James Muehlner 
							
						 
					 
					
						
						
							
						
						ea7c5ef18e 
					 
					
						
						
							
							GUACAMOLE-1956: Switch guacamole-auth-sso-ssl to updated version of bc-fips.  
						
						
						
						
					 
					
						2024-06-11 18:43:38 +00:00 
						 
				 
			
				
					
						
							
							
								Michael Jumper 
							
						 
					 
					
						
						
							
						
						284353da48 
					 
					
						
						
							
							Merge changes from patch branch back to main.  
						
						
						
						
					 
					
						2024-06-11 11:19:52 -07:00 
						 
				 
			
				
					
						
							
							
								James Muehlner 
							
						 
					 
					
						
						
							
						
						429d96888e 
					 
					
						
						
							
							GUACAMOLE-1956: Update maven dependencies to latest compatible versions.  
						
						
						
						
					 
					
						2024-06-11 17:27:37 +00:00 
						 
				 
			
				
					
						
							
							
								Virtually Nick 
							
						 
					 
					
						
						
							
						
						13494baa4a 
					 
					
						
						
							
							GUACAMOLE-1289: Move AuthenticationSession components to guacamole-exit.  
						
						
						
						
					 
					
						2024-03-29 00:57:40 +00:00 
						 
				 
			
				
					
						
							
							
								Michael Jumper 
							
						 
					 
					
						
						
							
						
						5a43d494f2 
					 
					
						
						
							
							Merge patch changes back to main.  
						
						
						
						
					 
					
						2024-03-13 15:27:32 -07:00 
						 
				 
			
				
					
						
							
							
								James Muehlner 
							
						 
					 
					
						
						
							
						
						8e5cf7ab1b 
					 
					
						
						
							
							GUACAMOLE-1905: Revert Apache Santuario version for compatibility with reverted Woodstox version.  
						
						
						
						
					 
					
						2024-03-13 21:53:04 +00:00 
						 
				 
			
				
					
						
							
							
								Virtually Nick 
							
						 
					 
					
						
						
							
						
						ecec7bc305 
					 
					
						
						
							
							Merge 1.5.5 changes back to main.  
						
						
						
						
					 
					
						2024-03-12 17:48:21 -04:00 
						 
				 
			
				
					
						
							
							
								Virtually Nick 
							
						 
					 
					
						
						
							
						
						325c97aed8 
					 
					
						
						
							
							GUACAMOLE-1905: Merge revert to java-saml-compatible version of woodstox.  
						
						
						
						
					 
					
						2024-03-12 17:45:46 -04:00 
						 
				 
			
				
					
						
							
							
								James Muehlner 
							
						 
					 
					
						
						
							
						
						dc016e4b9f 
					 
					
						
						
							
							GUACAMOLE-1905: Upgrade to jose4j 0.9.6.  
						
						
						
						
					 
					
						2024-03-12 21:20:49 +00:00 
						 
				 
			
				
					
						
							
							
								James Muehlner 
							
						 
					 
					
						
						
							
						
						35195069e6 
					 
					
						
						
							
							GUACAMOLE-1905: Revert to java-saml-compatible version of woodstox.  
						
						
						
						
					 
					
						2024-03-12 21:14:52 +00:00 
						 
				 
			
				
					
						
							
							
								Virtually Nick 
							
						 
					 
					
						
						
							
						
						5843c67704 
					 
					
						
						
							
							Merge 1.5.5 changes back to main.  
						
						
						
						
					 
					
						2024-03-09 15:05:19 -05:00 
						 
				 
			
				
					
						
							
							
								Virtually Nick 
							
						 
					 
					
						
						
							
						
						fddcdd39f9 
					 
					
						
						
							
							GUACAMOLE-1905: Update Java dependencies to latest compatible versions.  
						
						
						
						
					 
					
						2024-03-03 16:16:46 -05:00 
						 
				 
			
				
					
						
							
							
								mildis 
							
						 
					 
					
						
						
							
						
						8c42553564 
					 
					
						
						
							
							GUACAMOLE-1844 : OIDC JWT claims as user token  
						
						... 
						
						
						
						GUACAMOLE-1844 : OIDC JWT claims as user token
This patch allows IDP to send JWT claims that can be mapped to user tokens, prefixed with OIDC_.
Same case transormation apply than LDAP_ and CAS_.
Define openid-attributes-claim-type with a comma-separated list of claims that should be mapped.
Multivalued JWT claims are not unrolled. 
						
						
					 
					
						2024-02-13 21:38:48 +01:00 
						 
				 
			
				
					
						
							
							
								Virtually Nick 
							
						 
					 
					
						
						
							
						
						46db5f249d 
					 
					
						
						
							
							GUACAMOLE-1915: Bump versions for projects outside the 1.5.5 scope.  
						
						
						
						
					 
					
						2024-01-30 12:37:45 -05:00 
						 
				 
			
				
					
						
							
							
								James Muehlner 
							
						 
					 
					
						
						
							
						
						c2697fa4ab 
					 
					
						
						
							
							Merge 1.5.5 changes back to master.  
						
						
						
						
					 
					
						2024-01-30 17:16:16 +00:00 
						 
				 
			
				
					
						
							
							
								Virtually Nick 
							
						 
					 
					
						
						
							
						
						4119304913 
					 
					
						
						
							
							GUACAMOLE-1906: Bump guac-manifest versions and add 1.5.5 to the extension loader.  
						
						
						
						
					 
					
						2024-01-29 21:53:33 -05:00 
						 
				 
			
				
					
						
							
							
								James Muehlner 
							
						 
					 
					
						
						
							
						
						a0b2d1f1b1 
					 
					
						
						
							
							Merge 1.5.5 changes back to master.  
						
						
						
						
					 
					
						2024-01-29 22:14:15 +00:00 
						 
				 
			
				
					
						
							
							
								Virtually Nick 
							
						 
					 
					
						
						
							
						
						ff20c8db08 
					 
					
						
						
							
							GUACAMOLE-1906: Bump version numbers to 1.5.5.  
						
						
						
						
					 
					
						2024-01-26 20:32:29 -05:00 
						 
				 
			
				
					
						
							
							
								James Muehlner 
							
						 
					 
					
						
						
							
						
						212955c16c 
					 
					
						
						
							
							Merge 1.5.4 changes back to master.  
						
						
						
						
					 
					
						2023-12-04 17:23:53 +00:00 
						 
				 
			
				
					
						
							
							
								Mike Jumper 
							
						 
					 
					
						
						
							
						
						dbbe238cb4 
					 
					
						
						
							
							GUACAMOLE-1859: Update to Apache Directory API v2.1.5.  
						
						
						
						
					 
					
						2023-12-03 15:35:24 -08:00 
						 
				 
			
				
					
						
							
							
								Mike Jumper 
							
						 
					 
					
						
						
							
						
						1b11b31045 
					 
					
						
						
							
							GUACAMOLE-1859: Update xmlsec to 2.2.6 (transitive dependency of SAML).  
						
						
						
						
					 
					
						2023-12-01 11:05:56 -08:00 
						 
				 
			
				
					
						
							
							
								Virtually Nick 
							
						 
					 
					
						
						
							
						
						b02f30935a 
					 
					
						
						
							
							GUACAMOLE-1612: Merge updates to Italian translations  
						
						
						
						
					 
					
						2023-12-01 06:40:54 -05:00 
						 
				 
			
				
					
						
							
							
								Mike Jumper 
							
						 
					 
					
						
						
							
						
						4d162810f7 
					 
					
						
						
							
							GUACAMOLE-1887: Bump versions numbers of projects outside 1.5.4 scope.  
						
						
						
						
					 
					
						2023-11-23 08:18:35 -08:00 
						 
				 
			
				
					
						
							
							
								Virtually Nick 
							
						 
					 
					
						
						
							
						
						9d2649c0fa 
					 
					
						
						
							
							Merge 1.5.4 changes back to master.  
						
						
						
						
					 
					
						2023-11-22 17:34:44 -05:00 
						 
				 
			
				
					
						
							
							
								Mike Jumper 
							
						 
					 
					
						
						
							
						
						90ea156625 
					 
					
						
						
							
							GUACAMOLE-1886: Bump version numbers to 1.5.4.  
						
						
						
						
					 
					
						2023-11-22 12:55:32 -08:00 
						 
				 
			
				
					
						
							
							
								Mike Jumper 
							
						 
					 
					
						
						
							
						
						ed31d6f2e0 
					 
					
						
						
							
							GUACAMOLE-839: Force usage of non-dynamic version of Bouncy Castle FIPS.  
						
						
						
						
					 
					
						2023-10-06 12:17:15 -07:00 
						 
				 
			
				
					
						
							
							
								Mike Jumper 
							
						 
					 
					
						
						
							
						
						e46d06e6b8 
					 
					
						
						
							
							GUACAMOLE-1780: Merge changes adding MFA compatibility to SSO support.  
						
						
						
						
					 
					
						2023-07-06 08:27:31 -07:00 
						 
				 
			
				
					
						
							
							
								James Muehlner 
							
						 
					 
					
						
						
							
						
						e804e8f95d 
					 
					
						
						
							
							GUACAMOLE-1829: Correct versions of dependencies for remaining 1.5.2 versioned extensions.  
						
						
						
						
					 
					
						2023-07-05 23:28:34 +00:00 
						 
				 
			
				
					
						
							
							
								Mike Jumper 
							
						 
					 
					
						
						
							
						
						993cde2545 
					 
					
						
						
							
							Merge 1.5.3 changes back to master.  
						
						
						
						
					 
					
						2023-07-04 09:11:34 -07:00 
						 
				 
			
				
					
						
							
							
								Virtually Nick 
							
						 
					 
					
						
						
							
						
						49300d17b4 
					 
					
						
						
							
							GUACAMOLE-1816: Bump client versions to 1.5.3.  
						
						
						
						
					 
					
						2023-07-03 13:51:40 -04:00 
						 
				 
			
				
					
						
							
							
								James Muehlner 
							
						 
					 
					
						
						
							
						
						97f93fa5c5 
					 
					
						
						
							
							GUACAMOLE-1780: Unify session reactivation/invalidation behavior.  
						
						
						
						
					 
					
						2023-06-30 15:35:31 +00:00 
						 
				 
			
				
					
						
							
							
								James Muehlner 
							
						 
					 
					
						
						
							
						
						0de694c912 
					 
					
						
						
							
							GUACAMOLE-1780: Allow SAML, SSL sessions to be resumed after another auth provider vetoes the auth attempt.  
						
						
						
						
					 
					
						2023-06-27 23:28:09 +00:00 
						 
				 
			
				
					
						
							
							
								Mike Jumper 
							
						 
					 
					
						
						
							
						
						d2d9631571 
					 
					
						
						
							
							Merge 1.5.3 changes back to master.  
						
						
						
						
					 
					
						2023-06-10 21:22:11 -07:00 
						 
				 
			
				
					
						
							
							
								Inperpetuammemoriam 
							
						 
					 
					
						
						
							
						
						846c507ba7 
					 
					
						
						
							
							GUACAMOLE-1806: Update Java dependencies to patched versions  
						
						... 
						
						
						
						These changes should address the following (potentially relevant)
vulnerabilities:
  - CVE-2022-21724
  - CVE-2022-26520
  - CVE-2022-31197
  - CVE-2022-40151
  - CVE-2022-40152
  - CVE-2022-41946
  - CVE-2023-20861
  - CVE-2023-20862
  - CVE-2023-20863
  - GHSA-673j-qm5f-xpv8 
						
						
					 
					
						2023-06-10 09:58:49 +02:00 
						 
				 
			
				
					
						
							
							
								Mike Jumper 
							
						 
					 
					
						
						
							
						
						54cea4e80b 
					 
					
						
						
							
							GUACAMOLE-1790: Bump version numbers of components not within 1.5.2.  
						
						
						
						
					 
					
						2023-05-17 17:00:46 -07:00 
						 
				 
			
				
					
						
							
							
								James Muehlner 
							
						 
					 
					
						
						
							
						
						f355c5cfee 
					 
					
						
						
							
							Merge 1.5.2 changes back to master.  
						
						
						
						
					 
					
						2023-05-17 23:57:32 +00:00 
						 
				 
			
				
					
						
							
							
								Mike Jumper 
							
						 
					 
					
						
						
							
						
						0631ff9689 
					 
					
						
						
							
							GUACAMOLE-1785: Bump version numbers to 1.5.2.  
						
						
						
						
					 
					
						2023-05-17 16:43:01 -07:00 
						 
				 
			
				
					
						
							
							
								Mike Jumper 
							
						 
					 
					
						
						
							
						
						520edb32ee 
					 
					
						
						
							
							GUACAMOLE-1767: Correct parent project version (bumped to 1.5.1).  
						
						
						
						
					 
					
						2023-04-10 09:12:56 -07:00 
						 
				 
			
				
					
						
							
							
								Virtually Nick 
							
						 
					 
					
						
						
							
						
						56c6e5022d 
					 
					
						
						
							
							Merge 1.5.1 changes back to master.  
						
						
						
						
					 
					
						2023-04-10 10:22:47 -04:00 
						 
				 
			
				
					
						
							
							
								Mike Jumper 
							
						 
					 
					
						
						
							
						
						0b4468ba24 
					 
					
						
						
							
							GUACAMOLE-1752: Bump version numbers to 1.5.1.  
						
						
						
						
					 
					
						2023-04-09 19:54:19 -07:00 
						 
				 
			
				
					
						
							
							
								James Muehlner 
							
						 
					 
					
						
						
							
						
						b980648808 
					 
					
						
						
							
							Merge 1.5.1 changes back to master.  
						
						
						
						
					 
					
						2023-04-03 21:40:44 +00:00 
						 
				 
			
				
					
						
							
							
								Michael Jumper 
							
						 
					 
					
						
						
							
						
						8ee9ee40dc 
					 
					
						
						
							
							GUACAMOLE-1763: Update Java dependencies to latest compatible versions.  
						
						
						
						
					 
					
						2023-04-03 14:24:58 -07:00 
						 
				 
			
				
					
						
							
							
								Michael Jumper 
							
						 
					 
					
						
						
							
						
						08e5938493 
					 
					
						
						
							
							GUACAMOLE-839: Redirect user to proper URI for SSL/TLS client auth (rather than just refuse).  
						
						
						
						
					 
					
						2023-03-28 13:36:15 -07:00 
						 
				 
			
				
					
						
							
							
								Michael Jumper 
							
						 
					 
					
						
						
							
						
						e6449d2c57 
					 
					
						
						
							
							GUACAMOLE-1757: Ensure SSO provider list is added to login UI only once.  
						
						
						
						
					 
					
						2023-03-23 12:30:58 -07:00 
						 
				 
			
				
					
						
							
							
								Niubbo75 
							
						 
					 
					
						
						
							
						
						d5e19d5e76 
					 
					
						
						
							
							GUACAMOLE-1612: Update and correct Italian Translations for Guacamole Client  
						
						
						
						
					 
					
						2023-03-17 10:41:26 +01:00 
						 
				 
			
				
					
						
							
							
								Michael Jumper 
							
						 
					 
					
						
						
							
						
						f98901f933 
					 
					
						
						
							
							GUACAMOLE-839: Add sanity checks around parsed PEM data, which may indeed be null.  
						
						
						
						
					 
					
						2023-03-08 09:34:52 -08:00 
						 
				 
			
				
					
						
							
							
								Michael Jumper 
							
						 
					 
					
						
						
							
						
						6424b063f2 
					 
					
						
						
							
							GUACAMOLE-839: Correct WildcardURIGuacamoleProperty to correctly handle missing (null) properties.  
						
						
						
						
					 
					
						2023-03-08 09:34:26 -08:00 
						 
				 
			
				
					
						
							
							
								Michael Jumper 
							
						 
					 
					
						
						
							
						
						82073a5976 
					 
					
						
						
							
							GUACAMOLE-839: Correct typo in JavaDoc of decode() - "valid", not "value".  
						
						
						
						
					 
					
						2023-03-07 16:38:51 -08:00 
						 
				 
			
				
					
						
							
							
								Michael Jumper 
							
						 
					 
					
						
						
							
						
						9f8bb71b0e 
					 
					
						
						
							
							GUACAMOLE-839: Correct JavaDoc for parameters of getUsername().  
						
						
						
						
					 
					
						2023-03-07 16:37:00 -08:00 
						 
				 
			
				
					
						
							
							
								Michael Jumper 
							
						 
					 
					
						
						
							
						
						d0574f8d82 
					 
					
						
						
							
							GUACAMOLE-839: Use BouncyCastle for retrieval of certificate details.  
						
						... 
						
						
						
						Java's build-in support for reading X.509 certificates does not deal
well with PIV certificates containing the username as a "serialNumber"
attribute. Rather than exposing the string value of that attribute, the
Java implementation exposes a byte array that does not fully match the
string value shown by a tool like OpenSSL.
BouncyCastle, on the other hand, _does_ match the output of OpenSSL, and
provides a predictable means of decoding the certificate. 
						
						
					 
					
						2023-03-07 16:36:37 -08:00