Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Omindu Rathnaweera
Hi All,

Did a few basic tests covering the functionalities around OIDC, SAML and
Consent Management.

[+] Stable - go ahead and release

Thanks,
Omindu.

On Wed, May 22, 2019 at 10:17 PM Thanuja Jayasinghe 
wrote:

> Hi All,
>
> Tested following scenarios,
>
> - Local user account association
> - OAuth2 grat types (code, implicit, password, client credential)
> - SAML2 SSO & SLO
>
> [+] Stable - go ahead and release.
>
> Thanks,
> Thanuja
>
> On Wed, May 22, 2019 at 8:07 PM Farasath Ahamed 
> wrote:
>
>> Hi All,
>>
>> Test the below scenarios in IS 5.8.0 RC3 pack.
>>
>>- Token revocation with authorization code reuse
>>- OIDC UserInfo with token sent in the request body and as bearer
>>header
>>- OAuth Application Owner update
>>- Verified no username enumeration attacks possible during password
>>recovery flows.
>>
>>
>> [+] Stable - go ahead and release.
>>
>>
>> Regards,
>> Farasath
>>
>> On Wed, May 22, 2019 at 5:41 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi All,
>>>
>>> I have tested following features.
>>>
>>>1. OIDC backchannel logout
>>>2. SAML front channel logout.
>>>
>>> No blocking issues found.
>>>
>>> [+] Stable - go ahead and release.
>>>
>>> Thanks,
>>> Hasanthi
>>>
>>>
>>>
>>> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera 
>>> wrote:
>>>
 All:
 I have tested Federated Authentication
 [+] Stable - go ahead and release.

 Best Regards
 Isuranga Perera

 On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe <
 shani...@wso2.com> wrote:

> Hi All,
>
> I have tested the SAML SSO with POST binding and Redirect binding
> flows and no issues found.
>
> +1 Go Ahead and Release
>
>
> Thanks,
>
> Shanika
>
> On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> The reason of breaking the RC2 vote is because it is reported an
>> unused commented configuration description in carbon.xml [1]. From RC3
>> release that commented line in the configuration file is removed and no
>> other code level changes done.
>>
>> Further in the Analytics-IS pack, the versions are updated according
>> to the latest released SP pack versions [2].
>>
>> [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
>> [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6
>>
>> Thanks,
>> Hasanthi
>>
>> On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi all,
>>>
>>> We are pleased to announce the third release candidate of WSO2
>>> Identity Server 5.8.0.
>>>
>>> This release fixes the following issues,
>>>
>>>- 5.8.0-RC3 fixes
>>>
>>>- 5.8.0-RC2 fixes
>>>
>>>- 5.8.0-RC1 fixes
>>>
>>>- 5.8.0-Beta5 fixes
>>>
>>>- 5.8.0-Beta4 fixes
>>>
>>>- 5.8.0-Beta3 fixes
>>>
>>>- 5.8.0-Beta fixes
>>>
>>>- 5.8.0-Alpha5 fixes
>>>
>>>- 5.8.0-Alpha4 fixes
>>>
>>>- 5.8.0-Alpha3 fixes
>>>
>>>- 5.8.0-Alpha2 fixes
>>>
>>>- 5.8.0-Alpha fixes
>>>
>>>- 5.8.0-M26 fixes
>>>
>>>- 5.8.0-M25 fixes
>>>
>>>- 5.8.0-M24 fixes
>>>
>>>- 5.8.0-M6 fixes
>>>
>>>- 5.8.0-M5 fixes
>>>
>>>- 5.8.0-M4 fixes
>>>
>>>- 5.8.0-M3 fixes
>>>
>>>- 5.8.0-M2 fixes
>>>
>>>- 5.8.0-M1 fixes
>>>
>>>
>>>
>>> Source and distribution
>>>
>>> Runtime - 

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Malithi Edirisinghe
Hi All,

Thanks for testing WSO2 Identity Server 5.8.0-RC3.
Since this vote has passed with 20+ +1s and 0 -1s, we’re hereby closing
this vote and proceeding with the WSO2 Identity Server 5.8.0 GA release.

Best Regards,
- WSO2 Identity Server Team -

On Wed, May 22, 2019 at 10:17 PM Thanuja Jayasinghe 
wrote:

> Hi All,
>
> Tested following scenarios,
>
> - Local user account association
> - OAuth2 grat types (code, implicit, password, client credential)
> - SAML2 SSO & SLO
>
> [+] Stable - go ahead and release.
>
> Thanks,
> Thanuja
>
> On Wed, May 22, 2019 at 8:07 PM Farasath Ahamed 
> wrote:
>
>> Hi All,
>>
>> Test the below scenarios in IS 5.8.0 RC3 pack.
>>
>>- Token revocation with authorization code reuse
>>- OIDC UserInfo with token sent in the request body and as bearer
>>header
>>- OAuth Application Owner update
>>- Verified no username enumeration attacks possible during password
>>recovery flows.
>>
>>
>> [+] Stable - go ahead and release.
>>
>>
>> Regards,
>> Farasath
>>
>> On Wed, May 22, 2019 at 5:41 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi All,
>>>
>>> I have tested following features.
>>>
>>>1. OIDC backchannel logout
>>>2. SAML front channel logout.
>>>
>>> No blocking issues found.
>>>
>>> [+] Stable - go ahead and release.
>>>
>>> Thanks,
>>> Hasanthi
>>>
>>>
>>>
>>> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera 
>>> wrote:
>>>
 All:
 I have tested Federated Authentication
 [+] Stable - go ahead and release.

 Best Regards
 Isuranga Perera

 On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe <
 shani...@wso2.com> wrote:

> Hi All,
>
> I have tested the SAML SSO with POST binding and Redirect binding
> flows and no issues found.
>
> +1 Go Ahead and Release
>
>
> Thanks,
>
> Shanika
>
> On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> The reason of breaking the RC2 vote is because it is reported an
>> unused commented configuration description in carbon.xml [1]. From RC3
>> release that commented line in the configuration file is removed and no
>> other code level changes done.
>>
>> Further in the Analytics-IS pack, the versions are updated according
>> to the latest released SP pack versions [2].
>>
>> [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
>> [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6
>>
>> Thanks,
>> Hasanthi
>>
>> On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi all,
>>>
>>> We are pleased to announce the third release candidate of WSO2
>>> Identity Server 5.8.0.
>>>
>>> This release fixes the following issues,
>>>
>>>- 5.8.0-RC3 fixes
>>>
>>>- 5.8.0-RC2 fixes
>>>
>>>- 5.8.0-RC1 fixes
>>>
>>>- 5.8.0-Beta5 fixes
>>>
>>>- 5.8.0-Beta4 fixes
>>>
>>>- 5.8.0-Beta3 fixes
>>>
>>>- 5.8.0-Beta fixes
>>>
>>>- 5.8.0-Alpha5 fixes
>>>
>>>- 5.8.0-Alpha4 fixes
>>>
>>>- 5.8.0-Alpha3 fixes
>>>
>>>- 5.8.0-Alpha2 fixes
>>>
>>>- 5.8.0-Alpha fixes
>>>
>>>- 5.8.0-M26 fixes
>>>
>>>- 5.8.0-M25 fixes
>>>
>>>- 5.8.0-M24 fixes
>>>
>>>- 5.8.0-M6 fixes
>>>
>>>- 5.8.0-M5 fixes
>>>
>>>- 5.8.0-M4 fixes
>>>
>>>- 5.8.0-M3 fixes
>>>
>>>- 5.8.0-M2 fixes
>>>
>>>- 5.8.0-M1 fixes
>>>

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Malithi Edirisinghe
Hi All,

Tested following flows and no issues found

   - UMA basic flow
   - OIDC hybrid flow

[+] Stable - go ahead and release.

Thanks,
Malithi

On Wed, May 22, 2019 at 9:56 PM Isura Karunaratne  wrote:

> Hi all,
>
> Tested following features and no issues found.
>
>- Self User Registration
>- Password Policy
>- Password History
>- Password Recovery
>- Account Locking
>
> [+] Stable - go ahead and release.
>
> Cheers,
> Isura.
>
> On Wed, May 22, 2019 at 8:07 PM Farasath Ahamed 
> wrote:
>
>> Hi All,
>>
>> Test the below scenarios in IS 5.8.0 RC3 pack.
>>
>>- Token revocation with authorization code reuse
>>- OIDC UserInfo with token sent in the request body and as bearer
>>header
>>- OAuth Application Owner update
>>- Verified no username enumeration attacks possible during password
>>recovery flows.
>>
>>
>> [+] Stable - go ahead and release.
>>
>>
>> Regards,
>> Farasath
>>
>> On Wed, May 22, 2019 at 5:41 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi All,
>>>
>>> I have tested following features.
>>>
>>>1. OIDC backchannel logout
>>>2. SAML front channel logout.
>>>
>>> No blocking issues found.
>>>
>>> [+] Stable - go ahead and release.
>>>
>>> Thanks,
>>> Hasanthi
>>>
>>>
>>>
>>> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera 
>>> wrote:
>>>
 All:
 I have tested Federated Authentication
 [+] Stable - go ahead and release.

 Best Regards
 Isuranga Perera

 On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe <
 shani...@wso2.com> wrote:

> Hi All,
>
> I have tested the SAML SSO with POST binding and Redirect binding
> flows and no issues found.
>
> +1 Go Ahead and Release
>
>
> Thanks,
>
> Shanika
>
> On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> The reason of breaking the RC2 vote is because it is reported an
>> unused commented configuration description in carbon.xml [1]. From RC3
>> release that commented line in the configuration file is removed and no
>> other code level changes done.
>>
>> Further in the Analytics-IS pack, the versions are updated according
>> to the latest released SP pack versions [2].
>>
>> [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
>> [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6
>>
>> Thanks,
>> Hasanthi
>>
>> On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi all,
>>>
>>> We are pleased to announce the third release candidate of WSO2
>>> Identity Server 5.8.0.
>>>
>>> This release fixes the following issues,
>>>
>>>- 5.8.0-RC3 fixes
>>>
>>>- 5.8.0-RC2 fixes
>>>
>>>- 5.8.0-RC1 fixes
>>>
>>>- 5.8.0-Beta5 fixes
>>>
>>>- 5.8.0-Beta4 fixes
>>>
>>>- 5.8.0-Beta3 fixes
>>>
>>>- 5.8.0-Beta fixes
>>>
>>>- 5.8.0-Alpha5 fixes
>>>
>>>- 5.8.0-Alpha4 fixes
>>>
>>>- 5.8.0-Alpha3 fixes
>>>
>>>- 5.8.0-Alpha2 fixes
>>>
>>>- 5.8.0-Alpha fixes
>>>
>>>- 5.8.0-M26 fixes
>>>
>>>- 5.8.0-M25 fixes
>>>
>>>- 5.8.0-M24 fixes
>>>
>>>- 5.8.0-M6 fixes
>>>
>>>- 5.8.0-M5 fixes
>>>
>>>- 5.8.0-M4 fixes
>>>
>>>- 5.8.0-M3 fixes
>>>
>>>- 5.8.0-M2 fixes
>>>
>>>- 5.8.0-M1 fixes
>>>
>>>
>>>
>>> Source and distribution
>>>
>>> Runtime - 

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Sarubi Thillainathan
Hi All,

I have tested the following use cases.
1. Username recovery with reCaptcha
2. Password recovery with reCaptcha

   - Email
   - challenge question based

3. All supported SCIM2  /Users, /Groups and /Me endpoints, tested in
primary user-store and JDBC as secondary user store.

[+] Stable - go ahead and release.


On Wed, May 22, 2019 at 9:11 PM Kanapriya Kuleswararajan 
wrote:

> Hi All,
> Resend the vote as I couldn't find my name in the archive.
>
> Tested the following and It works fine.
>
> - Basic functionality with EmailOTP (Basic authenticator/Federated
> Authenticator as first step and EmailOTP as the second step)
> - EmailOTP with Email Templates
> - TOTP with basic functionality
> - X509 with basic functionality
> - Tried EmailOTP/TOTP with secondary user stores.
>
> [+1] Stable - go ahead and release
>
>
> Kanapriya Kuleswararajan
> Senior Software Engineer
> Mobile : - 0774894438
> Mail : - kanapr...@wso2.com
> LinkedIn : - https://www.linkedin.com/in/kanapriya-kules-94712685/
> WSO2, Inc.
> lean . enterprise . middleware
>
>
>
> On Wed, May 22, 2019 at 7:46 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> We had an issue receiving the replies to this thread and seems some of
>> the replies have lost due to this. Hence if you have sent a vote and it is
>> not available in the archive [1] please re-send the vote. All the votes we
>> received are positive once, so we are planing to close the vote with in few
>> hours. If you have any concerns please raise ASAP.
>>
>> [1] https://wso2.markmail.org/thread/xuyn7ilrts2xvdsn
>>
>> Thanks,
>> Hasanthi
>>
>> On Wed, May 22, 2019 at 5:15 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi All,
>>>
>>> I have tested following features.
>>>
>>>1. OIDC backchannel logout
>>>2. SAML front channel logout.
>>>
>>> No blocking issues found.
>>>
>>> [+] Stable - go ahead and release.
>>>
>>> Thanks,
>>> Hasanthi
>>>
>>>
>>>
>>> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera 
>>> wrote:
>>>
 All:
 I have tested Federated Authentication
 [+] Stable - go ahead and release.

 Best Regards
 Isuranga Perera

 On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe <
 shani...@wso2.com> wrote:

> Hi All,
>
> I have tested the SAML SSO with POST binding and Redirect binding
> flows and no issues found.
>
> +1 Go Ahead and Release
>
>
> Thanks,
>
> Shanika
>
> On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> The reason of breaking the RC2 vote is because it is reported an
>> unused commented configuration description in carbon.xml [1]. From RC3
>> release that commented line in the configuration file is removed and no
>> other code level changes done.
>>
>> Further in the Analytics-IS pack, the versions are updated according
>> to the latest released SP pack versions [2].
>>
>> [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
>> [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6
>>
>> Thanks,
>> Hasanthi
>>
>> On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi all,
>>>
>>> We are pleased to announce the third release candidate of WSO2
>>> Identity Server 5.8.0.
>>>
>>> This release fixes the following issues,
>>>
>>>- 5.8.0-RC3 fixes
>>>
>>>- 5.8.0-RC2 fixes
>>>
>>>- 5.8.0-RC1 fixes
>>>
>>>- 5.8.0-Beta5 fixes
>>>
>>>- 5.8.0-Beta4 fixes
>>>
>>>- 5.8.0-Beta3 fixes
>>>
>>>- 5.8.0-Beta fixes
>>>
>>>- 5.8.0-Alpha5 fixes
>>>
>>>- 5.8.0-Alpha4 fixes
>>>
>>>- 5.8.0-Alpha3 fixes
>>>
>>>- 5.8.0-Alpha2 fixes
>>>
>>>- 5.8.0-Alpha fixes
>>>
>>>- 5.8.0-M26 fixes
>>>
>>>- 5.8.0-M25 fixes
>>>
>>>- 5.8.0-M24 fixes
>>>

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Wijith Bandara
Hi All,
Resend the vote as I couldn't find my name in the archive.
I have tested the Federation with Google and no issue found.
[+1] Stable - go ahead and release

Thanks
wijith

On Wed, May 22, 2019 at 9:11 PM Kanapriya Kuleswararajan 
wrote:

> Hi All,
> Resend the vote as I couldn't find my name in the archive.
>
> Tested the following and It works fine.
>
> - Basic functionality with EmailOTP (Basic authenticator/Federated
> Authenticator as first step and EmailOTP as the second step)
> - EmailOTP with Email Templates
> - TOTP with basic functionality
> - X509 with basic functionality
> - Tried EmailOTP/TOTP with secondary user stores.
>
> [+1] Stable - go ahead and release
>
>
> Kanapriya Kuleswararajan
> Senior Software Engineer
> Mobile : - 0774894438
> Mail : - kanapr...@wso2.com
> LinkedIn : - https://www.linkedin.com/in/kanapriya-kules-94712685/
> WSO2, Inc.
> lean . enterprise . middleware
>
>
>
> On Wed, May 22, 2019 at 7:46 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> We had an issue receiving the replies to this thread and seems some of
>> the replies have lost due to this. Hence if you have sent a vote and it is
>> not available in the archive [1] please re-send the vote. All the votes we
>> received are positive once, so we are planing to close the vote with in few
>> hours. If you have any concerns please raise ASAP.
>>
>> [1] https://wso2.markmail.org/thread/xuyn7ilrts2xvdsn
>>
>> Thanks,
>> Hasanthi
>>
>> On Wed, May 22, 2019 at 5:15 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi All,
>>>
>>> I have tested following features.
>>>
>>>1. OIDC backchannel logout
>>>2. SAML front channel logout.
>>>
>>> No blocking issues found.
>>>
>>> [+] Stable - go ahead and release.
>>>
>>> Thanks,
>>> Hasanthi
>>>
>>>
>>>
>>> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera 
>>> wrote:
>>>
 All:
 I have tested Federated Authentication
 [+] Stable - go ahead and release.

 Best Regards
 Isuranga Perera

 On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe <
 shani...@wso2.com> wrote:

> Hi All,
>
> I have tested the SAML SSO with POST binding and Redirect binding
> flows and no issues found.
>
> +1 Go Ahead and Release
>
>
> Thanks,
>
> Shanika
>
> On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> The reason of breaking the RC2 vote is because it is reported an
>> unused commented configuration description in carbon.xml [1]. From RC3
>> release that commented line in the configuration file is removed and no
>> other code level changes done.
>>
>> Further in the Analytics-IS pack, the versions are updated according
>> to the latest released SP pack versions [2].
>>
>> [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
>> [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6
>>
>> Thanks,
>> Hasanthi
>>
>> On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi all,
>>>
>>> We are pleased to announce the third release candidate of WSO2
>>> Identity Server 5.8.0.
>>>
>>> This release fixes the following issues,
>>>
>>>- 5.8.0-RC3 fixes
>>>
>>>- 5.8.0-RC2 fixes
>>>
>>>- 5.8.0-RC1 fixes
>>>
>>>- 5.8.0-Beta5 fixes
>>>
>>>- 5.8.0-Beta4 fixes
>>>
>>>- 5.8.0-Beta3 fixes
>>>
>>>- 5.8.0-Beta fixes
>>>
>>>- 5.8.0-Alpha5 fixes
>>>
>>>- 5.8.0-Alpha4 fixes
>>>
>>>- 5.8.0-Alpha3 fixes
>>>
>>>- 5.8.0-Alpha2 fixes
>>>
>>>- 5.8.0-Alpha fixes
>>>
>>>- 5.8.0-M26 fixes
>>>
>>>- 5.8.0-M25 fixes
>>>
>>>- 5.8.0-M24 fixes
>>>
>>>- 5.8.0-M6 fixes
>>>
>>>- 5.8.0-M5 fixes
>>>   

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Vihanga Liyanage
HI All,

Tested below scenarios on IS 5.8.0-RC3 pack using MySQL 5.7 database.

   - Configured secondary JDBC userstore, listed users, added users,
   modified users and deleted users.
   - Add service provider, configured SAML SSO, authenticate with *the
   dispatch *sample web app.
   - Enable SAML2 Artifact binding and authenticate.
   - Add new SP with Open ID OAuth/OpenID Connect Configuration and
   authenticate with *the playground *sample web app. Tested all OAuth
   grand types.

No blocking issues found.

[+] Stable - Go ahead and release

Best regards,
Vihanga.

On Wed, May 22, 2019 at 9:11 PM Kanapriya Kuleswararajan 
wrote:

> Hi All,
> Resend the vote as I couldn't find my name in the archive.
>
> Tested the following and It works fine.
>
> - Basic functionality with EmailOTP (Basic authenticator/Federated
> Authenticator as first step and EmailOTP as the second step)
> - EmailOTP with Email Templates
> - TOTP with basic functionality
> - X509 with basic functionality
> - Tried EmailOTP/TOTP with secondary user stores.
>
> [+1] Stable - go ahead and release
>
>
> Kanapriya Kuleswararajan
> Senior Software Engineer
> Mobile : - 0774894438
> Mail : - kanapr...@wso2.com
> LinkedIn : - https://www.linkedin.com/in/kanapriya-kules-94712685/
> WSO2, Inc.
> lean . enterprise . middleware
>
>
>
> On Wed, May 22, 2019 at 7:46 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> We had an issue receiving the replies to this thread and seems some of
>> the replies have lost due to this. Hence if you have sent a vote and it is
>> not available in the archive [1] please re-send the vote. All the votes we
>> received are positive once, so we are planing to close the vote with in few
>> hours. If you have any concerns please raise ASAP.
>>
>> [1] https://wso2.markmail.org/thread/xuyn7ilrts2xvdsn
>>
>> Thanks,
>> Hasanthi
>>
>> On Wed, May 22, 2019 at 5:15 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi All,
>>>
>>> I have tested following features.
>>>
>>>1. OIDC backchannel logout
>>>2. SAML front channel logout.
>>>
>>> No blocking issues found.
>>>
>>> [+] Stable - go ahead and release.
>>>
>>> Thanks,
>>> Hasanthi
>>>
>>>
>>>
>>> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera 
>>> wrote:
>>>
 All:
 I have tested Federated Authentication
 [+] Stable - go ahead and release.

 Best Regards
 Isuranga Perera

 On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe <
 shani...@wso2.com> wrote:

> Hi All,
>
> I have tested the SAML SSO with POST binding and Redirect binding
> flows and no issues found.
>
> +1 Go Ahead and Release
>
>
> Thanks,
>
> Shanika
>
> On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> The reason of breaking the RC2 vote is because it is reported an
>> unused commented configuration description in carbon.xml [1]. From RC3
>> release that commented line in the configuration file is removed and no
>> other code level changes done.
>>
>> Further in the Analytics-IS pack, the versions are updated according
>> to the latest released SP pack versions [2].
>>
>> [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
>> [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6
>>
>> Thanks,
>> Hasanthi
>>
>> On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi all,
>>>
>>> We are pleased to announce the third release candidate of WSO2
>>> Identity Server 5.8.0.
>>>
>>> This release fixes the following issues,
>>>
>>>- 5.8.0-RC3 fixes
>>>
>>>- 5.8.0-RC2 fixes
>>>
>>>- 5.8.0-RC1 fixes
>>>
>>>- 5.8.0-Beta5 fixes
>>>
>>>- 5.8.0-Beta4 fixes
>>>
>>>- 5.8.0-Beta3 fixes
>>>
>>>- 5.8.0-Beta fixes
>>>
>>>- 5.8.0-Alpha5 fixes
>>>
>>>- 5.8.0-Alpha4 fixes
>>>
>>>- 5.8.0-Alpha3 fixes
>>>
>>>- 5.8.0-Alpha2 fixes
>>>
>>>- 5.8.0-Alpha fixes
>>>
>>>- 5.8.0-M26 fixes

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Hasini Witharana
HI All,

Following scenarios were tested

SCIM 2.0 Endpoints

   1. Bulk Endpoint
  - Create Users in Bulk
  2. Groups Endpoint
  - Create Group
  - Delete Group
  - Filter Groups
  3. Users Endpoint
  - Create User
  - Delete User by ID
  - Filter Users

[+] Stable - go ahead and release.

Best Regards,
Hasini.

On Wed, May 22, 2019 at 9:11 PM Kanapriya Kuleswararajan 
wrote:

> Hi All,
> Resend the vote as I couldn't find my name in the archive.
>
> Tested the following and It works fine.
>
> - Basic functionality with EmailOTP (Basic authenticator/Federated
> Authenticator as first step and EmailOTP as the second step)
> - EmailOTP with Email Templates
> - TOTP with basic functionality
> - X509 with basic functionality
> - Tried EmailOTP/TOTP with secondary user stores.
>
> [+1] Stable - go ahead and release
>
>
> Kanapriya Kuleswararajan
> Senior Software Engineer
> Mobile : - 0774894438
> Mail : - kanapr...@wso2.com
> LinkedIn : - https://www.linkedin.com/in/kanapriya-kules-94712685/
> WSO2, Inc.
> lean . enterprise . middleware
>
>
>
> On Wed, May 22, 2019 at 7:46 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> We had an issue receiving the replies to this thread and seems some of
>> the replies have lost due to this. Hence if you have sent a vote and it is
>> not available in the archive [1] please re-send the vote. All the votes we
>> received are positive once, so we are planing to close the vote with in few
>> hours. If you have any concerns please raise ASAP.
>>
>> [1] https://wso2.markmail.org/thread/xuyn7ilrts2xvdsn
>>
>> Thanks,
>> Hasanthi
>>
>> On Wed, May 22, 2019 at 5:15 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi All,
>>>
>>> I have tested following features.
>>>
>>>1. OIDC backchannel logout
>>>2. SAML front channel logout.
>>>
>>> No blocking issues found.
>>>
>>> [+] Stable - go ahead and release.
>>>
>>> Thanks,
>>> Hasanthi
>>>
>>>
>>>
>>> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera 
>>> wrote:
>>>
 All:
 I have tested Federated Authentication
 [+] Stable - go ahead and release.

 Best Regards
 Isuranga Perera

 On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe <
 shani...@wso2.com> wrote:

> Hi All,
>
> I have tested the SAML SSO with POST binding and Redirect binding
> flows and no issues found.
>
> +1 Go Ahead and Release
>
>
> Thanks,
>
> Shanika
>
> On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> The reason of breaking the RC2 vote is because it is reported an
>> unused commented configuration description in carbon.xml [1]. From RC3
>> release that commented line in the configuration file is removed and no
>> other code level changes done.
>>
>> Further in the Analytics-IS pack, the versions are updated according
>> to the latest released SP pack versions [2].
>>
>> [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
>> [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6
>>
>> Thanks,
>> Hasanthi
>>
>> On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi all,
>>>
>>> We are pleased to announce the third release candidate of WSO2
>>> Identity Server 5.8.0.
>>>
>>> This release fixes the following issues,
>>>
>>>- 5.8.0-RC3 fixes
>>>
>>>- 5.8.0-RC2 fixes
>>>
>>>- 5.8.0-RC1 fixes
>>>
>>>- 5.8.0-Beta5 fixes
>>>
>>>- 5.8.0-Beta4 fixes
>>>
>>>- 5.8.0-Beta3 fixes
>>>
>>>- 5.8.0-Beta fixes
>>>
>>>- 5.8.0-Alpha5 fixes
>>>
>>>- 5.8.0-Alpha4 fixes
>>>
>>>- 5.8.0-Alpha3 fixes
>>>
>>>- 5.8.0-Alpha2 fixes
>>>
>>>- 5.8.0-Alpha fixes
>>>
>>>- 5.8.0-M26 fixes
>>>
>>>- 5.8.0-M25 fixes
>>>
>>>- 5.8.0-M24 fixes
>>>

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Thanuja Jayasinghe
Hi All,

Tested following scenarios,

- Local user account association
- OAuth2 grat types (code, implicit, password, client credential)
- SAML2 SSO & SLO

[+] Stable - go ahead and release.

Thanks,
Thanuja

On Wed, May 22, 2019 at 8:07 PM Farasath Ahamed  wrote:

> Hi All,
>
> Test the below scenarios in IS 5.8.0 RC3 pack.
>
>- Token revocation with authorization code reuse
>- OIDC UserInfo with token sent in the request body and as bearer
>header
>- OAuth Application Owner update
>- Verified no username enumeration attacks possible during password
>recovery flows.
>
>
> [+] Stable - go ahead and release.
>
>
> Regards,
> Farasath
>
> On Wed, May 22, 2019 at 5:41 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> I have tested following features.
>>
>>1. OIDC backchannel logout
>>2. SAML front channel logout.
>>
>> No blocking issues found.
>>
>> [+] Stable - go ahead and release.
>>
>> Thanks,
>> Hasanthi
>>
>>
>>
>> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera 
>> wrote:
>>
>>> All:
>>> I have tested Federated Authentication
>>> [+] Stable - go ahead and release.
>>>
>>> Best Regards
>>> Isuranga Perera
>>>
>>> On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe <
>>> shani...@wso2.com> wrote:
>>>
 Hi All,

 I have tested the SAML SSO with POST binding and Redirect binding flows
 and no issues found.

 +1 Go Ahead and Release


 Thanks,

 Shanika

 On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
 hasan...@wso2.com> wrote:

> Hi All,
>
> The reason of breaking the RC2 vote is because it is reported an
> unused commented configuration description in carbon.xml [1]. From RC3
> release that commented line in the configuration file is removed and no
> other code level changes done.
>
> Further in the Analytics-IS pack, the versions are updated according
> to the latest released SP pack versions [2].
>
> [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
> [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6
>
> Thanks,
> Hasanthi
>
> On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi all,
>>
>> We are pleased to announce the third release candidate of WSO2
>> Identity Server 5.8.0.
>>
>> This release fixes the following issues,
>>
>>- 5.8.0-RC3 fixes
>>
>>- 5.8.0-RC2 fixes
>>
>>- 5.8.0-RC1 fixes
>>
>>- 5.8.0-Beta5 fixes
>>
>>- 5.8.0-Beta4 fixes
>>
>>- 5.8.0-Beta3 fixes
>>
>>- 5.8.0-Beta fixes
>>
>>- 5.8.0-Alpha5 fixes
>>
>>- 5.8.0-Alpha4 fixes
>>
>>- 5.8.0-Alpha3 fixes
>>
>>- 5.8.0-Alpha2 fixes
>>
>>- 5.8.0-Alpha fixes
>>
>>- 5.8.0-M26 fixes
>>
>>- 5.8.0-M25 fixes
>>
>>- 5.8.0-M24 fixes
>>
>>- 5.8.0-M6 fixes
>>
>>- 5.8.0-M5 fixes
>>
>>- 5.8.0-M4 fixes
>>
>>- 5.8.0-M3 fixes
>>
>>- 5.8.0-M2 fixes
>>
>>- 5.8.0-M1 fixes
>>
>>
>>
>> Source and distribution
>>
>> Runtime - https://github.com/wso2/product-is/releases/tag/v
>> 
>> 5.8.0-rc3
>> 
>> Analytics -
>> https://github.com/wso2/analytics-is/releases/tag/v5.8.0-rc3
>> 

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Maduranga Siriwardena
Hi All,

Tested the authorization code grant flow with below configs using a native
Android client.

   - PKCE enabled
   - authentication without the client secret enabled
   - Support PKCE 'Plain' Transform Algorithm disabled

[+] Stable - go ahead and release.

Regards,
Maduranga.

On Wed, May 22, 2019 at 8:07 PM Farasath Ahamed  wrote:

> Hi All,
>
> Test the below scenarios in IS 5.8.0 RC3 pack.
>
>- Token revocation with authorization code reuse
>- OIDC UserInfo with token sent in the request body and as bearer
>header
>- OAuth Application Owner update
>- Verified no username enumeration attacks possible during password
>recovery flows.
>
>
> [+] Stable - go ahead and release.
>
>
> Regards,
> Farasath
>
> On Wed, May 22, 2019 at 5:41 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> I have tested following features.
>>
>>1. OIDC backchannel logout
>>2. SAML front channel logout.
>>
>> No blocking issues found.
>>
>> [+] Stable - go ahead and release.
>>
>> Thanks,
>> Hasanthi
>>
>>
>>
>> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera 
>> wrote:
>>
>>> All:
>>> I have tested Federated Authentication
>>> [+] Stable - go ahead and release.
>>>
>>> Best Regards
>>> Isuranga Perera
>>>
>>> On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe <
>>> shani...@wso2.com> wrote:
>>>
 Hi All,

 I have tested the SAML SSO with POST binding and Redirect binding flows
 and no issues found.

 +1 Go Ahead and Release


 Thanks,

 Shanika

 On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
 hasan...@wso2.com> wrote:

> Hi All,
>
> The reason of breaking the RC2 vote is because it is reported an
> unused commented configuration description in carbon.xml [1]. From RC3
> release that commented line in the configuration file is removed and no
> other code level changes done.
>
> Further in the Analytics-IS pack, the versions are updated according
> to the latest released SP pack versions [2].
>
> [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
> [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6
>
> Thanks,
> Hasanthi
>
> On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi all,
>>
>> We are pleased to announce the third release candidate of WSO2
>> Identity Server 5.8.0.
>>
>> This release fixes the following issues,
>>
>>- 5.8.0-RC3 fixes
>>
>>- 5.8.0-RC2 fixes
>>
>>- 5.8.0-RC1 fixes
>>
>>- 5.8.0-Beta5 fixes
>>
>>- 5.8.0-Beta4 fixes
>>
>>- 5.8.0-Beta3 fixes
>>
>>- 5.8.0-Beta fixes
>>
>>- 5.8.0-Alpha5 fixes
>>
>>- 5.8.0-Alpha4 fixes
>>
>>- 5.8.0-Alpha3 fixes
>>
>>- 5.8.0-Alpha2 fixes
>>
>>- 5.8.0-Alpha fixes
>>
>>- 5.8.0-M26 fixes
>>
>>- 5.8.0-M25 fixes
>>
>>- 5.8.0-M24 fixes
>>
>>- 5.8.0-M6 fixes
>>
>>- 5.8.0-M5 fixes
>>
>>- 5.8.0-M4 fixes
>>
>>- 5.8.0-M3 fixes
>>
>>- 5.8.0-M2 fixes
>>
>>- 5.8.0-M1 fixes
>>
>>
>>
>> Source and distribution
>>
>> Runtime - https://github.com/wso2/product-is/releases/tag/v
>> 
>> 5.8.0-rc3
>> 
>> Analytics -
>> 

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Senthalan Kanagalingam
Hi all,

I have tested the following functionalities

   - Create a service provider using file
   - SSO with SAML and OAuth app
   - Role-based adaptive authentication policy

No issues found, Hence +1 to go ahead and release.

Thanks,
Senthalan

On Wed, May 22, 2019 at 8:07 PM Farasath Ahamed  wrote:

> Hi All,
>
> Test the below scenarios in IS 5.8.0 RC3 pack.
>
>- Token revocation with authorization code reuse
>- OIDC UserInfo with token sent in the request body and as bearer
>header
>- OAuth Application Owner update
>- Verified no username enumeration attacks possible during password
>recovery flows.
>
>
> [+] Stable - go ahead and release.
>
>
> Regards,
> Farasath
>
> On Wed, May 22, 2019 at 5:41 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> I have tested following features.
>>
>>1. OIDC backchannel logout
>>2. SAML front channel logout.
>>
>> No blocking issues found.
>>
>> [+] Stable - go ahead and release.
>>
>> Thanks,
>> Hasanthi
>>
>>
>>
>> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera 
>> wrote:
>>
>>> All:
>>> I have tested Federated Authentication
>>> [+] Stable - go ahead and release.
>>>
>>> Best Regards
>>> Isuranga Perera
>>>
>>> On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe <
>>> shani...@wso2.com> wrote:
>>>
 Hi All,

 I have tested the SAML SSO with POST binding and Redirect binding flows
 and no issues found.

 +1 Go Ahead and Release


 Thanks,

 Shanika

 On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
 hasan...@wso2.com> wrote:

> Hi All,
>
> The reason of breaking the RC2 vote is because it is reported an
> unused commented configuration description in carbon.xml [1]. From RC3
> release that commented line in the configuration file is removed and no
> other code level changes done.
>
> Further in the Analytics-IS pack, the versions are updated according
> to the latest released SP pack versions [2].
>
> [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
> [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6
>
> Thanks,
> Hasanthi
>
> On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi all,
>>
>> We are pleased to announce the third release candidate of WSO2
>> Identity Server 5.8.0.
>>
>> This release fixes the following issues,
>>
>>- 5.8.0-RC3 fixes
>>
>>- 5.8.0-RC2 fixes
>>
>>- 5.8.0-RC1 fixes
>>
>>- 5.8.0-Beta5 fixes
>>
>>- 5.8.0-Beta4 fixes
>>
>>- 5.8.0-Beta3 fixes
>>
>>- 5.8.0-Beta fixes
>>
>>- 5.8.0-Alpha5 fixes
>>
>>- 5.8.0-Alpha4 fixes
>>
>>- 5.8.0-Alpha3 fixes
>>
>>- 5.8.0-Alpha2 fixes
>>
>>- 5.8.0-Alpha fixes
>>
>>- 5.8.0-M26 fixes
>>
>>- 5.8.0-M25 fixes
>>
>>- 5.8.0-M24 fixes
>>
>>- 5.8.0-M6 fixes
>>
>>- 5.8.0-M5 fixes
>>
>>- 5.8.0-M4 fixes
>>
>>- 5.8.0-M3 fixes
>>
>>- 5.8.0-M2 fixes
>>
>>- 5.8.0-M1 fixes
>>
>>
>>
>> Source and distribution
>>
>> Runtime - https://github.com/wso2/product-is/releases/tag/v
>> 
>> 5.8.0-rc3
>> 
>> Analytics -
>> https://github.com/wso2/analytics-is/releases/tag/v5.8.0-rc3
>> 

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Isura Karunaratne
Hi all,

Tested following features and no issues found.

   - Self User Registration
   - Password Policy
   - Password History
   - Password Recovery
   - Account Locking

[+] Stable - go ahead and release.

Cheers,
Isura.

On Wed, May 22, 2019 at 8:07 PM Farasath Ahamed  wrote:

> Hi All,
>
> Test the below scenarios in IS 5.8.0 RC3 pack.
>
>- Token revocation with authorization code reuse
>- OIDC UserInfo with token sent in the request body and as bearer
>header
>- OAuth Application Owner update
>- Verified no username enumeration attacks possible during password
>recovery flows.
>
>
> [+] Stable - go ahead and release.
>
>
> Regards,
> Farasath
>
> On Wed, May 22, 2019 at 5:41 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> I have tested following features.
>>
>>1. OIDC backchannel logout
>>2. SAML front channel logout.
>>
>> No blocking issues found.
>>
>> [+] Stable - go ahead and release.
>>
>> Thanks,
>> Hasanthi
>>
>>
>>
>> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera 
>> wrote:
>>
>>> All:
>>> I have tested Federated Authentication
>>> [+] Stable - go ahead and release.
>>>
>>> Best Regards
>>> Isuranga Perera
>>>
>>> On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe <
>>> shani...@wso2.com> wrote:
>>>
 Hi All,

 I have tested the SAML SSO with POST binding and Redirect binding flows
 and no issues found.

 +1 Go Ahead and Release


 Thanks,

 Shanika

 On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
 hasan...@wso2.com> wrote:

> Hi All,
>
> The reason of breaking the RC2 vote is because it is reported an
> unused commented configuration description in carbon.xml [1]. From RC3
> release that commented line in the configuration file is removed and no
> other code level changes done.
>
> Further in the Analytics-IS pack, the versions are updated according
> to the latest released SP pack versions [2].
>
> [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
> [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6
>
> Thanks,
> Hasanthi
>
> On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi all,
>>
>> We are pleased to announce the third release candidate of WSO2
>> Identity Server 5.8.0.
>>
>> This release fixes the following issues,
>>
>>- 5.8.0-RC3 fixes
>>
>>- 5.8.0-RC2 fixes
>>
>>- 5.8.0-RC1 fixes
>>
>>- 5.8.0-Beta5 fixes
>>
>>- 5.8.0-Beta4 fixes
>>
>>- 5.8.0-Beta3 fixes
>>
>>- 5.8.0-Beta fixes
>>
>>- 5.8.0-Alpha5 fixes
>>
>>- 5.8.0-Alpha4 fixes
>>
>>- 5.8.0-Alpha3 fixes
>>
>>- 5.8.0-Alpha2 fixes
>>
>>- 5.8.0-Alpha fixes
>>
>>- 5.8.0-M26 fixes
>>
>>- 5.8.0-M25 fixes
>>
>>- 5.8.0-M24 fixes
>>
>>- 5.8.0-M6 fixes
>>
>>- 5.8.0-M5 fixes
>>
>>- 5.8.0-M4 fixes
>>
>>- 5.8.0-M3 fixes
>>
>>- 5.8.0-M2 fixes
>>
>>- 5.8.0-M1 fixes
>>
>>
>>
>> Source and distribution
>>
>> Runtime - https://github.com/wso2/product-is/releases/tag/v
>> 
>> 5.8.0-rc3
>> 
>> Analytics -
>> https://github.com/wso2/analytics-is/releases/tag/v5.8.0-rc3
>> 

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Kanapriya Kuleswararajan
Hi All,
Resend the vote as I couldn't find my name in the archive.

Tested the following and It works fine.

- Basic functionality with EmailOTP (Basic authenticator/Federated
Authenticator as first step and EmailOTP as the second step)
- EmailOTP with Email Templates
- TOTP with basic functionality
- X509 with basic functionality
- Tried EmailOTP/TOTP with secondary user stores.

[+1] Stable - go ahead and release


Kanapriya Kuleswararajan
Senior Software Engineer
Mobile : - 0774894438
Mail : - kanapr...@wso2.com
LinkedIn : - https://www.linkedin.com/in/kanapriya-kules-94712685/
WSO2, Inc.
lean . enterprise . middleware



On Wed, May 22, 2019 at 7:46 PM Hasanthi Purnima Dissanayake <
hasan...@wso2.com> wrote:

> Hi All,
>
> We had an issue receiving the replies to this thread and seems some of the
> replies have lost due to this. Hence if you have sent a vote and it is not
> available in the archive [1] please re-send the vote. All the votes we
> received are positive once, so we are planing to close the vote with in few
> hours. If you have any concerns please raise ASAP.
>
> [1] https://wso2.markmail.org/thread/xuyn7ilrts2xvdsn
>
> Thanks,
> Hasanthi
>
> On Wed, May 22, 2019 at 5:15 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi All,
>>
>> I have tested following features.
>>
>>1. OIDC backchannel logout
>>2. SAML front channel logout.
>>
>> No blocking issues found.
>>
>> [+] Stable - go ahead and release.
>>
>> Thanks,
>> Hasanthi
>>
>>
>>
>> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera 
>> wrote:
>>
>>> All:
>>> I have tested Federated Authentication
>>> [+] Stable - go ahead and release.
>>>
>>> Best Regards
>>> Isuranga Perera
>>>
>>> On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe <
>>> shani...@wso2.com> wrote:
>>>
 Hi All,

 I have tested the SAML SSO with POST binding and Redirect binding flows
 and no issues found.

 +1 Go Ahead and Release


 Thanks,

 Shanika

 On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
 hasan...@wso2.com> wrote:

> Hi All,
>
> The reason of breaking the RC2 vote is because it is reported an
> unused commented configuration description in carbon.xml [1]. From RC3
> release that commented line in the configuration file is removed and no
> other code level changes done.
>
> Further in the Analytics-IS pack, the versions are updated according
> to the latest released SP pack versions [2].
>
> [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
> [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6
>
> Thanks,
> Hasanthi
>
> On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
> hasan...@wso2.com> wrote:
>
>> Hi all,
>>
>> We are pleased to announce the third release candidate of WSO2
>> Identity Server 5.8.0.
>>
>> This release fixes the following issues,
>>
>>- 5.8.0-RC3 fixes
>>
>>- 5.8.0-RC2 fixes
>>
>>- 5.8.0-RC1 fixes
>>
>>- 5.8.0-Beta5 fixes
>>
>>- 5.8.0-Beta4 fixes
>>
>>- 5.8.0-Beta3 fixes
>>
>>- 5.8.0-Beta fixes
>>
>>- 5.8.0-Alpha5 fixes
>>
>>- 5.8.0-Alpha4 fixes
>>
>>- 5.8.0-Alpha3 fixes
>>
>>- 5.8.0-Alpha2 fixes
>>
>>- 5.8.0-Alpha fixes
>>
>>- 5.8.0-M26 fixes
>>
>>- 5.8.0-M25 fixes
>>
>>- 5.8.0-M24 fixes
>>
>>- 5.8.0-M6 fixes
>>
>>- 5.8.0-M5 fixes
>>
>>- 5.8.0-M4 fixes
>>
>>- 5.8.0-M3 fixes
>>
>>- 5.8.0-M2 fixes
>>
>>- 5.8.0-M1 fixes
>>

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Farasath Ahamed
Hi All,

Test the below scenarios in IS 5.8.0 RC3 pack.

   - Token revocation with authorization code reuse
   - OIDC UserInfo with token sent in the request body and as bearer header
   - OAuth Application Owner update
   - Verified no username enumeration attacks possible during password
   recovery flows.


[+] Stable - go ahead and release.


Regards,
Farasath

On Wed, May 22, 2019 at 5:41 PM Hasanthi Purnima Dissanayake <
hasan...@wso2.com> wrote:

> Hi All,
>
> I have tested following features.
>
>1. OIDC backchannel logout
>2. SAML front channel logout.
>
> No blocking issues found.
>
> [+] Stable - go ahead and release.
>
> Thanks,
> Hasanthi
>
>
>
> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera  wrote:
>
>> All:
>> I have tested Federated Authentication
>> [+] Stable - go ahead and release.
>>
>> Best Regards
>> Isuranga Perera
>>
>> On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe 
>> wrote:
>>
>>> Hi All,
>>>
>>> I have tested the SAML SSO with POST binding and Redirect binding flows
>>> and no issues found.
>>>
>>> +1 Go Ahead and Release
>>>
>>>
>>> Thanks,
>>>
>>> Shanika
>>>
>>> On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
>>> hasan...@wso2.com> wrote:
>>>
 Hi All,

 The reason of breaking the RC2 vote is because it is reported an unused
 commented configuration description in carbon.xml [1]. From RC3 release
 that commented line in the configuration file is removed and no other code
 level changes done.

 Further in the Analytics-IS pack, the versions are updated according to
 the latest released SP pack versions [2].

 [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
 [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6

 Thanks,
 Hasanthi

 On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
 hasan...@wso2.com> wrote:

> Hi all,
>
> We are pleased to announce the third release candidate of WSO2
> Identity Server 5.8.0.
>
> This release fixes the following issues,
>
>- 5.8.0-RC3 fixes
>
>- 5.8.0-RC2 fixes
>
>- 5.8.0-RC1 fixes
>
>- 5.8.0-Beta5 fixes
>
>- 5.8.0-Beta4 fixes
>
>- 5.8.0-Beta3 fixes
>
>- 5.8.0-Beta fixes
>
>- 5.8.0-Alpha5 fixes
>
>- 5.8.0-Alpha4 fixes
>
>- 5.8.0-Alpha3 fixes
>
>- 5.8.0-Alpha2 fixes
>
>- 5.8.0-Alpha fixes
>
>- 5.8.0-M26 fixes
>
>- 5.8.0-M25 fixes
>
>- 5.8.0-M24 fixes
>
>- 5.8.0-M6 fixes
>
>- 5.8.0-M5 fixes
>
>- 5.8.0-M4 fixes
>
>- 5.8.0-M3 fixes
>
>- 5.8.0-M2 fixes
>
>- 5.8.0-M1 fixes
>
>
>
> Source and distribution
>
> Runtime - https://github.com/wso2/product-is/releases/tag/v
> 
> 5.8.0-rc3
> 
> Analytics -
> https://github.com/wso2/analytics-is/releases/tag/v5.8.0-rc3
> 
>
>
> Please download, test the product and vote.
>
> [+] Stable - go ahead and release
> [-] Broken - do not release (explain why)
>
>
> Thanks,
> - WSO2 Identity and Access Management Team -
>
> --
>
> Hasanthi Dissanayake
>
> Senior Software Engineer | WSO2
>
> E: hasan...@wso2.com
> M :0718407133| 

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Ashen Weerathunga
Hi All,

I have tested the following scenarios related to IS analytics and found no
issues.

   - Publishing login and session events to the IS analytics server
   - Analyzing login attempts
   - Analyzing session statistics
   - Triggering suspicious login alerts

[+] Stable - go ahead and release

Thanks,
Ashen

On Wed, May 22, 2019 at 5:41 PM Hasanthi Purnima Dissanayake <
hasan...@wso2.com> wrote:

> Hi All,
>
> I have tested following features.
>
>1. OIDC backchannel logout
>2. SAML front channel logout.
>
> No blocking issues found.
>
> [+] Stable - go ahead and release.
>
> Thanks,
> Hasanthi
>
>
>
> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera  wrote:
>
>> All:
>> I have tested Federated Authentication
>> [+] Stable - go ahead and release.
>>
>> Best Regards
>> Isuranga Perera
>>
>> On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe 
>> wrote:
>>
>>> Hi All,
>>>
>>> I have tested the SAML SSO with POST binding and Redirect binding flows
>>> and no issues found.
>>>
>>> +1 Go Ahead and Release
>>>
>>>
>>> Thanks,
>>>
>>> Shanika
>>>
>>> On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
>>> hasan...@wso2.com> wrote:
>>>
 Hi All,

 The reason of breaking the RC2 vote is because it is reported an unused
 commented configuration description in carbon.xml [1]. From RC3 release
 that commented line in the configuration file is removed and no other code
 level changes done.

 Further in the Analytics-IS pack, the versions are updated according to
 the latest released SP pack versions [2].

 [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
 [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6

 Thanks,
 Hasanthi

 On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
 hasan...@wso2.com> wrote:

> Hi all,
>
> We are pleased to announce the third release candidate of WSO2
> Identity Server 5.8.0.
>
> This release fixes the following issues,
>
>- 5.8.0-RC3 fixes
>
>- 5.8.0-RC2 fixes
>
>- 5.8.0-RC1 fixes
>
>- 5.8.0-Beta5 fixes
>
>- 5.8.0-Beta4 fixes
>
>- 5.8.0-Beta3 fixes
>
>- 5.8.0-Beta fixes
>
>- 5.8.0-Alpha5 fixes
>
>- 5.8.0-Alpha4 fixes
>
>- 5.8.0-Alpha3 fixes
>
>- 5.8.0-Alpha2 fixes
>
>- 5.8.0-Alpha fixes
>
>- 5.8.0-M26 fixes
>
>- 5.8.0-M25 fixes
>
>- 5.8.0-M24 fixes
>
>- 5.8.0-M6 fixes
>
>- 5.8.0-M5 fixes
>
>- 5.8.0-M4 fixes
>
>- 5.8.0-M3 fixes
>
>- 5.8.0-M2 fixes
>
>- 5.8.0-M1 fixes
>
>
>
> Source and distribution
>
> Runtime - https://github.com/wso2/product-is/releases/tag/v
> 
> 5.8.0-rc3
> 
> Analytics -
> https://github.com/wso2/analytics-is/releases/tag/v5.8.0-rc3
> 
>
>
> Please download, test the product and vote.
>
> [+] Stable - go ahead and release
> [-] Broken - do not release (explain why)
>
>
> Thanks,
> - WSO2 Identity and Access Management Team -
>
> --
>
> Hasanthi Dissanayake
>
> Senior Software Engineer | WSO2
>
> E: hasan...@wso2.com
> M :0718407133| http://wso2.com 
>


 --


Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-22 Thread Hasanthi Purnima Dissanayake
Hi All,

We had an issue receiving the replies to this thread and seems some of the
replies have lost due to this. Hence if you have sent a vote and it is not
available in the archive [1] please re-send the vote. All the votes we
received are positive once, so we are planing to close the vote with in few
hours. If you have any concerns please raise ASAP.

[1] https://wso2.markmail.org/thread/xuyn7ilrts2xvdsn

Thanks,
Hasanthi

On Wed, May 22, 2019 at 5:15 PM Hasanthi Purnima Dissanayake <
hasan...@wso2.com> wrote:

> Hi All,
>
> I have tested following features.
>
>1. OIDC backchannel logout
>2. SAML front channel logout.
>
> No blocking issues found.
>
> [+] Stable - go ahead and release.
>
> Thanks,
> Hasanthi
>
>
>
> On Wed, May 22, 2019 at 8:03 AM Isuranga Perera  wrote:
>
>> All:
>> I have tested Federated Authentication
>> [+] Stable - go ahead and release.
>>
>> Best Regards
>> Isuranga Perera
>>
>> On Sun, May 19, 2019 at 7:30 PM Shanika Wickramasinghe 
>> wrote:
>>
>>> Hi All,
>>>
>>> I have tested the SAML SSO with POST binding and Redirect binding flows
>>> and no issues found.
>>>
>>> +1 Go Ahead and Release
>>>
>>>
>>> Thanks,
>>>
>>> Shanika
>>>
>>> On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
>>> hasan...@wso2.com> wrote:
>>>
 Hi All,

 The reason of breaking the RC2 vote is because it is reported an unused
 commented configuration description in carbon.xml [1]. From RC3 release
 that commented line in the configuration file is removed and no other code
 level changes done.

 Further in the Analytics-IS pack, the versions are updated according to
 the latest released SP pack versions [2].

 [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
 [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6

 Thanks,
 Hasanthi

 On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
 hasan...@wso2.com> wrote:

> Hi all,
>
> We are pleased to announce the third release candidate of WSO2
> Identity Server 5.8.0.
>
> This release fixes the following issues,
>
>- 5.8.0-RC3 fixes
>
>- 5.8.0-RC2 fixes
>
>- 5.8.0-RC1 fixes
>
>- 5.8.0-Beta5 fixes
>
>- 5.8.0-Beta4 fixes
>
>- 5.8.0-Beta3 fixes
>
>- 5.8.0-Beta fixes
>
>- 5.8.0-Alpha5 fixes
>
>- 5.8.0-Alpha4 fixes
>
>- 5.8.0-Alpha3 fixes
>
>- 5.8.0-Alpha2 fixes
>
>- 5.8.0-Alpha fixes
>
>- 5.8.0-M26 fixes
>
>- 5.8.0-M25 fixes
>
>- 5.8.0-M24 fixes
>
>- 5.8.0-M6 fixes
>
>- 5.8.0-M5 fixes
>
>- 5.8.0-M4 fixes
>
>- 5.8.0-M3 fixes
>
>- 5.8.0-M2 fixes
>
>- 5.8.0-M1 fixes
>
>
>
> Source and distribution
>
> Runtime - https://github.com/wso2/product-is/releases/tag/v
> 
> 5.8.0-rc3
> 
> Analytics -
> https://github.com/wso2/analytics-is/releases/tag/v5.8.0-rc3
> 
>
>
> Please download, test the product and vote.
>
> [+] Stable - go ahead and release
> [-] Broken - do not release (explain why)
>
>
> Thanks,
> - WSO2 Identity and Access Management Team -
>
> --
>
> Hasanthi Dissanayake
>
> Senior Software Engineer | WSO2

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-17 Thread Janak Amarasena
Hi All,

Tested the following using MySQL 5.7 as the DB in tenant mode. Also used a
JDBC(MySQL) secondary user store.

   - Implicit Grant type
   - Authorization Code Grant type
   - Password Grant type
   - Client Credential Grant type
   - Refresh Token Grant type
   - Token Revoke - Rest
   - Token Introspection
   - SP revoke client secret
   - SP regenerates client secret

[+] Stable - go ahead and release.

Best Regards,
Janak

On Thu, May 16, 2019 at 3:44 PM Tharindu Bandara  wrote:

> Hi all,
>
> I have tested below.
>
>- OAuth2 Dynamic Client Registration - Register
>- OAuth2 Dynamic Client Registration - Read
>- OAuth2 Dynamic Client Registration - Update
>- OAuth2 Dynamic Client Registration - Delete
>
> [+] Stable - go ahead and release.
>
> Thanks,
> Tharindu.
>
> On Thu, May 16, 2019 at 3:13 PM Ayesha Dissanayaka 
> wrote:
>
>> Hi All,
>>
>> I have tested the following use cases in a vanilla instance on mac-OS.
>>
>> "User Management"
>>
>>1. Self-registration with account confirmation enabled
>>2. Resend account confirmation flow
>>3. Username recovery
>>4. Password recovery
>>   1. via Email
>>   2. challenge question based
>>5. Account lock/unlock upon incorrect login attempts
>>6. Internally send notifications while performing the above steps
>>
>> "Authentication"
>>
>>1. same protocol SSO between two SAML based apps
>>2. cross-protocol SSO between two SAML and OAuth apps
>>3. MFA via SMS OTP with Twilio
>>
>> +1 for releasing this RC.
>>
>> Thanks!
>> - Ayesha
>>
>> On Thu, May 16, 2019 at 2:23 PM Dilin Dampahalage  wrote:
>>
>>> Hi All,
>>>
>>> I have tested the below scenarios in IS and IS Analytics packs.
>>>
>>>- Starting up editor/dashboard/worker profiles in the analytics pack
>>>- Publishing events from IS pack
>>>- Checked and verified a successful and failure login
>>>- Checked and verified suspicious login alert
>>>- Checked and verified session stats
>>>
>>> [+] Stable - go ahead and release.
>>>
>>> Thanks,
>>> Dilin
>>>
>>> On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
>>> hasan...@wso2.com> wrote:
>>>
 Hi All,

 The reason of breaking the RC2 vote is because it is reported an unused
 commented configuration description in carbon.xml [1]. From RC3 release
 that commented line in the configuration file is removed and no other code
 level changes done.

 Further in the Analytics-IS pack, the versions are updated according to
 the latest released SP pack versions [2].

 [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
 [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6

 Thanks,
 Hasanthi

 On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
 hasan...@wso2.com> wrote:

> Hi all,
>
> We are pleased to announce the third release candidate of WSO2
> Identity Server 5.8.0.
>
> This release fixes the following issues,
>
>- 5.8.0-RC3 fixes
>
>- 5.8.0-RC2 fixes
>
>- 5.8.0-RC1 fixes
>
>- 5.8.0-Beta5 fixes
>
>- 5.8.0-Beta4 fixes
>
>- 5.8.0-Beta3 fixes
>
>- 5.8.0-Beta fixes
>
>- 5.8.0-Alpha5 fixes
>
>- 5.8.0-Alpha4 fixes
>
>- 5.8.0-Alpha3 fixes
>
>- 5.8.0-Alpha2 fixes
>
>- 5.8.0-Alpha fixes
>
>- 5.8.0-M26 fixes
>
>- 5.8.0-M25 fixes
>
>- 5.8.0-M24 fixes
>
>- 5.8.0-M6 fixes
>
>- 5.8.0-M5 fixes
>
>- 5.8.0-M4 fixes
>
>- 5.8.0-M3 fixes
>
>- 5.8.0-M2 fixes
>
>- 5.8.0-M1 fixes
>

Re: [Dev] [Architecture] [VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-16 Thread Tharindu Bandara
Hi all,

I have tested below.

   - OAuth2 Dynamic Client Registration - Register
   - OAuth2 Dynamic Client Registration - Read
   - OAuth2 Dynamic Client Registration - Update
   - OAuth2 Dynamic Client Registration - Delete

[+] Stable - go ahead and release.

Thanks,
Tharindu.

On Thu, May 16, 2019 at 3:13 PM Ayesha Dissanayaka  wrote:

> Hi All,
>
> I have tested the following use cases in a vanilla instance on mac-OS.
>
> "User Management"
>
>1. Self-registration with account confirmation enabled
>2. Resend account confirmation flow
>3. Username recovery
>4. Password recovery
>   1. via Email
>   2. challenge question based
>5. Account lock/unlock upon incorrect login attempts
>6. Internally send notifications while performing the above steps
>
> "Authentication"
>
>1. same protocol SSO between two SAML based apps
>2. cross-protocol SSO between two SAML and OAuth apps
>3. MFA via SMS OTP with Twilio
>
> +1 for releasing this RC.
>
> Thanks!
> - Ayesha
>
> On Thu, May 16, 2019 at 2:23 PM Dilin Dampahalage  wrote:
>
>> Hi All,
>>
>> I have tested the below scenarios in IS and IS Analytics packs.
>>
>>- Starting up editor/dashboard/worker profiles in the analytics pack
>>- Publishing events from IS pack
>>- Checked and verified a successful and failure login
>>- Checked and verified suspicious login alert
>>- Checked and verified session stats
>>
>> [+] Stable - go ahead and release.
>>
>> Thanks,
>> Dilin
>>
>> On Thu, May 16, 2019 at 12:33 PM Hasanthi Purnima Dissanayake <
>> hasan...@wso2.com> wrote:
>>
>>> Hi All,
>>>
>>> The reason of breaking the RC2 vote is because it is reported an unused
>>> commented configuration description in carbon.xml [1]. From RC3 release
>>> that commented line in the configuration file is removed and no other code
>>> level changes done.
>>>
>>> Further in the Analytics-IS pack, the versions are updated according to
>>> the latest released SP pack versions [2].
>>>
>>> [1] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC2
>>> [2] [VOTE] Release of WSO2 Stream Processor 4.4.0 RC6
>>>
>>> Thanks,
>>> Hasanthi
>>>
>>> On Thu, May 16, 2019 at 12:30 PM Hasanthi Purnima Dissanayake <
>>> hasan...@wso2.com> wrote:
>>>
 Hi all,

 We are pleased to announce the third release candidate of WSO2 Identity
 Server 5.8.0.

 This release fixes the following issues,

- 5.8.0-RC3 fixes

- 5.8.0-RC2 fixes

- 5.8.0-RC1 fixes

- 5.8.0-Beta5 fixes

- 5.8.0-Beta4 fixes

- 5.8.0-Beta3 fixes

- 5.8.0-Beta fixes

- 5.8.0-Alpha5 fixes

- 5.8.0-Alpha4 fixes

- 5.8.0-Alpha3 fixes

- 5.8.0-Alpha2 fixes

- 5.8.0-Alpha fixes

- 5.8.0-M26 fixes

- 5.8.0-M25 fixes

- 5.8.0-M24 fixes

- 5.8.0-M6 fixes

- 5.8.0-M5 fixes

- 5.8.0-M4 fixes

- 5.8.0-M3 fixes

- 5.8.0-M2 fixes

- 5.8.0-M1 fixes



 Source and distribution

 Runtime - https://github.com/wso2/product-is/releases/tag/v
 
 5.8.0-rc3
 
 Analytics -
 https://github.com/wso2/analytics-is/releases/tag/v5.8.0-rc3
 


 Please download, test the product and vote.

 [+] Stable - go ahead and