Skip to content

feat: fill user info for externalIdp auth - #4247

Merged
kkdras merged 5 commits into
mainfrom
kkdras.258
Aug 18, 2026
Merged

kkdras merged 5 commits into
mainfrom
kkdras.258

Conversation

@kkdras

@kkdras kkdras commented Aug 18, 2026 •

Copy link
Copy Markdown
Contributor

Resolves https://github.com/ydb-platform/ydb-em/issues/258

CI Results

Test Status: ⚠️ FLAKY

📊 Full Report

Total Passed Failed Flaky Skipped
906 903 0 3 0

😟 No changes in tests. 😕

Bundle Size: 🔺

Current: 65.46 MB | Main: 65.45 MB
Diff: +0.01 MB (0.02%)

⚠️ Bundle size increased. Please review.

ℹ️ CI Information
  • Test recordings for failed tests are available in the full report.
  • Bundle size is measured for the entire 'dist' directory.
  • 📊 indicates links to detailed reports.
  • 🔺 indicates increase, 🔽 decrease, and ✅ no change in bundle size.

@kkdras

kkdras commented Aug 18, 2026

Copy link
Copy Markdown
Contributor Author

@greptile review
@codex review

@chatgpt-codex-connector

Copy link
Copy Markdown

Codex Review: Didn't find any major issues. 🎉

Reviewed commit: dff02bb3d8

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

Comment thread src/utils/user.ts Outdated
@kkdras
kkdras marked this pull request as ready for review August 18, 2026 13:02

@chatgpt-codex-connector chatgpt-codex-connector Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Codex Review

Here are some automated review suggestions for this pull request.

Reviewed commit: 7be47f1e48

ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review".

If Codex has suggestions, it will comment; otherwise it will react with 👍.

Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".

)}
</div>
{login ? (
{user ? (

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

P1 Badge Route SSO logout through the meta endpoint

When an ExternalIdp user opens any non-home route, useMetaAuth() is false because it is based on the current page, so the logout button newly enabled by this condition invokes window.api.auth.logout() (/logout) rather than metaLogout() (/meta/logout). Since the SSO session was established through /meta/oidc/authorize, the meta session remains active and the user cannot reliably sign out; select the logout backend from user.isSso rather than the current route.

AGENTS.md reference: AGENTS.md:L89-L89

Useful? React with 👍 / 👎.

Copy link
Copy Markdown
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

On non-home multi-cluster routes, AuthAPI.getPath('/logout') does not send a bare request to an unrelated backend. With clusterName, it resolves to <metaBackend>/proxy/cluster/<clusterName>/logout. ydb-em routes both /proxy/.../logout and /meta/.../logout through THandlerActorApiProxyRequest_Logout; that handler revokes the OIDC tokens, deletes the OIDC session, and clears the same Path=/ session cookie. Therefore, the session created through /meta/oidc/authorize is also cleared by the proxy logout path. Selecting the endpoint from user.isSso would duplicate the existing routing logic and couple an authentication type to a transport choice, so no code change is needed here.

@kkdras
kkdras added this pull request to the merge queue Aug 18, 2026
Merged via the queue into main with commit bb70553 Aug 18, 2026
17 checks passed
@kkdras
kkdras deleted the kkdras.258 branch August 18, 2026 14:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants