steve-chavez
8ec925c33e
clarify view security invoker feature
...
Move RULEs limitation to Insertions
2023-05-03 17:47:54 -03:00
steve-chavez
d1d159d1e0
join schema structure with db authz
2023-05-03 17:47:54 -03:00
steve-chavez
4f4ae27a2d
clarify custom validation
2023-05-03 08:45:05 -03:00
steve-chavez
764f0a0352
link authn to db authz
2023-05-03 00:38:23 -03:00
steve-chavez
473035575c
database as single source of truth philosophy
...
make it clear at the index
2023-05-03 00:06:17 -03:00
steve-chavez
638aa8369d
fix broken link
2023-05-03 00:06:17 -03:00
steve-chavez
55cc616a5e
Authentication as a reference
...
* Creates a Database Authorization topic
* Moves JWT from Auth0 into Ecosystem
* Moves SQL User Management to a how-to
2023-05-03 00:06:17 -03:00
steve-chavez
4197d2f739
bump version to 11.0.1
v11.0.1
2023-04-27 21:30:40 -05:00
steve-chavez
c10ba8e214
fix: skew of 30 seconds for JWT validation
2023-04-27 21:06:06 -05:00
steve-chavez
887948d259
fix: missing=default error msg on generated column
2023-04-27 19:27:09 -05:00
steve-chavez
c63786733a
fix: no schema privilege for schema cache
...
This was due to the usage of pg_get_serial_sequence
2023-04-27 19:27:09 -05:00
steve-chavez
4fe696dd96
nix: PGRST_DB_ANON_ROLE default for postgrest-run
...
Makes manually testing a feature easier
2023-04-27 19:27:09 -05:00
steve-chavez
67936b343f
test: prove that authenticator is not a superuser
2023-04-27 19:27:09 -05:00
steve-chavez
b0e395f495
nix: no SUPERUSER for connection role
...
Change :USER to :PGUSER in SQL scripts
2023-04-27 19:27:09 -05:00
Steve Chavez and Laurence Isla
4e49310d6e
Clarify pool connection features
2023-04-25 20:27:02 -05:00
424eac4b3e
Add documentation for v10.2.0
...
Co-authored-by: Steve Chavez <stevechavezast@gmail.com >
2023-04-25 20:27:02 -05:00
dependabot[bot] and GitHub
3b55a27ef3
build(deps): bump codecov/codecov-action from 3.1.2 to 3.1.3 ( #2765 )
2023-04-24 11:21:49 -05:00
Laurence Isla and GitHub
f55ced0306
Add a warning when working with computed relationships
2023-04-21 17:04:31 -05:00
Steve Chavez
516a4daacf
snippet for computed rel overload
2023-04-18 17:16:51 -05:00
Steve Chavez
3ff9b81c7d
Remove public from schema cache event trigger
2023-04-18 13:25:01 -05:00
dependabot[bot] and GitHub
43da81c30c
build(deps): bump codecov/codecov-action from 3.1.1 to 3.1.2 ( #2757 )
2023-04-18 12:25:50 -05:00
steve-chavez
dd2f5511d8
bump version to 11.0.0
v11.0.0
2023-04-16 14:22:38 -05:00
steve-chavez
49c349c846
chore: CHANGELOG to include release 10.2.0
2023-04-16 12:18:10 -05:00
steve-chavez
aaf77902f6
feat: isolation level for roles/functions
2023-04-15 18:05:04 -05:00
steve-chavez
4c555cbd5d
refactor: authRole to ByteString
2023-04-15 18:05:04 -05:00
steve-chavez
3e53796120
correct missing=default with GENERATED BY column
2023-04-14 22:12:34 -05:00
Laurence Isla and GitHub
0a2b7064c7
fix: PATCH requests not recognizing embedded filters
...
- Already fixed in #2618
- Adds tests and CHANGELOG
2023-04-14 16:42:55 -05:00
Laurence Isla and GitHub
f588bb6daf
Fix info on updates without filters
2023-04-13 18:38:07 -05:00
steve-chavez
ce378e6b3a
refactor: clarify Scalar type
...
It now contains the type of the scalar. This way we can discriminate the
void type in a more obvious way.
2023-04-13 18:17:43 -05:00
steve-chavez
feadf59bb3
refactor: rename Proc module to Routine
...
Assuming that functions=procedures is wrong since pg11, which introduced
real stored procedures.
2023-04-13 18:17:43 -05:00
Laurence Isla and GitHub
ad7d80a430
ci: clean files from arm server only on build failure/cancel for a version release
2023-04-13 16:29:26 -05:00
steve-chavez
e572d1d1a2
feat: configurable role settings
2023-04-10 14:27:08 -05:00
steve-chavez
c06237cc56
fix: db settings and pg version query not prepared
2023-04-10 14:27:08 -05:00
steve-chavez
c656a870f4
bump version to 10.2.0.20230407
2023-04-07 14:02:14 -05:00
steve-chavez
1b625cb77a
feat: any/all modifiers for operators
...
Only for the eq,like,ilike,gt,gte,lt,lte,match,imatch operators
2023-04-07 13:10:57 -05:00
Robert Vollmert
394bd22148
feat: use hasql-pool-0.9, add db-pool-max-lifetime ( fixes #2638 )
...
- db-pool-acquisition-timeout is no longer optional, defaults to 10s
- new option db-pool-max-lifetime limits the maximal lifetime of a
postgresql connection, defaults to 30m
2023-04-06 22:40:22 +02:00
Robert Vollmert
963416ae29
test: stabilize log probe in test_pool_acquisition_timeout
...
There's two lines of log output, and their order is not deterministic.
2023-04-06 22:40:22 +02:00
Laurence Isla and GitHub
d3b10e7b2a
feat: Allow filtering by IS DISTINCT FROM using the isdistinct operator
2023-04-06 13:02:03 -05:00
Steve Chavez and GitHub
acf62320ef
RPC returning table alias now works for pg 11/12 ( #2737 )
...
The new LATERAL query used for calling the function, introduced on
https://github.com/PostgREST/postgrest/pull/2677 , failed on functions
that returned a domain like `CREATE DOMAIN projects_domain AS projects`.
Work around that by changing the query conditionally, by
obtaining a bool that represents the composite alias on the SchemaCache
and only do this on pg 11 and 12.
2023-04-05 15:34:41 -05:00
steve-chavez
16f2849724
refactor: wrap proc logic in asJsonF
...
* add explicit logic for returning setof scalars
2023-04-04 19:55:10 -05:00
steve-chavez
d945e8c06a
refactor: remove Maybe from RetType for Proc type
2023-04-04 19:55:10 -05:00
steve-chavez
bc1fb67df0
drop: Prefer: params=multiple-objects on RPC
...
BREAKING CHANGE
A function with a JSON array or object parameter should be used instead
2023-04-04 19:55:10 -05:00
Wolfgang Walther
1442e02f5f
chore: Allow seed-cachix job to keep running when part of the matrix fail
2023-04-04 18:52:52 +02:00
Wolfgang Walther and Wolfgang Walther
68d2d834ba
nix: Update nixpkgs to 2023-03-25
2023-04-04 18:51:34 +02:00
Steve Chavez and GitHub
eb777cf823
Update BACKERS.md
2023-04-03 11:09:19 -05:00
Laurence Isla and GitHub
1aed55be68
Ignore the Range header when the method is different than GET
...
fix: bug when using Range header on PATCH/DELETE
- Fix the "message": "syntax error at or near \"RETURNING\"" error
- Fix doing a limited update/delete when an order query parameter was present
breaking: The Range header is now only considered on GET requests and is ignored for any other method
- Other methods should use the `limit/offset` query parameters for sub-ranges
- PUT requests no longer return an error when this header is present
2023-04-03 10:40:25 -05:00
steve-chavez
032f07f3f0
refactor: remove character varying casting
2023-03-29 13:17:15 -05:00
steve-chavez
7629eff51d
undefined-keys=apply-defaults to missing=default
2023-03-29 05:33:38 -05:00
steve-chavez
46fd856fc6
test: tidy inlining plan test
2023-03-29 05:33:38 -05:00
Laurence Isla and GitHub
caaa9a3944
ci: Update ARM build script to use GHC 9.2.4
2023-03-24 20:23:43 -05:00