v0.9.0 Tunneler
When I enroll a tunneler, its Identity configuration in DB looks this:
{
‘id’: ‘38d540bd-3bd6-414a-a485-46c7ad24e2f8’,
‘createdAt’: ‘2020-03-11T01:54:17.087617195Z’,
‘updatedAt’: ‘2020-03-11T01:54:17.087617195Z’,
‘_links’: {
‘edge-router-policies’: {
‘href’: ‘./identities/38d540bd-3bd6-414a-a485-46c7ad24e2f8/edge-routers’
},
‘self’: {
‘href’: ‘./identities/38d540bd-3bd6-414a-a485-46c7ad24e2f8’
},
‘service-policies’: {
‘href’: ‘./identities/38d540bd-3bd6-414a-a485-46c7ad24e2f8/identities’
}
},
‘tags’: {},
‘name’: ‘dariusz’,
‘type’: {
‘entity’: ‘identity-types’,
‘id’: ‘5b53fb49-51b1-4a87-a4e4-edda9716a970’,
‘name’: ‘Device’,
‘_links’: {
‘self’: {
‘href’: ‘./identity-types/5b53fb49-51b1-4a87-a4e4-edda9716a970’
}
}
},
‘isDefaultAdmin’: False,
‘isAdmin’: False,
‘authenticators’: {
‘cert’: {
‘cert’: ‘-----BEGIN CERTIFICATE-----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\nE/Kz+z+GC3RV57tzZAobPHM=\n-----END CERTIFICATE-----\n’,
‘fingerprint’: ‘1B:74:E2:E5:18:58:63:51:DE:B2:06:5C:9F:2F:83:97:17:E3:4F:0A’
}
},
‘enrollment’: {},
‘roleAttributes’: [‘dariusz’]
}
After I update/change its roleAtributes from dariusz to test, its cert/finger print gets deleted with the update.
{
‘id’: ‘38d540bd-3bd6-414a-a485-46c7ad24e2f8’,
‘createdAt’: ‘2020-03-11T01:54:17.087617195Z’,
‘updatedAt’: ‘2020-03-11T13:36:13.417086068Z’,
‘_links’: {
‘edge-router-policies’: {
‘href’: ‘./identities/38d540bd-3bd6-414a-a485-46c7ad24e2f8/edge-routers’
},
‘self’: {
‘href’: ‘./identities/38d540bd-3bd6-414a-a485-46c7ad24e2f8’
},
‘service-policies’: {
‘href’: ‘./identities/38d540bd-3bd6-414a-a485-46c7ad24e2f8/identities’
}
},
‘tags’: {},
‘name’: ‘dariusz’,
‘type’: {
‘entity’: ‘identity-types’,
‘id’: ‘5b53fb49-51b1-4a87-a4e4-edda9716a970’,
‘name’: ‘Device’,
‘_links’: {
‘self’: {
‘href’: ‘./identity-types/5b53fb49-51b1-4a87-a4e4-edda9716a970’
}
}
},
‘isDefaultAdmin’: False,
‘isAdmin’: False,
‘authenticators’: {},
‘enrollment’: {},
‘roleAttributes’: [‘test’]
}
After this, my session through the ingress router gets reset due to missing fingerprint.