Files
ziti/controller/persistence/base_entity.go
T
Andrew Martinez a3789c063a adds support of API Session Certificates
- adds ability for any authenticated API Session to create ephemeral
 certificates
- allows UPDB session connection
- adds create/delete/read of current api session certificates
- add session cert pem result on create and detail
- fixes ER not updating sessions with new certs from API session
- fixes naming of session vs apiSession on members, functions, etc
- organizes ER state manager functions into apiSession vs session
- adds api session ids to api sessions and sessions sent from the
  controller to ERs
- ensure api and ns fingerprints are the same
- filter api session certs by valid periods
- clarify fingerprint func naming
2021-01-06 09:42:57 -05:00

89 lines
2.6 KiB
Go

/*
Copyright NetFoundry, Inc.
Licensed under the Apache License, Version 2.0 (the "License");
you may not use this file except in compliance with the License.
You may obtain a copy of the License at
https://www.apache.org/licenses/LICENSE-2.0
Unless required by applicable law or agreed to in writing, software
distributed under the License is distributed on an "AS IS" BASIS,
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
See the License for the specific language governing permissions and
limitations under the License.
*/
package persistence
import (
"github.com/openziti/foundation/storage/boltz"
"strings"
)
const (
EntityTypeApiSessions = "apiSessions"
EntityTypeApiSessionCertificates = "apiSessionCertificates"
EntityTypeCas = "cas"
EntityTypeConfigs = "configs"
EntityTypeConfigTypes = "configTypes"
EntityTypeEdgeRouterPolicies = "edgeRouterPolicies"
EntityTypeEventLogs = "eventLogs"
EntityTypeGeoRegions = "geoRegions"
EntityTypeIdentities = "identities"
EntityTypeIdentityTypes = "identityTypes"
EntityTypeServicePolicies = "servicePolicies"
EntityTypeServiceEdgeRouterPolicies = "serviceEdgeRouterPolicies"
EntityTypeSessions = "sessions"
EntityTypeSessionCerts = "sessionCerts"
EntityTypeEnrollments = "enrollments"
EntityTypeAuthenticators = "authenticators"
EntityTypePostureChecks = "postureChecks"
EntityTypePostureCheckTypes = "postureCheckTypes"
EdgeBucket = "edge"
FieldName = "name"
FieldSemantic = "semantic"
FieldRoleAttributes = "roleAttributes"
FieldEdgeRouterRoles = "edgeRouterRoles"
FieldIdentityRoles = "identityRoles"
FieldServiceRoles = "serviceRoles"
FieldPostureCheckRoles = "postureCheckRoles"
SemanticAllOf = "AllOf"
SemanticAnyOf = "AnyOf"
)
var validSemantics = []string{SemanticAllOf, SemanticAnyOf}
func isSemanticValid(semantic string) bool {
for _, validSemantic := range validSemantics {
if strings.EqualFold(validSemantic, semantic) {
return true
}
}
return false
}
func toStringStringMap(m map[string]interface{}) map[string]string {
result := map[string]string{}
for k, v := range m {
result[k] = v.(string)
}
return result
}
func toStringInterfaceMap(m map[string]string) map[string]interface{} {
result := map[string]interface{}{}
for k, v := range m {
result[k] = v
}
return result
}
type Policy interface {
boltz.NamedExtEntity
GetSemantic() string
}