|
|||||||
Reference in New Issue
Block a user