mirror of
https://github.com/Termix-SSH/Termix.git
synced 2026-08-29 10:21:34 +00:00
* feat: 1Password Connect secret sources for SSH credentials Hosts and credentials can hold op://vault/item/field references instead of secrets; they are resolved at connect time from the user's secret source (1Password Connect) at the single point where every subsystem receives plaintext credentials, so terminal, SFTP, Docker, metrics and tunnels all work without per-subsystem changes. Sources are per user, optionally shared, with the access token encrypted under the owner's data key; resolved values are cached briefly in memory. * style: format secret source changes
14 lines
722 B
SQL
14 lines
722 B
SQL
CREATE TABLE "secret_sources" (
|
|
"id" varchar(255) PRIMARY KEY NOT NULL,
|
|
"user_id" varchar(255) NOT NULL,
|
|
"name" varchar(255) NOT NULL,
|
|
"kind" text DEFAULT 'onepassword-connect' NOT NULL,
|
|
"base_url" text NOT NULL,
|
|
"token" text NOT NULL,
|
|
"shared" boolean DEFAULT false NOT NULL,
|
|
"created_at" varchar(255) DEFAULT CURRENT_TIMESTAMP NOT NULL,
|
|
"updated_at" varchar(255) DEFAULT CURRENT_TIMESTAMP NOT NULL
|
|
);
|
|
--> statement-breakpoint
|
|
ALTER TABLE "secret_sources" ADD CONSTRAINT "secret_sources_user_id_users_id_fk" FOREIGN KEY ("user_id") REFERENCES "public"."users"("id") ON DELETE cascade ON UPDATE no action;--> statement-breakpoint
|
|
CREATE INDEX "idx_secret_sources_user" ON "secret_sources" USING btree ("user_id"); |