mirror of
				https://github.com/dani-garcia/vaultwarden.git
				synced 2025-10-26 07:50:02 +02:00 
			
		
		
		
	* Add SSO functionality using OpenID Connect Co-authored-by: Pablo Ovelleiro Corral <mail@pablo.tools> Co-authored-by: Stuart Heap <sheap13@gmail.com> Co-authored-by: Alex Moore <skiepp@my-dockerfarm.cloud> Co-authored-by: Brian Munro <brian.alexander.munro@gmail.com> Co-authored-by: Jacques B. <timshel@github.com> * Improvements and error handling * Stop rolling device token * Add playwright tests * Activate PKCE by default * Ensure result order when searching for sso_user * add SSO_ALLOW_UNKNOWN_EMAIL_VERIFICATION * Toggle SSO button in scss * Base64 encode state before sending it to providers * Prevent disabled User from SSO login * Review fixes * Remove unused UserOrganization.invited_by_email * Split SsoUser::find_by_identifier_or_email * api::Accounts::verify_password add the policy even if it's ignored * Disable signups if SSO_ONLY is activated * Add verifiedDate to organizations::get_org_domain_sso_details * Review fixes * Remove OrganizationId guard from get_master_password_policy * Add wrapper type OIDCCode OIDCState OIDCIdentifier * Membership::confirm_user_invitations fix and tests * Allow set-password only if account is unitialized * Review fixes * Prevent accepting another user invitation * Log password change event on SSO account creation * Unify master password policy resolution * Upgrade openidconnect to 4.0.0 * Revert "Remove unused UserOrganization.invited_by_email" This reverts commit 548e19995e141314af98a10d170ea7371f02fab4. * Process org enrollment in accounts::post_set_password * Improve tests * Pass the claim invited_by_email in case it was not in db * Add Slack configuration hints * Fix playwright tests * Skip broken tests * Add sso identifier in admin user panel * Remove duplicate expiration check, add a log * Augment mobile refresh_token validity * Rauthy configuration hints * Fix playwright tests * Playwright upgrade and conf improvement * Playwright tests improvements * 2FA email and device creation change * Fix and improve Playwright tests * Minor improvements * Fix enforceOnLogin org policies * Run playwright sso tests against correct db * PKCE should now work with Zitadel * Playwright upgrade maildev to use MailBuffer.expect * Upgrades playwright tests deps * Check email_verified in id_token and user_info * Add sso verified endpoint for v2025.6.0 * Fix playwright tests * Create a separate sso_client * Upgrade openidconnect to 4.0.1 * Server settings for login fields toggle * Use only css for login fields * Fix playwright test * Review fix * More review fix * Perform same checks when setting kdf --------- Co-authored-by: Felix Eckhofer <felix@eckhofer.com> Co-authored-by: Pablo Ovelleiro Corral <mail@pablo.tools> Co-authored-by: Stuart Heap <sheap13@gmail.com> Co-authored-by: Alex Moore <skiepp@my-dockerfarm.cloud> Co-authored-by: Brian Munro <brian.alexander.munro@gmail.com> Co-authored-by: Jacques B. <timshel@github.com> Co-authored-by: Timshel <timshel@480s>
		
			
				
	
	
		
			144 lines
		
	
	
		
			4.1 KiB
		
	
	
	
		
			TypeScript
		
	
	
	
	
	
			
		
		
	
	
			144 lines
		
	
	
		
			4.1 KiB
		
	
	
	
		
			TypeScript
		
	
	
	
	
	
| import { defineConfig, devices } from '@playwright/test';
 | |
| import { exec } from 'node:child_process';
 | |
| 
 | |
| const utils = require('./global-utils');
 | |
| 
 | |
| utils.loadEnv();
 | |
| 
 | |
| /**
 | |
|  * See https://playwright.dev/docs/test-configuration.
 | |
|  */
 | |
| export default defineConfig({
 | |
|     testDir: './.',
 | |
|     /* Run tests in files in parallel */
 | |
|     fullyParallel: false,
 | |
| 
 | |
|     /* Fail the build on CI if you accidentally left test.only in the source code. */
 | |
|     forbidOnly: !!process.env.CI,
 | |
| 
 | |
|     retries: 0,
 | |
|     workers: 1,
 | |
| 
 | |
|     /* Reporter to use. See https://playwright.dev/docs/test-reporters */
 | |
|     reporter: 'html',
 | |
| 
 | |
|     /* Long global timeout for complex tests
 | |
|      * But short action/nav/expect timeouts to fail on specific step (raise locally if not enough).
 | |
|      */
 | |
|     timeout: 120 * 1000,
 | |
|     actionTimeout: 10 * 1000,
 | |
|     navigationTimeout: 10 * 1000,
 | |
|     expect: { timeout: 10 * 1000 },
 | |
| 
 | |
|     /* Shared settings for all the projects below. See https://playwright.dev/docs/api/class-testoptions. */
 | |
|     use: {
 | |
|         /* Base URL to use in actions like `await page.goto('/')`. */
 | |
|         baseURL: process.env.DOMAIN,
 | |
|         browserName: 'firefox',
 | |
|         locale: 'en-GB',
 | |
|         timezoneId: 'Europe/London',
 | |
| 
 | |
|         /* Always collect trace (other values add random test failures) See https://playwright.dev/docs/trace-viewer */
 | |
|         trace: 'on',
 | |
|         viewport: {
 | |
|             width: 1080,
 | |
|             height: 720,
 | |
|         },
 | |
|         video: "on",
 | |
|     },
 | |
| 
 | |
|     /* Configure projects for major browsers */
 | |
|     projects: [
 | |
|         {
 | |
|             name: 'mariadb-setup',
 | |
|             testMatch: 'tests/setups/db-setup.ts',
 | |
|             use: { serviceName: "Mariadb" },
 | |
|             teardown: 'mariadb-teardown',
 | |
|         },
 | |
|         {
 | |
|             name: 'mysql-setup',
 | |
|             testMatch: 'tests/setups/db-setup.ts',
 | |
|             use: { serviceName: "Mysql" },
 | |
|             teardown: 'mysql-teardown',
 | |
|         },
 | |
|         {
 | |
|             name: 'postgres-setup',
 | |
|             testMatch: 'tests/setups/db-setup.ts',
 | |
|             use: { serviceName: "Postgres" },
 | |
|             teardown: 'postgres-teardown',
 | |
|         },
 | |
|         {
 | |
|             name: 'sso-setup',
 | |
|             testMatch: 'tests/setups/sso-setup.ts',
 | |
|             teardown: 'sso-teardown',
 | |
|         },
 | |
| 
 | |
|         {
 | |
|             name: 'mariadb',
 | |
|             testMatch: 'tests/*.spec.ts',
 | |
|             testIgnore: 'tests/sso_*.spec.ts',
 | |
|             dependencies: ['mariadb-setup'],
 | |
|         },
 | |
|         {
 | |
|             name: 'mysql',
 | |
|             testMatch: 'tests/*.spec.ts',
 | |
|             testIgnore: 'tests/sso_*.spec.ts',
 | |
|             dependencies: ['mysql-setup'],
 | |
|         },
 | |
|         {
 | |
|             name: 'postgres',
 | |
|             testMatch: 'tests/*.spec.ts',
 | |
|             testIgnore: 'tests/sso_*.spec.ts',
 | |
|             dependencies: ['postgres-setup'],
 | |
|         },
 | |
|         {
 | |
|             name: 'sqlite',
 | |
|             testMatch: 'tests/*.spec.ts',
 | |
|             testIgnore: 'tests/sso_*.spec.ts',
 | |
|         },
 | |
| 
 | |
|         {
 | |
|             name: 'sso-mariadb',
 | |
|             testMatch: 'tests/sso_*.spec.ts',
 | |
|             dependencies: ['sso-setup', 'mariadb-setup'],
 | |
|         },
 | |
|         {
 | |
|             name: 'sso-mysql',
 | |
|             testMatch: 'tests/sso_*.spec.ts',
 | |
|             dependencies: ['sso-setup', 'mysql-setup'],
 | |
|         },
 | |
|         {
 | |
|             name: 'sso-postgres',
 | |
|             testMatch: 'tests/sso_*.spec.ts',
 | |
|             dependencies: ['sso-setup', 'postgres-setup'],
 | |
|         },
 | |
|         {
 | |
|             name: 'sso-sqlite',
 | |
|             testMatch: 'tests/sso_*.spec.ts',
 | |
|             dependencies: ['sso-setup'],
 | |
|         },
 | |
| 
 | |
|         {
 | |
|             name: 'mariadb-teardown',
 | |
|             testMatch: 'tests/setups/db-teardown.ts',
 | |
|             use: { serviceName: "Mariadb" },
 | |
|         },
 | |
|         {
 | |
|             name: 'mysql-teardown',
 | |
|             testMatch: 'tests/setups/db-teardown.ts',
 | |
|             use: { serviceName: "Mysql" },
 | |
|         },
 | |
|         {
 | |
|             name: 'postgres-teardown',
 | |
|             testMatch: 'tests/setups/db-teardown.ts',
 | |
|             use: { serviceName: "Postgres" },
 | |
|         },
 | |
|         {
 | |
|             name: 'sso-teardown',
 | |
|             testMatch: 'tests/setups/sso-teardown.ts',
 | |
|         },
 | |
|     ],
 | |
| 
 | |
|     globalSetup: require.resolve('./global-setup'),
 | |
| });
 |