23031 Commits

Author SHA1 Message Date
dependabot[bot]
405ee48e2e
Bump github.com/docker/cli
Bumps [github.com/docker/cli](https://github.com/docker/cli) from 27.4.1+incompatible to 29.2.0+incompatible.
- [Commits](https://github.com/docker/cli/compare/v27.4.1...v29.2.0)

---
updated-dependencies:
- dependency-name: github.com/docker/cli
  dependency-version: 29.2.0+incompatible
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
2026-03-24 12:13:37 +00:00
hc-github-team-secure-vault-core
407557ce87 Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-24 12:10:53 +00:00
Vault Automation
825a0edc48
Backport VAULT-43198 [1b/7] JWT sys backend: Engine refactor into ce/main (#13300)
* VAULT-43198 [1b/7] JWT sys backend: Engine refactor (#12936)

* feat(jwt): add oauth-resource-server activation flag and bugfix

* refactor(jwt): rewrite JWT engine and expiration handling

* fix(test): update activation flags tests for oauth-resource-server

* fix(test): skip outdated jwt test in logical_ent_test.go

* fixes for broken tests (4)

* add activation flag tests

* moving out request handling changes

* fix linter errors

* merge

* cleanup comments and names

* cosmetic var name cleanup

* Move API paths and logical system files from 1c to 1b

* cleanup

* cleanup (2)

* cleanup (3)

* codeql fixes

* fix CreateTestConfigWithJWTAuthProfile using tests

* more codeql fixes

* Apply suggestions from code review

Co-authored-by: Violet Hynes <violet.hynes@hashicorp.com>

* comments

* comments (2)

* comments (3)

* comments (4)

* merges from main

* comments (5)

* failing tests

---------

Co-authored-by: Violet Hynes <violet.hynes@hashicorp.com>

* missing ent paths

---------

Co-authored-by: Arnab Chatterjee <arnab.chatterjee@hashicorp.com>
Co-authored-by: Violet Hynes <violet.hynes@hashicorp.com>
2026-03-24 12:39:24 +01:00
hc-github-team-secure-vault-core
d747489fef Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-24 11:15:30 +00:00
Vault Automation
9569be61c8
VAULT-43378: Fix authorization passthrough header condition (#13251) (#13337)
* fix authorization condition

* changelog

* move test

Co-authored-by: miagilepner <mia.epner@hashicorp.com>
2026-03-24 10:42:40 +00:00
hc-github-team-secure-vault-core
54ed7790d5 Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-24 09:15:44 +00:00
Vault Automation
719dd6f506
Update vault-plugin-auth-cf to v0.23.0 (#13333) (#13334)
* Update vault-plugin-auth-cf to v0.23.0

* Add changelog

---------

Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
2026-03-24 13:47:35 +05:30
hc-github-team-secure-vault-core
fe0dcfc07b Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-24 06:18:56 +00:00
Vault Automation
d3bd7e6e30
VAULT-43456 - Updates region field for aws on secrets engines config page (#13322) (#13332)
* VAULT-43456 - updates region field for aws on secrets engines config page

* fixed co-pilot review comments

* fixed import

Co-authored-by: mohit-hashicorp <mohit.ojha@hashicorp.com>
2026-03-24 06:09:23 +00:00
hc-github-team-secure-vault-core
a69a356f36 Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-23 21:09:19 +00:00
Vault Automation
5176344499
UI: Removing separate hds icon class causing alignment issue + fix toolbar link alignment (#13320) (#13323)
* removing separate hds icon class

* removing duplicate class, adding separate class to handle toolbar link misalignment

Co-authored-by: Dan Rivera <dan.rivera@hashicorp.com>
2026-03-23 20:45:22 +00:00
Vault Automation
98a1522357
Backport Check in checkout part 2 into ce/main (#13316)
* Check in checkout part 2 (#12001)

* Check in checkout part 2

* Linter error fix

* Linter error fix

* error fix

* Error fix

* Error fix

* PR review changes

* Linter bug fix

* Linter bug fix

* Bug fix

* Bug fix

* Bug fix

* PR review changes

* Enabling audit trail

* Enabling audit trail

* Enabling audit trail

* Enabling audit trail

* Enabling audit trail

* Enabling audit trail

* Code review changes

* Code review changes

* Code review changes

* Code review changes

* Code review changes

* ci: retrigger

* CI bug fix

* CI bug fix

* CI bug fix

* CI bug fix

* CI bug fix

* CI bug fix

* CI bug fix

* CI bug fix

* CI bug fix

* CI bug fix

* CI bug fix

* CI bug fix

* CI bug fix

* CI bug fix

* Code merge changes

* CI fix

* CI fix

* CI fix

* conflict issue

* Default for audit log

* Reverting ENOS_VAR_verify_ldap_secrets_engine to false

* Fix Merge conflict

* Upload-Issuer Compliance with Common Criteria. (#12101)

* Upload-Issuer Compliance with Common Criteria.

* Add Changelog.

* Update changelog/_12101.txt

Co-authored-by: Steven Clark <steven.clark@hashicorp.com>

* Update builtin/logical/pki/storage_validate_imports_ent.go

Co-authored-by: Steven Clark <steven.clark@hashicorp.com>

* PR-Review, add trap for deletion errors.

* Add test-doc referencing NIAP requirement.

---------

Co-authored-by: Steven Clark <steven.clark@hashicorp.com>

* hooks(pre-push): handle ssh protocol prefix in git URLs (#12492)

* hooks(pre-push): handle ssh protocol prefix in git URLs

Handle optional URL prefix and suffixes when checking for enterprise.

Signed-off-by: Ryan Cragun <me@ryan.ec>

* Duplicate fix

* PR feedback changes

* Code Review changes

* Code Review changes

* PR review changes

* ttl Fix

* Removing all static role code frpm PR

* Removing spaces

---------

Signed-off-by: Ryan Cragun <me@ryan.ec>
Co-authored-by: Kajal Kusum <kajal.kusum@ibm.com>
Co-authored-by: Kit Haines <khaines@mit.edu>
Co-authored-by: Steven Clark <steven.clark@hashicorp.com>
Co-authored-by: Ryan Cragun <me@ryan.ec>

* temporarily disable flaky enos tests (#13045)

* temporarily disable ldap enos tests

* remove smoke_sdk from samples

---------

Signed-off-by: Ryan Cragun <me@ryan.ec>
Co-authored-by: KajalKusum <kajal.kusum@hashicorp.com>
Co-authored-by: Kajal Kusum <kajal.kusum@ibm.com>
Co-authored-by: Kit Haines <khaines@mit.edu>
Co-authored-by: Steven Clark <steven.clark@hashicorp.com>
Co-authored-by: Ryan Cragun <me@ryan.ec>
Co-authored-by: Luis (LT) Carbonell <lt.carbonell@hashicorp.com>
2026-03-23 20:20:59 +00:00
hc-github-team-secure-vault-core
80cc999afd Merge remote-tracking branch 'remotes/from/ce/main' sdk/v0.25.0 2026-03-23 19:18:26 +00:00
Vault Automation
b6d3bb198d
Add LDAP root credential rollback test (#13241) (#13309)
* Add LDAP secrets engine blackbox tests

* Format

* format

* cleanup environment

* Install ldap-utils in CI for LDAP domain provisioning

* wrap in eventually

* debugging

* fix ip issues

* Add LDAP root credential rollback test

* refactor rollback tests to fix race conditions and improve reliability

* removed AI comment

---------

Co-authored-by: shettykshitij <kshitij.shetty@hashicorp.com>
Co-authored-by: LT Carbonell <ltcarbonell@pm.me>
Co-authored-by: Luis (LT) Carbonell <lt.carbonell@hashicorp.com>
2026-03-23 18:33:20 +00:00
hc-github-team-secure-vault-core
d43030648e Merge remote-tracking branch 'remotes/from/ce/main' api/v1.23.0 2026-03-23 15:20:01 +00:00
Vault Automation
a3bc0a3078
(enos): Add LDAP secrets engine blackbox tests to Plugin Scenario (#13072) (#13293)
* Add LDAP secrets engine blackbox tests

* Format

* format

* cleanup environment

* Install ldap-utils in CI for LDAP domain provisioning

* wrap in eventually

* debugging

* fix ip issues

Co-authored-by: Luis (LT) Carbonell <lt.carbonell@hashicorp.com>
2026-03-23 14:22:46 +00:00
hc-github-team-secure-vault-core
f8df53913c Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-23 14:22:31 +00:00
Vault Automation
2b0ec25846
VAULT-43444 Addressed races in tests (#13278) (#13285)
* VAULT-43444 Addressed races in tests

* more cleanup

* make note better

Co-authored-by: Violet Hynes <violet.hynes@hashicorp.com>
2026-03-23 09:32:03 -04:00
hc-github-team-secure-vault-core
a097d1fa36 Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-20 23:05:48 +00:00
Vault Automation
7e587fd026
Update vault-plugin-auth-kubernetes to v0.24.1 (#13259) (#13287)
Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
2026-03-20 22:24:21 +00:00
Vault Automation
1331818193
UI: Fix namespace search showing empty state when namespaces exist (#13257) (#13286)
* updating verbiage and testing with new listtable replacement

* remove and fix empty state

* cleanup

* rename

Co-authored-by: Dan Rivera <dan.rivera@hashicorp.com>
2026-03-20 22:06:56 +00:00
hc-github-team-secure-vault-core
7b12feb2cb Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-20 22:04:06 +00:00
Vault Automation
7d4395c412
Update vault-plugin-auth-jwt to v0.26.1 (#13242) (#13283)
Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
Co-authored-by: Cole Heinbaugh <cole.heinbaugh@ibm.com>
2026-03-20 21:40:19 +00:00
Vault Automation
6d4b615671
adds flag to fix chrome in ci (#13279) (#13282)
Co-authored-by: Jordan Reimer <zofskeez@gmail.com>
2026-03-20 21:06:39 +00:00
hc-github-team-secure-vault-core
c8927ec8a8 Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-20 21:06:37 +00:00
Vault Automation
018cf3e891
bumps sass to latest version (#13267) (#13277)
Co-authored-by: Jordan Reimer <zofskeez@gmail.com>
2026-03-20 20:58:29 +00:00
Vault Automation
cb1fe89716
Backport Update vault-plugin-secrets-gcp to v0.24.0 into ce/main (#13276)
Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
Co-authored-by: Vinay Gopalan <vinay@hashicorp.com>
2026-03-20 20:47:47 +00:00
Vault Automation
f3084014d4
bumps webpack to latest (#13255) (#13261)
Co-authored-by: Jordan Reimer <zofskeez@gmail.com>
2026-03-20 20:21:19 +00:00
hc-github-team-secure-vault-core
fbf7f3bb12 Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-20 20:05:24 +00:00
Vault Automation
16f98c11ce
[UI] Dismiss Wizards in Playwright Tests (#12699) (#12728)
* adds constants util for wizards and updates service to use WizardId type

* updates wizards to use WIZARD_ID_MAP values

* updates wizard tests to use the service for dismissal

* updates playwright setup to add all wizard ids as dismissed in localStorage

* removes wizard dismissal step from existing playwright tests

* fixes issues accessing owner in beforeEach hooks of namespaces acceptance tests

Co-authored-by: Jordan Reimer <zofskeez@gmail.com>
2026-03-20 15:51:44 -04:00
Vault Automation
a71afc9c53
Update vault-plugin-secrets-kv to v0.26.2 (#13264) (#13275)
Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
2026-03-20 19:38:34 +00:00
Vault Automation
8e3e783a44
Backport Update vault-plugin-secrets-openldap to v0.18.0 into ce/main (#13273)
Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
Co-authored-by: Vinay Gopalan <vinay@hashicorp.com>
2026-03-20 12:27:03 -07:00
Robert
a40b8dbe6c
update-azure-secrets-v0.25.0 (#13268) 2026-03-20 19:21:56 +00:00
hc-github-team-secure-vault-core
125754fd15 Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-20 19:14:38 +00:00
Vault Automation
eb09f6ed3d
Update vault-plugin-secrets-ad to v0.22.1 (#13237) (#13256)
---------

Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
Co-authored-by: Maithy Ton <github@maithyton.com>
2026-03-20 19:08:12 +00:00
Vault Automation
056ec7e94a
Update vault-plugin-auth-kerberos to v0.17.1 (#13245) (#13254)
Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
2026-03-20 18:30:34 +00:00
hc-github-team-secure-vault-core
1e5c2ce161 Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-20 16:13:24 +00:00
Vault Automation
c8e9c7434a
Backport Update vault-plugin-secrets-gcpkms to v0.23.0 into ce/main (#13244)
* Update vault-plugin-secrets-gcpkms to v0.23.0 (#13236)

---------

Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
Co-authored-by: Maithy Ton <github@maithyton.com>

* remove vault-plugin-secrets-keymgmt and vault-plugin-secrets-kmip imports

---------

Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
Co-authored-by: Maithy Ton <github@maithyton.com>
2026-03-20 08:30:01 -07:00
hc-github-team-secure-vault-core
4b355fbcd4 Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-20 15:13:42 +00:00
Vault Automation
73111ad809
Backport Update vault-plugin-auth-alicloud to v0.23.1 into ce/main (#13214)
* Update vault-plugin-auth-alicloud to v0.23.1 (#13202)

---------

Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>

* remove github.com/hashicorp/vault-licensing import

---------

Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
Co-authored-by: Maithy Ton <github@maithyton.com>
2026-03-20 08:11:26 -07:00
Vault Automation
218e0ddfd4
Backport Update vault-plugin-database-snowflake to v0.16.0 into ce/main (#13243)
* Update vault-plugin-database-snowflake to v0.16.0 (#13240)

* Update vault-plugin-database-snowflake to v0.16.0

* Add changelog

---------

Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>

* changes after go mod tidy to fix failing GitHub checks

---------

Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
Co-authored-by: Arjun K S <arjun.ks@hashicorp.com>
2026-03-20 08:04:59 -07:00
Vault Automation
2628e4a9ab
Backport Update vault-plugin-auth-oci to v0.21.1 into ce/main (#13239)
Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
Co-authored-by: Vinay Gopalan <vinay@hashicorp.com>
2026-03-20 11:00:12 -04:00
hc-github-team-secure-vault-core
435cd37214 Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-20 06:14:00 +00:00
Vault Automation
b9ead07965
Update vault-plugin-database-elasticsearch to v0.20.1 (#13225) (#13233)
Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
Co-authored-by: sachin-chand01 <sachin.chand@hashicorp.com>
2026-03-20 11:29:36 +05:30
hc-github-team-secure-vault-core
d5130772a8 Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-20 05:22:32 +00:00
Vault Automation
5561edc03f
Backport Update vault-plugin-auth-gcp to v0.23.1 into ce/main (#13238)
* Update vault-plugin-auth-gcp to v0.23.1 (#13217)


---------

Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
Co-authored-by: Maithy Ton <github@maithyton.com>

* go: fix missing go.sum entries

---------

Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
Co-authored-by: Maithy Ton <github@maithyton.com>
2026-03-19 21:59:48 -07:00
hc-github-team-secure-vault-core
d5d3d4f1a2 Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-20 04:32:36 +00:00
Vault Automation
997b7a4596
Backport Update vault-plugin-auth-azure to v0.24.0 into ce/main (#13232)
* Update vault-plugin-auth-azure to v0.24.0 (#13227)

* Update vault-plugin-auth-azure to v0.24.0

* Add changelog

---------

Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>

* go mod tidy

---------

Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
Co-authored-by: robmonte <17119716+robmonte@users.noreply.github.com>
2026-03-19 21:25:17 -07:00
hc-github-team-secure-vault-core
b40858da4e Merge remote-tracking branch 'remotes/from/ce/main' 2026-03-20 03:46:01 +00:00
Vault Automation
eb1c167308
Update vault-plugin-database-redis-elasticache to v0.9.1 (#13230) (#13235)
Co-authored-by: hc-github-team-secure-vault-ecosystem <hc-github-team-secure-vault-ecosystem@users.noreply.github.com>
2026-03-20 03:37:39 +00:00