Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

policies/password: password history #13453

Draft
wants to merge 29 commits into
base: main
Choose a base branch
from
Draft

Conversation

melizeche
Copy link
Contributor

@melizeche melizeche commented Mar 10, 2025

Details

Continue work done in #10631
Closes #8307

Checklist

  • Local tests pass (ak test authentik/)
  • The code has been formatted (make lint-fix)

If an API change has been made

  • The API schema has been updated (make gen-build)

If changes to the frontend have been made

  • The code has been formatted (make web)

If applicable

  • The documentation has been updated
  • The documentation has been formatted (make website)

verkaufer and others added 27 commits August 17, 2024 11:05
…ry table

If the UniquePasswordPolicy is enabled anywhere, we now record the user's hashed password.
The system should aim to keep the number of historical passwords to a minimum to avoid wasting storage space.

Admins can configure how many passwords they want to preserve. If multiple instances of the UniquePasswordPolicy exist, the system takes the max() value of all enabled policies to determine how many passwords should remain after trimming.
…ings

Querying within post_delete for other PolicyBindings will include the PolicyBinding we're deleting. We have to account for that by checking for bindings other than the one we're looking at.
Copy link

netlify bot commented Mar 10, 2025

Deploy Preview for authentik-docs canceled.

Name Link
🔨 Latest commit d4342d5
🔍 Latest deploy log https://app.netlify.com/sites/authentik-docs/deploys/67cf39099733680008e2a3ae

Copy link

netlify bot commented Mar 10, 2025

Deploy Preview for authentik-storybook canceled.

Name Link
🔨 Latest commit d4342d5
🔍 Latest deploy log https://app.netlify.com/sites/authentik-storybook/deploys/67cf39099733680008e2a3ac

Copy link

codecov bot commented Mar 10, 2025

Codecov Report

Attention: Patch coverage is 95.87629% with 12 lines in your changes missing coverage. Please review.

Project coverage is 92.70%. Comparing base (ef4d532) to head (d4342d5).

✅ All tests successful. No failed tests found.

Files with missing lines Patch % Lines
authentik/policies/unique_password/tasks.py 81.25% 6 Missing ⚠️
authentik/policies/unique_password/models.py 90.90% 5 Missing ⚠️
authentik/policies/unique_password/signals.py 96.00% 1 Missing ⚠️
Additional details and impacted files
@@             Coverage Diff             @@
##             main   #13453       +/-   ##
===========================================
+ Coverage   41.30%   92.70%   +51.40%     
===========================================
  Files         791      802       +11     
  Lines       40113    40660      +547     
===========================================
+ Hits        16567    37693    +21126     
+ Misses      23546     2967    -20579     
Flag Coverage Δ
e2e 47.92% <61.42%> (+6.62%) ⬆️
integration 24.12% <42.85%> (?)
unit 90.50% <95.87%> (?)

Flags with carried forward coverage won't be shown. Click here to find out more.

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

Copy link
Contributor

authentik PR Installation instructions

Instructions for docker-compose

Add the following block to your .env file:

AUTHENTIK_IMAGE=ghcr.io/goauthentik/dev-server
AUTHENTIK_TAG=gh-d4342d57c87e1a1f0ddfa0afb9533512186e8095
AUTHENTIK_OUTPOSTS__CONTAINER_IMAGE_BASE=ghcr.io/goauthentik/dev-%(type)s:gh-%(build_hash)s

Afterwards, run the upgrade commands from the latest release notes.

Instructions for Kubernetes

Add the following block to your values.yml file:

authentik:
    outposts:
        container_image_base: ghcr.io/goauthentik/dev-%(type)s:gh-%(build_hash)s
global:
    image:
        repository: ghcr.io/goauthentik/dev-server
        tag: gh-d4342d57c87e1a1f0ddfa0afb9533512186e8095

Afterwards, run the upgrade commands from the latest release notes.

@BeryJu BeryJu changed the title [WIP]Feature/unique passwords policies/password: password history Mar 12, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Checking the new user password to make sure it is different from the previous ones
2 participants