Commit Graph

3231 Commits

Author SHA1 Message Date
hongming
90b5a24b5c deps: remove unused dependency github.com/hashicorp/golang-lru (#6462)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-26 16:03:06 +08:00
hongming
d5474d6fc2 deps: bump google.golang.org/protobuf to v1.35.2 (#6460)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-24 10:08:03 +08:00
hongming
239a1ec8a6 chore: remove deprecated CronJob for restarting extensions museum (#6457)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-20 15:40:59 +08:00
hongming
092324d229 deps: update dependencies (#6453)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-19 15:22:58 +08:00
KubeSphere CI Bot
b684ab1d0e Merge pull request #6452 from ks-ci-bot/cherry-pick-6451-to-master
Update branch to latest state
2025-03-19 14:32:58 +08:00
hongming
52016724e2 chore: update license header
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:26 +00:00
hongming
3e12e76f43 chore: update ks-core helm chart
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:26 +00:00
hongming
0e76a4bcc5 update application controllers log level
* [application] update application controllers log level

* update

---------

Signed-off-by: wenhaozhou <wenhaozhou@yunify.com>
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:25 +00:00
KubeSphere CI Bot
522d0b4de5 fix: alias query not functioning (#2203)
Signed-off-by: hongming <coder.scala@gmail.com>
Co-authored-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:25 +00:00
KubeSphere CI Bot
7e4b3162d1 adjust the authorization rules for authenticated users (#2182)
Signed-off-by: hongming <coder.scala@gmail.com>
Co-authored-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:25 +00:00
hongming
447bc08639 feat: add resource protection webhook (#2168)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:25 +00:00
smartcat999
9fab44d0bf fix: update console permission with ks service account (#2135)
* fix: update console permission with ks service account

Signed-off-by: peng wu <2030047311@qq.com>

* fix: update restart pod's annotation

Signed-off-by: peng wu <2030047311@qq.com>

* fix: update restart pod condition

Signed-off-by: peng wu <2030047311@qq.com>

* fix: service account pod restart condition

Signed-off-by: peng wu <2030047311@qq.com>

* fix: service account pod restart condition

Signed-off-by: peng wu <2030047311@qq.com>

* fix: update goimports

Signed-off-by: peng wu <2030047311@qq.com>

---------

Signed-off-by: peng wu <2030047311@qq.com>
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:25 +00:00
hongming
dc33efe618 chore: refine ks-core helm chart (#2128)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:25 +00:00
hongming
c438adedeb security: restrict anonymous access to the /kapis/version endpoint (#2107)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:25 +00:00
hongming
a1a6abca4f fix the x509 certificate error (#2092)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:25 +00:00
hongming
f221849255 update helm chart
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:25 +00:00
hongming
d064ef67c7 feat: support service account token auth mode
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:25 +00:00
smartcat999
2660e60209 fix: update annotations with user's idap labels (#2042) 2025-03-19 06:26:25 +00:00
smartcat999
f1196ba3b6 fix: the problem of unauthorized access in the namespace-manage-serviceaccount permission template of the Operator role under the namespace (#1991) 2025-03-19 06:26:25 +00:00
inksnw
42dfe0db41 fix typo (#1981) 2025-03-19 06:26:25 +00:00
hongming
214faec31c Support deleting repo and apps in repo (#1979)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:25 +00:00
KubeSphere CI Bot
59d5f0e6d4 fix serviceaccount controller remove unnecessary retries (#2188)
Signed-off-by: hongming <coder.scala@gmail.com>
Co-authored-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:25 +00:00
KubeSphere CI Bot
91c2921733 fix: sa binds rbac role (#2187)
* fix: sa binds rbac role

Signed-off-by: wenhaozhou <wenhaozhou@yunify.com>

* fix ut test

Signed-off-by: wenhaozhou <wenhaozhou@yunify.com>

* make goimports

Signed-off-by: wenhaozhou <wenhaozhou@yunify.com>

---------

Signed-off-by: wenhaozhou <wenhaozhou@yunify.com>
Co-authored-by: wenhaozhou <wenhaozhou@yunify.com>
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:24 +00:00
KubeSphere CI Bot
d0c7cb156f add application release validatingWebhook (#2170)
* add application release validatingWebhook

Signed-off-by: wenhaozhou <wenhaozhou@yunify.com>

* enable at host cluster

Signed-off-by: wenhaozhou <wenhaozhou@yunify.com>

---------

Signed-off-by: wenhaozhou <wenhaozhou@yunify.com>
Co-authored-by: wenhaozhou <wenhaozhou@yunify.com>
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:24 +00:00
Wenhao Zhou
403744a1ab Update appversion finalizer name (#2161)
* update appversion finalizer name

Signed-off-by: wenhaozhou <wenhaozhou@yunify.com>

* Update pkg/controller/application/appversion_contrlller.go

* Update pkg/controller/application/appversion_contrlller.go

* Update staging/src/kubesphere.io/api/application/v2/constants.go

* Update staging/src/kubesphere.io/api/application/v2/constants.go

---------

Signed-off-by: wenhaozhou <wenhaozhou@yunify.com>
Co-authored-by: hongming <coder.scala@gmail.com>
2025-03-19 06:26:24 +00:00
yonghongshi
d4c676f2fd fix csidriver check (#1993)
Signed-off-by: stoneshi-yunify <stoneshi@kubesphere.io>
2025-03-19 06:26:24 +00:00
KubeSphere CI Bot
5bbc760353 update pod status.Phase (#6450)
Signed-off-by: wenhaozhou <wenhaozhou@yunify.com>
Signed-off-by: hongming <coder.scala@gmail.com>
Co-authored-by: wenhaozhou <wenhaozhou@yunify.com>
2025-03-19 11:14:58 +08:00
KubeSphere CI Bot
1564abca4d feat: add imagesearch provider (#6449)
* feat: add imagesearch provider



* update



* update



* update



* update url and queries



* add func getProviderTypeByHost



---------

Signed-off-by: wenhaozhou <wenhaozhou@yunify.com>
Signed-off-by: hongming <coder.scala@gmail.com>
Co-authored-by: wenhaozhou <wenhaozhou@yunify.com>
2025-03-19 11:03:58 +08:00
zhuxiujuan28
d412777b97 Update SECURITY.md (#6443)
Signed-off-by: zhuxiujuan28 <xiujuanzhu@yunify.com>
2025-03-18 10:56:57 +08:00
KubeSphere CI Bot
c3bb02ee9f chore: simplify telemetry config (#6442)
Signed-off-by: hongming <coder.scala@gmail.com>
Co-authored-by: hongming <coder.scala@gmail.com>
2025-03-17 10:59:56 +08:00
hongming
8799f2c9cc deps: update github.com/stretchr/testify to latest versions (#6439)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-14 17:52:52 +08:00
hongming
d14884cb6d deps: update go-jose to v4.0.5 (#6435)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-14 16:47:52 +08:00
smartcat999
e137fb7460 fix: regression bugs (#6432)
fix: extension delete logic

Signed-off-by: peng wu <2030047311@qq.com>
2025-03-14 14:09:52 +08:00
hongming
a41915a33b docs: update security policy and supported versions in SECURITY.md (#6431)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-14 11:56:52 +08:00
hongming
3878877a83 docs: update contribution guidelines and add security section in README (#6429)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-13 11:28:51 +08:00
hongming
909afc4405 docs: update architecture image and social media link in README (#6425)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-03-12 18:39:51 +08:00
liujian
e4ed63ac95 Update util.go (#6423)
Signed-off-by: liujian <54946465+redscholar@users.noreply.github.com>
2025-03-12 15:53:49 +08:00
KubeSphere CI Bot
afe1372bc3 [kse-2286] replace storeCAFile use WithTLSConfig (#6400)
Signed-off-by: ks-ci-bot <ks-ci-bot@kubesphere.io>
Co-authored-by: ks-ci-bot <ks-ci-bot@kubesphere.io>
2025-03-11 10:40:48 +08:00
KubeSphere CI Bot
0556934ecc [kse-2112] add extension version controller (#6399)
Signed-off-by: ks-ci-bot <ks-ci-bot@kubesphere.io>
Co-authored-by: ks-ci-bot <ks-ci-bot@kubesphere.io>
2025-03-11 10:13:47 +08:00
smartcat999
7e2cafd15b update ks-core helm chart (#6401)
fix: cherrypick update ks-core helm chart

Signed-off-by: peng wu <2030047311@qq.com>
2025-03-11 09:57:48 +08:00
smartcat999
41fdd0f4eb fix: replace user displayname with annotation (#6395)
Signed-off-by: peng wu <2030047311@qq.com>
2025-03-06 17:09:43 +08:00
smartcat999
2ed83e77d4 fix: During the creation of a workspace, it will be determined whethe… (#6385)
fix: During the creation of a workspace, it will be determined whethe… (#2147)

* fix: During the creation of a workspace, it will be determined whether the user has the authority to designate other users as administrators.



* fix: code update



* fix: Determine whether the user is a workspace administrator based on whether the user has the permission to delete the workspace



---------

Signed-off-by: peng wu <2030047311@qq.com>
2025-03-03 16:11:39 +08:00
smartcat999
f77b0afd85 fix ldaps protocol (#6384)
fix: ldap default protocol (#2156)

Signed-off-by: peng wu <2030047311@qq.com>
2025-03-03 16:03:40 +08:00
liujian
430a3589d8 feat: add category for deepseek (#6377)
Signed-off-by: joyceliu <joyceliu@yunify.com>
Co-authored-by: joyceliu <joyceliu@yunify.com>
2025-02-28 17:02:36 +08:00
smartcat999
8056d176f8 fix: Fixed the issue where the user status was empty when the third-p… (#6379)
fix: Fixed the issue where the user status was empty when the third-p… (#2258)

* fix: Fixed the issue where the user status was empty when the third-party login user logged in manually for the first time



* fix: Fixed the issue where the user status was empty when the third-party login user logged in manually for the first time



---------

Signed-off-by: peng wu <2030047311@qq.com>
2025-02-28 16:57:36 +08:00
hongming
c1259aff8b feat: platform config API (#2052) (#6303)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-02-28 16:48:44 +08:00
hongming
018f6045ee feat(auth): support multiple identity provider associations (#6299)
Signed-off-by: hongming <coder.scala@gmail.com>
2025-02-28 16:48:36 +08:00
smartcat999
99d2408c34 fix: pod list with owner filter logic (#6370)
Signed-off-by: peng wu <2030047311@qq.com>
2025-02-19 10:41:25 +08:00
smartcat999
d38db0054c Fix dependency cves (#6353)
* Upgraded golang.org/x/crypto v0.28.0 => v0.31.0.

Signed-off-by: peng wu <2030047311@qq.com>

* Upgraded golang.org/x/net v0.30.0 => v0.33.0.

Signed-off-by: peng wu <2030047311@qq.com>

* Upgraded github.com/golang/glog v1.2.2 => v1.2.4. Fix CVE-2024-45339.

Signed-off-by: peng wu <2030047311@qq.com>

* Upgrade go stdlib from 1.22.8 to 1.22.11. Fix CVE-2024-45336.

Signed-off-by: peng wu <2030047311@qq.com>

* Upgraded github.com/go-git/go-git/v5 v5.11.0 => v5.13.0. Fix CVE-2025-21613、CVE-2025-21614.

Signed-off-by: peng wu <2030047311@qq.com>

* Upgraded telemetry v1.0.1 => v1.0.2. Fix CVE-2024-45338、CVE-2024-34156、CVE-2024-34155、CVE-2024-34158、CVE-2024-4536、CVE-2024-45341.

Signed-off-by: peng wu <2030047311@qq.com>

---------

Signed-off-by: peng wu <2030047311@qq.com>
2025-02-08 14:54:12 +08:00
liujian
b4069c6b3d fix: fix cve for telemetry and kubesphere (#6352)
fix: cve

Signed-off-by: joyceliu <joyceliu@yunify.com>
Co-authored-by: joyceliu <joyceliu@yunify.com>
2025-02-08 10:12:12 +08:00