mirror of
https://github.com/h44z/wg-portal.git
synced 2026-04-09 17:06:28 +00:00
Compare commits
32 Commits
fix/confir
...
stable
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
1c3eacb08d | ||
|
|
0e9e9d697f | ||
|
|
87bfd5b23a | ||
|
|
920806b231 | ||
|
|
ec08e31eb7 | ||
|
|
cc472216b4 | ||
|
|
95394628d3 | ||
|
|
b553375c43 | ||
|
|
0a8ec71b3f | ||
|
|
fe4485037a | ||
|
|
6e47d8c3e9 | ||
|
|
eb28492539 | ||
|
|
d1a4ddde10 | ||
|
|
b1637b0c4e | ||
|
|
0cc7ebb83e | ||
|
|
eb6a787cfc | ||
|
|
b546eec4ed | ||
|
|
9be2133220 | ||
|
|
b05837b2d9 | ||
|
|
08c8f8eac0 | ||
|
|
d864e24145 | ||
|
|
5b56e58fe9 | ||
|
|
930ef7b573 | ||
|
|
18296673d7 | ||
|
|
4ccc59c109 | ||
|
|
e6b01a9903 | ||
|
|
2f79dd04c0 | ||
|
|
e5ed9736b3 | ||
|
|
c8353b85ae | ||
|
|
6142031387 | ||
|
|
dd86d0ff49 | ||
|
|
bdd426a679 |
@@ -14,7 +14,7 @@
|
|||||||
let WGPORTAL_SITE_TITLE="WireGuard Portal";
|
let WGPORTAL_SITE_TITLE="WireGuard Portal";
|
||||||
let WGPORTAL_SITE_COMPANY_NAME="WireGuard Portal";
|
let WGPORTAL_SITE_COMPANY_NAME="WireGuard Portal";
|
||||||
</script>
|
</script>
|
||||||
<script src="/api/v0/config/frontend.js"></script>
|
<script src="/api/v0/config/frontend.js" vite-ignore></script>
|
||||||
</head>
|
</head>
|
||||||
<body class="d-flex flex-column min-vh-100">
|
<body class="d-flex flex-column min-vh-100">
|
||||||
<noscript>
|
<noscript>
|
||||||
|
|||||||
2459
frontend/package-lock.json
generated
2459
frontend/package-lock.json
generated
File diff suppressed because it is too large
Load Diff
@@ -9,28 +9,28 @@
|
|||||||
},
|
},
|
||||||
"dependencies": {
|
"dependencies": {
|
||||||
"@fontsource/nunito-sans": "^5.2.7",
|
"@fontsource/nunito-sans": "^5.2.7",
|
||||||
"@fortawesome/fontawesome-free": "^7.1.0",
|
"@fortawesome/fontawesome-free": "^7.2.0",
|
||||||
"@kyvg/vue3-notification": "^3.4.2",
|
"@kyvg/vue3-notification": "^3.4.2",
|
||||||
"@popperjs/core": "^2.11.8",
|
"@popperjs/core": "^2.11.8",
|
||||||
"@simplewebauthn/browser": "^13.2.2",
|
"@simplewebauthn/browser": "^13.3.0",
|
||||||
"@vojtechlanka/vue-tags-input": "^3.1.1",
|
"@vojtechlanka/vue-tags-input": "^3.1.2",
|
||||||
"bootstrap": "^5.3.8",
|
"bootstrap": "^5.3.8",
|
||||||
"bootswatch": "^5.3.8",
|
"bootswatch": "^5.3.8",
|
||||||
"cidr-tools": "^11.0.3",
|
"cidr-tools": "^11.3.2",
|
||||||
"flag-icons": "^7.5.0",
|
"flag-icons": "^7.5.0",
|
||||||
"ip-address": "^10.1.0",
|
"ip-address": "^10.1.0",
|
||||||
"is-cidr": "^6.0.1",
|
"is-cidr": "^6.0.3",
|
||||||
"is-ip": "^5.0.1",
|
"is-ip": "^5.0.1",
|
||||||
"pinia": "^3.0.4",
|
"pinia": "^3.0.4",
|
||||||
"prismjs": "^1.30.0",
|
"prismjs": "^1.30.0",
|
||||||
"vue": "^3.5.25",
|
"vue": "^3.5.31",
|
||||||
"vue-i18n": "^11.2.2",
|
"vue-i18n": "^11.3.0",
|
||||||
"vue-prism-component": "github:h44z/vue-prism-component",
|
"vue-prism-component": "github:h44z/vue-prism-component",
|
||||||
"vue-router": "^4.6.3"
|
"vue-router": "^5.0.4"
|
||||||
},
|
},
|
||||||
"devDependencies": {
|
"devDependencies": {
|
||||||
"@vitejs/plugin-vue": "^6.0.2",
|
"@vitejs/plugin-vue": "^6.0.5",
|
||||||
"sass-embedded": "^1.93.3",
|
"sass-embedded": "^1.98.0",
|
||||||
"vite": "^7.2.7"
|
"vite": "^8.0.3"
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -26,13 +26,13 @@
|
|||||||
display:block;
|
display:block;
|
||||||
}
|
}
|
||||||
.modal.show {
|
.modal.show {
|
||||||
opacity: 1;
|
opacity: 1.0;
|
||||||
}
|
}
|
||||||
.modal-backdrop {
|
.modal-backdrop {
|
||||||
background-color: rgba(0,0,0,0.6) !important;
|
background-color: rgba(0,0,0,0.6) !important;
|
||||||
}
|
}
|
||||||
.modal-backdrop.show {
|
.modal-backdrop.show {
|
||||||
opacity: 1 !important;
|
opacity: 1.0 !important;
|
||||||
}
|
}
|
||||||
</style>
|
</style>
|
||||||
|
|
||||||
|
|||||||
@@ -1,7 +1,6 @@
|
|||||||
import {createRouter, createWebHashHistory} from 'vue-router'
|
import {createRouter, createWebHashHistory} from 'vue-router'
|
||||||
import HomeView from '../views/HomeView.vue'
|
import HomeView from '../views/HomeView.vue'
|
||||||
import LoginView from '../views/LoginView.vue'
|
import LoginView from '../views/LoginView.vue'
|
||||||
import InterfaceView from '../views/InterfaceView.vue'
|
|
||||||
|
|
||||||
import {authStore} from '@/stores/auth'
|
import {authStore} from '@/stores/auth'
|
||||||
import {securityStore} from '@/stores/security'
|
import {securityStore} from '@/stores/security'
|
||||||
@@ -20,11 +19,6 @@ const router = createRouter({
|
|||||||
name: 'login',
|
name: 'login',
|
||||||
component: LoginView
|
component: LoginView
|
||||||
},
|
},
|
||||||
{
|
|
||||||
path: '/interface',
|
|
||||||
name: 'interface',
|
|
||||||
component: InterfaceView
|
|
||||||
},
|
|
||||||
{
|
{
|
||||||
path: '/interfaces',
|
path: '/interfaces',
|
||||||
name: 'interfaces',
|
name: 'interfaces',
|
||||||
|
|||||||
@@ -232,21 +232,19 @@ func (r *SqlRepo) migrate() error {
|
|||||||
slog.Debug("running migration: interface status", "result", r.db.AutoMigrate(&domain.InterfaceStatus{}))
|
slog.Debug("running migration: interface status", "result", r.db.AutoMigrate(&domain.InterfaceStatus{}))
|
||||||
slog.Debug("running migration: audit data", "result", r.db.AutoMigrate(&domain.AuditEntry{}))
|
slog.Debug("running migration: audit data", "result", r.db.AutoMigrate(&domain.AuditEntry{}))
|
||||||
|
|
||||||
existingSysStat := SysStat{}
|
var existingSysStat SysStat
|
||||||
|
var err error
|
||||||
|
|
||||||
r.db.Order("schema_version desc").First(&existingSysStat) // get latest version
|
r.db.Order("schema_version desc").First(&existingSysStat) // get latest version
|
||||||
|
|
||||||
// Migration: 0 --> 1
|
// Migration: 0 --> 1
|
||||||
if existingSysStat.SchemaVersion == 0 {
|
if existingSysStat.SchemaVersion == 0 {
|
||||||
const schemaVersion = 1
|
const schemaVersion = 1
|
||||||
sysStat := SysStat{
|
existingSysStat, err = r.addMigration(schemaVersion) // ensure that follow-up checks test against the latest version
|
||||||
MigratedAt: time.Now(),
|
if err != nil {
|
||||||
SchemaVersion: schemaVersion,
|
return err
|
||||||
}
|
|
||||||
if err := r.db.Create(&sysStat).Error; err != nil {
|
|
||||||
return fmt.Errorf("failed to write sysstat entry for schema version %d: %w", schemaVersion, err)
|
|
||||||
}
|
}
|
||||||
slog.Debug("sys-stat entry written", "schema_version", schemaVersion)
|
slog.Debug("sys-stat entry written", "schema_version", schemaVersion)
|
||||||
existingSysStat = sysStat // ensure that follow-up checks test against the latest version
|
|
||||||
}
|
}
|
||||||
|
|
||||||
// Migration: 1 --> 2
|
// Migration: 1 --> 2
|
||||||
@@ -262,14 +260,10 @@ func (r *SqlRepo) migrate() error {
|
|||||||
}
|
}
|
||||||
slog.Debug("migrated interface create_default_peer flags", "schema_version", schemaVersion)
|
slog.Debug("migrated interface create_default_peer flags", "schema_version", schemaVersion)
|
||||||
}
|
}
|
||||||
sysStat := SysStat{
|
existingSysStat, err = r.addMigration(schemaVersion) // ensure that follow-up checks test against the latest version
|
||||||
MigratedAt: time.Now(),
|
if err != nil {
|
||||||
SchemaVersion: schemaVersion,
|
return err
|
||||||
}
|
}
|
||||||
if err := r.db.Create(&sysStat).Error; err != nil {
|
|
||||||
return fmt.Errorf("failed to write sysstat entry for schema version %d: %w", schemaVersion, err)
|
|
||||||
}
|
|
||||||
existingSysStat = sysStat // ensure that follow-up checks test against the latest version
|
|
||||||
}
|
}
|
||||||
|
|
||||||
// Migration: 2 --> 3
|
// Migration: 2 --> 3
|
||||||
@@ -307,19 +301,45 @@ func (r *SqlRepo) migrate() error {
|
|||||||
if err != nil {
|
if err != nil {
|
||||||
return fmt.Errorf("failed to migrate to multi-auth: %w", err)
|
return fmt.Errorf("failed to migrate to multi-auth: %w", err)
|
||||||
}
|
}
|
||||||
sysStat := SysStat{
|
existingSysStat, err = r.addMigration(schemaVersion) // ensure that follow-up checks test against the latest version
|
||||||
MigratedAt: time.Now(),
|
if err != nil {
|
||||||
SchemaVersion: schemaVersion,
|
return err
|
||||||
}
|
}
|
||||||
if err := r.db.Create(&sysStat).Error; err != nil {
|
}
|
||||||
return fmt.Errorf("failed to write sysstat entry for schema version %d: %w", schemaVersion, err)
|
|
||||||
|
// Migration: 3 --> 4
|
||||||
|
if existingSysStat.SchemaVersion == 3 {
|
||||||
|
const schemaVersion = 4
|
||||||
|
cutoff := time.Date(2000, 1, 1, 0, 0, 0, 0, time.UTC)
|
||||||
|
|
||||||
|
// Fix zero created_at timestamps for users. Set the to the last known update timestamp.
|
||||||
|
err := r.db.Model(&domain.User{}).Where("created_at < ?", cutoff).
|
||||||
|
Update("created_at", gorm.Expr("updated_at")).Error
|
||||||
|
if err != nil {
|
||||||
|
slog.Warn("failed to fix zero created_at for users", "error", err)
|
||||||
|
}
|
||||||
|
slog.Debug("fixed zero created_at timestamps for users", "schema_version", schemaVersion)
|
||||||
|
|
||||||
|
existingSysStat, err = r.addMigration(schemaVersion) // ensure that follow-up checks test against the latest version
|
||||||
|
if err != nil {
|
||||||
|
return err
|
||||||
}
|
}
|
||||||
existingSysStat = sysStat // ensure that follow-up checks test against the latest version
|
|
||||||
}
|
}
|
||||||
|
|
||||||
return nil
|
return nil
|
||||||
}
|
}
|
||||||
|
|
||||||
|
func (r *SqlRepo) addMigration(schemaVersion uint64) (SysStat, error) {
|
||||||
|
sysStat := SysStat{
|
||||||
|
MigratedAt: time.Now(),
|
||||||
|
SchemaVersion: schemaVersion,
|
||||||
|
}
|
||||||
|
if err := r.db.Create(&sysStat).Error; err != nil {
|
||||||
|
return SysStat{}, fmt.Errorf("failed to write sysstat entry for schema version %d: %w", schemaVersion, err)
|
||||||
|
}
|
||||||
|
return sysStat, nil
|
||||||
|
}
|
||||||
|
|
||||||
// region interfaces
|
// region interfaces
|
||||||
|
|
||||||
// GetInterface returns the interface with the given id.
|
// GetInterface returns the interface with the given id.
|
||||||
|
|||||||
168
internal/adapters/database_created_at_test.go
Normal file
168
internal/adapters/database_created_at_test.go
Normal file
@@ -0,0 +1,168 @@
|
|||||||
|
package adapters
|
||||||
|
|
||||||
|
import (
|
||||||
|
"context"
|
||||||
|
"testing"
|
||||||
|
"time"
|
||||||
|
|
||||||
|
"github.com/glebarez/sqlite"
|
||||||
|
"github.com/stretchr/testify/assert"
|
||||||
|
"github.com/stretchr/testify/require"
|
||||||
|
"gorm.io/gorm"
|
||||||
|
|
||||||
|
"github.com/h44z/wg-portal/internal/config"
|
||||||
|
"github.com/h44z/wg-portal/internal/domain"
|
||||||
|
)
|
||||||
|
|
||||||
|
func newTestDB(t *testing.T) *gorm.DB {
|
||||||
|
t.Helper()
|
||||||
|
db, err := gorm.Open(sqlite.Open("file::memory:"), &gorm.Config{})
|
||||||
|
require.NoError(t, err)
|
||||||
|
return db
|
||||||
|
}
|
||||||
|
|
||||||
|
func TestUpsertUser_SetsCreatedAtWhenZero(t *testing.T) {
|
||||||
|
db := newTestDB(t)
|
||||||
|
require.NoError(t, db.AutoMigrate(&domain.User{}, &domain.UserAuthentication{}, &domain.UserWebauthnCredential{}))
|
||||||
|
|
||||||
|
repo := &SqlRepo{db: db, cfg: &config.Config{}}
|
||||||
|
ui := domain.SystemAdminContextUserInfo()
|
||||||
|
|
||||||
|
user := &domain.User{
|
||||||
|
Identifier: "test-user",
|
||||||
|
Email: "test@example.com",
|
||||||
|
// CreatedAt is zero
|
||||||
|
}
|
||||||
|
|
||||||
|
err := repo.upsertUser(ui, db, user)
|
||||||
|
require.NoError(t, err)
|
||||||
|
|
||||||
|
assert.False(t, user.CreatedAt.IsZero(), "CreatedAt should be set when it was zero")
|
||||||
|
assert.Equal(t, ui.UserId(), user.UpdatedBy, "UpdatedBy should be set when it was empty")
|
||||||
|
assert.WithinDuration(t, user.UpdatedAt, user.CreatedAt, time.Second,
|
||||||
|
"CreatedAt should be close to UpdatedAt for new user")
|
||||||
|
}
|
||||||
|
|
||||||
|
func TestUpsertUser_PreservesExistingCreatedAt(t *testing.T) {
|
||||||
|
db := newTestDB(t)
|
||||||
|
require.NoError(t, db.AutoMigrate(&domain.User{}, &domain.UserAuthentication{}, &domain.UserWebauthnCredential{}))
|
||||||
|
|
||||||
|
repo := &SqlRepo{db: db, cfg: &config.Config{}}
|
||||||
|
ui := domain.SystemAdminContextUserInfo()
|
||||||
|
|
||||||
|
originalTime := time.Date(2025, 1, 1, 12, 0, 0, 0, time.UTC)
|
||||||
|
user := &domain.User{
|
||||||
|
Identifier: "test-user",
|
||||||
|
Email: "test@example.com",
|
||||||
|
BaseModel: domain.BaseModel{
|
||||||
|
CreatedAt: originalTime,
|
||||||
|
CreatedBy: "original-creator",
|
||||||
|
},
|
||||||
|
}
|
||||||
|
|
||||||
|
err := repo.upsertUser(ui, db, user)
|
||||||
|
require.NoError(t, err)
|
||||||
|
|
||||||
|
assert.Equal(t, originalTime, user.CreatedAt, "CreatedAt should not be overwritten")
|
||||||
|
assert.Equal(t, "original-creator", user.CreatedBy, "CreatedBy should not be overwritten")
|
||||||
|
}
|
||||||
|
|
||||||
|
func TestSaveUser_NewUserGetsCreatedAt(t *testing.T) {
|
||||||
|
db := newTestDB(t)
|
||||||
|
require.NoError(t, db.AutoMigrate(&domain.User{}, &domain.UserAuthentication{}, &domain.UserWebauthnCredential{}))
|
||||||
|
|
||||||
|
repo := &SqlRepo{db: db, cfg: &config.Config{}}
|
||||||
|
ctx := domain.SetUserInfo(context.Background(), domain.SystemAdminContextUserInfo())
|
||||||
|
|
||||||
|
before := time.Now().Add(-time.Second)
|
||||||
|
|
||||||
|
err := repo.SaveUser(ctx, "new-user", func(u *domain.User) (*domain.User, error) {
|
||||||
|
u.Email = "new@example.com"
|
||||||
|
return u, nil
|
||||||
|
})
|
||||||
|
require.NoError(t, err)
|
||||||
|
|
||||||
|
var saved domain.User
|
||||||
|
require.NoError(t, db.First(&saved, "identifier = ?", "new-user").Error)
|
||||||
|
|
||||||
|
assert.False(t, saved.CreatedAt.IsZero(), "CreatedAt should not be zero")
|
||||||
|
assert.True(t, saved.CreatedAt.After(before), "CreatedAt should be recent")
|
||||||
|
assert.NotEmpty(t, saved.CreatedBy, "CreatedBy should be set")
|
||||||
|
}
|
||||||
|
|
||||||
|
func TestMigration_FixesZeroCreatedAt(t *testing.T) {
|
||||||
|
db := newTestDB(t)
|
||||||
|
|
||||||
|
// Manually create tables and seed schema version 3
|
||||||
|
require.NoError(t, db.AutoMigrate(
|
||||||
|
&SysStat{},
|
||||||
|
&domain.User{},
|
||||||
|
&domain.UserAuthentication{},
|
||||||
|
&domain.Interface{},
|
||||||
|
&domain.Cidr{},
|
||||||
|
&domain.Peer{},
|
||||||
|
&domain.AuditEntry{},
|
||||||
|
&domain.UserWebauthnCredential{},
|
||||||
|
))
|
||||||
|
|
||||||
|
// Insert schema versions 1, 2, 3 so migration starts at 3
|
||||||
|
for v := uint64(1); v <= 3; v++ {
|
||||||
|
require.NoError(t, db.Create(&SysStat{SchemaVersion: v, MigratedAt: time.Now()}).Error)
|
||||||
|
}
|
||||||
|
|
||||||
|
updatedAt := time.Date(2025, 6, 15, 10, 0, 0, 0, time.UTC)
|
||||||
|
|
||||||
|
// Insert a user with zero created_at but valid updated_at
|
||||||
|
require.NoError(t, db.Exec(
|
||||||
|
"INSERT INTO users (identifier, email, created_at, updated_at) VALUES (?, ?, ?, ?)",
|
||||||
|
"zero-user", "zero@example.com", time.Time{}, updatedAt,
|
||||||
|
).Error)
|
||||||
|
|
||||||
|
// Run migration
|
||||||
|
repo := &SqlRepo{db: db, cfg: &config.Config{}}
|
||||||
|
require.NoError(t, repo.migrate())
|
||||||
|
|
||||||
|
// Verify created_at was backfilled from updated_at
|
||||||
|
var user domain.User
|
||||||
|
require.NoError(t, db.First(&user, "identifier = ?", "zero-user").Error)
|
||||||
|
assert.Equal(t, updatedAt, user.CreatedAt, "created_at should be backfilled from updated_at")
|
||||||
|
|
||||||
|
// Verify schema version advanced to 4
|
||||||
|
var latest SysStat
|
||||||
|
require.NoError(t, db.Order("schema_version DESC").First(&latest).Error)
|
||||||
|
assert.Equal(t, uint64(4), latest.SchemaVersion)
|
||||||
|
}
|
||||||
|
|
||||||
|
func TestMigration_DoesNotTouchValidCreatedAt(t *testing.T) {
|
||||||
|
db := newTestDB(t)
|
||||||
|
|
||||||
|
require.NoError(t, db.AutoMigrate(
|
||||||
|
&SysStat{},
|
||||||
|
&domain.User{},
|
||||||
|
&domain.UserAuthentication{},
|
||||||
|
&domain.Interface{},
|
||||||
|
&domain.Cidr{},
|
||||||
|
&domain.Peer{},
|
||||||
|
&domain.AuditEntry{},
|
||||||
|
&domain.UserWebauthnCredential{},
|
||||||
|
))
|
||||||
|
|
||||||
|
for v := uint64(1); v <= 3; v++ {
|
||||||
|
require.NoError(t, db.Create(&SysStat{SchemaVersion: v, MigratedAt: time.Now()}).Error)
|
||||||
|
}
|
||||||
|
|
||||||
|
createdAt := time.Date(2024, 3, 1, 8, 0, 0, 0, time.UTC)
|
||||||
|
updatedAt := time.Date(2025, 6, 15, 10, 0, 0, 0, time.UTC)
|
||||||
|
|
||||||
|
require.NoError(t, db.Exec(
|
||||||
|
"INSERT INTO users (identifier, email, created_at, updated_at) VALUES (?, ?, ?, ?)",
|
||||||
|
"valid-user", "valid@example.com", createdAt, updatedAt,
|
||||||
|
).Error)
|
||||||
|
|
||||||
|
repo := &SqlRepo{db: db, cfg: &config.Config{}}
|
||||||
|
require.NoError(t, repo.migrate())
|
||||||
|
|
||||||
|
var user domain.User
|
||||||
|
require.NoError(t, db.First(&user, "identifier = ?", "valid-user").Error)
|
||||||
|
assert.Equal(t, createdAt, user.CreatedAt, "valid created_at should not be modified")
|
||||||
|
}
|
||||||
@@ -533,6 +533,7 @@ func (m Manager) create(ctx context.Context, user *domain.User) (*domain.User, e
|
|||||||
}
|
}
|
||||||
|
|
||||||
err = m.users.SaveUser(ctx, user.Identifier, func(u *domain.User) (*domain.User, error) {
|
err = m.users.SaveUser(ctx, user.Identifier, func(u *domain.User) (*domain.User, error) {
|
||||||
|
user.CopyCalculatedAttributes(u, false)
|
||||||
return user, nil
|
return user, nil
|
||||||
})
|
})
|
||||||
if err != nil {
|
if err != nil {
|
||||||
|
|||||||
@@ -68,7 +68,7 @@ type User struct {
|
|||||||
WebAuthnCredentialList []UserWebauthnCredential `gorm:"foreignKey:user_identifier"` // the webauthn credentials of the user, used for webauthn authentication
|
WebAuthnCredentialList []UserWebauthnCredential `gorm:"foreignKey:user_identifier"` // the webauthn credentials of the user, used for webauthn authentication
|
||||||
|
|
||||||
// API token for REST API access
|
// API token for REST API access
|
||||||
ApiToken string `form:"api_token" binding:"omitempty"`
|
ApiToken string `form:"api_token" binding:"omitempty" gorm:"serializer:encstr"`
|
||||||
ApiTokenCreated *time.Time
|
ApiTokenCreated *time.Time
|
||||||
|
|
||||||
LinkedPeerCount int `gorm:"-"`
|
LinkedPeerCount int `gorm:"-"`
|
||||||
|
|||||||
Reference in New Issue
Block a user