fix tsh db connect with hardware backed key#20806
Merged
GavinFrazar merged 4 commits intomasterfrom Jan 30, 2023
Merged
Conversation
Merged
Contributor
Author
|
I added test cases for login or whenever a new client is created. This way if, for example, the user has an old profile (such that I also verified that the following scenarios are handled:
|
codingllama
approved these changes
Jan 30, 2023
Joerger
reviewed
Jan 30, 2023
codingllama
approved these changes
Jan 30, 2023
Joerger
approved these changes
Jan 30, 2023
da2a86c to
bcb81fc
Compare
bcb81fc to
893ff07
Compare
893ff07 to
439688b
Compare
|
@GavinFrazar See the table below for backport results.
|
GavinFrazar
added a commit
that referenced
this pull request
Jan 31, 2023
* Check key policy in tsh db connect flow * Load key policy from identity file
GavinFrazar
added a commit
that referenced
this pull request
Feb 4, 2023
* Check key policy in tsh db connect flow * Load key policy from identity file
GavinFrazar
added a commit
that referenced
this pull request
Feb 4, 2023
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Fixes #20799
Leaving this in draft until I've added test cases, but from manually trying out the fix it seems to have done the trick.
Test by building with
PIV=yesand enabling PIV withrequire_session_mfa: hardware_key # or hardware_key_touchand then connecting to a database. The issue describes configurations with the problem.