@ -226,15 +226,15 @@ func TestExtendedJWT_Authenticate(t *testing.T) {
accessToken : & validAccessTokenClaims ,
orgID : 1 ,
want : & authn . Identity {
ID : "this-uid" ,
UID : "this-uid" ,
Name : "this-uid" ,
Type : claims . TypeAccessPolicy ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaims ,
AllowedKubernetes Namespace: "default" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ID : "this-uid" ,
UID : "this-uid" ,
Name : "this-uid" ,
Type : claims . TypeAccessPolicy ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaims ,
Namespace : "default" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ClientParams : authn . ClientParams {
SyncPermissions : true ,
FetchPermissionsParams : authn . FetchPermissionsParams { Roles : [ ] string { "fixed:folders:reader" } , AllowedActions : [ ] string { "folders:read" } } } ,
@ -245,15 +245,15 @@ func TestExtendedJWT_Authenticate(t *testing.T) {
accessToken : & validAccessTokenClaimsWildcard ,
orgID : 1 ,
want : & authn . Identity {
ID : "this-uid" ,
UID : "this-uid" ,
Name : "this-uid" ,
Type : claims . TypeAccessPolicy ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaimsWildcard ,
AllowedKubernetes Namespace: "*" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ID : "this-uid" ,
UID : "this-uid" ,
Name : "this-uid" ,
Type : claims . TypeAccessPolicy ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaimsWildcard ,
Namespace : "*" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ClientParams : authn . ClientParams {
SyncPermissions : true ,
} ,
@ -265,14 +265,14 @@ func TestExtendedJWT_Authenticate(t *testing.T) {
idToken : & validIDTokenClaims ,
orgID : 1 ,
want : & authn . Identity {
ID : "2" ,
Type : claims . TypeUser ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaims ,
IDTokenClaims : & validIDTokenClaims ,
AllowedKubernetes Namespace: "default" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ID : "2" ,
Type : claims . TypeUser ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaims ,
IDTokenClaims : & validIDTokenClaims ,
Namespace : "default" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ClientParams : authn . ClientParams {
FetchSyncedUser : true ,
SyncPermissions : true ,
@ -288,14 +288,14 @@ func TestExtendedJWT_Authenticate(t *testing.T) {
idToken : & validIDTokenClaims ,
orgID : 1 ,
want : & authn . Identity {
ID : "2" ,
Type : claims . TypeUser ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaimsWildcard ,
IDTokenClaims : & validIDTokenClaims ,
AllowedKubernetes Namespace: "*" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ID : "2" ,
Type : claims . TypeUser ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaimsWildcard ,
IDTokenClaims : & validIDTokenClaims ,
Namespace : "*" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ClientParams : authn . ClientParams {
FetchSyncedUser : true ,
SyncPermissions : true ,
@ -316,14 +316,14 @@ func TestExtendedJWT_Authenticate(t *testing.T) {
} ,
} ,
want : & authn . Identity {
ID : "2" ,
Type : claims . TypeUser ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaimsWildcard ,
IDTokenClaims : & validIDTokenClaimsWithStackSet ,
AllowedKubernetes Namespace: "stacks-1234" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ID : "2" ,
Type : claims . TypeUser ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaimsWildcard ,
IDTokenClaims : & validIDTokenClaimsWithStackSet ,
Namespace : "stacks-1234" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ClientParams : authn . ClientParams {
FetchSyncedUser : true ,
SyncPermissions : true ,
@ -343,15 +343,15 @@ func TestExtendedJWT_Authenticate(t *testing.T) {
} ,
} ,
want : & authn . Identity {
ID : "this-uid" ,
UID : "this-uid" ,
Name : "this-uid" ,
Type : claims . TypeAccessPolicy ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaimsWithStackSet ,
AllowedKubernetes Namespace: "stacks-1234" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ID : "this-uid" ,
UID : "this-uid" ,
Name : "this-uid" ,
Type : claims . TypeAccessPolicy ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaimsWithStackSet ,
Namespace : "stacks-1234" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ClientParams : authn . ClientParams {
SyncPermissions : true ,
} ,
@ -370,15 +370,15 @@ func TestExtendedJWT_Authenticate(t *testing.T) {
} ,
} ,
want : & authn . Identity {
ID : "this-uid" ,
UID : "this-uid" ,
Name : "this-uid" ,
Type : claims . TypeAccessPolicy ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaimsWithDeprecatedStackClaimSet ,
AllowedKubernetes Namespace: "stack-1234" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ID : "this-uid" ,
UID : "this-uid" ,
Name : "this-uid" ,
Type : claims . TypeAccessPolicy ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaimsWithDeprecatedStackClaimSet ,
Namespace : "stack-1234" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ClientParams : authn . ClientParams {
SyncPermissions : true ,
} ,
@ -398,14 +398,14 @@ func TestExtendedJWT_Authenticate(t *testing.T) {
} ,
} ,
want : & authn . Identity {
ID : "2" ,
Type : claims . TypeUser ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaimsWithDeprecatedStackClaimSet ,
IDTokenClaims : & validIDTokenClaimsWithDeprecatedStackClaimSet ,
AllowedKubernetes Namespace: "stack-1234" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ID : "2" ,
Type : claims . TypeUser ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaimsWithDeprecatedStackClaimSet ,
IDTokenClaims : & validIDTokenClaimsWithDeprecatedStackClaimSet ,
Namespace : "stack-1234" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ClientParams : authn . ClientParams {
SyncPermissions : true ,
FetchSyncedUser : true ,
@ -426,14 +426,14 @@ func TestExtendedJWT_Authenticate(t *testing.T) {
} ,
} ,
want : & authn . Identity {
ID : "2" ,
Type : claims . TypeUser ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaimsWildcard ,
IDTokenClaims : & validIDTokenClaimsWithStackSet ,
AllowedKubernetes Namespace: "stacks-1234" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ID : "2" ,
Type : claims . TypeUser ,
OrgID : 1 ,
AccessTokenClaims : & validAccessTokenClaimsWildcard ,
IDTokenClaims : & validIDTokenClaimsWithStackSet ,
Namespace : "stacks-1234" ,
AuthenticatedBy : "extendedjwt" ,
AuthID : "access-policy:this-uid" ,
ClientParams : authn . ClientParams {
FetchSyncedUser : true ,
SyncPermissions : true ,