Skip to content
Snippets Groups Projects

Audit events for project access tokens

Merged Serena Fang requested to merge project-access-token-audit-events into master
All threads resolved!
Compare and Show latest version
8 files
+ 125
15
Compare changes
  • Side-by-side
  • Inline
Files
8
@@ -27,6 +27,7 @@ def execute
@@ -27,6 +27,7 @@ def execute
token_response = create_personal_access_token(user)
token_response = create_personal_access_token(user)
if token_response.success?
if token_response.success?
 
log_event(token_response.payload[:personal_access_token])
success(token_response.payload[:personal_access_token])
success(token_response.payload[:personal_access_token])
else
else
delete_failed_user(user)
delete_failed_user(user)
@@ -106,6 +107,10 @@ def create_membership(resource, user)
@@ -106,6 +107,10 @@ def create_membership(resource, user)
resource.add_user(user, :maintainer, expires_at: params[:expires_at])
resource.add_user(user, :maintainer, expires_at: params[:expires_at])
end
end
 
def log_event(token)
 
::Gitlab::AppLogger.info "PROJECT ACCESS TOKEN CREATION: created_by: #{current_user.username}, project_id: #{resource.id}, token_user: #{token.user.name}, token_id: #{token.id}"
 
end
 
def error(message)
def error(message)
ServiceResponse.error(message: message)
ServiceResponse.error(message: message)
end
end
Loading