NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Go modules · #863 by repository stars
Last release 4 years ago
no release in 18 months
Ships on a steady schedule
a new release about every 8 days
Nearly every release is documented
notes for 22 of 22 stable releases
Nothing withdrawn
no release was ever pulled
7 years old
811 releases · first in 2020
One column per quarter.
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
The following sections list the changes for 1.5.0.
The following sections list the changes for 1.5.0.
Bugfix - Fixes "unaligned 64-bit atomic operation" panic on 32-bit ARM: #1888
Sync/cache had uint64s that were not 64-bit aligned causing panics on 32-bit systems during atomic access
https://github.com/owncloud/ocis/issues/1887 https://github.com/owncloud/ocis/pull/1888
Change - Make Protobuf package names unique: #1875
Introduce unique package and go_package names for our Protobuf definitions
https://github.com/owncloud/ocis/pull/1875
Change - Update ownCloud Web to v3.0.0: #1938
Tags: web
We updated ownCloud Web to v3.0.0. Please refer to the changelog (linked) for details on the web release.
https://github.com/owncloud/ocis/pull/1938 https://github.com/owncloud/web/releases/tag/v3.0.0
Enhancement - Update reva to v1.6.1-0.20210414111318-a4b5148cbfb2: #1872
https://github.com/owncloud/ocis/pull/1872
Enhancement - Change default path for thumbnails: #1892
Changes the default path for thumbnails from <os tmp dir>/ocis-thumbnails to
/var/tmp/ocis/thumbnails
https://github.com/owncloud/ocis/issues/1891 https://github.com/owncloud/ocis/pull/1892
Enhancement - Add config for public share SQL driver: #1916
https://github.com/owncloud/ocis/pull/1916
Enhancement - Add option to reading registry rules from json file: #1917
https://github.com/owncloud/ocis/pull/1917
Enhancement - Remove dead runtime code: #1923
When moving from the old runtime to the new one there were lots of files left behind that are essentially dead code and should be removed. The original code lives here github.com/refs/pman/ if someone finds it interesting to read.
https://github.com/owncloud/ocis/pull/1923
Enhancement - Parse config on supervised mode with run subcommand: #1931
Currently it is not possible to parse a single config file from an extension when running on supervised mode.
https://github.com/owncloud/ocis/pull/1931
Enhancement - Update ODS in accounts & settings extension: #1934
The accounts and settings extensions were updated to reflect the latest changes in the ownCloud design system. In addition, a couple of quick wins in terms of accessibility are included.
https://github.com/owncloud/ocis/pull/1934
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
The following sections list the changes for 1.4.0.
The following sections list the changes for 1.4.0.
Bugfix - Fix thumbnail generation for jpegs: #1785
Images with the extension .jpeg were not properly supported.
https://github.com/owncloud/ocis/issues/1490 https://github.com/owncloud/ocis/pull/1785
Change - Update ownCloud Web to v2.1.0: #1870
Tags: web
We updated ownCloud Web to v2.1.0. Please refer to the changelog (linked) for details on the web release.
https://github.com/owncloud/ocis/pull/1870 https://github.com/owncloud/web/releases/tag/v2.1.0
Enhancement - Update reva to v1.6.1-0.20210326165326-e8a00d9b2368: #1683
https://github.com/owncloud/ocis/pull/1683 https://github.com/cs3org/reva/pull/1405 https://github.com/owncloud/ocis/pull/1861
Enhancement - Clarify expected failures: #1790
Some features, while covered by the ownCloud 10 acceptance tests, will not be
implemented for now: - blacklisted / ignored files, because ocis does not need
to blacklist .htaccess files - OC-LazyOps support was removed from the
clients. We are thinking about a
state machine for uploads to properly solve that scenario and also list the
state of files in progress in the web
ui. The expected failures files
now have a dedicated Won't fix section for these items.
https://github.com/owncloud/ocis/issues/214 https://github.com/owncloud/ocis/pull/1790 https://github.com/owncloud/client/pull/8398
Enhancement - Generate thumbnails for .gif files: #1791
Added support for gifs to the thumbnails service.
https://github.com/owncloud/ocis/pull/1791
Enhancement - Add focus to input elements on login page: #1792
https://github.com/owncloud/web/issues/4322 https://github.com/owncloud/ocis/pull/1792
Enhancement - Improve accessibility to input elements on login page: #1794
https://github.com/owncloud/web/issues/4319 https://github.com/owncloud/ocis/pull/1794 https://github.com/owncloud/ocis/pull/1811
Enhancement - Replace special character in login page title with a regular minus: #1813
https://github.com/owncloud/ocis/pull/1813
Enhancement - File Logging: #1816
When running supervised, support for configuring all logs to a single log file:
OCIS_LOG_FILE=/Users/foo/bar/ocis.log MICRO_REGISTRY=etcd bin/ocis server
Supports directing log from single extensions to a log file:
PROXY_LOG_FILE=/Users/foo/bar/proxy.log MICRO_REGISTRY=etcd bin/ocis proxy
https://github.com/owncloud/ocis/pull/1816
Enhancement - Tracing Refactor: #1819
Centralize tracing handling per extension.
https://github.com/owncloud/ocis/pull/1819
Enhancement - Runtime Hostname and Port are now configurable: #1822
Without any configuration the ocis runtime will start on localhost:9250 unless
specified otherwise. Usage:
OCIS_RUNTIME_PORT=6061 bin/ocis server - overrides the oCIS runtime and
starts on port 6061 - OCIS_RUNTIME_PORT=6061 bin/ocis list - lists running
extensions for the runtime on localhost:6061All subcommands are updated and expected to work with the following environment variables:
OCIS_RUNTIME_HOST
OCIS_RUNTIME_PORT
https://github.com/owncloud/ocis/pull/1822
Enhancement - Add new build targets: #1824
Make build target build used to build a binary twice, the second occurrence
having symbols for debugging. We split this step in two and added build-all
and build-debug targets.
build-all now behaves as the previous build target, it will generate 2
binaries, one for debug. - build-debug will build a single binary for
debugging.https://github.com/owncloud/ocis/pull/1824
The following sections list the changes for 1.4.0.
Bugfix - Fix thumbnail generation for jpegs: #1785
Images with the extension .jpeg were not properly supported.
https://github.com/owncloud/ocis/issues/1490 https://github.com/owncloud/ocis/pull/1785
Change - Update ownCloud Web to v2.1.0: #1870
Tags: web
We updated ownCloud Web to v2.1.0. Please refer to the changelog (linked) for details on the web release.
https://github.com/owncloud/ocis/pull/1870 https://github.com/owncloud/web/releases/tag/v2.1.0
Enhancement - Add focus to input elements on login page: #1792
https://github.com/owncloud/web/issues/4322 https://github.com/owncloud/ocis/pull/1792
Enhancement - Improve accessibility to input elements on login page: #1794
https://github.com/owncloud/web/issues/4319 https://github.com/owncloud/ocis/pull/1794 https://github.com/owncloud/ocis/pull/1811
Enhancement - Add new build targets: #1824
Make build target build used to build a binary twice, the second occurrence having symbols
for debugging. We split this step in two and added build-all and build-debug targets.
build-all now behaves as the previous build target, it will generate 2 binaries, one for
debug. - build-debug will build a single binary for debugging.https://github.com/owncloud/ocis/pull/1824
Enhancement - Clarify expected failures: #1790
Some features, while covered by the ownCloud 10 acceptance tests, will not be implmented for
now: - blacklisted / ignored files, because ocis does not need to blacklist .htaccess files -
OC-LazyOps support was removed from the
clients. We are thinking about a state
machine for uploads to properly solve that scenario and also list the state of files in progress
in the web ui. The expected failures
files now have a dedicated Won't fix section for these items.
https://github.com/owncloud/ocis/issues/214 https://github.com/owncloud/ocis/pull/1790 https://github.com/owncloud/client/pull/8398
Enhancement - Replace special character in login page title with a regular minus: #1813
https://github.com/owncloud/ocis/pull/1813
Enhancement - File Logging: #1816
When running supervised, support for configuring all logs to a single log file:
OCIS_LOG_FILE=/Users/foo/bar/ocis.log MICRO_REGISTRY=etcd bin/ocis server
Supports directing log from single extensions to a log file:
PROXY_LOG_FILE=/Users/foo/bar/proxy.log MICRO_REGISTRY=etcd bin/ocis proxy
https://github.com/owncloud/ocis/pull/1816
Enhancement - Runtime Hostname and Port are now configurable: #1822
Without any configuration the ocis runtime will start on localhost:9250 unless specified
otherwise. Usage:
OCIS_RUNTIME_PORT=6061 bin/ocis server - overrides the oCIS runtime and starts on port
6061 - OCIS_RUNTIME_PORT=6061 bin/ocis list - lists running extensions for the runtime on
localhost:6061All subcommands are updated and expected to work with the following environment variables:
OCIS_RUNTIME_HOST OCIS_RUNTIME_PORT
https://github.com/owncloud/ocis/pull/1822
Enhancement - Generate thumbnails for .gif files: #1791
Added support for gifs to the thumbnails service.
https://github.com/owncloud/ocis/pull/1791
Enhancement - Tracing Refactor: #1819
Centralize tracing handling per extension.
https://github.com/owncloud/ocis/pull/1819
Enhancement - Update reva to v1.6.1-0.20210326165326-e8a00d9b2368: #1683
https://github.com/owncloud/ocis/pull/1683 https://github.com/cs3org/reva/pull/1405 https://github.com/owncloud/ocis/pull/1861
The following sections list the changes for 1.3.0.
Bugfix - Purposely delay accounts service startup: #1734
As it turns out the race condition between accounts <-> storage-metadata still remains.
This PR is a hotfix, and it should be followed up with a proper fix. Either:
https://github.com/owncloud/ocis/pull/1734
Bugfix - Add missing gateway config: #1716
The auth provider ldap and oidc drivers now need to be able talk to the reva gateway. We added
the gatewayscv to the config that is passed to reva.
https://github.com/owncloud/ocis/pull/1716
Bugfix - Fix accounts initialization: #1696
Originally the accounts service relies on both the settings and storage-metadata to be up
and running at the moment it starts. This is an antipattern as it will cause the entire service to
panic if the dependants are not present.
We inverted this dependency and moved the default initialization data (i.e: creating roles, permissions, settings bundles) and instead of notifying the settings service that the account has to provide with such options, the settings is instead initialized with the options the accounts rely on. Essentially saving bandwith as there is no longer a gRPC call to the settings service.
For the storage-metadata a retry mechanism was added that retries by default 20 times to
fetch the com.owncloud.storage.metadata from the service registry every 500
miliseconds. If this retry expires the accounts panics, as its dependency on the
storage-metadata service cannot be resolved.
We also introduced a client wrapper that acts as middleware between a client and a server. For more information on how it works further read here
https://github.com/owncloud/ocis/pull/1696
Bugfix - Fix the ttl of the authentication middleware cache: #1699
The authentication cache ttl was multiplied with time.Second multiple times. This
resulted in a ttl that was not intended.
https://github.com/owncloud/ocis/pull/1699
Change - Update ownCloud Web to v2.0.1: #1683
Tags: web
We updated ownCloud Web to v2.0.1. Please refer to the changelog (linked) for details on the web release.
https://github.com/owncloud/ocis/pull/1683 https://github.com/owncloud/web/releases/tag/v2.0.1
Change - Update ownCloud Web to v2.0.2: #1776
Tags: web
We updated ownCloud Web to v2.0.2. Please refer to the changelog (linked) for details on the web release.
https://github.com/owncloud/ocis/pull/1776 https://github.com/owncloud/web/releases/tag/v2.0.2
Enhancement - Remove the JWT from the log: #1758
We were logging the JWT in some places. Secrets should not be exposed in logs so it got removed.
https://github.com/owncloud/ocis/pull/1758
Enhancement - Update go-micro to v3.5.1-0.20210217182006-0f0ace1a44a9: #1670
MICRO_LOG_LEVEL and is set to error by default. This decision was made because ownCloud,
as framework builders, want to log everything oCIS related and hide everything unrelated by
default. It can be re-enabled by setting it to a log level other than error. i.e:
MICRO_LOG_LEVEL=info. - Updated protoc-gen-micro to the latest
version. -
We're using Prometheus wrappers from go-micro.https://github.com/owncloud/ocis/pull/1670 https://github.com/asim/go-micro/pull/2126
Enhancement - Update reva to v1.6.1-0.20210223065028-53f39499762e: #1683
https://github.com/owncloud/ocis/pull/1683 https://github.com/cs3org/reva/pull/1405
Enhancement - Add initial nats and kubernetes registry support: #1697
We added initial support to use nats and kubernetes as a service registry using
MICRO_REGISTRY=nats and MICRO_REGISTRY=kubernetes respectively. Multiple nodes can
be given with MICRO_REGISTRY_ADDRESS=1.2.3.4,5.6.7.8,9.10.11.12.
https://github.com/owncloud/ocis/pull/1697
The following sections list the changes for 1.2.0.
Bugfix - Check if roles are present in user object before looking those up: #1388
https://github.com/owncloud/ocis/pull/1388
Bugfix - Fix etcd address configuration: #1546
The etcd server address in MICRO_REGISTRY_ADDRESS was not picked up when etcd was set as
service discovery registry MICRO_REGISTRY=etcd. Therefore etcd was only working if
available on localhost / 127.0.0.1.
https://github.com/owncloud/ocis/pull/1546
Bugfix - Remove unimplemented config file option for oCIS root command: #1636
https://github.com/owncloud/ocis/pull/1636
Bugfix - Fix thumbnail generation when using different idp: #1624
The thumbnail service was relying on a konnectd specific field in the access token. This logic was now replaced by a service parameter for the username.
https://github.com/owncloud/ocis/issues/1624 https://github.com/owncloud/ocis/pull/1628
Change - Initial release of graph and graph explorer: #1594
Tags: graph, graph-explorer
We brought initial basic Graph and Graph-Explorer support for the ownCloud Infinite Scale project.
https://github.com/owncloud/ocis/pull/1594 https://github.com/owncloud/ocis-graph-explorer/pull/3
Change - Move runtime code on refs/pman over to owncloud/ocis/ocis: #1483
Tags: ocis, runtime
Currently, the runtime is under the private account of an oCIS developer. For future-proofing we don't want oCIS mission critical components to depend on external repositories, so we're including refs/pman module as an oCIS package instead.
https://github.com/owncloud/ocis/pull/1483
Change - Update ownCloud Web to v2.0.0: #1661
Tags: web
We updated ownCloud Web to v2.0.0. Please refer to the changelog (linked) for details on the web release.
https://github.com/owncloud/ocis/pull/1661 https://github.com/owncloud/web/releases/tag/v2.0.0
Enhancement - Make use of new design-system oc-table: #1597
Tags: ui, accounts
The design-system table component has changed the way it's used. We updated accounts-ui to use the new 'oc-table-simple' component.
https://github.com/owncloud/ocis/pull/1597
Enhancement - Use a default protocol parameter instead of explicitly disabling tus: #1331
https://github.com/cs3org/reva/pull/1331 https://github.com/owncloud/ocis/pull/1374
Enhancement - Functionality to map home directory to different storage providers: #1186
We added a parameter in reva that allows us to redirect /home requests to different storage
providers based on a mapping derived from the user attributes, which was previously not
possible since we hardcode the /home path for all users. For example, having its value as
/home/{{substr 0 1 .Username}} can be used to redirect home requests for different users to
different storage providers.
https://github.com/owncloud/ocis/pull/1186 https://github.com/cs3org/reva/pull/1142
Enhancement - Introduce ADR: #1042
We will keep track of Architectual Decision Records using
Markdown in /docs/adr.
https://github.com/owncloud/ocis/pull/1042
Enhancement - Switch to opencontainers annotation scheme: #1381
Switch docker image annotation scheme to org.opencontainers standard because org.label-schema is depreciated.
https://github.com/owncloud/ocis/pull/1381
Enhancement - Migrate ocis-graph-explorer to ocis monorepo: #1596
Tags: ocis, ocis-graph-explorer
Ocis-graph-explorer was not migrated during the monorepo conversion.
https://github.com/owncloud/ocis/pull/1596
Enhancement - Migrate ocis-graph to ocis monorepo: #1594
Tags: ocis, ocis-graph
Ocis-graph was not migrated during the monorepo conversion.
https://github.com/owncloud/ocis/pull/1594
Enhancement - Enable group sharing and add config for sharing SQL driver: #1626
This PR adds config to support sharing with groups. It also introduces a breaking change for the
CS3APIs definitions since grantees can now refer to both users as well as groups. Since we store
the grantee information in a json file, /var/tmp/ocis/storage/shares.json, its previous
version needs to be removed as we won't be able to unmarshal data corresponding to the previous
definitions.
https://github.com/owncloud/ocis/pull/1626 https://github.com/cs3org/reva/pull/1453
Enhancement - Update reva to v1.5.2-0.20210125114636-0c10b333ee69: #1482
https://github.com/owncloud/ocis/pull/1482 https://github.com/cs3org/reva/pull/1400 https://github.com/cs3org/reva/pull/1416 https://github.com/cs3org/reva/pull/1415 https://github.com/cs3org/reva/pull/1408
The following sections list the changes for 1.1.0.
Change - Disable pretty logging by default: #1133
Tags: ocis
Disable pretty logging default for performance reasons.
https://github.com/owncloud/ocis/pull/1133
Change - Add "volume" declaration to docker images: #1375
Tags: docker
Add "volume" declaration to docker images. This makes it easier for Docker users to see where oCIS stores data.
https://github.com/owncloud/ocis/pull/1375
Change - Add "expose" information to docker images: #1366
Tags: docker
Add "expose" information to docker images. Docker users will now see that we offer services on port 9200.
https://github.com/owncloud/ocis/pull/1366
Change - Generate cryptographically secure state token: #1203
Replaced Math.random with a cryptographically secure way to generate the oidc state token using the javascript crypto api.
https://github.com/owncloud/ocis/pull/1203 https://developer.mozilla.org/en-US/docs/Web/API/Crypto/getRandomValues https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Global_Objects/Math/random
Change - Move k6 to cdperf: #1358
Tags: performance, testing, k6
The ownCloud performance tests can not only be used to test oCIS. This is why we have decided to move the k6 tests to https://github.com/owncloud/cdperf
https://github.com/owncloud/ocis/pull/1358
Change - Update go version: #1364
Tags: go
Update go from 1.13 to 1.15
https://github.com/owncloud/ocis/pull/1364
Change - Update ownCloud Web to v1.0.1: #1191
Tags: web
We updated ownCloud Web to v1.0.1. Please refer to the changelog (linked) for details on the web release.
https://github.com/owncloud/ocis/pull/1191 https://github.com/owncloud/web/releases/tag/v1.0.1
Enhancement - Add OCIS_URL env var: #1148
Tags: ocis
We introduced a new environment variable OCIS_URL that expects a URL including protocol,
host and optionally port to simplify configuring all the different services. These existing
environment variables still take precedence, but will also fall back to OCIS_URL:
STORAGE_LDAP_IDP, STORAGE_OIDC_ISSUER, PROXY_OIDC_ISSUER,
STORAGE_FRONTEND_PUBLIC_URL, KONNECTD_ISS, WEB_OIDC_AUTHORITY, and
WEB_UI_CONFIG_SERVER.
Some environment variables are now built dynamically if they are not set: -
STORAGE_DATAGATEWAY_PUBLIC_URL defaults to <STORAGE_FRONTEND_PUBLIC_URL>/data,
also falling back to OCIS_URL - WEB_OIDC_METADATA_URL defaults to
<WEB_OIDC_AUTHORITY>/.well-known/openid-configuration, also falling back to
OCIS_URL
Furthermore, the built in konnectd will generate an identifier-registration.yaml that
uses the KONNECTD_ISS in the allowed redirect_uris and origins. It simplifies the
default https://localhost:9200 and remote deployment with OCIS_URL which is evaluated
as a fallback if KONNECTD_ISS is not set.
An oCIS server can now be started on a remote machine as easy as
OCIS_URL=https://cloud.ocis.test PROXY_HTTP_ADDR=0.0.0.0:443 ocis server.
Note that the OCIS_DOMAIN environment variable is not used by oCIS, but by the docker
containers.
https://github.com/owncloud/ocis/pull/1148
Enhancement - Use sync.cache for roles cache: #1367
Tags: ocis-pkg
Update ocis-pkg/roles cache to use ocis-pkg/sync cache
https://github.com/owncloud/ocis/pull/1367
Enhancement - Add named locks and refactor cache: #1212
Tags: ocis-pkg, accounts
We had the case that we needed kind of a named locking mechanism which enables us to lock only under certain conditions. It's used in the indexer package where we do not need to lock everything, instead just lock the requested parts and differentiate between reads and writes.
This made it possible to entirely remove locks from the accounts service and move them to the ocis-pkg indexer. Another part of this refactor was to make the cache atomic and write tests for it.
https://github.com/owncloud/ocis/issues/966 https://github.com/owncloud/ocis/pull/1212
Enhancement - Update reva to v1.5.1: #1372
Summary -------
Details -------
For the incoming /dav/files/userID requests, we have different namespaces depending on whether the request is for the logged-in user's namespace or not. Since in the storage drivers, we specify the layout depending only on the user whose resources are to be accessed, this fails when a user wants to access another user's namespace when the storage provider depends on the logged in user's namespace. This PR fixes that.
For example, consider the following case. The owncloud fs uses a layout {{substr 0 1 .Id.OpaqueId}}/{{.Id.OpaqueId}}. The user einstein sends a request to access a resource shared with him, say /dav/files/marie/abcd, which should be allowed. However, based on the way we applied the layout, there's no way in which this can be translated to /m/marie/.
Https://github.com/cs3org/reva/pull/1401
And git SHA to the release tool.
Https://github.com/cs3org/reva/pull/1413
Fixes the empty trash-bin functionality for ocis-storage
Https://github.com/owncloud/product/issues/254 https://github.com/cs3org/reva/pull/1399
Https://github.com/cs3org/reva/pull/1397
This enhancement adds support for a site authorization status to Mentix. This way, sites registered via a web app can now be excluded until authorized manually by an administrator.
Furthermore, Mentix now sets the scheme for Prometheus targets. This allows us to also support monitoring of sites that do not support the default HTTPS scheme.
Https://github.com/cs3org/reva/pull/1398
We now let the oCIS driver persist favorites, set temporary etags and the mtime as arbitrary metadata.
Https://github.com/owncloud/ocis/issues/567 https://github.com/cs3org/reva/issues/1394 https://github.com/cs3org/reva/pull/1393
The current metrics package can only gather metrics either from json files. With this feature, the metrics can be gathered polling the http endpoints exposed by the owncloud/nextcloud sciencemesh apps.
Https://github.com/cs3org/reva/pull/1403
https://github.com/owncloud/ocis/pull/1372
Enhancement - Update reva to v1.4.1-0.20210111080247-f2b63bfd6825: #1194
https://github.com/owncloud/ocis/pull/1194 https://github.com/cs3org/reva/pull/1368 https://github.com/cs3org/reva/pull/1388
The following sections list the changes for 1.0.0.
Bugfix - Enable scrolling in accounts list: #909
Tags: accounts
We've fixed the accounts list to enable scrolling.
https://github.com/owncloud/ocis/pull/909
Bugfix - Add missing env vars to docker compose: #392
Tags: docker
Without setting REVA_FRONTEND_URL and REVA_DATAGATEWAY_URL uploads would default to
locahost and fail if OCIS_DOMAIN was used to run ocis on a remote host.
https://github.com/owncloud/ocis/pull/392
Bugfix - Don't enforce empty external apps slice: #473
Tags: web
The command for ocis-phoenix enforced an empty external apps configuration. This was removed, as it was blocking a new set of default external apps in ocis-phoenix.
https://github.com/owncloud/ocis/pull/473
Bugfix - Lower Bound was not working for the cs3 api index implementation: #741
Tags: accounts
Lower bound working on the cs3 index implementation
https://github.com/owncloud/ocis/pull/741
Bugfix - Accounts config sometimes being overwritten: #808
Tags: accounts
Sometimes when running the accounts extensions flags were not being taken into consideration.
https://github.com/owncloud/ocis/pull/808
Bugfix - Make settings service start without go coroutines: #835
The go routines cause a race condition that sometimes causes the tests to fail. The ListRoles request would not return all permissions.
https://github.com/owncloud/ocis/pull/835
Bugfix - Fix button layout after phoenix update: #625
Tags: accounts
With the phoenix update to v0.17.0 a new ODS version was released which has a breaking change for buttons regarding their layouting. We adjusted the button layout in the accounts UI accordingly.
https://github.com/owncloud/ocis/pull/625
Bugfix - Fix choose account dialogue: #846
Tags: konnectd
We've fixed the choose account dialogue in konnectd bug that the user hasn't been logged in after selecting account.
https://github.com/owncloud/ocis/pull/846
Bugfix - Fix id or username query handling: #745
Tags: accounts
The code was stopping execution when encountering an error while loading an account by id. But for or queries we can continue execution.
https://github.com/owncloud/ocis/pull/745
Bugfix - Fix konnectd build: #809
Tags: konnectd
We fixed the default config for konnectd and updated the Makefile to include the yarn installand yarn build steps if the static assets are missing.
https://github.com/owncloud/ocis/pull/809
Bugfix - Fix path of files shared with me in ocs api: #204
The path of files shared with me using the ocs api was pointing to an incorrect location.
https://github.com/owncloud/product/issues/204 https://github.com/owncloud/ocis/pull/994
Bugfix - Use micro default client: #718
Tags: glauth
We found a file descriptor leak in the glauth connections to the accounts service. Fixed it by using the micro default client.
https://github.com/owncloud/ocis/pull/718
Bugfix - Allow consent-prompt with switch-account: #788
Multiple prompt values are allowed and this change fixes the check for select_account if it was used together with other prompt values. Where select_account previously was ignored, it is now processed as required, fixing the use case when a RP wants to trigger select_account first while at the same time wants also to request interactive consent.
https://github.com/owncloud/ocis/pull/788
Bugfix - Mint token with uid and gid: #737
Tags: accounts
The eos driver expects the uid and gid from the opaque map of a user. While the proxy does mint tokens correctly, the accounts service wasn't.
https://github.com/owncloud/ocis/pull/737
Bugfix - Serve index.html for directories: #912
The static middleware in ocis-pkg now serves index.html instead of returning 404 on paths with
a trailing /.
https://github.com/owncloud/ocis-pkg/issues/63 https://github.com/owncloud/ocis/pull/912
Bugfix - Don't create account if id/mail/username already taken: #709
Tags: accounts
We don't allow anymore to create a new account if the provided id/mail/username is already taken.
https://github.com/owncloud/ocis/pull/709
Bugfix - Fix director selection in proxy: #521
Tags: proxy
We fixed a bug in ocis-proxy where simultaneous requests could be executed on the wrong backend.
https://github.com/owncloud/ocis/pull/521 https://github.com/owncloud/ocis-proxy/pull/99
Bugfix - Permission checks for settings write access: #1092
Tags: settings
There were several endpoints with write access to the settings service that were not protected by permission checks. We introduced a generic settings management permission to fix this for now. Will be more fine grained later on.
https://github.com/owncloud/ocis/pull/1092
Bugfix - Fix minor ui bugs: #1043
https://github.com/owncloud/ocis/issues/1043 https://github.com/owncloud/ocis/pull/1044
Bugfix - Disable public link expiration by default: #987
Tags: storage
The public link expiration was enabled by default and didn't have a default expiration span by default, which resulted in already expired public links coming from the public link quick action. We fixed this by disabling the public link expiration by default.
https://github.com/owncloud/ocis/issues/987 https://github.com/owncloud/ocis/pull/1035
Bugfix - Build docker images with alpine:latest instead of alpine:edge: #416
Tags: docker
ARM builds were failing when built on alpine:edge, so we switched to alpine:latest instead.
https://github.com/owncloud/ocis/pull/416
Change - Accounts UI shows message when no permissions: #656
We improved the UX of the accounts UI by showing a message information the user about missing permissions when the accounts or roles fail to load. This was showing an indeterminate progress bar before.
https://github.com/owncloud/ocis/pull/656
Change - Cache password validation: #958
Tags: accounts
The password validity check for requests like login eq '%s' and password eq '%s' is now cached
for 10 minutes. This improves the performance for basic auth requests.
https://github.com/owncloud/ocis/pull/958
Change - Filesystem based index: #709
Tags: accounts, storage
We replaced bleve with a new filesystem based index implementation. There is an indexer
which is capable of orchestrating different index types to build indices on documents by
field. You can choose from the index types unique, non-unique or autoincrement.
Indices can be utilized to run search queries (full matches or globbing) on document fields.
The accounts service is using this index internally to run the search queries coming in via
ListAccounts and ListGroups and to generate UIDs for new accounts as well as GIDs for new
groups.
The accounts service can be configured to store the index on the local FS / a NFS (disk
implementation of the index) or to use an arbitrary storage ( cs3 implementation of the
index). cs3 is the new default, which is configured to use the metadata storage.
https://github.com/owncloud/ocis/pull/709
Change - Rebuild index command for accounts: #748
Tags: accounts
The index for the accounts service can now be rebuilt by running the cli command ./bin/ocis accounts rebuild. It deletes all configured indices and rebuilds them from the documents
found on storage. For this we also introduced a LoadAccounts and LoadGroups function on
storage for loading all existing documents.
https://github.com/owncloud/ocis/pull/748
Change - Add the thumbnails command: #156
Tags: thumbnails
Added the thumbnails command so that the thumbnails service can get started via ocis.
https://github.com/owncloud/ocis/issues/156
Change - CS3 can be used as accounts-backend: #1020
Tags: proxy
PROXY_ACCOUNT_BACKEND_TYPE=cs3 PROXY_ACCOUNT_BACKEND_TYPE=accounts (default)
By using a backend which implements the CS3 user-api (currently provided by reva/storage) it is possible to bypass the ocis-accounts service and for example use ldap directly.
https://github.com/owncloud/ocis/pull/1020
Change - Use bcrypt to hash the user passwords: #510
Change the hashing algorithm from SHA-512 to bcrypt since the latter is better suitable for password hashing. This is a breaking change. Existing deployments need to regenerate the accounts folder.
https://github.com/owncloud/ocis/issues/510
Change - Replace the library which scales the images: #910
The library went out of support. Also did some refactoring of the thumbnails service code.
https://github.com/owncloud/ocis/pull/910
Change - Choose disk or cs3 storage for accounts and groups: #623
Tags: accounts
The accounts service now has an abstraction layer for the storage. In addition to the local disk implementation we implemented a cs3 storage, which is the new default for the accounts service.
https://github.com/owncloud/ocis/pull/623
Change - Enable OpenID dynamic client registration: #811
Enable OpenID dynamic client registration
https://github.com/owncloud/ocis/issues/811 https://github.com/owncloud/ocis/pull/813
Change - Integrate import command from ocis-migration: #249
Tags: migration
https://github.com/owncloud/ocis/pull/249 https://github.com/owncloud/ocis-migration
Change - Improve reva service descriptions: #536
Tags: docs
The descriptions make it clearer that the services actually represent a mount point in the combined storage. Each mount point can have a different driver.
https://github.com/owncloud/ocis/pull/536
Change - Initial release of basic version: #2
Just prepared an initial basic version which simply embeds the minimum of required services in the context of the ownCloud Infinite Scale project.
https://github.com/owncloud/ocis/issues/2
Change - Add cli-commands to manage accounts: #115
Tags: accounts
COMMANDS:
https://github.com/owncloud/product/issues/115
Change - Start ocis-accounts with the ocis server command: #25
Tags: accounts
Starts ocis-accounts in single binary mode (./ocis server). This service stores the user-account information.
https://github.com/owncloud/product/issues/25 https://github.com/owncloud/ocis/pull/239/files
Change - Properly style konnectd consent page: #754
Tags: konnectd
After bringing our theme into konnectd, we've had to adjust the styles of the consent page so the text is visible and button reflects our theme.
https://github.com/owncloud/ocis/pull/754
Change - Make all paths configurable and default to a common temp dir: #1080
Aligned all services to use a dir following/var/tmp/ocis/<service>/... by default. Also
made some missing temp paths configurable via env vars and config flags.
https://github.com/owncloud/ocis/pull/1080
Change - Move the indexer package from ocis/accounts to ocis/ocis-pkg: #794
We are making that change for semantic reasons. So consumers of any index don't necessarily need to know of the accounts service.
https://github.com/owncloud/ocis/pull/794
Change - Switch over to a new custom-built runtime: #287
We moved away from using the go-micro runtime and are now using our own
runtime. This allows us to spawn service processes even
when they are using different versions of go-micro. On top of that we now have the commands ocis list, ocis kill and ocis run available for service runtime management.
https://github.com/owncloud/ocis/pull/287
Change - Move ocis default config to root level: #842
Tags: ocis
We moved the tracing config to the root flagset so that they are parsed on all commands. We also
introduced a JWTSecret flag in the root flagset, in order to apply a common default JWTSecret
to all services that have one.
https://github.com/owncloud/ocis/pull/842 https://github.com/owncloud/ocis/pull/843
Change - Remove username field in OCS: #709
Tags: ocs
We use the incoming userid as both the id and the on_premises_sam_account_name for new
accounts in the accounts service. The userid in OCS requests is in fact the username, not our
internal account id. We need to enforce the userid as our internal account id though, because
the account id is part of various path formats.
https://github.com/owncloud/ocis/pull/709 https://github.com/owncloud/ocis/pull/816
Change - Account management permissions for Admin role: #124
Tags: accounts, settings
We created an AccountManagement permission and added it to the default admin role. There are
permission checks in place to protected http endpoints in ocis-accounts against requests
without the permission. All existing default users (einstein, marie, richard) have the
default user role now (doesn't have the AccountManagement permission). Additionally,
there is a new default Admin user with credentials moss:vista.
Known issue: for users without the AccountManagement permission, the accounts UI
extension is still available in the ocis-web app switcher, but the requests for loading the
users will fail (as expected). We are working on a way to hide the accounts UI extension if the
user doesn't have the AccountManagement permission.
https://github.com/owncloud/product/issues/124 https://github.com/owncloud/ocis-settings/pull/59 https://github.com/owncloud/ocis-settings/pull/66 https://github.com/owncloud/ocis-settings/pull/67 https://github.com/owncloud/ocis-settings/pull/69 https://github.com/owncloud/ocis-proxy/pull/95 https://github.com/owncloud/ocis-pkg/pull/59 https://github.com/owncloud/ocis-accounts/pull/95 https://github.com/owncloud/ocis-accounts/pull/100 https://github.com/owncloud/ocis-accounts/pull/102
Change - Update phoenix to v0.18.0: #651
Tags: web
We updated phoenix to v0.18.0. Please refer to the changelog (linked) for details on the phoenix release. With the ODS release brought in by phoenix we now have proper oc-checkbox and oc-radio components for the settings and accounts UI.
https://github.com/owncloud/ocis/pull/651 https://github.com/owncloud/phoenix/releases/tag/v0.18.0 https://github.com/owncloud/owncloud-design-system/releases/tag/v1.12.1
Change - Default apps in ownCloud Web: #688
Tags: web
We changed the default apps for ownCloud Web to be only files and media-viewer. Markdown-editor and draw-io have been removed as defaults.
https://github.com/owncloud/ocis/pull/688
Change - Proxy allow insecure upstreams: #1007
Tags: proxy
We can now configure the proxy if insecure upstream servers are allowed. This was added since you need to disable certificate checks fore some situations like testing.
https://github.com/owncloud/ocis/pull/1007
Change - Make ocis-settings available: #287
Tags: settings
This version delivers settings as a new service. It is part of the array of services in the
server command.
https://github.com/owncloud/ocis/pull/287
Change - Start ocis-proxy with the ocis server command: #119
Tags: proxy
Starts the proxy in single binary mode (./ocis server) on port 9200. The proxy serves as a single-entry point for all http-clients.
https://github.com/owncloud/ocis/issues/119 https://github.com/owncloud/ocis/issues/136
Change - Theme welcome and choose account pages: #887
Tags: konnectd
We've themed the konnectd pages Welcome and Choose account. All text has a white color now to be easily readable on the dark background.
https://github.com/owncloud/ocis/pull/887
Change - Bring oC theme: #698
Tags: konnectd
We've styled our konnectd login page to reflect ownCloud theme.
https://github.com/owncloud/ocis/pull/698
Change - Unify Configuration Parsing: #675
Tags: ocis
https://github.com/ownclou
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
The following sections list the changes for 1.3.0.
The following sections list the changes for 1.3.0.
Bugfix - Fix accounts initialization: #1696
Originally the accounts service relies on both the settings and
storage-metadata to be up and running at the moment it starts. This is an
antipattern as it will cause the entire service to panic if the dependants are
not present.
We inverted this dependency and moved the default initialization data (i.e: creating roles, permissions, settings bundles) and instead of notifying the settings service that the account has to provide with such options, the settings is instead initialized with the options the accounts rely on. Essentially saving bandwidth as there is no longer a gRPC call to the settings service.
For the storage-metadata a retry mechanism was added that retries by default
20 times to fetch the com.owncloud.storage.metadata from the service registry
every 500 milliseconds. If this retry expires the accounts panics, as its
dependency on the storage-metadata service cannot be resolved.
We also introduced a client wrapper that acts as middleware between a client and a server. For more information on how it works further read here
https://github.com/owncloud/ocis/pull/1696
Bugfix - Fix the ttl of the authentication middleware cache: #1699
The authentication cache ttl was multiplied with time.Second multiple times.
This resulted in a ttl that was not intended.
https://github.com/owncloud/ocis/pull/1699
Bugfix - Add missing gateway config: #1716
The auth provider ldap and oidc drivers now need to be able talk to the reva
gateway. We added the gatewayscv to the config that is passed to reva.
https://github.com/owncloud/ocis/pull/1716
Bugfix - Purposely delay accounts service startup: #1734
As it turns out the race condition between accounts <-> storage-metadata still
remains. This PR is a hotfix, and it should be followed up with a proper fix.
Either:
https://github.com/owncloud/ocis/pull/1734
Change - Update ownCloud Web to v2.0.1: #1683
Tags: web
We updated ownCloud Web to v2.0.1. Please refer to the changelog (linked) for details on the web release.
https://github.com/owncloud/ocis/pull/1683 https://github.com/owncloud/web/releases/tag/v2.0.1
Change - Update ownCloud Web to v2.0.2: #1776
Tags: web
We updated ownCloud Web to v2.0.2. Please refer to the changelog (linked) for details on the web release.
https://github.com/owncloud/ocis/pull/1776 https://github.com/owncloud/web/releases/tag/v2.0.2
Enhancement - Update go-micro to v3.5.1-0.20210217182006-0f0ace1a44a9: #1670
MICRO_LOG_LEVEL and is set to error by default. This
decision was made because ownCloud, as framework builders, want to log
everything oCIS related and hide everything unrelated by default. It can be
re-enabled by setting it to a log level other than error. i.e:
MICRO_LOG_LEVEL=info. - Updated protoc-gen-micro to the latest
version. -
We're using Prometheus wrappers from go-micro.https://github.com/owncloud/ocis/pull/1670 https://github.com/asim/go-micro/pull/2126
Enhancement - Update reva to v1.6.1-0.20210223065028-53f39499762e: #1683
https://github.com/owncloud/ocis/pull/1683 https://github.com/cs3org/reva/pull/1405
Enhancement - Add initial nats and kubernetes registry support: #1697
We added initial support to use nats and kubernetes as a service registry using
MICRO_REGISTRY=nats and MICRO_REGISTRY=kubernetes respectively. Multiple
nodes can be given with MICRO_REGISTRY_ADDRESS=1.2.3.4,5.6.7.8,9.10.11.12.
https://github.com/owncloud/ocis/pull/1697
Enhancement - Remove the JWT from the log: #1758
We were logging the JWT in some places. Secrets should not be exposed in logs so it got removed.
https://github.com/owncloud/ocis/pull/1758
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
This PR adds config to support sharing with groups. It also introduces a breaking change for the CS3APIs definitions since grantees can now refer to b…
The following sections list the changes for 1.2.0.
Bugfix - Check if roles are present in user object before looking those up: #1388
https://github.com/owncloud/ocis/pull/1388
Bugfix - Fix etcd address configuration: #1546
The etcd server address in MICRO_REGISTRY_ADDRESS was not picked up when etcd
was set as service discovery registry MICRO_REGISTRY=etcd. Therefore etcd was
only working if available on localhost / 127.0.0.1.
https://github.com/owncloud/ocis/pull/1546
Bugfix - Fix thumbnail generation when using different idp: #1624
The thumbnail service was relying on a konnectd specific field in the access token. This logic was now replaced by a service parameter for the username.
https://github.com/owncloud/ocis/issues/1624 https://github.com/owncloud/ocis/pull/1628
Bugfix - Remove unimplemented config file option for oCIS root command: #1636
https://github.com/owncloud/ocis/pull/1636
Change - Move runtime code on refs/pman over to owncloud/ocis/ocis: #1483
Tags: ocis, runtime
Currently, the runtime is under the private account of an oCIS developer. For future-proofing we don't want oCIS mission critical components to depend on external repositories, so we're including refs/pman module as an oCIS package instead.
https://github.com/owncloud/ocis/pull/1483
Change - Initial release of graph and graph explorer: #1594
Tags: graph, graph-explorer
We brought initial basic Graph and Graph-Explorer support for the ownCloud Infinite Scale project.
https://github.com/owncloud/ocis/pull/1594 https://github.com/owncloud/ocis-graph-explorer/pull/3
Change - Update ownCloud Web to v2.0.0: #1661
Tags: web
We updated ownCloud Web to v2.0.0. Please refer to the changelog (linked) for details on the web release.
https://github.com/owncloud/ocis/pull/1661 https://github.com/owncloud/web/releases/tag/v2.0.0
Enhancement - Introduce ADR: #1042
We will keep track of Architectural Decision Records using
Markdown in /docs/adr.
https://github.com/owncloud/ocis/pull/1042
Enhancement - Functionality to map home directory to different storage providers: #1186
We added a parameter in reva that allows us to redirect /home requests to
different storage providers based on a mapping derived from the user attributes,
which was previously not possible since we hardcode the /home path for all
users. For example, having its value as /home/{{substr 0 1 .Username}} can be
used to redirect home requests for different users to different storage
providers.
https://github.com/owncloud/ocis/pull/1186 https://github.com/cs3org/reva/pull/1142
Enhancement - Use a default protocol parameter instead of explicitly disabling tus: #1331
https://github.com/cs3org/reva/pull/1331 https://github.com/owncloud/ocis/pull/1374
Enhancement - Switch to opencontainers annotation scheme: #1381
Switch docker image annotation scheme to org.opencontainers standard because org.label-schema is depreciated.
https://github.com/owncloud/ocis/pull/1381
Enhancement - Update reva to v1.5.2-0.20210125114636-0c10b333ee69: #1482
https://github.com/owncloud/ocis/pull/1482 https://github.com/cs3org/reva/pull/1400 https://github.com/cs3org/reva/pull/1416 https://github.com/cs3org/reva/pull/1415 https://github.com/cs3org/reva/pull/1408
Enhancement - Migrate ocis-graph to ocis monorepo: #1594
Tags: ocis, ocis-graph
Ocis-graph was not migrated during the monorepo conversion.
https://github.com/owncloud/ocis/pull/1594
Enhancement - Migrate ocis-graph-explorer to ocis monorepo: #1596
Tags: ocis, ocis-graph-explorer
Ocis-graph-explorer was not migrated during the monorepo conversion.
https://github.com/owncloud/ocis/pull/1596
Enhancement - Make use of new design-system oc-table: #1597
Tags: ui, accounts
The design-system table component has changed the way it's used. We updated accounts-ui to use the new 'oc-table-simple' component.
https://github.com/owncloud/ocis/pull/1597
Enhancement - Enable group sharing and add config for sharing SQL driver: #1626
This PR adds config to support sharing with groups. It also introduces a
breaking change for the CS3APIs definitions since grantees can now refer to both
users as well as groups. Since we store the grantee information in a json file,
/var/tmp/ocis/storage/shares.json, its previous version needs to be removed as
we won't be able to unmarshal data corresponding to the previous definitions.
https://github.com/owncloud/ocis/pull/1626 https://github.com/cs3org/reva/pull/1453
Nothing published for this version
The following sections list the changes for 1.1.0.
The following sections list the changes for 1.1.0.
Change - Disable pretty logging by default: #1133
Tags: ocis
Disable pretty logging default for performance reasons.
https://github.com/owncloud/ocis/pull/1133
Change - Update ownCloud Web to v1.0.1: #1191
Tags: web
We updated ownCloud Web to v1.0.1. Please refer to the changelog (linked) for details on the web release.
https://github.com/owncloud/ocis/pull/1191 https://github.com/owncloud/web/releases/tag/v1.0.1
Change - Generate cryptographically secure state token: #1203
Replaced Math.random with a cryptographically secure way to generate the oidc state token using the javascript crypto api.
https://github.com/owncloud/ocis/pull/1203 https://developer.mozilla.org/en-US/docs/Web/API/Crypto/getRandomValues https://developer.mozilla.org/en-US/docs/Web/JavaScript/Reference/Global_Objects/Math/random
Change - Move k6 to cdperf: #1358
Tags: performance, testing, k6
The ownCloud performance tests can not only be used to test oCIS. This is why we have decided to move the k6 tests to https://github.com/owncloud/cdperf
https://github.com/owncloud/ocis/pull/1358
Change - Update go version: #1364
Tags: go
Update go from 1.13 to 1.15
https://github.com/owncloud/ocis/pull/1364
Change - Add "expose" information to docker images: #1366
Tags: docker
Add "expose" information to docker images. Docker users will now see that we offer services on port 9200.
https://github.com/owncloud/ocis/pull/1366
Change - Add "volume" declaration to docker images: #1375
Tags: docker
Add "volume" declaration to docker images. This makes it easier for Docker users to see where oCIS stores data.
https://github.com/owncloud/ocis/pull/1375
Enhancement - Add OCIS_URL env var: #1148
Tags: ocis
We introduced a new environment variable OCIS_URL that expects a URL including
protocol, host and optionally port to simplify configuring all the different
services. These existing environment variables still take precedence, but will
also fall back to OCIS_URL: STORAGE_LDAP_IDP, STORAGE_OIDC_ISSUER,
PROXY_OIDC_ISSUER, STORAGE_FRONTEND_PUBLIC_URL, KONNECTD_ISS,
WEB_OIDC_AUTHORITY, and WEB_UI_CONFIG_SERVER.
Some environment variables are now built dynamically if they are not set: -
STORAGE_DATAGATEWAY_PUBLIC_URL defaults to
<STORAGE_FRONTEND_PUBLIC_URL>/data, also falling back to OCIS_URL -
WEB_OIDC_METADATA_URL defaults to
<WEB_OIDC_AUTHORITY>/.well-known/openid-configuration, also falling back to
OCIS_URL
Furthermore, the built in konnectd will generate an
identifier-registration.yaml that uses the KONNECTD_ISS in the allowed
redirect_uris and origins. It simplifies the default
https://localhost:9200 and remote deployment with OCIS_URL which is
evaluated as a fallback if KONNECTD_ISS is not set.
An oCIS server can now be started on a remote machine as easy as
OCIS_URL=https://cloud.ocis.test PROXY_HTTP_ADDR=0.0.0.0:443 ocis server.
Note that the OCIS_DOMAIN environment variable is not used by oCIS, but by the
docker containers.
https://github.com/owncloud/ocis/pull/1148
Enhancement - Update reva to v1.4.1-0.20210111080247-f2b63bfd6825: #1194
https://github.com/owncloud/ocis/pull/1194 https://github.com/cs3org/reva/pull/1368 https://github.com/cs3org/reva/pull/1388
Enhancement - Add named locks and refactor cache: #1212
Tags: ocis-pkg, accounts
We had the case that we needed kind of a named locking mechanism which enables us to lock only under certain conditions. It's used in the indexer package where we do not need to lock everything, instead just lock the requested parts and differentiate between reads and writes.
This made it possible to entirely remove locks from the accounts service and move them to the ocis-pkg indexer. Another part of this refactor was to make the cache atomic and write tests for it.
https://github.com/owncloud/ocis/issues/966 https://github.com/owncloud/ocis/pull/1212
Enhancement - Use sync.cache for roles cache: #1367
Tags: ocis-pkg
Update ocis-pkg/roles cache to use ocis-pkg/sync cache
https://github.com/owncloud/ocis/pull/1367
Enhancement - Update reva to v1.5.1: #1372
Summary -------
Details -------
For the incoming /dav/files/userID requests, we have different namespaces depending on whether the request is for the logged-in user's namespace or not. Since in the storage drivers, we specify the layout depending only on the user whose resources are to be accessed, this fails when a user wants to access another user's namespace when the storage provider depends on the logged in user's namespace. This PR fixes that.
For example, consider the following case. The owncloud fs uses a layout {{substr 0 1 .Id.OpaqueId}}/{{.Id.OpaqueId}}. The user einstein sends a request to access a resource shared with him, say /dav/files/marie/abcd, which should be allowed. However, based on the way we applied the layout, there's no way in which this can be translated to /m/marie/.
Https://github.com/cs3org/reva/pull/1401
And git SHA to the release tool.
Https://github.com/cs3org/reva/pull/1413
Fixes the empty trash-bin functionality for ocis-storage
Https://github.com/owncloud/product/issues/254 https://github.com/cs3org/reva/pull/1399
Https://github.com/cs3org/reva/pull/1397
This enhancement adds support for a site authorization status to Mentix. This way, sites registered via a web app can now be excluded until authorized manually by an administrator.
Furthermore, Mentix now sets the scheme for Prometheus targets. This allows us to also support monitoring of sites that do not support the default HTTPS scheme.
Https://github.com/cs3org/reva/pull/1398
We now let the oCIS driver persist favorites, set temporary etags and the mtime as arbitrary metadata.
Https://github.com/owncloud/ocis/issues/567 https://github.com/cs3org/reva/issues/1394 https://github.com/cs3org/reva/pull/1393
The current metrics package can only gather metrics either from json files. With this feature, the metrics can be gathered polling the http endpoints exposed by the owncloud/nextcloud sciencemesh apps.
Https://github.com/cs3org/reva/pull/1403
https://github.com/owncloud/ocis/pull/1372
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
With the phoenix update to v0.17.0 a new ODS version was released which has a breaking change for buttons regarding their layout. We adjusted the butt…
The following sections list the changes for 1.0.0.
Bugfix - Fix path of files shared with me in ocs api: #204
The path of files shared with me using the ocs api was pointing to an incorrect location.
https://github.com/owncloud/product/issues/204 https://github.com/owncloud/ocis/pull/994
Bugfix - Add missing env vars to docker compose: #392
Tags: docker
Without setting REVA_FRONTEND_URL and REVA_DATAGATEWAY_URL uploads would
default to localhost and fail if OCIS_DOMAIN was used to run ocis on a remote
host.
https://github.com/owncloud/ocis/pull/392
Bugfix - Build docker images with alpine:latest instead of alpine:edge: #416
Tags: docker
ARM builds were failing when built on alpine:edge, so we switched to alpine:latest instead.
https://github.com/owncloud/ocis/pull/416
Bugfix - Don't enforce empty external apps slice: #473
Tags: web
The command for ocis-phoenix enforced an empty external apps configuration. This was removed, as it was blocking a new set of default external apps in ocis-phoenix.
https://github.com/owncloud/ocis/pull/473
Bugfix - Fix director selection in proxy: #521
Tags: proxy
We fixed a bug in ocis-proxy where simultaneous requests could be executed on the wrong backend.
https://github.com/owncloud/ocis/pull/521 https://github.com/owncloud/ocis-proxy/pull/99
Bugfix - Fix button layout after phoenix update: #625
Tags: accounts
With the phoenix update to v0.17.0 a new ODS version was released which has a breaking change for buttons regarding their layout. We adjusted the button layout in the accounts UI accordingly.
https://github.com/owncloud/ocis/pull/625
Bugfix - Don't create account if id/mail/username already taken: #709
Tags: accounts
We don't allow anymore to create a new account if the provided id/mail/username is already taken.
https://github.com/owncloud/ocis/pull/709
Bugfix - Use micro default client: #718
Tags: glauth
We found a file descriptor leak in the glauth connections to the accounts service. Fixed it by using the micro default client.
https://github.com/owncloud/ocis/pull/718
Bugfix - Mint token with uid and gid: #737
Tags: accounts
The eos driver expects the uid and gid from the opaque map of a user. While the proxy does mint tokens correctly, the accounts service wasn't.
https://github.com/owncloud/ocis/pull/737
Bugfix - Lower Bound was not working for the cs3 api index implementation: #741
Tags: accounts
Lower bound working on the cs3 index implementation
https://github.com/owncloud/ocis/pull/741
Bugfix - Fix id or username query handling: #745
Tags: accounts
The code was stopping execution when encountering an error while loading an account by id. But for or queries we can continue execution.
https://github.com/owncloud/ocis/pull/745
Bugfix - Allow consent-prompt with switch-account: #788
Multiple prompt values are allowed and this change fixes the check for select_account if it was used together with other prompt values. Where select_account previously was ignored, it is now processed as required, fixing the use case when a RP wants to trigger select_account first while at the same time wants also to request interactive consent.
https://github.com/owncloud/ocis/pull/788
Bugfix - Accounts config sometimes being overwritten: #808
Tags: accounts
Sometimes when running the accounts extensions flags were not being taken into consideration.
https://github.com/owncloud/ocis/pull/808
Bugfix - Fix konnectd build: #809
Tags: konnectd
We fixed the default config for konnectd and updated the Makefile to include the
yarn installand yarn build steps if the static assets are missing.
https://github.com/owncloud/ocis/pull/809
Bugfix - Make settings service start without go coroutines: #835
The go routines cause a race condition that sometimes causes the tests to fail. The ListRoles request would not return all permissions.
https://github.com/owncloud/ocis/pull/835
Bugfix - Fix choose account dialogue: #846
Tags: konnectd
We've fixed the choose account dialogue in konnectd bug that the user hasn't been logged in after selecting account.
https://github.com/owncloud/ocis/pull/846
Bugfix - Enable scrolling in accounts list: #909
Tags: accounts
We've fixed the accounts list to enable scrolling.
https://github.com/owncloud/ocis/pull/909
Bugfix - Serve index.html for directories: #912
The static middleware in ocis-pkg now serves index.html instead of returning 404
on paths with a trailing /.
https://github.com/owncloud/ocis-pkg/issues/63 https://github.com/owncloud/ocis/pull/912
Bugfix - Disable public link expiration by default: #987
Tags: storage
The public link expiration was enabled by default and didn't have a default expiration span by default, which resulted in already expired public links coming from the public link quick action. We fixed this by disabling the public link expiration by default.
https://github.com/owncloud/ocis/issues/987 https://github.com/owncloud/ocis/pull/1035
Bugfix - Fix minor ui bugs: #1043
https://github.com/owncloud/ocis/issues/1043 https://github.com/owncloud/ocis/pull/1044
Bugfix - Permission checks for settings write access: #1092
Tags: settings
There were several endpoints with write access to the settings service that were not protected by permission checks. We introduced a generic settings management permission to fix this for now. Will be more fine grained later on.
https://github.com/owncloud/ocis/pull/1092
Change - Initial release of basic version: #2
Just prepared an initial basic version which simply embeds the minimum of required services in the context of the ownCloud Infinite Scale project.
https://github.com/owncloud/ocis/issues/2
Change - Start ocis-accounts with the ocis server command: #25
Tags: accounts
Starts ocis-accounts in single binary mode (./ocis server). This service stores the user-account information.
https://github.com/owncloud/product/issues/25 https://github.com/owncloud/ocis/pull/239/files
Change - Add cli-commands to manage accounts: #115
Tags: accounts
COMMANDS:
https://github.com/owncloud/product/issues/115
Change - Start ocis-proxy with the ocis server command: #119
Tags: proxy
Starts the proxy in single binary mode (./ocis server) on port 9200. The proxy serves as a single-entry point for all http-clients.
https://github.com/owncloud/ocis/issues/119 https://github.com/owncloud/ocis/issues/136
Change - Account management permissions for Admin role: #124
Tags: accounts, settings
We created an AccountManagement permission and added it to the default admin
role. There are permission checks in place to protected http endpoints in
ocis-accounts against requests without the permission. All existing default
users (einstein, marie, richard) have the default user role now (doesn't have
the AccountManagement permission). Additionally, there is a new default Admin
user with credentials moss:vista.
Known issue: for users without the AccountManagement permission, the accounts
UI extension is still available in the ocis-web app switcher, but the requests
for loading the users will fail (as expected). We are working on a way to hide
the accounts UI extension if the user doesn't have the AccountManagement
permission.
https://github.com/owncloud/product/issues/124 https://github.com/owncloud/ocis-settings/pull/59 https://github.com/owncloud/ocis-settings/pull/66 https://github.com/owncloud/ocis-settings/pull/67 https://github.com/owncloud/ocis-settings/pull/69 https://github.com/owncloud/ocis-proxy/pull/95 https://github.com/owncloud/ocis-pkg/pull/59 https://github.com/owncloud/ocis-accounts/pull/95 https://github.com/owncloud/ocis-accounts/pull/100 https://github.com/owncloud/ocis-accounts/pull/102
Change - Add the thumbnails command: #156
Tags: thumbnails
Added the thumbnails command so that the thumbnails service can get started via ocis.
https://github.com/owncloud/ocis/issues/156
Change - Integrate import command from ocis-migration: #249
Tags: migration
https://github.com/owncloud/ocis/pull/249 https://github.com/owncloud/ocis-migration
Change - Switch over to a new custom-built runtime: #287
We moved away from using the go-micro runtime and are now using our own
runtime. This allows us to spawn service
processes even when they are using different versions of go-micro. On top of
that we now have the commands ocis list, ocis kill and ocis run available
for service runtime management.
https://github.com/owncloud/ocis/pull/287
Change - Make ocis-settings available: #287
Tags: settings
This version delivers settings as a new service. It is part of the array of
services in the server command.
https://github.com/owncloud/ocis/pull/287
Change - Update reva config: #336
https://github.com/owncloud/ocis/pull/336 https://github.com/owncloud/ocis/pull/337 https://github.com/owncloud/ocis/pull/338 https://github.com/owncloud/ocis-reva/pull/891
Change - Use bcrypt to hash the user passwords: #510
Change the hashing algorithm from SHA-512 to bcrypt since the latter is better suitable for password hashing. This is a breaking change. Existing deployments need to regenerate the accounts folder.
https://github.com/owncloud/ocis/issues/510
Change - Improve reva service descriptions: #536
Tags: docs
The descriptions make it clearer that the services actually represent a mount point in the combined storage. Each mount point can have a different driver.
https://github.com/owncloud/ocis/pull/536
Change - Choose disk or cs3 storage for accounts and groups: #623
Tags: accounts
The accounts service now has an abstraction layer for the storage. In addition to the local disk implementation we implemented a cs3 storage, which is the new default for the accounts service.
https://github.com/owncloud/ocis/pull/623
Change - Update phoenix to v0.18.0: #651
Tags: web
We updated phoenix to v0.18.0. Please refer to the changelog (linked) for details on the phoenix release. With the ODS release brought in by phoenix we now have proper oc-checkbox and oc-radio components for the settings and accounts UI.
https://github.com/owncloud/ocis/pull/651 https://github.com/owncloud/phoenix/releases/tag/v0.18.0 https://github.com/owncloud/owncloud-design-system/releases/tag/v1.12.1
Change - Accounts UI shows message when no permissions: #656
We improved the UX of the accounts UI by showing a message information the user about missing permissions when the accounts or roles fail to load. This was showing an indeterminate progress bar before.
https://github.com/owncloud/ocis/pull/656
Change - Settings and accounts appear in the user menu: #656
We moved settings and accounts to the user menu.
https://github.com/owncloud/ocis/pull/656
Change - Update phoenix to v0.20.0: #674
Tags: web
We updated phoenix to v0.20.0. Please refer to the changelog (linked) for details on the phoenix release.
https://github.com/owncloud/ocis/pull/674 https://github.com/owncloud/phoenix/releases/tag/v0.20.0
Change - Unify Configuration Parsing: #675
Tags: ocis
https://github.com/owncloud/ocis/pull/675
Change - Default apps in ownCloud Web: #688
Tags: web
We changed the default apps for ownCloud Web to be only files and media-viewer. Markdown-editor and draw-io have been removed as defaults.
https://github.com/owncloud/ocis/pull/688
Change - Bring oC theme: #698
Tags: konnectd
We've styled our konnectd login page to reflect ownCloud theme.
https://github.com/owncloud/ocis/pull/698
Change - Filesystem based index: #709
Tags: accounts, storage
We replaced bleve with a new filesystem based index implementation. There is
an indexer which is capable of orchestrating different index types to build
indices on documents by field. You can choose from the index types unique,
non-unique or autoincrement. Indices can be utilized to run search queries
(full matches or globbing) on document fields. The accounts service is using
this index internally to run the search queries coming in via ListAccounts and
ListGroups and to generate UIDs for new accounts as well as GIDs for new
groups.
The accounts service can be configured to store the index on the local FS / a
NFS (disk implementation of the index) or to use an arbitrary storage ( cs3
implementation of the index). cs3 is the new default, which is configured to
use the metadata storage.
https://github.com/owncloud/ocis/pull/709
Change - Remove username field in OCS: #709
Tags: ocs
We use the incoming userid as both the id and the
on_premises_sam_account_name for new accounts in the accounts service. The
userid in OCS requests is in fact the username, not our internal account id. We
need to enforce the userid as our internal account id though, because the
account id is part of various path formats.
https://github.com/owncloud/ocis/pull/709 https://github.com/owncloud/ocis/pull/816
Change - Update phoenix to v0.21.0: #728
Tags: web
We updated phoenix to v0.21.0. Please refer to the changelog (linked) for details on the phoenix release.
https://github.com/owncloud/ocis/pull/728 https://github.com/owncloud/phoenix/releases/tag/v0.21.0
Change - Clarify storage driver env vars: #729
After renaming ocsi-reva to storage and combining the storage and data providers
some env vars were confusingly named STORAGE_STORAGE_.... We are changing the
prefix for driver related env vars to STORAGE_DRIVER_.... This makes changing
the storage driver using eg.: STORAGE_HOME_DRIVER=eos and setting driver
options using STORAGE_DRIVER_EOS_LAYOUT=... less confusing.
https://github.com/owncloud/ocis/pull/729
Change - Rebuild index command for accounts: #748
Tags: accounts
The index for the accounts service can now be rebuilt by running the cli command
./bin/ocis accounts rebuild. It deletes all configured indices and rebuilds
them from the documents found on storage. For this we also introduced a
LoadAccounts and LoadGroups function on storage for loading all existing
documents.
https://github.com/owncloud/ocis/pull/748
Change - Properly style konnectd consent page: #754
Tags: konnectd
After bringing our theme into konnectd, we've had to adjust the styles of the consent page so the text is visible and button reflects our theme.
https://github.com/owncloud/ocis/pull/754
Change - Update phoenix to v0.22.0: #757
Tags: web
We updated phoenix to v0.22.0. Please refer to the changelog (linked) for details on the phoenix release.
https://github.com/owncloud/ocis/pull/757 https://github.com/owncloud/phoenix/releases/tag/v0.22.0
Change - Update phoenix to v0.23.0: #785
Tags: web
We updated phoenix to v0.23.0. Please refer to the changelog (linked) for details on the phoenix release.
https://github.com/owncloud/ocis/pull/785 https://github.com/owncloud/phoenix/releases/tag/v0.23.0
Change - Move the indexer package from ocis/accounts to ocis/ocis-pkg: #794
We are making that change for semantic reasons. So consumers of any index don't necessarily need to know of the accounts service.
https://github.com/owncloud/ocis/pull/794
Change - Enable OpenID dynamic client registration: #811
Enable OpenID dynamic client registration
https://github.com/owncloud/ocis/issues/811 https://github.com/owncloud/ocis/pull/813
Change - Update phoenix to v0.24.0: #817
Tags: web
We updated phoenix to v0.24.0. Please refer to the changelog (linked) for details on the phoenix release.
https://github.com/owncloud/ocis/pull/817 https://github.com/owncloud/phoenix/releases/tag/v0.24.0
Change - Move ocis default config to root level: #842
Tags: ocis
We moved the tracing config to the root flagset so that they are parsed on all
commands. We also introduced a JWTSecret flag in the root flagset, in order to
apply a common default JWTSecret to all services that have one.
https://github.com/owncloud/ocis/pull/842 https://github.com/owncloud/ocis/pull/843
Change - Update phoenix to v0.25.0: #868
Tags: web
We updated phoenix to v0.25.0. Please refer to the changelog (linked) for details on the phoenix release.
https://github.com/owncloud/ocis/pull/868 https://github.com/owncloud/phoenix/releases/tag/v0.25.0
Change - Theme welcome and choose account pages: #887
Tags: konnectd
We've themed the konnectd pages Welcome and Choose account. All text has a white color now to be easily readable on the dark background.
https://github.com/owncloud/ocis/pull/887
Change - Replace the library which scales the images: #910
The library went out of support. Also did some refactoring of the thumbnails service code.
https://github.com/owncloud/ocis/pull/910
Change - Update phoenix to v0.26.0: #935
Tags: web
We updated phoenix to v0.26.0. Please refer to the changelog (linked) for details on the phoenix release.
https://github.com/owncloud/ocis/pull/935 https://github.com/owncloud/phoenix/releases/tag/v0.26.0
Change - Update phoenix to v0.27.0: #943
Tags: web
We updated phoenix to v0.27.0. Please refer to the changelog (linked) for details on the phoenix release.
https://github.com/owncloud/ocis/pull/943 https://github.com/owncloud/phoenix/releases/tag/v0.27.0
Change - Cache password validation: #958
Tags: accounts
The password validity check for requests like login eq '%s' and password eq '%s' is now cached for 10 minutes. This improves the performance for basic auth
requests.
https://github.com/owncloud/ocis/pull/958
Change - Proxy allow insecure upstreams: #1007
Tags: proxy
We can now configure the proxy if insecure upstream servers are allowed. This was added since you need to disable certificate checks fore some situations like testing.
https://github.com/owncloud/ocis/pull/1007
Change - CS3 can be used as accounts-backend: #1020
Tags: proxy
PROXY_ACCOUNT_BACKEND_TYPE=cs3 PROXY_ACCOUNT_BACKEND_TYPE=accounts (default)
By using a backend which implements the CS3 user-api (currently provided by reva/storage) it is possible to bypass the ocis-accounts service and for example use ldap directly.
https://github.com/owncloud/ocis/pull/1020
Change - Update phoenix to v0.28.0: #1027
Tags: web
We updated phoenix to v0.28.0. Please refer to the changelog (linked) for details on the phoenix release.
https://github.com/owncloud/ocis/pull/1027 https://github.com/owncloud/phoenix/releases/tag/v0.28.0
Change - Update phoenix to v0.29.0: #1034
Tags: web
We updated phoenix to v0.29.0. Please refer to the changelog (linked) for details on the phoenix release.
https://github.com/owncloud/ocis/pull/1034 https://github.com/owncloud/phoenix/releases/tag/v0.29.0
Change - Make all paths configurable and default to a common temp dir: #1080
Aligned all services to use a dir following/var/tmp/ocis/<service>/... by
default. Also made some missing temp paths configurable via env vars and config
flags.
https://github.com/owncloud/ocis/pull/1080
Change - Update reva to v1.4.1-0.20201209113234-e791b5599a89: #1089
Updated reva to v1.4.1-0.20201209113234-e791b5599a89
https://github.com/owncloud/ocis/pull/1089
Change - Update ownCloud Web to v1.0.0-beta3: #1105
Tags: web
We updated ownCloud Web to v1.0.0-beta3. Please refer to the changelog (linked) for details on the web release.
https://github.com/owncloud/ocis/pull/1105 https://github.com/owncloud/phoenix/releases/tag/v1.0.0-beta3
Change - Update ownCloud Web to v1.0.0-beta4: #1110
Tags: web
We updated ownCloud Web to v1.0.0-beta4. Please refer to the changelog (linked) for details on the web release.
https://github.com/owncloud/ocis/pull/1110 https://github.com/owncloud/phoenix/releases/tag/v1.0.0-beta4
Enhancement - Simplify tracing config: #92
We now apply the oCIS tracing config to all services which have tracing. With this it is possible to set one tracing config for all services at the same time.
https://github.com/owncloud/product/issues/92 https://github.com/owncloud/ocis/pull/329 https://github.com/owncloud/ocis/pull/409
Enhancement - Document how to run OCIS on top of EOS: #172
Tags: eos
We have added rules to the Makefile that use the official eos docker images to boot an eos cluster and configure OCIS to use it.
https://github.com/owncloud/ocis/pull/172
Enhancement - Add a command to list the versions of running instances: #226
Tags: accounts
Added a micro command to list the versions of running accounts services.
https://github.com/owncloud/product/issues/226
Enhancement - Add the accounts service: #244
Tags: accounts
https://github.com/owncloud/product/issues/244
Enhancement - Add the glauth service: #244
Tags: glauth
https://github.com/owncloud/product/issues/244
Enhancement - Add the konnectd service: #244
Tags: konnectd
https://github.com/owncloud/product/issues/244
Enhancement - Add the ocis-phoenix service: #244
Tags: web
https://github.com/owncloud/product/issues/244
Enhancement - Add the ocis-pkg package: #244
Tags: ocis-pkg
ocis.id and numeric id claims: #50https://github.com/owncloud/product/issues/244
Enhancement - Add the ocs service: #244
Tags: ocs
https://github.com/owncloud/product/issues/244
Enhancement - Add the proxy service: #244
Tags: proxy
https://github.com/owncloud/product/issues/244
Enhancement - Add the settings service: #244
Tags: settings
https://github.com/owncloud/product/issues/244
Enhancement - Add the storage service: #244
Tags: storage, reva
In the future accounts, settings etc. should be stored in a dedicated metadata storage. The services should talk to this storage directly, bypassing reva-gateway.
Https://github.com/owncloud/ocis/pull/602
Https://github.com/owncloud/ocis-reva/issues/262 https://github.com/owncloud/ocis-reva/issues/357 https://github.com/owncloud/ocis-reva/issues/301 https://github.com/owncloud/ocis-reva/issues/302 https://github.com/owncloud/ocis/pull/601
The storage provider mounted at /home should always have EnableHome set to
true. The other storage providers should have it set to false.
Https://github.com/owncloud/product/issues/205 https://github.com/owncloud/ocis-reva/pull/461
We added a new config flag storage-registry-rule that can be given multiple
times for the gateway to specify arbitrary storage registry rules. You can also
use a comma separated list of rules in the REVA_STORAGE_REGISTRY_RULES
environment variable.
Https://github.com/owncloud/product/issues/193 https://github.com/owncloud/ocis-reva/pull/461
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →