issues
search
opensearch-project
/
security
🔐 Secure your cluster with TLS, numerous authentication backends, data masking, audit logging as well as role-based access control on indices, documents, and fields
https://opensearch.org/docs/latest/security-plugin/index/
Apache License 2.0
180
stars
264
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
[Enhancement-3139] Make FLS, DLS and Field Masking Unit Tests more extensive by testing more document retrieval APIs
#4417
prabhask5
closed
1 week ago
5
Extracted the user attr handling methods from ConfigModelV7 into its own class
#4416
nibix
closed
3 weeks ago
1
[AUTO] Increment version to 1.3.18-SNAPSHOT
#4415
opensearch-trigger-bot[bot]
closed
2 weeks ago
3
[BUG] DNFOF does not work for some APIs
#4413
derek-ho
closed
3 weeks ago
1
[Backport 2.x] Remove static metaFields list and get version-specific values from core
#4412
opensearch-trigger-bot[bot]
closed
3 weeks ago
0
[Backport 2.x] Adds validation for the action groups type key
#4411
opensearch-trigger-bot[bot]
closed
3 weeks ago
1
[BUG] During proxy-based authentication, remoteIpHeader seems not being verified against internalProxies
#4414
simonelbaz
closed
3 weeks ago
4
[FEATURE] is it possible to ignore basic auth `id/password` default validation
#4410
10000-ki
opened
3 weeks ago
4
[Backport 2.x] Add support for ipv6 ip address in user injection
#4409
opensearch-trigger-bot[bot]
closed
3 weeks ago
1
[BUG] Allowlist PATCH API overwriting rest of the configuration
#4408
AntonEliatra
closed
3 weeks ago
2
[FEATURE] Set security plugin 3.0.0 baseline JDK version to JDK-21
#4407
reta
closed
2 weeks ago
1
[BUG] JWT Authentication Backend Fails to parse public keys in security-config.yml
#4406
trevorlyman
opened
3 weeks ago
3
[BUG]
#4405
0664375828
closed
3 weeks ago
2
Add initial tests for the new API spec
#4404
DarshitChanpura
opened
3 weeks ago
1
Add default request labeling rules in security plugin
#4403
ansjcy
opened
4 weeks ago
13
[FEATURE] Default labeling rule for security based tenancy labeling
#4402
ansjcy
opened
4 weeks ago
1
[BUG]"Transport client authentication no longer supported." error while implementing third party CA cert for transport layer
#4401
VinDataR
closed
3 weeks ago
2
Adds validation for the action groups type key
#4400
willyborankin
closed
3 weeks ago
2
Add support for ipv6 ip address in user injection
#4399
derek-ho
closed
3 weeks ago
2
[Backport 2.x] Bump com.google.errorprone:error_prone_annotations from 2.27.1 to 2.28.0 (#4389)
#4398
willyborankin
closed
4 weeks ago
1
[BUG] Unable to configure KafkaAppender for audit logging with Log4J due to possible library loading race condition
#4397
fazir83
opened
4 weeks ago
11
[Backport 2.x] Bump com.nimbusds:nimbus-jose-jwt from 9.39.1 to 9.39.3
#4396
opensearch-trigger-bot[bot]
closed
4 weeks ago
1
[Backport 2.x] Bump commons-validator:commons-validator from 1.8.0 to 1.9.0
#4395
opensearch-trigger-bot[bot]
closed
4 weeks ago
1
[Backport 2.x] Bump com.netflix.nebula.ospackage from 11.9.0 to 11.9.1
#4394
opensearch-trigger-bot[bot]
closed
4 weeks ago
1
[BUG] When changing user backend role, get an error that there are no matching fields.
#4393
10000-ki
opened
1 month ago
3
Bump com.netflix.nebula.ospackage from 11.9.0 to 11.9.1
#4392
dependabot[bot]
closed
4 weeks ago
0
Bump commons-validator:commons-validator from 1.8.0 to 1.9.0
#4391
dependabot[bot]
closed
4 weeks ago
0
Bump com.nimbusds:nimbus-jose-jwt from 9.39.1 to 9.39.3
#4390
dependabot[bot]
closed
4 weeks ago
0
Bump com.google.errorprone:error_prone_annotations from 2.27.1 to 2.28.0
#4389
dependabot[bot]
closed
4 weeks ago
1
[Backport 2.x] Refactor ActionGroup REST API test and partial fix #4166 (#4371)
#4388
willyborankin
closed
1 month ago
1
[RFC] Should `static` key be part of keys allowed to an admin when interaction with action groups via API.
#4387
DarshitChanpura
opened
1 month ago
6
[BUG] Possible race condition during update of static entities
#4386
willyborankin
opened
1 month ago
1
[Backport 2.x] Adds 1.3.17.0 release notes
#4385
opensearch-trigger-bot[bot]
closed
1 month ago
1
[Backport 1.3] Adds 1.3.17.0 release notes
#4384
opensearch-trigger-bot[bot]
closed
1 month ago
0
[Backport 1.x] Adds 1.3.17.0 release notes
#4383
opensearch-trigger-bot[bot]
closed
1 month ago
0
Adds 1.3.17.0 release notes
#4382
DarshitChanpura
closed
1 month ago
0
Replace BouncyCastle's OpenBSDBCrypt use with password4j for password hashing and verification
#4381
dancristiancecoi
closed
3 weeks ago
15
Optimized Privilege Evaluation [DRAFT]
#4380
nibix
opened
1 month ago
6
Client certificate setting bypasses password requirements
#4378
asifbashar
opened
1 month ago
1
[Backport 2.x] Bump gradle to 8.7 version
#4377
opensearch-trigger-bot[bot]
closed
1 month ago
1
Bump gradle to 8.7 version
#4375
willyborankin
closed
1 month ago
1
[BUG] ActionGroup has `type` property which can be set as null using REST API
#4374
willyborankin
closed
3 weeks ago
1
[BUG] Audit log support kafka
#4373
arvinsg
opened
1 month ago
7
[BUG] Typo in securityadmin.sh hint
#4376
houska2
opened
1 month ago
2
[BUG] cannot use £ in a password
#4379
phil-r
opened
1 month ago
7
[Backport 2.x] Made sensitive header log statement more clear
#4372
opensearch-trigger-bot[bot]
closed
1 month ago
1
Refactor ActionGroup REST API test and partial fix #4166
#4371
willyborankin
closed
1 month ago
4
Remove static metaFields list and get version-specific values from core
#4370
cwperks
closed
3 weeks ago
7
[Backport 2.x] Bump commons-cli to 1.8.0
#4369
willyborankin
closed
1 month ago
2
[Backport 2.x] Bump spring_version from 5.3.35 to 5.3.36
#4368
opensearch-trigger-bot[bot]
closed
1 month ago
1
Previous
Next