27cf093f85
feat: sign in setting refactor ( #472 )
...
* fix(auth): refactor setting names into domain core value objects
* fix(auth): refactor specs with setting name value objects
* feat(auth): move mute sign in emails to a subscription kind of setting
* feat(auth): add migration script to change sign in email settings to subscription settings
* chore: fix setting name usage
* fix(auth): upper casing setting names
---------
Co-authored-by: Karol Sójko <[email protected] >
2023-03-08 10:22:27 +01:00
Karol Sójko
2fad6b62cb
feat(auth): add cleanup of expired sessions
2023-03-06 10:43:53 +01:00
Karol Sójko
79ccbdf100
fix(auth): function naming for more clarity
2023-03-02 12:07:17 +01:00
Mo and GitHub
9de09c55f8
chore: upgrade api and responses dependencies ( #459 )
2023-03-01 13:51:26 -06:00
Karol Sójko
a9cc00a478
fix(auth): updating counter post authenticator verification
2023-03-01 12:48:10 +01:00
Karol Sójko
5446f3cae4
chore: upgrade @simplewebauthn lib
2023-02-27 11:46:00 +01:00
Karol Sójko
edc4a20859
fix(auth): add cross-platform authenticator selection option
2023-02-24 11:45:33 +01:00
Karol Sójko
17bd50c263
fix(auth): add safety buffer for session access token age ttl
2023-02-23 12:27:19 +01:00
Karol Sójko
5b98924561
feat(auth): add publishing session created and session refreshed events
2023-02-23 11:18:10 +01:00
Karol Sójko
f13944badc
fix(auth): mark sessions that are longer than configured as expired
2023-02-23 11:18:10 +01:00
Karol Sójko
bf55bbccd9
Revert "fix(auth): disallow adding u2f devices if a user does not have 2fa enabled"
...
This reverts commit 11bcd318ab .
2023-02-02 14:50:41 +01:00
Karol Sójko
11bcd318ab
fix(auth): disallow adding u2f devices if a user does not have 2fa enabled
2023-02-02 13:57:27 +01:00
Karol Sójko
989e1ce175
fix(auth): verification rpid options
2023-02-02 11:31:31 +01:00
Karol Sójko
b7967b34d1
fix(auth): allow defining multiple expected origins upon u2f registration and verification
2023-02-02 09:21:11 +01:00
Karol Sójko
a92e8f61bc
fix(auth): credential id column type in authenticators
2023-01-26 14:22:09 +01:00
Karol Sójko
ef997be219
refactor: generating authentication options
2023-01-25 13:24:02 +01:00
Karol Sójko
e4c65ca631
fix(auth): add pseudo u2f params on non existing accounts
2023-01-24 14:17:59 +01:00
Karol Sójko
60838a1b7e
chore: replace ErrorTag with usage from @standardnotes/api
2023-01-24 13:46:20 +01:00
Karol Sójko
6a5b669ec4
feat(auth): add U2F to MFA verification
2023-01-24 12:12:51 +01:00
Karol Sójko
f1d3117518
fix(auth): add cleanup of authenticator devices upon sign in with recovery codes
2023-01-24 11:17:51 +01:00
Karol Sójko
a3b4aa3b4a
Revert "fix(auth): fido options user verification as discouraged"
...
This reverts commit 3d475cc779 .
2023-01-24 09:34:37 +01:00
Karol Sójko
3d475cc779
fix(auth): fido options user verification as discouraged
2023-01-24 08:24:25 +01:00
Karol Sójko
c38817c62e
feat(auth): add configurable user verification requirement on u2f via env vars
2023-01-23 15:31:49 +01:00
Karol Sójko
1797bc8181
feat(auth): add configuring u2f expect origin
2023-01-23 13:53:10 +01:00
Karol Sójko
52ce5f3a2f
fix(auth): upgrade simplewebauthn types
2023-01-23 11:28:36 +01:00
moughxyz
23eb61ee5f
refactor: offlineRoles => roles
2023-01-19 17:27:20 -06:00
moughxyz
ba7662fc1e
fix: strings for role names
2023-01-19 17:23:58 -06:00
Mo and GitHub
2db0c125fe
feat: offline roles ( #419 )
2023-01-19 16:29:36 -06:00
moughxyz
f20ee68f50
Revert "feat: include roles in offline features request ( #418 )"
...
This reverts commit 2e7fdd93dd .
2023-01-19 13:38:46 -06:00
Mo and GitHub
2e7fdd93dd
feat: include roles in offline features request ( #418 )
2023-01-19 13:16:16 -06:00
Karol Sójko
aaf42e4693
refactor: remove Uuid from @standardnotes/common in favour of @standardnotes/domain-core definition
2023-01-19 15:11:47 +01:00
Karol Sójko
a95ca05c10
refactor: remove RoleName from @standardnotes/common in favour of @standardnotes/domain-core definition
2023-01-19 14:05:48 +01:00
Karol Sójko
d18f6ccd32
fix(auth): add relying party configuration options
2023-01-11 13:47:13 +01:00
Karol Sójko
7ae8845ae9
fix(auth): failure messages for debug logs upon signing in with recovery codes
2023-01-09 15:28:35 +01:00
Karol Sójko
a0208dd5b3
fix(auth): remove mfa settings after recovery sign in
2023-01-09 12:56:50 +01:00
Karol Sójko
13c5c97ba7
fix(auth): allow retrieval of recovery codes setting
2023-01-05 12:28:56 +01:00
Karol Sójko
cac899a7e5
feat(auth): add recovery sign in with recovery codes
2023-01-05 11:42:55 +01:00
Karol Sójko
a360231fd0
feat(auth): add generating recovery codes
2023-01-04 15:29:15 +01:00
Karol Sójko
de50d76800
feat(auth): add removing authenticator
2022-12-29 13:55:08 +01:00
Karol Sójko
01837eaea9
feat(auth): add listing authenticators
2022-12-29 13:37:30 +01:00
Karol Sójko
5455972be2
fix(auth): specs for verifying authenticator authentication response
2022-12-29 12:55:43 +01:00
Karol Sójko
b6fda901ef
feat(auth): add http endpoints for authenticators
2022-12-29 11:29:23 +01:00
Karol Sójko
64525a65f2
feat(auth): add verifying authenticator authentication response
2022-12-29 09:41:10 +01:00
Karol Sójko
8c7c1e4745
feat(auth): add generating authenticator authentication options
2022-12-29 08:45:32 +01:00
Karol Sójko
f5683cfd94
feat(auth): add verifying authenticator registration response
2022-12-28 15:50:48 +01:00
Karol Sójko and Karol Sójko
51ad06b303
feat(auth): add generating authencator registration options
2022-12-28 13:56:06 +01:00
Karol Sójko
5255cfbb25
fix(auth): move tracing sessions to session creation instead of cross service token creation
2022-12-20 21:22:24 +01:00
Karol Sójko
cf0b918913
fix(auth): change severity on tracing session errors - most probably hazardous reads
2022-12-20 20:53:26 +01:00
Karol Sójko
5b4bb6e7a7
fix(auth): replace date object with number timestamp
2022-12-20 10:54:31 +01:00
Karol Sójko
addedb3091
fix(auth): add persisting statistics for all subscription plans
2022-12-20 08:45:43 +01:00