mirror of
https://github.com/awatertrevi/infisical.git
synced 2026-10-09 16:28:19 +00:00
Feat: Added UA login support (defaults to 'user')
This commit is contained in:
@@ -55,6 +55,19 @@ var loginCmd = &cobra.Command{
|
|||||||
Short: "Login into your Infisical account",
|
Short: "Login into your Infisical account",
|
||||||
DisableFlagsInUseLine: true,
|
DisableFlagsInUseLine: true,
|
||||||
Run: func(cmd *cobra.Command, args []string) {
|
Run: func(cmd *cobra.Command, args []string) {
|
||||||
|
|
||||||
|
loginMethod, err := cmd.Flags().GetString("method")
|
||||||
|
|
||||||
|
if err != nil {
|
||||||
|
util.HandleError(err)
|
||||||
|
}
|
||||||
|
|
||||||
|
if loginMethod != "user" && loginMethod != "universal-auth" {
|
||||||
|
util.PrintErrorMessageAndExit("Invalid login method. Please use either 'user' or 'universal-auth'")
|
||||||
|
}
|
||||||
|
|
||||||
|
if loginMethod == "user" {
|
||||||
|
|
||||||
currentLoggedInUserDetails, err := util.GetCurrentLoggedInUserDetails()
|
currentLoggedInUserDetails, err := util.GetCurrentLoggedInUserDetails()
|
||||||
// if the key can't be found or there is an error getting current credentials from key ring, allow them to override
|
// if the key can't be found or there is an error getting current credentials from key ring, allow them to override
|
||||||
if err != nil && (strings.Contains(err.Error(), "we couldn't find your logged in details")) {
|
if err != nil && (strings.Contains(err.Error(), "we couldn't find your logged in details")) {
|
||||||
@@ -144,6 +157,46 @@ var loginCmd = &cobra.Command{
|
|||||||
fmt.Println("- Learn to inject secrets into your application at https://infisical.com/docs/cli/usage")
|
fmt.Println("- Learn to inject secrets into your application at https://infisical.com/docs/cli/usage")
|
||||||
fmt.Println("- Stuck? Join our slack for quick support https://infisical.com/slack")
|
fmt.Println("- Stuck? Join our slack for quick support https://infisical.com/slack")
|
||||||
Telemetry.CaptureEvent("cli-command:login", posthog.NewProperties().Set("infisical-backend", config.INFISICAL_URL).Set("version", util.CLI_VERSION))
|
Telemetry.CaptureEvent("cli-command:login", posthog.NewProperties().Set("infisical-backend", config.INFISICAL_URL).Set("version", util.CLI_VERSION))
|
||||||
|
} else if loginMethod == "universal-auth" {
|
||||||
|
|
||||||
|
clientId, err := cmd.Flags().GetString("client-id")
|
||||||
|
if err != nil {
|
||||||
|
util.HandleError(err)
|
||||||
|
}
|
||||||
|
|
||||||
|
clientSecret, err := cmd.Flags().GetString("client-secret")
|
||||||
|
if err != nil {
|
||||||
|
util.HandleError(err)
|
||||||
|
}
|
||||||
|
|
||||||
|
if clientId == "" {
|
||||||
|
clientId = os.Getenv(util.INFISICAL_UNIVERSAL_AUTH_CLIENT_ID_NAME)
|
||||||
|
if clientId == "" {
|
||||||
|
util.PrintErrorMessageAndExit("Please provide client-id")
|
||||||
|
}
|
||||||
|
}
|
||||||
|
if clientSecret == "" {
|
||||||
|
clientSecret = os.Getenv(util.INFISICAL_UNIVERSAL_AUTH_CLIENT_SECRET_NAME)
|
||||||
|
if clientSecret == "" {
|
||||||
|
util.PrintErrorMessageAndExit("Please provide client-secret")
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
res, err := util.UniversalAuthLogin(clientId, clientSecret)
|
||||||
|
|
||||||
|
if err != nil {
|
||||||
|
util.HandleError(err)
|
||||||
|
}
|
||||||
|
|
||||||
|
boldGreen := color.New(color.FgGreen).Add(color.Bold)
|
||||||
|
time.Sleep(time.Second * 1)
|
||||||
|
boldGreen.Printf(">>>> Successfully authenticated with Universal Auth!\n\n")
|
||||||
|
boldGreen.Printf("Universal Auth Access Token:\n%v", res.AccessToken)
|
||||||
|
|
||||||
|
plainBold := color.New(color.Bold)
|
||||||
|
plainBold.Println("\n\nYou can use this access token to authenticate through other commands in the CLI.")
|
||||||
|
|
||||||
|
}
|
||||||
},
|
},
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -313,6 +366,9 @@ func cliDefaultLogin(userCredentialsToBeStored *models.UserCredentials) {
|
|||||||
func init() {
|
func init() {
|
||||||
rootCmd.AddCommand(loginCmd)
|
rootCmd.AddCommand(loginCmd)
|
||||||
loginCmd.Flags().BoolP("interactive", "i", false, "login via the command line")
|
loginCmd.Flags().BoolP("interactive", "i", false, "login via the command line")
|
||||||
|
loginCmd.Flags().String("method", "user", "login method [user, universal-auth]")
|
||||||
|
loginCmd.Flags().String("client-id", "", "client id for universal auth")
|
||||||
|
loginCmd.Flags().String("client-secret", "", "client secret for universal auth")
|
||||||
}
|
}
|
||||||
|
|
||||||
func DomainOverridePrompt() (bool, error) {
|
func DomainOverridePrompt() (bool, error) {
|
||||||
|
|||||||
Reference in New Issue
Block a user