Commit Graph

35950 Commits

Author SHA1 Message Date
Kris Stern 62a1d27bb4
Merge branch 'master' into oklch 2025-01-13 13:16:00 +08:00
Kris Stern 271b09808b
Update dependency org.jenkins-ci.main:jenkins-test-harness to v2378 (#10146) 2025-01-13 12:52:12 +08:00
renovate[bot] 85269a58c6
Update dependency org.jenkins-ci.main:jenkins-test-harness to v2378 2025-01-12 22:23:14 +00:00
Jan Faracik fe7bb28c96 Update pom.xml 2025-01-12 17:57:24 +00:00
Kris Stern e815917abe
Update dependency io.jenkins.plugins:design-library to v353 (#10144) 2025-01-13 01:43:39 +08:00
renovate[bot] 36c102be1c
Update dependency io.jenkins.plugins:design-library to v353 2025-01-12 10:10:23 +00:00
Jan Faracik 9c384c48e1
Merge branch 'master' into revamp-cli 2025-01-12 10:10:11 +00:00
Kris Stern e5f18b5efe
Update comment in `additionalAuthenticationChecks` to clarify why our no-op implementation is ok (#10140)
<!-- Comment:
A great PR typically begins with the line below.
Replace XXXXX with the numeric part of the issue ID you created in Jira.
Note that if you want your changes backported into LTS, you need to
create a Jira issue. See
https://www.jenkins.io/download/lts/#backporting-process for more
information.
-->

While investigating a security issue a few months back, I noticed that
our implementation of
`AbstractUserDetailsAuthenticationProvider.additionalAuthenticationChecks`
did not use the approach recommended in the superclass method's Javadoc,
which was a bit concerning after looking at some of the branches in
[this
code](8a6e1297a1/core/src/main/java/org/springframework/security/authentication/dao/AbstractUserDetailsAuthenticationProvider.java (L122-L169)).
After some investigation it seems fine, but I think it is worth noting
_why_ it is fine in case someone copies this code when creating a new
security realm and they want to use Spring Security's user caching
system.

<!-- Comment:
If the issue is not fully described in Jira, add more information here
(justification, pull request links, etc.).

 * We do not require Jira issues for minor improvements.
* Bug fixes should have a Jira issue to facilitate the backporting
process.
 * Major new features should have a Jira issue.
-->

### Testing done

This PR only updates a comment.

<!-- Comment:
Provide a clear description of how this change was tested.
At minimum this should include proof that a computer has executed the
changed lines.
Ideally this should include an automated test or an explanation as to
why this change has no tests.
Note that automated test coverage is less than complete, so a successful
PR build does not necessarily imply that a computer has executed the
changed lines.
If automated test coverage does not exist for the lines you are
changing, you must describe the scenario(s) in which you manually tested
the change.
For frontend changes, include screenshots of the relevant page(s) before
and after the change.
For refactoring and code cleanup changes, exercise the code before and
after the change and verify the behavior remains the same.
-->

### Proposed changelog entries

N/A

### Proposed upgrade guidelines

N/A

<!-- Comment:
Leave the proposed upgrade guidelines in the pull request with the "N/A"
value if no upgrade guidelines are needed.
The changelog generator relies on the presence of the upgrade guidelines
section as part of its data extraction process.
-->

```[tasklist]
### Submitter checklist
- [ ] The Jira issue, if it exists, is well-described.
- [ ] The changelog entries and upgrade guidelines are appropriate for the audience affected by the change (users or developers, depending on the change) and are in the imperative mood (see [examples](https://github.com/jenkins-infra/jenkins.io/blob/master/content/_data/changelogs/weekly.yml)). Fill in the **Proposed upgrade guidelines** section only if there are breaking changes or changes that may require extra steps from users during upgrade.
- [x] There is automated testing or an explanation as to why this change has no tests.
- [ ] New public classes, fields, and methods are annotated with `@Restricted` or have `@since TODO` Javadocs, as appropriate.
- [ ] New deprecations are annotated with `@Deprecated(since = "TODO")` or `@Deprecated(forRemoval = true, since = "TODO")`, if applicable.
- [ ] New or substantially changed JavaScript is not defined inline and does not call `eval` to ease future introduction of Content Security Policy (CSP) directives (see [documentation](https://www.jenkins.io/doc/developer/security/csp/)).
- [ ] For dependency updates, there are links to external changelogs and, if possible, full differentials.
- [ ] For new APIs and extension points, there is a link to at least one consumer.
```

### Desired reviewers



<!-- Comment:
If you need an accelerated review process by the community (e.g., for
critical bugs), mention @jenkinsci/core-pr-reviewers.
-->

Before the changes are marked as `ready-for-merge`:

```[tasklist]
### Maintainer checklist
- [x] There are at least two (2) approvals for the pull request and no outstanding requests for change.
- [x] Conversations in the pull request are over, or it is explicit that a reviewer is not blocking the change.
- [ ] Changelog entries in the pull request title and/or **Proposed changelog entries** are accurate, human-readable, and in the imperative mood.
- [ ] Proper changelog labels are set so that the changelog can be generated automatically.
- [ ] If the change needs additional upgrade steps from users, the `upgrade-guide-needed` label is set and there is a **Proposed upgrade guidelines** section in the pull request title (see [example](https://github.com/jenkinsci/jenkins/pull/4387)).
- [ ] If it would make sense to backport the change to LTS, a Jira issue must exist, be a _Bug_ or _Improvement_, and be labeled as `lts-candidate` to be considered (see [query](https://issues.jenkins.io/issues/?filter=12146)).
```
2025-01-12 13:28:58 +08:00
Kris Stern 9b6bc6992f
Remove YUI (#10135)
<!-- Comment:
A great PR typically begins with the line below.
Replace XXXXX with the numeric part of the issue ID you created in Jira.
Note that if you want your changes backported into LTS, you need to
create a Jira issue. See
https://www.jenkins.io/download/lts/#backporting-process for more
information.
-->

See JENKINS-75100

Now that the [disable by default of
YUI](https://github.com/jenkinsci/jenkins/pull/10045) has been released
for ~1 month with no complaints its time to start thinking about
removing YUI itself.

We're passed the baseline cut-off for the next LTS which was what
@MarkEWaite requested that I wait for before removing YUI fully

What I've left:
* I've removed CSS where I think its safe but I haven't removed all
mentions of `yui`.
* `l:yui` I've changed it to do nothing but its used in a few
unmaintained plugins, I could remove this, thoughts?
* There's a few TODOs that say they could be cleaned up after yui was
removed for the component, but hasn't been done yet

ATH passed:
https://github.com/jenkinsci/acceptance-test-harness/pull/1884
Bom: https://github.com/jenkinsci/bom/pull/4176

<!-- Comment:
If the issue is not fully described in Jira, add more information here
(justification, pull request links, etc.).

 * We do not require Jira issues for minor improvements.
* Bug fixes should have a Jira issue to facilitate the backporting
process.
 * Major new features should have a Jira issue.
-->

### Testing done

Clicked around a number of pages and didn't see anything wrong.

<!-- Comment:
Provide a clear description of how this change was tested.
At minimum this should include proof that a computer has executed the
changed lines.
Ideally this should include an automated test or an explanation as to
why this change has no tests.
Note that automated test coverage is less than complete, so a successful
PR build does not necessarily imply that a computer has executed the
changed lines.
If automated test coverage does not exist for the lines you are
changing, you must describe the scenario(s) in which you manually tested
the change.
For frontend changes, include screenshots of the relevant page(s) before
and after the change.
For refactoring and code cleanup changes, exercise the code before and
after the change and verify the behavior remains the same.
-->

### Proposed changelog entries

- Remove the Yahoo! User Interface library

<!-- Comment:
The changelog entry should be in the imperative mood; e.g., write "do
this"/"return that" rather than "does this"/"returns that".
For examples, see: https://www.jenkins.io/changelog/

Do not include the Jira issue in the changelog entry.
Include the Jira issue in the description of the pull request so that
the changelog generator can find it and include it in the generated
changelog.

You may add multiple changelog entries if applicable by adding a new
entry to the list, e.g.
- First changelog entry
- Second changelog entry
-->

### Proposed upgrade guidelines

N/A

<!-- Comment:
Leave the proposed upgrade guidelines in the pull request with the "N/A"
value if no upgrade guidelines are needed.
The changelog generator relies on the presence of the upgrade guidelines
section as part of its data extraction process.
-->

```[tasklist]
### Submitter checklist
- [ ] The Jira issue, if it exists, is well-described.
- [ ] The changelog entries and upgrade guidelines are appropriate for the audience affected by the change (users or developers, depending on the change) and are in the imperative mood (see [examples](https://github.com/jenkins-infra/jenkins.io/blob/master/content/_data/changelogs/weekly.yml)). Fill in the **Proposed upgrade guidelines** section only if there are breaking changes or changes that may require extra steps from users during upgrade.
- [ ] There is automated testing or an explanation as to why this change has no tests.
- [ ] New public classes, fields, and methods are annotated with `@Restricted` or have `@since TODO` Javadocs, as appropriate.
- [ ] New deprecations are annotated with `@Deprecated(since = "TODO")` or `@Deprecated(forRemoval = true, since = "TODO")`, if applicable.
- [ ] New or substantially changed JavaScript is not defined inline and does not call `eval` to ease future introduction of Content Security Policy (CSP) directives (see [documentation](https://www.jenkins.io/doc/developer/security/csp/)).
- [ ] For dependency updates, there are links to external changelogs and, if possible, full differentials.
- [ ] For new APIs and extension points, there is a link to at least one consumer.
```

### Desired reviewers

@mention

<!-- Comment:
If you need an accelerated review process by the community (e.g., for
critical bugs), mention @jenkinsci/core-pr-reviewers.
-->

Before the changes are marked as `ready-for-merge`:

```[tasklist]
### Maintainer checklist
- [ ] There are at least two (2) approvals for the pull request and no outstanding requests for change.
- [ ] Conversations in the pull request are over, or it is explicit that a reviewer is not blocking the change.
- [ ] Changelog entries in the pull request title and/or **Proposed changelog entries** are accurate, human-readable, and in the imperative mood.
- [ ] Proper changelog labels are set so that the changelog can be generated automatically.
- [ ] If the change needs additional upgrade steps from users, the `upgrade-guide-needed` label is set and there is a **Proposed upgrade guidelines** section in the pull request title (see [example](https://github.com/jenkinsci/jenkins/pull/4387)).
- [ ] If it would make sense to backport the change to LTS, a Jira issue must exist, be a _Bug_ or _Improvement_, and be labeled as `lts-candidate` to be considered (see [query](https://issues.jenkins.io/issues/?filter=12146)).
```
2025-01-12 13:27:28 +08:00
Kris Stern d0aa978e57
Update the 'Copy' button animation (#10139)
Small little PR to update the 'Copy' button animation. You now get a
little more visual feedback that something has been copied successfully,
the copy symbol now transforms into a check mark.

**Before**


https://github.com/user-attachments/assets/65e9c661-3465-4734-a67c-9ccbc66880a3

**After**


https://github.com/user-attachments/assets/0486dc96-1e15-4974-832e-298b3a8a59e8

In doing so the 'Copied' tooltip has been dropped, happy to hear
thoughts on this, I personally found it a little janky in how it
replaced the existing tooltip on click.

### Testing done

* Animation displays as expected, copying still works

### Proposed changelog entries

- Update the 'Copy' button animation

### Proposed upgrade guidelines

N/A

<!-- Comment:
Leave the proposed upgrade guidelines in the pull request with the "N/A"
value if no upgrade guidelines are needed.
The changelog generator relies on the presence of the upgrade guidelines
section as part of its data extraction process.
-->

```[tasklist]
### Submitter checklist
- [ ] The Jira issue, if it exists, is well-described.
- [x] The changelog entries and upgrade guidelines are appropriate for the audience affected by the change (users or developers, depending on the change) and are in the imperative mood (see [examples](https://github.com/jenkins-infra/jenkins.io/blob/master/content/_data/changelogs/weekly.yml)). Fill in the **Proposed upgrade guidelines** section only if there are breaking changes or changes that may require extra steps from users during upgrade.
- [x] There is automated testing or an explanation as to why this change has no tests.
- [ ] New public classes, fields, and methods are annotated with `@Restricted` or have `@since TODO` Javadocs, as appropriate.
- [ ] New deprecations are annotated with `@Deprecated(since = "TODO")` or `@Deprecated(forRemoval = true, since = "TODO")`, if applicable.
- [ ] New or substantially changed JavaScript is not defined inline and does not call `eval` to ease future introduction of Content Security Policy (CSP) directives (see [documentation](https://www.jenkins.io/doc/developer/security/csp/)).
- [ ] For dependency updates, there are links to external changelogs and, if possible, full differentials.
- [ ] For new APIs and extension points, there is a link to at least one consumer.
```

### Desired reviewers

@jenkinsci/sig-ux 

<!-- Comment:
If you need an accelerated review process by the community (e.g., for
critical bugs), mention @jenkinsci/core-pr-reviewers.
-->

Before the changes are marked as `ready-for-merge`:

```[tasklist]
### Maintainer checklist
- [x] There are at least two (2) approvals for the pull request and no outstanding requests for change.
- [x] Conversations in the pull request are over, or it is explicit that a reviewer is not blocking the change.
- [ ] Changelog entries in the pull request title and/or **Proposed changelog entries** are accurate, human-readable, and in the imperative mood.
- [ ] Proper changelog labels are set so that the changelog can be generated automatically.
- [ ] If the change needs additional upgrade steps from users, the `upgrade-guide-needed` label is set and there is a **Proposed upgrade guidelines** section in the pull request title (see [example](https://github.com/jenkinsci/jenkins/pull/4387)).
- [ ] If it would make sense to backport the change to LTS, a Jira issue must exist, be a _Bug_ or _Improvement_, and be labeled as `lts-candidate` to be considered (see [query](https://issues.jenkins.io/issues/?filter=12146)).
```
2025-01-12 13:25:38 +08:00
Jan Faracik 7701e76a6c
Merge branch 'master' into oklch 2025-01-11 12:29:53 +00:00
michael cirioli 7fa6b5c465
[JENKINS-75086] Allow users with Jenkins.MANAGE to configure global build discarders (#10113)
* initial commit

* this change is not actually needed

* rebuild
2025-01-11 00:19:29 +08:00
Jan Faracik e7f2577bc7 Merge branch 'new-copy-button' into revamp-cli 2025-01-10 11:57:55 +00:00
Jan Faracik c8a3bc3e53 Tidy up 2025-01-10 11:57:36 +00:00
Jan Faracik 6efd73e08a Tidy up management link 2025-01-10 11:56:07 +00:00
Jan Faracik 53475da020 Merge branch 'master' into revamp-cli 2025-01-10 11:53:03 +00:00
Jan Faracik 667a29ee15
Merge branch 'master' into oklch 2025-01-10 09:42:50 +00:00
Tim Jacomb 37082db8d3
Merge branch 'master' into new-copy-button 2025-01-09 22:01:56 +00:00
Devin Nusbaum 2a55c2ea7b
Update comment in `additionalAuthenticationChecks` to clarify why our no-op implementation is ok 2025-01-09 16:38:31 -05:00
Tim Jacomb 45e27bb9c5
Update core/src/main/java/hudson/Functions.java
Co-authored-by: Basil Crow <me@basilcrow.com>
2025-01-09 19:07:00 +00:00
Tim Jacomb 6787247d14
Update core/src/main/java/hudson/Functions.java
Co-authored-by: Basil Crow <me@basilcrow.com>
2025-01-09 19:06:49 +00:00
renovate[bot] a49c83c772
Update dependency org.jenkins-ci.main:jenkins-test-harness to v2376 (#10138)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-01-09 10:45:49 -08:00
Basil Crow bcda96c5ec
Remove Commons Discovery (#10122) 2025-01-09 10:42:03 -08:00
Basil Crow 53ad7f9c20
Consistent Jelly version for `commons-jelly-tags-xml` (#10131) 2025-01-09 10:41:23 -08:00
Jan Faracik 331c7685ca
Display Console Output on the build page (behind an experimental flag) (#10115)
Co-authored-by: Tim Jacomb <21194782+timja@users.noreply.github.com>
2025-01-09 15:27:05 +00:00
Jan Faracik 4617883487 Update _buttons.scss 2025-01-09 15:02:52 +00:00
Jan Faracik 1a290c7b48 Update _buttons.scss 2025-01-09 14:53:47 +00:00
Jan Faracik 8090452f4d Rename class 2025-01-09 14:40:07 +00:00
Jan Faracik 954c0c4a04 Init 2025-01-09 14:39:32 +00:00
Tim Jacomb ce1ecd3224
Restore DEBUG_YUI field for now 2025-01-09 14:31:09 +00:00
Tim Jacomb 33aee9ba2c
Update core/src/main/resources/lib/layout/yui.jelly
Co-authored-by: Daniel Beck <1831569+daniel-beck@users.noreply.github.com>
2025-01-09 14:21:54 +00:00
Jan Faracik 586d920ee6 Push 2025-01-09 12:50:54 +00:00
Jan Faracik aedd00ccdb Update index.properties 2025-01-09 12:04:28 +00:00
Jan Faracik bf014f65ed Update _layout.scss 2025-01-09 12:01:19 +00:00
Jan Faracik e2f06340f7 Tidy up 2025-01-09 12:00:09 +00:00
Jan Faracik 521944335c Tidy up 2025-01-09 11:58:28 +00:00
Jan Faracik dac325eced Tidy up 2025-01-09 11:54:53 +00:00
Jan Faracik 42a72751a1 Merge branch 'styles-test' into revamp-cli 2025-01-09 11:47:28 +00:00
Jan Faracik 7b74a4694c Init 2025-01-09 11:11:51 +00:00
Tim Jacomb 9f8be1f4ef
Merge branch 'master' into remove-yui 2025-01-09 10:45:21 +00:00
Jan Faracik b6e58331ed
Wrap app bars on smaller screens (#10119)
Co-authored-by: Kris Stern <krisstern@outlook.com>
2025-01-09 09:26:54 +00:00
Tim Jacomb e8c71ee9c5
Remove YUI suffix 2025-01-09 08:07:00 +00:00
Tim Jacomb 834891d656
Merge branch 'master' into remove-yui 2025-01-08 22:03:26 +00:00
renovate[bot] 08ed479b97
Update dependency org.jenkins-ci.main:jenkins-test-harness to v2375 (#10136)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-01-08 11:42:14 -08:00
Jan Faracik 507a4b9b04
Merge branch 'master' into oklch 2025-01-08 16:19:22 +00:00
Tim Jacomb c06f1dce00
Remove YUI 2025-01-08 14:29:34 +00:00
renovate[bot] 986f6315f8
Update jelly.version to v1.1-jenkins-20250108 (#10132)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-01-07 17:44:09 -08:00
renovate[bot] 713f6178ce
Update softprops/action-gh-release action to v2.2.1 (#10134)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-01-07 17:43:26 -08:00
Basil Crow b9fdb44d64
Stop ignoring updates to `softprops/action-gh-release` (#10133) 2025-01-07 17:41:13 -08:00
renovate[bot] ca0db41149
Update dependency sass to v1.83.1 (#10126)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-01-07 16:12:34 -08:00