Skip to content

Refactoring UserIdentity logics #1097

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Draft
wants to merge 873 commits into
base: syw-UID2-4159-token-gen-code-renaming
Choose a base branch
from
Draft
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
873 commits
Select commit Hold shift + click to select a range
0eaa890
Merge pull request #1716 from IABTechLab/aul-UID2-5338-upgrade-shared
aulme Apr 30, 2025
ba54957
[CI Pipeline] Released patch version: 5.50.102
May 1, 2025
ed600d3
updated eclipse-temurin to 21.0.7_6-jre-alpine-3.21
sophia-chen-ttd May 1, 2025
277b522
Merge pull request #1719 from IABTechLab/sch-UID2-5409-vulnerability-…
sophia-chen-ttd May 1, 2025
74976bb
[CI Pipeline] Released Patch version: 5.50.104
May 1, 2025
7bf56ac
ignore SIGTERM
Ian-Nara May 1, 2025
2c6dee6
update comments
Ian-Nara May 1, 2025
619860c
updating eclipse-temurin to 21.0.7_6-jre-alpine-3.21
sophia-chen-ttd May 1, 2025
3b7c39a
Merge pull request #1722 from IABTechLab/sch-UID2-5409-vulnerability-…
sophia-chen-ttd May 2, 2025
9acd2b3
[CI Pipeline] Released patch version: 5.50.106
May 2, 2025
984fc90
PodTerminationMonitor
Ian-Nara May 2, 2025
a19d116
update ms value
Ian-Nara May 2, 2025
ccce565
fix typo
Ian-Nara May 2, 2025
ca649c5
add imports
Ian-Nara May 2, 2025
0b2c7f4
[CI Pipeline] Released Snapshot version: 5.50.105-alpha-183-SNAPSHOT
May 2, 2025
f2d0da4
Update pom.xml
Ian-Nara May 2, 2025
8e84d47
remove sigterm handler
Ian-Nara May 2, 2025
b0cdf09
Merge branch 'ian-UID2-5118-ignore-sigterm-signal' of github.com:IABT…
Ian-Nara May 2, 2025
84504d6
remove unused imports
Ian-Nara May 2, 2025
9b4c107
undo whitespace change
Ian-Nara May 2, 2025
18f3bfb
[CI Pipeline] Released Snapshot version: 5.50.105-alpha-184-SNAPSHOT
May 2, 2025
1ea6faa
whitespace change
Ian-Nara May 2, 2025
f2ce648
Update pom.xml
Ian-Nara May 2, 2025
3fc9292
Merge pull request #1721 from IABTechLab/ian-UID2-5118-ignore-sigterm…
Ian-Nara May 2, 2025
75a0907
[CI Pipeline] Released Minor version: 5.51.0
May 2, 2025
dfeaf7c
[CI Pipeline] Released patch version: 5.51.1
May 3, 2025
9250e4a
[CI Pipeline] Released patch version: 5.51.2
May 4, 2025
faa11e5
[CI Pipeline] Released patch version: 5.51.3
May 5, 2025
6e36c0b
update dockerfile to include directoy for prestop hook (#1732)
Ian-Nara May 5, 2025
f5ff3a6
[CI Pipeline] Released Patch version: 5.51.5
May 5, 2025
e68f685
Merge pull request #1733 from IABTechLab/ci-6e36c0b0fbb5500b99ce281ec…
github-actions[bot] May 5, 2025
4cd0e22
[CI Pipeline] Released patch version: 5.51.7
May 6, 2025
99d445e
[CI Pipeline] Released patch version: 5.51.8
May 7, 2025
91a0444
[CI Pipeline] Released patch version: 5.51.9
May 8, 2025
6ff9faa
Added logfmt for log level, class and thread
gmsdelmundo May 8, 2025
f4aac49
Added stacktrace logging
gmsdelmundo May 8, 2025
e521110
Added logfmt for log level, class and thread for GCP and Azure
gmsdelmundo May 8, 2025
37d10dc
Updated casing
gmsdelmundo May 8, 2025
6c20297
Fixed thread logfmt
gmsdelmundo May 8, 2025
a44d787
[CI Pipeline] Released patch version: 5.51.10
May 9, 2025
540327f
[CI Pipeline] Released patch version: 5.51.11
May 10, 2025
57dca99
[CI Pipeline] Released patch version: 5.51.12
May 11, 2025
8eff35b
[CI Pipeline] Released patch version: 5.51.13
May 12, 2025
45cfd41
Merge pull request #1737 from IABTechLab/gdm-UID2-5079-logfmt
gmsdelmundo May 12, 2025
4fadc5e
[CI Pipeline] Released Patch version: 5.51.16
May 12, 2025
940fbb3
[CI Pipeline] Released patch version: 5.51.17
May 13, 2025
d30abc3
[CI Pipeline] Released patch version: 5.51.18
May 14, 2025
5a94fad
[CI Pipeline] Released patch version: 5.51.19
May 15, 2025
5503e14
preliminary implementation of v3 identity map
sophia-chen-ttd May 15, 2025
b894db0
Added RoutingContextUtil
gmsdelmundo May 15, 2025
fe08437
Fixed util test dir and cleaned up DomainNameCheckUtilTest
gmsdelmundo May 15, 2025
93d14a5
Added path to uid2.client_sdk_versions metric
gmsdelmundo May 15, 2025
cfc33ad
Added API contact tracking for SDK usage
gmsdelmundo May 15, 2025
d2ca791
Fixed site ID/API contact logic for SDK usage metric
gmsdelmundo May 15, 2025
285d0d6
Fixed site ID/API contact logic for SDK usage metric
gmsdelmundo May 15, 2025
1d03143
Fixed null handling for SDK usage metric
gmsdelmundo May 15, 2025
863307d
[CI Pipeline] Released patch version: 5.51.20
May 16, 2025
2ae6ee8
[CI Pipeline] Released patch version: 5.51.21
May 17, 2025
9a53c02
[CI Pipeline] Released patch version: 5.51.22
May 18, 2025
578d2c0
[CI Pipeline] Released patch version: 5.51.23
May 19, 2025
2cade91
implementing mixed input for identity map v3
sophia-chen-ttd May 19, 2025
76785ec
Merge pull request #1746 from IABTechLab/gdm-client-version-metric
gmsdelmundo May 19, 2025
6abb232
[CI Pipeline] Released Patch version: 5.51.28
May 19, 2025
0bb734d
added unit tests for mapped identity
sophia-chen-ttd May 19, 2025
cc068a8
v3 identity map logic
sophia-chen-ttd May 19, 2025
eceae2a
added previous id and refresh from fields
sophia-chen-ttd May 19, 2025
e1d1c88
added tests for identity map refresh from and previous id
sophia-chen-ttd May 19, 2025
f2339e1
added refresh from tests
sophia-chen-ttd May 19, 2025
a029797
cleanup
sophia-chen-ttd May 19, 2025
19248a3
parsing in multiple field input for v3 identity map
sophia-chen-ttd May 19, 2025
29f5692
cleanup
sophia-chen-ttd May 19, 2025
6e6584c
clean up
sophia-chen-ttd May 19, 2025
95fa116
[CI Pipeline] Released patch version: 5.51.29
May 20, 2025
71bb66e
input parsing error handling
sophia-chen-ttd May 20, 2025
48c5fcf
renaming variables
sophia-chen-ttd May 20, 2025
ae35c64
cleanup
sophia-chen-ttd May 20, 2025
abd3766
Merge remote-tracking branch 'origin/main' into sch-UID2-5484-v3-iden…
sophia-chen-ttd May 20, 2025
cfe7116
Merge branch 'sch-UID2-5484-v3-identity-map-operator-logic' into sch-…
sophia-chen-ttd May 20, 2025
cf79bd3
more testing for v3 identity map api
sophia-chen-ttd May 20, 2025
edc388c
tested edge cases with previous salts
sophia-chen-ttd May 20, 2025
c626c14
Merge branch 'sch-UID2-5484-v3-identity-map-operator-logic' into sch-…
sophia-chen-ttd May 20, 2025
5c0e378
cleaned up tests for v3 identity map
sophia-chen-ttd May 20, 2025
0e37b0f
small cleanup
sophia-chen-ttd May 20, 2025
73cafab
removed sdk metrics for v3
sophia-chen-ttd May 20, 2025
0a21c45
fixed request input format for v3 identity map tests
sophia-chen-ttd May 20, 2025
771b03d
better error handling for v3 identity map
sophia-chen-ttd May 20, 2025
43fc8b9
Removing vulnerable package
aulme May 20, 2025
3065ea7
Upgrading Werzeug due to CVE-2024-49767
aulme May 20, 2025
c973ac0
[CI Pipeline] Released patch version: 5.51.30
May 21, 2025
a589392
[CI Pipeline] Released Snapshot version: 5.51.30-alpha-186-SNAPSHOT
May 21, 2025
848ce17
Merge branch 'main' into aul-UID2-5532-remove-vulnerable-package
aulme May 21, 2025
839850b
Merge pull request #1755 from IABTechLab/aul-UID2-5532-remove-vulnera…
aulme May 21, 2025
881a1ec
[CI Pipeline] Released Patch version: 5.51.35
May 21, 2025
68a98d3
[CI Pipeline] Released Patch version: 5.51.36
May 21, 2025
b6660e5
Merge pull request #1759 from IABTechLab/ci-881a1ec5ce149dd9f3d1099d3…
github-actions[bot] May 21, 2025
7efad0a
[CI Pipeline] Released Patch version: 5.51.38
May 21, 2025
3e8c40b
[CI Pipeline] Released patch version: 5.51.39
May 22, 2025
b892be5
added identity map v3 object mapper to parse request
sophia-chen-ttd May 22, 2025
68e0aed
cleaned up code
sophia-chen-ttd May 23, 2025
2f62162
removed unused imports and functions
sophia-chen-ttd May 23, 2025
d1b5ce2
[CI Pipeline] Released patch version: 5.51.40
May 23, 2025
9207916
used primitive array
sophia-chen-ttd May 23, 2025
3803f77
Metrics for component failures
aulme May 23, 2025
149ded4
Merge pull request #1766 from IABTechLab/aul-UID2-5555-metrics-for-co…
aulme May 23, 2025
3c1732b
[CI Pipeline] Released Patch version: 5.51.43
May 23, 2025
d4a5aef
Merge pull request #1767 from IABTechLab/ci-149ded4919fafb16f7c62fd46…
github-actions[bot] May 23, 2025
910fd64
added classcastexception catch to v3identitymap
sophia-chen-ttd May 23, 2025
6c28ea2
minor cleanup
sophia-chen-ttd May 23, 2025
1d85e53
[CI Pipeline] Released patch version: 5.51.45
May 24, 2025
df8a84a
[CI Pipeline] Released patch version: 5.51.46
May 25, 2025
d844383
[CI Pipeline] Released patch version: 5.51.47
May 26, 2025
438aa47
[CI Pipeline] Released patch version: 5.51.48
May 27, 2025
35202de
added identity map response type enum
sophia-chen-ttd May 27, 2025
4b7c61a
[CI Pipeline] Released patch version: 5.51.49
May 28, 2025
13f749d
updated shared version
sophia-chen-ttd May 28, 2025
a4b2156
[CI Pipeline] Released patch version: 5.51.50
May 29, 2025
36d4524
added v3 version to tests
sophia-chen-ttd May 29, 2025
5e3a04f
Merge branch 'main' into sch-UID2-5484-v3-identity-map-operator-logic
sophia-chen-ttd May 29, 2025
d74ff65
fixed merge conflicts
sophia-chen-ttd May 29, 2025
85a2180
[CI Pipeline] Released Snapshot version: 5.51.51-alpha-305-SNAPSHOT
May 29, 2025
fdb2ef7
Merge pull request #1752 from IABTechLab/sch-UID2-5484-v3-identity-ma…
sophia-chen-ttd May 29, 2025
8453c2c
Merge pull request #1754 from IABTechLab/sch-UID2-5484-v3-identity-ma…
sophia-chen-ttd May 29, 2025
e261000
[CI Pipeline] Released Minor version: 5.52.0
May 29, 2025
e0e6282
[CI Pipeline] Released patch version: 5.52.1
May 30, 2025
935d0cf
[CI Pipeline] Released patch version: 5.52.2
May 31, 2025
e34dc22
[CI Pipeline] Released patch version: 5.52.3
Jun 1, 2025
8bc04aa
[CI Pipeline] Released patch version: 5.52.4
Jun 2, 2025
329c55c
[CI Pipeline] Released patch version: 5.52.5
Jun 3, 2025
0f354c1
[CI Pipeline] Released patch version: 5.52.6
Jun 4, 2025
a054786
Add service instance ID and UID trace ID to core and opt out requests
vishalegbert-ttd Jun 4, 2025
5c86fa1
Fix build and tests
vishalegbert-ttd Jun 4, 2025
76aef5e
[CI Pipeline] Released patch version: 5.52.7
Jun 5, 2025
2bd257d
Rename
vishalegbert-ttd Jun 5, 2025
693175f
Rename
vishalegbert-ttd Jun 5, 2025
f78e064
Test trace ID and instance ID, refactor headers in tests
vishalegbert-ttd Jun 5, 2025
e487059
Update local configs, send instance ID on attest
vishalegbert-ttd Jun 5, 2025
c76d412
[CI Pipeline] Released patch version: 5.52.8
Jun 6, 2025
52d7f7d
Add instance_id_prefix in AWS, Azure, and GCP (#1786)
abuabraham-ttd Jun 6, 2025
8da3560
[CI Pipeline] Released patch version: 5.52.10
Jun 7, 2025
0057b48
[CI Pipeline] Released patch version: 5.52.11
Jun 8, 2025
3697a19
[CI Pipeline] Released patch version: 5.52.12
Jun 9, 2025
aa6fba2
Update shared
vishalegbert-ttd Jun 9, 2025
f11dac5
Merge pull request #1784 from IABTechLab/vse-UID2-5593-add-service-in…
vishalegbert-ttd Jun 9, 2025
cc8955a
[CI Pipeline] Released Minor version: 5.53.0
Jun 9, 2025
f5d512d
[CI Pipeline] Released Patch version: 5.53.1
Jun 9, 2025
b0f2e91
Update entrypoint.sh (#1799)
abuabraham-ttd Jun 9, 2025
37a329d
[CI Pipeline] Released Patch version: 5.53.3
Jun 9, 2025
a31d2b8
[CI Pipeline] Released patch version: 5.53.4
Jun 10, 2025
31897b0
Update snapshot consuming after migrating to maven central portal (#1…
caroline-ttd Jun 10, 2025
070f089
[CI Pipeline] Released patch version: 5.53.6
Jun 11, 2025
951dd97
[CI Pipeline] Released patch version: 5.53.7
Jun 12, 2025
bea38c8
sch-UID2-5557 adding binary payloads to v2 and v3 endpoints
sophia-chen-ttd Jun 12, 2025
3bb9782
[CI Pipeline] Released Minor version: 5.54.0
Jun 12, 2025
a379cda
Unwrap DII string in V3 Identity Map inputs
aulme Jun 12, 2025
438ba4b
Using the same error statuses for Identity Map as in V2 to make migra…
aulme Jun 12, 2025
f6a5ffc
Merge pull request #1814 from IABTechLab/aul-UID2-5485-adjust-v3-api
aulme Jun 12, 2025
4aebbc7
[CI Pipeline] Released Minor version: 5.55.0
Jun 12, 2025
7b92b7c
[CI Pipeline] Released patch version: 5.55.1
Jun 13, 2025
7dd544d
[CI Pipeline] Released patch version: 5.55.2
Jun 14, 2025
556aa05
[CI Pipeline] Released patch version: 5.55.3
Jun 15, 2025
d1b77da
[CI Pipeline] Released patch version: 5.55.4
Jun 16, 2025
25438e8
Update shared (#1820)
abuabraham-ttd Jun 16, 2025
4cac635
[CI Pipeline] Released Patch version: 5.55.6
Jun 16, 2025
b434071
Merge pull request #1821 from IABTechLab/ci-25438e89a493f0477f293d545…
github-actions[bot] Jun 16, 2025
f32da28
[CI Pipeline] Released patch version: 5.55.8
Jun 17, 2025
c02ca7e
[CI Pipeline] Released patch version: 5.55.9
Jun 18, 2025
76f09fb
[CI Pipeline] Released patch version: 5.55.10
Jun 19, 2025
aa3519f
[CI Pipeline] Released patch version: 5.55.11
Jun 20, 2025
ed19040
[CI Pipeline] Released patch version: 5.55.12
Jun 21, 2025
f905c22
[CI Pipeline] Released patch version: 5.55.13
Jun 22, 2025
e9da483
[CI Pipeline] Released patch version: 5.55.14
Jun 23, 2025
f455711
update main file
lizk886 Jun 23, 2025
3320fdd
update error message
lizk886 Jun 23, 2025
fc0becf
[CI Pipeline] Released patch version: 5.55.15
Jun 24, 2025
53fb28c
update metrics naming standards
lizk886 Jun 24, 2025
c0e6ca6
[CI Pipeline] Released patch version: 5.55.16
Jun 25, 2025
42e8cb5
need more attention on CloudSyncOptOutStore.java as the way it build…
lizk886 Jun 25, 2025
bb5687f
udapte metric names in test
lizk886 Jun 25, 2025
69443f6
update test
lizk886 Jun 25, 2025
8e03b55
[CI Pipeline] Released patch version: 5.55.17
Jun 26, 2025
3103a3a
update error message for better debug
lizk886 Jun 26, 2025
594e028
[CI Pipeline] Released patch version: 5.55.18
Jun 27, 2025
2c00f42
[CI Pipeline] Released Snapshot version: 5.55.5-alpha-349-SNAPSHOT
Jun 27, 2025
f69982b
Merge pull request #1830 from IABTechLab/wzh-UID2-5081-replace-print-…
lizk886 Jun 27, 2025
d0b0592
[CI Pipeline] Released Patch version: 5.55.20
Jun 27, 2025
e7cb5f4
[CI Pipeline] Released Patch version: 5.55.21
Jun 27, 2025
0da078b
Merge pull request #1839 from IABTechLab/ci-d0b0592775d1cb4e89b55d5c8…
github-actions[bot] Jun 27, 2025
1075aed
[CI Pipeline] Released patch version: 5.55.23
Jun 28, 2025
13703b6
[CI Pipeline] Released patch version: 5.55.24
Jun 29, 2025
90e6021
[CI Pipeline] Released patch version: 5.55.25
Jun 30, 2025
5a64c94
[CI Pipeline] Released Snapshot version: 5.55.6-alpha-194-SNAPSHOT
Jun 30, 2025
833b96d
Merge branch 'main' into wzh-UID2-5498-update-metrics-name-standard
lizk886 Jun 30, 2025
a902cb7
[CI Pipeline] Released Snapshot version: 5.55.26-alpha-195-SNAPSHOT
Jun 30, 2025
8a21798
[CI Pipeline] Released patch version: 5.55.26
Jul 1, 2025
bd727c3
Merge branch 'main' into wzh-UID2-5498-update-metrics-name-standard
lizk886 Jul 1, 2025
9b2d512
Merge pull request #1834 from IABTechLab/wzh-UID2-5498-update-metrics…
lizk886 Jul 1, 2025
a913307
[CI Pipeline] Released Patch version: 5.55.30
Jul 1, 2025
7eefbca
Merge pull request #1848 from IABTechLab/ci-9b2d512d80a3b8c17406b1a17…
github-actions[bot] Jul 1, 2025
ac0a0a0
check servicelink disabled (#1844)
Ian-Nara Jul 1, 2025
2146db4
[CI Pipeline] Released Minor version: 5.56.0
Jul 1, 2025
35b9df5
[CI Pipeline] Released patch version: 5.56.1
Jul 2, 2025
5179c63
Include prefix in string replaced similar to core_url (#1851)
abuabraham-ttd Jul 2, 2025
3bf6d4f
[CI Pipeline] Released patch version: 5.56.3
Jul 3, 2025
2ca7897
Always use millisecond precision for ISO8601 timestamps in identity/b…
Ian-Nara Jul 3, 2025
af00fd5
[CI Pipeline] Released Patch version: 5.56.5
Jul 3, 2025
4384809
Merge pull request #1855 from IABTechLab/ci-2ca789796a0d06753ec6a8ffc…
github-actions[bot] Jul 3, 2025
61f4e85
Update CFT and uid2-shared-actions version for publishing private ope…
caroline-ttd Jul 3, 2025
c730416
[CI Pipeline] Released patch version: 5.56.8
Jul 4, 2025
ae77892
update scan vulnerability file usage
lizk886 Jul 4, 2025
8e8a407
[CI Pipeline] Released patch version: 5.56.9
Jul 5, 2025
5893b7d
[CI Pipeline] Released patch version: 5.56.10
Jul 6, 2025
b24eac9
[CI Pipeline] Released patch version: 5.56.11
Jul 7, 2025
3967e28
Add a new file for all AMI (#1863)
abuabraham-ttd Jul 7, 2025
7c53a01
[CI Pipeline] Released Patch version: 5.56.13
Jul 7, 2025
a5193c5
revert (#1865)
abuabraham-ttd Jul 7, 2025
1bad557
[CI Pipeline] Released Snapshot version: 5.52.6-alpha-363-SNAPSHOT
Jul 7, 2025
c8606d1
Merge branch 'main' into wzh-5347-vulnerability-scan-refactor
lizk886 Jul 7, 2025
06e002d
Update pom.xml
lizk886 Jul 7, 2025
3b175ce
Merge pull request #1859 from IABTechLab/wzh-5347-vulnerability-scan-…
lizk886 Jul 7, 2025
293c652
[CI Pipeline] Released patch version: 5.56.18
Jul 8, 2025
6a80abe
remove all presences of v1
lizk886 Jul 8, 2025
3aa5732
remove more presences of v1
lizk886 Jul 8, 2025
0b61ec7
remove more presences of v1
lizk886 Jul 8, 2025
0a2f2ee
remove more v0v1 related code
lizk886 Jul 8, 2025
6332142
remove more v0 related function code
lizk886 Jul 8, 2025
4b460e4
remove more v0 related function code
lizk886 Jul 8, 2025
f5845eb
[CI Pipeline] Released patch version: 5.56.19
Jul 9, 2025
8fddc77
more v0v1 related code removed
lizk886 Jul 9, 2025
ba7c470
rename jsonv1 to a better name
lizk886 Jul 9, 2025
5163949
rename createInputListv1
lizk886 Jul 9, 2025
22bf583
test
lizk886 Jul 9, 2025
d9a2c02
Update action.yaml
lizk886 Jul 9, 2025
66ed0fa
[CI Pipeline] Released patch version: 5.56.20
Jul 10, 2025
92f7ec0
Merge pull request #1871 from IABTechLab/wzh-5234-cleanup-v0v1-api-code
lizk886 Jul 10, 2025
cd701c8
[CI Pipeline] Released Patch version: 5.56.30
Jul 10, 2025
1ec1f9e
[CI Pipeline] Released patch version: 5.56.31
Jul 11, 2025
3979ca4
Merge remote-tracking branch 'origin/main' into syw-UID2-4159-token-g…
sunnywu Jul 11, 2025
994096f
[CI Pipeline] Released patch version: 5.56.32
Jul 12, 2025
50474de
[CI Pipeline] Released patch version: 5.56.33
Jul 13, 2025
60f0be3
[CI Pipeline] Released patch version: 5.56.34
Jul 14, 2025
6df4278
[CI Pipeline] Released Patch version: 5.56.35
Jul 14, 2025
9329e23
[CI Pipeline] Released Patch version: 5.56.36
Jul 14, 2025
2eb9c50
Merge pull request #1904 from IABTechLab/ci-6df42784516cc7b59aad92d44…
github-actions[bot] Jul 14, 2025
2b1eb8a
UID2-5407 reduce log entries in private operator (#1878)
caroline-ttd Jul 14, 2025
a52e030
[CI Pipeline] Released patch version: 5.56.39
Jul 15, 2025
a1a354b
UID2-5741 aks cce failure (#1906)
cYKatherine Jul 15, 2025
b0072ab
[CI Pipeline] Released patch version: 5.56.41
Jul 16, 2025
c7af957
[CI Pipeline] Released patch version: 5.56.42
Jul 17, 2025
ddd77eb
Merge remote-tracking branch 'origin/main' into syw-UID2-4159-token-g…
sunnywu Jul 17, 2025
7a26361
[CI Pipeline] Released Snapshot version: 5.56.43-alpha-201-SNAPSHOT
Jul 17, 2025
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
7 changes: 6 additions & 1 deletion .github/actions/build_ami/action.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -59,7 +59,7 @@ runs:
uses: actions/checkout@v4

- name: Get EIF for Release ${{ inputs.operator_release }}
uses: IABTechLab/uid2-operator/.github/actions/download_release_artifact@main
uses: ./.github/actions/download_release_artifact
if: ${{ inputs.operator_release != '' }}
with:
github_token: ${{ inputs.github_token }}
Expand Down Expand Up @@ -87,6 +87,11 @@ runs:
FILE=$(echo $ARTIFACTS | jq -r '.[0].name')
unzip -o -d ./scripts/aws/uid2-operator-ami/artifacts $FILE.zip
rm $FILE.zip
cd "./scripts/aws/uid2-operator-ami/artifacts/"
zip "uid2operatoreif.zip" "uid2operator.eif"
cd -
rm ./scripts/aws/uid2-operator-ami/artifacts/uid2operator.eif
ls ./scripts/aws/uid2-operator-ami/artifacts/ -al

- name: Configure UID2 AWS credentials
uses: aws-actions/configure-aws-credentials@v4
Expand Down
17 changes: 15 additions & 2 deletions .github/actions/build_aws_eif/action.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -96,8 +96,9 @@ runs:

cp ${{ steps.buildFolder.outputs.BUILD_FOLDER }}/identity_scope.txt ${ARTIFACTS_OUTPUT_DIR}/
cp ${{ steps.buildFolder.outputs.BUILD_FOLDER }}/version_number.txt ${ARTIFACTS_OUTPUT_DIR}/
cp ./scripts/aws/start.sh ${ARTIFACTS_OUTPUT_DIR}/
cp ./scripts/aws/stop.sh ${ARTIFACTS_OUTPUT_DIR}/
cp ./scripts/aws/ec2.py ${ARTIFACTS_OUTPUT_DIR}/
cp ./scripts/confidential_compute.py ${ARTIFACTS_OUTPUT_DIR}/
cp ./scripts/aws/requirements.txt ${ARTIFACTS_OUTPUT_DIR}/
cp ./scripts/aws/proxies.host.yaml ${ARTIFACTS_OUTPUT_DIR}/
cp ./scripts/aws/sockd.conf ${ARTIFACTS_OUTPUT_DIR}/
cp ./scripts/aws/uid2operator.service ${ARTIFACTS_OUTPUT_DIR}/
Expand All @@ -116,10 +117,22 @@ runs:
docker cp amazonlinux:/sockd ${ARTIFACTS_OUTPUT_DIR}/
docker cp amazonlinux:/vsockpx ${ARTIFACTS_OUTPUT_DIR}/
docker cp amazonlinux:/${{ inputs.identity_scope }}operator.eif ${ARTIFACTS_OUTPUT_DIR}/uid2operator.eif

eifsize=$(wc -c < "${ARTIFACTS_OUTPUT_DIR}/uid2operator.eif")
if [ $eifsize -le 1 ]; then
echo "The eif was less then 1 byte. This indicates a build failure"
exit 1
fi

docker cp amazonlinux:/pcr0.txt ${{ steps.buildFolder.outputs.BUILD_FOLDER }}
docker cp amazonlinux:/pcr0.txt ${ARTIFACTS_OUTPUT_DIR}/
echo "enclave_id=$(cat ${{ steps.buildFolder.outputs.BUILD_FOLDER}}/pcr0.txt)" >> $GITHUB_OUTPUT

pcrsize=$(wc -c < "${{ steps.buildFolder.outputs.BUILD_FOLDER}}/pcr0.txt")
if [ $pcrsize -le 1 ]; then
echo "The pcr0.txt file was less then 1 byte. This indicates a build failure"
exit 1
fi

- name: Cleanup
shell: bash
Expand Down
2 changes: 1 addition & 1 deletion .github/actions/build_eks_docker_image/action.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -47,7 +47,7 @@ runs:
mkdir ${{ inputs.artifacts_output_dir }} -p

- name: Get EIF for Release ${{ inputs.operator_release }}
uses: IABTechLab/uid2-operator/.github/actions/download_release_artifact@main
uses: ./.github/actions/download_release_artifact
if: ${{ inputs.operator_release != '' }}
with:
github_token: ${{ inputs.github_token }}
Expand Down
36 changes: 36 additions & 0 deletions .github/actions/install_az_cli/action.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,36 @@
name: 'Install Azure CLI'
description: 'Install Azure CLI'
runs:
using: 'composite'
steps:
- name: uninstall azure-cli
shell: bash
run: |
sudo apt-get remove -y azure-cli

- name: install azure-cli 2.61.0
shell: bash
run: |
sudo apt-get update
sudo apt-get install apt-transport-https ca-certificates curl gnupg lsb-release
sudo mkdir -p /etc/apt/keyrings
curl -sLS https://packages.microsoft.com/keys/microsoft.asc |
gpg --dearmor | sudo tee /etc/apt/keyrings/microsoft.gpg > /dev/null
sudo chmod go+r /etc/apt/keyrings/microsoft.gpg
AZ_DIST=$(lsb_release -cs)
echo "Types: deb
URIs: https://packages.microsoft.com/repos/azure-cli/
Suites: ${AZ_DIST}
Components: main
Architectures: $(dpkg --print-architecture)
Signed-by: /etc/apt/keyrings/microsoft.gpg" | sudo tee /etc/apt/sources.list.d/azure-cli.sources
sudo apt-get update
sudo apt-get install azure-cli

apt-cache policy azure-cli
# Obtain the currently installed distribution
AZ_DIST=$(lsb_release -cs)
# Store an Azure CLI version of choice
AZ_VER=2.61.0
# Install a specific version
sudo apt-get install azure-cli=${AZ_VER}-1~${AZ_DIST} --allow-downgrades
6 changes: 3 additions & 3 deletions .github/actions/update_operator_version/action.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -34,7 +34,7 @@ runs:
steps:
- name: Check branch and release type
id: checkRelease
uses: IABTechLab/uid2-shared-actions/actions/check_branch_and_release_type@v2
uses: IABTechLab/uid2-shared-actions/actions/check_branch_and_release_type@v3
with:
release_type: ${{ inputs.release_type }}

Expand All @@ -43,7 +43,7 @@ runs:
uses: trstringer/manual-approval@v1
with:
secret: ${{ github.token }}
approvers: thomasm-ttd,atarassov-ttd,cody-constine-ttd
approvers: atarassov-ttd,vishalegbert-ttd,sunnywu,cody-constine-ttd
minimum-approvals: 1
issue-title: Creating Major version of UID2-Operator

Expand Down Expand Up @@ -81,7 +81,7 @@ runs:

- name: Set version number
id: version
uses: IABTechLab/uid2-shared-actions/actions/version_number@v2
uses: IABTechLab/uid2-shared-actions/actions/version_number@v3
with:
type: ${{ inputs.release_type }}
version_number: ${{ inputs.version_number_input }}
Expand Down
2 changes: 1 addition & 1 deletion .github/workflows/build-and-test.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3,7 +3,7 @@ on: [pull_request, push, workflow_dispatch]

jobs:
build:
uses: IABTechLab/uid2-shared-actions/.github/workflows/shared-build-and-test.yaml@v2
uses: IABTechLab/uid2-shared-actions/.github/workflows/shared-build-and-test.yaml@v3
with:
java_version: 21
secrets: inherit
4 changes: 2 additions & 2 deletions .github/workflows/build-uid2-ami.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -42,7 +42,7 @@ jobs:

- name: Build UID2 Operator AMI
id: buildAMI
uses: IABTechLab/uid2-operator/.github/actions/build_ami@main
uses: ./.github/actions/build_ami
with:
identity_scope: uid2
eif_repo_owner: ${{ env.REPO_OWNER }}
Expand Down Expand Up @@ -92,7 +92,7 @@ jobs:

- name: Build EUID Operator AMI
id: buildAMI
uses: IABTechLab/uid2-operator/.github/actions/build_ami@main
uses: ./.github/actions/build_ami
with:
identity_scope: euid
eif_repo_owner: ${{ env.REPO_OWNER }}
Expand Down
85 changes: 54 additions & 31 deletions .github/workflows/publish-all-operators.yaml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
name: Publish All Operators
run-name: ${{ format('Publish All Operators - {0} Release', inputs.release_type) }}
run-name: ${{ format('Publish All Operators - {0} Release', github.event.inputs.release_type || 'scheduled') }}
on:
workflow_dispatch:
inputs:
Expand All @@ -18,6 +18,8 @@ on:
- CRITICAL,HIGH
- CRITICAL,HIGH,MEDIUM
- CRITICAL (DO NOT use if JIRA ticket not raised)
schedule:
- cron: "0 0 * * *"

jobs:
start:
Expand All @@ -26,13 +28,25 @@ jobs:
outputs:
new_version: ${{ steps.version.outputs.new_version }}
commit_sha: ${{ steps.commit-and-tag.outputs.commit_sha }}
release_type: ${{ steps.set-env.outputs.release_type }}
vulnerability_severity: ${{ steps.set-env.outputs.vulnerability_severity }}
env:
RELEASE_TYPE: ${{ inputs.release_type || (github.event_name == 'schedule' && 'patch') }}
VULNERABILITY_SEVERITY: ${{ inputs.vulnerability_severity || (github.event_name == 'schedule' && 'CRITICAL,HIGH') }}
steps:
- name: Set Environment Variables
id: set-env
run: |
echo "release_type=${{ inputs.release_type || (github.event_name == 'schedule' && 'patch') }}" >> $GITHUB_ENV
echo "vulnerability_severity=${{ inputs.vulnerability_severity || (github.event_name == 'schedule' && 'CRITICAL,HIGH') }}" >> $GITHUB_ENV
echo "release_type=${RELEASE_TYPE}" >> $GITHUB_OUTPUT
echo "vulnerability_severity=${VULNERABILITY_SEVERITY}" >> $GITHUB_OUTPUT
- name: Approve Major release
if: inputs.release_type == 'Major'
if: env.RELEASE_TYPE == 'Major'
uses: trstringer/manual-approval@v1
with:
secret: ${{ github.token }}
approvers: thomasm-ttd,atarassov-ttd,cody-constine-ttd
approvers: atarassov-ttd,vishalegbert-ttd,sunnywu,cody-constine-ttd
minimum-approvals: 1
issue-title: Creating Major version of UID2-Operator

Expand All @@ -45,7 +59,7 @@ jobs:
GITHUB_CONTEXT: ${{ toJson(github) }}

- name: Check branch and release type
uses: IABTechLab/uid2-shared-actions/actions/check_branch_and_release_type@v2
uses: IABTechLab/uid2-shared-actions/actions/check_branch_and_release_type@v3
with:
release_type: ${{ inputs.release_type }}

Expand All @@ -55,16 +69,17 @@ jobs:
fetch-depth: 0

- name: Scan vulnerabilities
uses: IABTechLab/uid2-shared-actions/actions/vulnerability_scan_filesystem@v2
uses: IABTechLab/uid2-shared-actions/actions/vulnerability_scan@v3
with:
scan_severity: HIGH,CRITICAL
failure_severity: CRITICAL
scan_type: 'fs'

- name: Set version number
id: version
uses: IABTechLab/uid2-shared-actions/actions/version_number@v2
uses: IABTechLab/uid2-shared-actions/actions/version_number@v3
with:
type: ${{ inputs.release_type }}
type: ${{ env.RELEASE_TYPE }}
branch_name: ${{ github.ref }}

- name: Update pom.xml
Expand All @@ -79,47 +94,47 @@ jobs:
uses: IABTechLab/uid2-shared-actions/actions/commit_pr_and_merge@v3
with:
add: 'pom.xml version.json'
message: 'Released ${{ inputs.release_type }} version: ${{ steps.version.outputs.new_version }}'
message: 'Released ${{ env.RELEASE_TYPE }} version: ${{ steps.version.outputs.new_version }}'
tag: v${{ steps.version.outputs.new_version }}

buildPublic:
name: Public Operator
needs: start
uses: ./.github/workflows/publish-public-operator-docker-image.yaml
with:
release_type: ${{ inputs.release_type }}
release_type: ${{ needs.start.outputs.release_type }}
version_number_input: ${{ needs.start.outputs.new_version }}
vulnerability_severity: ${{ inputs.vulnerability_severity }}
vulnerability_severity: ${{ needs.start.outputs.vulnerability_severity }}
secrets: inherit

buildGCP:
name: GCP Private Operator
needs: start
uses: ./.github/workflows/publish-gcp-oidc-enclave-docker.yaml
with:
release_type: ${{ inputs.release_type }}
release_type: ${{ needs.start.outputs.release_type }}
version_number_input: ${{ needs.start.outputs.new_version }}
commit_sha: ${{ needs.start.outputs.commit_sha }}
vulnerability_severity: ${{ inputs.vulnerability_severity }}
vulnerability_severity: ${{ needs.start.outputs.vulnerability_severity }}
secrets: inherit

buildAzure:
name: Azure Private Operator
needs: start
uses: ./.github/workflows/publish-azure-cc-enclave-docker.yaml
with:
release_type: ${{ inputs.release_type }}
release_type: ${{ needs.start.outputs.release_type }}
version_number_input: ${{ needs.start.outputs.new_version }}
commit_sha: ${{ needs.start.outputs.commit_sha }}
vulnerability_severity: ${{ inputs.vulnerability_severity }}
vulnerability_severity: ${{ needs.start.outputs.vulnerability_severity }}
secrets: inherit

buildAWS:
name: AWS Private Operator EIF
needs: start
uses: ./.github/workflows/publish-aws-nitro-eif.yaml
with:
release_type: ${{ inputs.release_type }}
release_type: ${{ needs.start.outputs.release_type }}
version_number_input: ${{ needs.start.outputs.new_version }}
commit_sha: ${{ needs.start.outputs.commit_sha }}
secrets: inherit
Expand All @@ -132,18 +147,11 @@ jobs:
operator_run_number: ${{ github.run_id }}
secrets: inherit

buildEKS:
name: Build AWS EKS Docker
needs: [start, buildAWS]
uses: ./.github/workflows/publish-aws-eks-nitro-enclave-docker.yaml
with:
operator_run_number: ${{ github.run_id }}
secrets: inherit

createRelease:
name: Create Release
runs-on: ubuntu-latest
needs: [start, buildPublic, buildGCP, buildAzure, buildAWS, buildAMI, buildEKS]
if: github.event_name == 'workflow_dispatch'
needs: [start, buildPublic, buildGCP, buildAzure, buildAWS, buildAMI]
steps:
- name: Checkout repo
uses: actions/checkout@v4
Expand All @@ -162,12 +170,18 @@ jobs:
pattern: gcp-oidc-enclave-ids-*
path: ./manifests/gcp_oidc_operator

- name: Download Azure manifest
- name: Download Azure CC manifest
uses: actions/download-artifact@v4
with:
pattern: azure-cc-enclave-id-*
path: ./manifests/azure_cc_operator

- name: Download Azure AKS manifest
uses: actions/download-artifact@v4
with:
pattern: azure-aks-enclave-id-*
path: ./manifests/azure_aks_operator

- name: Download EIF manifest
uses: actions/download-artifact@v4
with:
Expand All @@ -180,12 +194,6 @@ jobs:
pattern: 'aws-ami-ids-*'
path: ./manifests/aws_ami

- name: Download AWS EKS manifest
uses: actions/download-artifact@v4
with:
pattern: 'aws-eks-enclave-ids-*'
path: ./manifests/aws_eks

- name: Download Deployment Files
uses: actions/download-artifact@v4
with:
Expand Down Expand Up @@ -216,6 +224,7 @@ jobs:
(cd ./deployment/aws-euid-deployment-files-${{ needs.start.outputs.new_version }} && zip -r ../../aws-euid-deployment-files-${{ needs.start.outputs.new_version }}.zip . )
(cd ./deployment/aws-uid2-deployment-files-${{ needs.start.outputs.new_version }} && zip -r ../../aws-uid2-deployment-files-${{ needs.start.outputs.new_version }}.zip . )
(cd ./deployment/azure-cc-deployment-files-${{ needs.start.outputs.new_version }} && zip -r ../../azure-cc-deployment-files-${{ needs.start.outputs.new_version }}.zip . )
(cd ./deployment/azure-aks-deployment-files-${{ needs.start.outputs.new_version }} && zip -r ../../azure-aks-deployment-files-${{ needs.start.outputs.new_version }}.zip . )
(cd ./deployment/gcp-oidc-deployment-files-${{ needs.start.outputs.new_version }} && zip -r ../../gcp-oidc-deployment-files-${{ needs.start.outputs.new_version }}.zip . )
(cd manifests && zip -r ../uid2-operator-release-manifests-${{ needs.start.outputs.new_version }}.zip .)

Expand All @@ -229,5 +238,19 @@ jobs:
./aws-euid-deployment-files-${{ needs.start.outputs.new_version }}.zip
./aws-uid2-deployment-files-${{ needs.start.outputs.new_version }}.zip
./azure-cc-deployment-files-${{ needs.start.outputs.new_version }}.zip
./azure-aks-deployment-files-${{ needs.start.outputs.new_version }}.zip
./gcp-oidc-deployment-files-${{ needs.start.outputs.new_version }}.zip
./uid2-operator-release-manifests-${{ needs.start.outputs.new_version }}.zip
notifyFailure:
name: Notify Slack on Failure
runs-on: ubuntu-latest
if: failure() && github.ref == 'refs/heads/main'
needs: [start, buildPublic, buildGCP, buildAzure, buildAWS, buildAMI]
steps:
- name: Send Slack Alert
env:
SLACK_COLOR: danger
SLACK_MESSAGE: ':x: Operator Pipeline failed'
SLACK_TITLE: Pipeline Failed in ${{ github.workflow }}
SLACK_WEBHOOK: ${{ secrets.SLACK_WEBHOOK }}
uses: rtCamp/action-slack-notify@v2
Loading