Skip to content

Releases: dexidp/dex

v2.21.0

27 Nov 15:40
c410357
Compare
Choose a tag to compare

The official docker release for this release can be pulled from

quay.io/dexidp/dex:v2.21.0

Notes:

The "only" main feature of this release is around OIDC and Google groups which were pretty long-awaited. 🎉

Features:

Bugfixes:

v2.20.0

30 Oct 14:20
6d41541
Compare
Choose a tag to compare

The official docker release for this release can be pulled from

quay.io/dexidp/dex:v2.20.0

Notes:

The preferred_username OIDC claim was added to the ID Token in case of GitLab, GitHub, LDAP. This claim could be extended to other providers as well later on.

Features:

Bug fixes, misc changes:

v2.19.0

03 Sep 07:45
v2.19.0
179cce3
Compare
Choose a tag to compare

The official docker release for this release can be pulled from

quay.io/dexidp/dex:v2.19.0

Notes:

  • Following Mozilla's recommendations for secure TLS settings in the
    "Intermediate" compatibility mode, some insecure cipher suitess have been
    removed, overriding Golang's standard set of ciphers. In the unlikely event
    that this makes one of your clients NOT work with Dex anymore (and there's
    a decent reason for not being able to update that client), please file an
    issue. See #1540 for details.
  • As mentioned in documentation, Kubernetes TPR suppport is removed in this
    release.

Features:

Bug fixes, misc changes:

v2.18.0

14 Aug 10:11
v2.18.0
aeb2861
Compare
Choose a tag to compare

The official docker release for this release can be pulled from

quay.io/dexidp/dex:v2.18.0

Features:

Bug fixes, misc changes:

v2.17.0

03 Jul 08:17
v2.17.0
39dc5dc
Compare
Choose a tag to compare

The official docker release for this release can be pulled from

quay.io/dexidp/dex:v2.17.0

Notes:

  • Dex finally offers a user info endpoint. While this doesn't expose any
    more information than is included in the ID tokens, it allows for using
    Dex in integrations that demand such an endpoint.
  • With this release, the Linkedin connector is usable again!

Features:

Bug fixes, misc changes:

v2.16.0

18 Apr 22:35
60f47c4
Compare
Choose a tag to compare

The official docker release for this release can be pulled from

quay.io/dexidp/dex:v2.16.0

Features:

  • Add an option to the OpenID Connect connector to always set email_verified to true (#1417, @gezb)
  • Docker image no longer runs dex as root (#1426, @justaugustus)

Bug fixes, misc changes:

v2.15.0

09 Feb 20:03
v2.15.0
7bd4071
Compare
Choose a tag to compare

The official docker release for this release can be pulled from

quay.io/dexidp/dex:v2.15.0

Notes:

  • Minimum TLS version bumped to v1.2: if you are using Dex to serve on TLS directly, please make sure clients support TLS v1.2 before upgrading.

Features:

Bug fixes, misc changes:

v2.14.0

11 Jan 15:17
v2.14.0
f1581ff
Compare
Choose a tag to compare

The official docker release for this release can be pulled from

quay.io/dexidp/dex:v2.14.0

Notes:

  • Users of the Gitlab connector need to pay attention: The connector now uses a less powerful
    scope. This is a good enhancement in terms of securiting your bases, but it may need special care
    when upgrading!

Features:

  • There's a brand new Keystone connector! (#1374, @knangia, @joannanosek, and @kbalka)
  • Github connector now returns a full group list when no org is specified, and you have
    opted-in to that behaviour (#1340, #1349, @alexmt)
  • Github connector allows for a 'both' option to use team name AND slug in TeamNameField (#1345, @vito)
  • Gitlab connector no longer requires to API scope (#1351, @gypsydiver)
  • Postgres storage backeng now works with UNIX sockets (#1346, #1352, @vito)
  • Postgres storage backend now exposes some tunables (#1357, @sr)
  • gRPC API: Add UpdateClient (#1275, @ccojocar)
  • Make expiry of auth requests configurable (#1372, @mxey)
  • LDAP connector - add emailSuffix config option (#1380, @dkess)

Bug fixes, misc changes:

  • Render error message provided by connector if user authentication failed (#1339, @alexmt)
  • Fix bogus conformance failure due to time zones (#1344, @vito)
  • Improved LDAP errors from upgrading go-ldap (#1338, @sr)
  • Removed incomplete, unmaintained storage adapters for CockroachDB and MySQL (#1343, @vito)
  • Removed unused startup scripts, adapted docs (#1350, @sr)
  • LDAP connector: Document that 'DN' must be in capitals (#1359, @OwenTuz)
  • Kubernetes docs: clarify steps around use/creation of TLS assets (#1358, @OwenTuz)
  • Bumped github.com/lib/pq (#1367, @vito)
  • Migrate to go modules (#1365, #1369, @josdotso)
  • Makefile: cleanups for newer versions of Go (#1368, @ericchiang)
  • Dockerfile: update to Go 1.11.3 (#1373, @ericchiang)
  • Replace "GET", "POST" to http.MethodGet and http.MethodPost (#1377, @hainesc)

v2.13.0

07 Nov 05:47
57b1031
Compare
Choose a tag to compare

The official docker release for this release can be pulled from

quay.io/dexidp/dex:v2.13.0

Features:

Bug fixes:

v2.12.0

12 Oct 09:01
v2.12.0
e1acb6d
Compare
Choose a tag to compare

The official docker release for this release is at

quay.io/dexidp/dex:v2.12.0

Features:

  • New connector: Bitbucket Cloud (#1307, @edtan)
  • Allow using the GitHub team slug instead of name (#1297, @tburko)
  • Allow using a client TLS cert in the LDAP connector (#1278, @veily)

Bug fixes:

  • Any non-cert (or accidentally invalid) data following a valid cert
    in the SAML connector configuration will now error out (#1305, @srenatus)

....and fixes to docs, as well as an upgrade of a dependency library
(go-jose v2.1.8, @fajran).

🎉 Thank you very much, all old and new contributors! 😉