Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix: factory URL flow with untrusted repository #1210

Merged
merged 2 commits into from
Oct 4, 2024

Conversation

akurinnoy
Copy link
Contributor

What does this PR do?

This PR fixes a bug that blocks the creation of workspaces using a factory link to an untrusted repository.

Screenshot/screencast of this PR

Before

Screen.Recording.2024-10-01.at.15.15.27.mov

After

Screen.Recording.2024-10-01.at.15.09.28.mov

What issues does this PR fix or reference?

fixes eclipse-che/che#23146

Is it tested? How?

See the screencast above.

Release Notes

Docs PR

@akurinnoy akurinnoy self-assigned this Oct 1, 2024
@che-bot
Copy link
Contributor

che-bot commented Oct 1, 2024

Click here to review and test in web IDE: Contribute

Copy link

github-actions bot commented Oct 1, 2024

Docker image build succeeded: quay.io/eclipse/che-dashboard:pr-1210

kubectl patch command
kubectl patch -n eclipse-che "checluster/eclipse-che" --type=json -p="[{"op": "replace", "path": "/spec/components/dashboard/deployment", "value": {containers: [{image: "quay.io/eclipse/che-dashboard:pr-1210", name: che-dashboard}]}}]"

Copy link

codecov bot commented Oct 1, 2024

Codecov Report

All modified and coverable lines are covered by tests ✅

Project coverage is 89.99%. Comparing base (61ca347) to head (e45667e).
Report is 5 commits behind head on main.

Additional details and impacted files
@@            Coverage Diff             @@
##             main    #1210      +/-   ##
==========================================
- Coverage   91.37%   89.99%   -1.39%     
==========================================
  Files         442      443       +1     
  Lines       45650    45729      +79     
  Branches     3060     3071      +11     
==========================================
- Hits        41714    41154     -560     
- Misses       3936     4542     +606     
- Partials        0       33      +33     

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

Copy link

github-actions bot commented Oct 2, 2024

Docker image build succeeded: quay.io/eclipse/che-dashboard:pr-1210

kubectl patch command
kubectl patch -n eclipse-che "checluster/eclipse-che" --type=json -p="[{"op": "replace", "path": "/spec/components/dashboard/deployment", "value": {containers: [{image: "quay.io/eclipse/che-dashboard:pr-1210", name: che-dashboard}]}}]"

Copy link
Contributor

@olexii4 olexii4 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

Copy link

openshift-ci bot commented Oct 2, 2024

[APPROVALNOTIFIER] This PR is NOT APPROVED

This pull-request has been approved by: akurinnoy, olexii4

The full list of commands accepted by this bot can be found here.

Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@akurinnoy akurinnoy merged commit 88d722e into main Oct 4, 2024
20 of 21 checks passed
@akurinnoy akurinnoy deleted the factory-untrusted-modal branch October 4, 2024 08:25
@devstudio-release
Copy link

Build 3.18 :: dashboard_3.x/560: Console, Changes, Git Data

@devstudio-release
Copy link

@devstudio-release
Copy link

@devstudio-release
Copy link

@devstudio-release
Copy link

@devstudio-release
Copy link

Build 3.18 :: dashboard_3.x/560: SUCCESS

Upstream sync done; /DS_CI/sync-to-downstream_3.x/7785 triggered

@devstudio-release
Copy link

@devstudio-release
Copy link

@devstudio-release
Copy link

@devstudio-release
Copy link

@devstudio-release
Copy link

@devstudio-release
Copy link

Build 3.18 :: copyIIBsToQuay/2823: Console, Changes, Git Data

@devstudio-release
Copy link

Build 3.18 :: sync-to-downstream_3.x/7786: SUCCESS

Build container: devspaces-operator-bundle synced; /DS_CI/get-sources-rhpkg-container-build_3.x/7783 triggered; /job/DS_CI/job/dsc_3.x triggered;

@devstudio-release
Copy link

Build 3.18 :: operator-bundle_3.x/3651: SUCCESS

Upstream sync done; /DS_CI/sync-to-downstream_3.x/7786 triggered

@devstudio-release
Copy link

Build 3.18 :: dsc_3.x/2011: Console, Changes, Git Data

@devstudio-release
Copy link

Build 3.18 :: update-digests_3.x/7690: SUCCESS

Detected new images: rebuild operator-bundle
* dashboard; /DS_CI/operator-bundle_3.x/3651 triggered

@devstudio-release
Copy link

Build 3.18 :: dsc_3.x/2011: SUCCESS

3.18.0-CI

@devstudio-release
Copy link

Build 3.18 :: copyIIBsToQuay/2823: SUCCESS

3.18
arches = x86_64, s390x, ppc64le;
  * LATEST DS OPERATOR BUNDLE = <a href=https://quay.io/repository/devspaces/devspaces-operator-bundle?tab=tags>registry-proxy.engineering.redhat.com/rh-osbs/devspaces-operator-bundle:3.18-2
  * LATEST DWO OPERATOR BUNDLE = <a href=https://quay.io/repository/devworkspace/devworkspace-operator-bundle?tab=tags>registry-proxy.engineering.redhat.com/rh-osbs/devworkspace-operator-bundle:???
+ s390x-rhel8 IIB(s) copied:
  + <a href=https://quay.io/devspaces/iib:3.18-v4.17-830508- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-s390x>quay.io/devspaces/iib:3.18-v4.17-830508- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-s390x
  + quay.io/devspaces/iib:3.18-v4.17-s390x
  + <a href=https://quay.io/devspaces/iib:3.18-v4.16-830507- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-s390x>quay.io/devspaces/iib:3.18-v4.16-830507- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-s390x
  + quay.io/devspaces/iib:3.18-v4.16-s390x
  + <a href=https://quay.io/devspaces/iib:3.18-v4.15-830505- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-s390x>quay.io/devspaces/iib:3.18-v4.15-830505- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-s390x
  + quay.io/devspaces/iib:3.18-v4.15-s390x
  + <a href=https://quay.io/devspaces/iib:3.18-v4.14-830506- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-s390x>quay.io/devspaces/iib:3.18-v4.14-830506- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-s390x
  + quay.io/devspaces/iib:3.18-v4.14-s390x
  + <a href=https://quay.io/devspaces/iib:3.18-v4.13-830503- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-s390x>quay.io/devspaces/iib:3.18-v4.13-830503- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-s390x
  + quay.io/devspaces/iib:3.18-v4.13-s390x
  + <a href=https://quay.io/devspaces/iib:3.18-v4.12-830504- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-s390x>quay.io/devspaces/iib:3.18-v4.12-830504- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-s390x
  + quay.io/devspaces/iib:3.18-v4.12-s390x
+ x86_64-rhel8 IIB(s) copied:
  + <a href=https://quay.io/devspaces/iib:3.18-v4.17-830508- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-x86_64>quay.io/devspaces/iib:3.18-v4.17-830508- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-x86_64
  + quay.io/devspaces/iib:3.18-v4.17-x86_64
  + <a href=https://quay.io/devspaces/iib:3.18-v4.16-830507- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-x86_64>quay.io/devspaces/iib:3.18-v4.16-830507- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-x86_64
  + quay.io/devspaces/iib:3.18-v4.16-x86_64
  + <a href=https://quay.io/devspaces/iib:3.18-v4.15-830505- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-x86_64>quay.io/devspaces/iib:3.18-v4.15-830505- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-x86_64
  + quay.io/devspaces/iib:3.18-v4.15-x86_64
  + <a href=https://quay.io/devspaces/iib:3.18-v4.14-830506- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-x86_64>quay.io/devspaces/iib:3.18-v4.14-830506- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-x86_64
  + quay.io/devspaces/iib:3.18-v4.14-x86_64
  + <a href=https://quay.io/devspaces/iib:3.18-v4.13-830503- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-x86_64>quay.io/devspaces/iib:3.18-v4.13-830503- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-x86_64
  + quay.io/devspaces/iib:3.18-v4.13-x86_64
  + <a href=https://quay.io/devspaces/iib:3.18-v4.12-830504- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-x86_64>quay.io/devspaces/iib:3.18-v4.12-830504- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-x86_64
  + quay.io/devspaces/iib:3.18-v4.12-x86_64
+ ppc64le-rhel8 IIB(s) copied:
  + <a href=https://quay.io/devspaces/iib:3.18-v4.17-830508- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-ppc64le>quay.io/devspaces/iib:3.18-v4.17-830508- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-ppc64le
  + quay.io/devspaces/iib:3.18-v4.17-ppc64le
  + <a href=https://quay.io/devspaces/iib:3.18-v4.16-830507- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-ppc64le>quay.io/devspaces/iib:3.18-v4.16-830507- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-ppc64le
  + quay.io/devspaces/iib:3.18-v4.16-ppc64le
  + <a href=https://quay.io/devspaces/iib:3.18-v4.15-830505- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-ppc64le>quay.io/devspaces/iib:3.18-v4.15-830505- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-ppc64le
  + quay.io/devspaces/iib:3.18-v4.15-ppc64le
  + <a href=https://quay.io/devspaces/iib:3.18-v4.14-830506- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-ppc64le>quay.io/devspaces/iib:3.18-v4.14-830506- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-ppc64le
  + quay.io/devspaces/iib:3.18-v4.14-ppc64le
  + <a href=https://quay.io/devspaces/iib:3.18-v4.13-830503- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-ppc64le>quay.io/devspaces/iib:3.18-v4.13-830503- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-ppc64le
  + quay.io/devspaces/iib:3.18-v4.13-ppc64le
  + <a href=https://quay.io/devspaces/iib:3.18-v4.12-831506- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-ppc64le>quay.io/devspaces/iib:3.18-v4.12-831506- /tmp/getIIBsForBundle.sh -t PROD_VER [OPTIONS]-ppc64le
  + quay.io/devspaces/iib:3.18-v4.12-ppc64le

akurinnoy added a commit that referenced this pull request Oct 4, 2024
* fix: factory URL flow with untrusted repository

Signed-off-by: Oleksii Kurinnyi <[email protected]>

* Update packages/dashboard-frontend/src/store/Workspaces/Preferences/helpers.ts

Co-authored-by: Oleksii Orel <[email protected]>

---------

Signed-off-by: Oleksii Kurinnyi <[email protected]>
Co-authored-by: Oleksii Orel <[email protected]>
dmytro-ndp pushed a commit that referenced this pull request Oct 4, 2024
* fix: factory URL flow with untrusted repository



* Update packages/dashboard-frontend/src/store/Workspaces/Preferences/helpers.ts



---------

Signed-off-by: Oleksii Kurinnyi <[email protected]>
Co-authored-by: Oleksii Orel <[email protected]>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Workspace creation is stopped after clicking Continue in 'Trust the repository authors' popup
4 participants