Commit Graph

23234 Commits

Author SHA1 Message Date
Pascal Bleser
0f4fe7e2cd groupware: fix debug server, was missing a lot of configuration options and was binding to :80 2026-06-11 15:01:36 +02:00
Pascal Bleser
c10b501240 docs(groupware): add Groupware related ADRs 2026-06-11 15:01:36 +02:00
Pascal Bleser
2f8ecea69c refactor(groupware): logging and metrics improvements
* some minor code refactorings to improve logging and metrics

 * more code documentation
2026-06-11 15:01:36 +02:00
Pascal Bleser
5f94931b50 jmap: minor logging improvements 2026-06-11 15:01:36 +02:00
Pascal Bleser
e58ec40c45 groupware: improve metrics
* implement more metrics, in a more streamlined fashion

 * use concurrent-map to store SSE streams instead of a regular map with
   one big lock that will not scale when it grows, causing too much
   contention on that one lock

 * while testing error metrics, noticed a few bugs with error handling
   when Stalwart is down: fixed
2026-06-11 15:01:36 +02:00
Pascal Bleser
f758f602cc groupware: jmap: add metrics 2026-06-11 15:01:36 +02:00
Pascal Bleser
b2cde96d41 groupware: implement metrics
* implement a framework for metrics, with a few exemplary ones
2026-06-11 15:01:36 +02:00
Pascal Bleser
c290330971 groupware: Etag handling
* implement correct Etag and If-None-Match handling, responding with
   304 Not Modified if they match

 * introduce SessionState and State string type aliases to ensure we are
   using the correct fields for those, respectively

 * extract the SessionState from the JMAP response bodies in the
   groupware framework instead of having to do that in every single
   groupware API

 * use uint instead of int in some places to clarify that the values are
   >= 0

 * trace-log how long a Session was held in cache before being evicted

 * add Trace-Id header handling: add to response when specified in
   request, and implement a custom request logger to include it as a
   field

 * implement a more compact trace-logging of all the methods and URIs
   that are served, to put them into a single log entry instead of
   creating one log entry for every URI
2026-06-11 15:01:36 +02:00
Pascal Bleser
4a7a5cfa62 groupware: initial related emails implementation with SSE 2026-06-11 15:01:35 +02:00
Pascal Bleser
f3d998ac2a groupware: add /bootstrap
* add a GET /accounts/{a}/boostrap URI that delivers the same as GET /
   but also mailboxes for a given account, in case the UI remembers the
   last used account identifier, to avoid an additional roundtrip

 * streamline the use of simpleError()

 * add logging of errors at the calling site

 * add logging of evictions of Sessions from the cache

 * change default Session cache TTL to 5min instead of 30sec
2026-06-11 15:01:35 +02:00
Pascal Bleser
d0fc663e94 groupware: swagger API documentation improvements
* add more documentation for properties

 * fixes after a bit of trial-and-error with go-swagger

 * fix email filter marshalling when there are no search criteria

 * introduce an apidoc.yml that contains Swagger data and is merged when
   generating the swagger.yml from sources
2026-06-11 15:01:35 +02:00
Pascal Bleser
3c20edc0c9 Groupware improvements
* ensure that all the jmap responses contain the SessionState

 * implement missing errors that were marked as TODO

 * moved common functions from pkg/jmap and pkg/services/groupware to
   pkg/log and pkg/structs to commonalize them across both source trees

 * implement error handling for SetError occurences

 * Email: replace anonymous map[string]bool for mailbox rights with a
   MailboxRights struct, as the keys are well-defined, which allows for
   properly documenting them

 * introduce ObjectType as an "enum"

 * fix JSON marshalling and unmarshalling of EmailBodyStructure

 * move the swagger documentation structs from groupware_api.go to
   groupware_docs.go

 * fix: change verb for /groupware/accounts/*/vacation from POST to PUT
2026-06-11 15:01:35 +02:00
Pascal Bleser
d3054a68a7 groupware: minor email searching response improvements + started implementing vacation response setting API 2026-06-11 15:01:35 +02:00
Pascal Bleser
e3bb152bca groupware: add identities of all accounts to the index resource 2026-06-11 15:01:35 +02:00
Pascal Bleser
1d514b9858 groupware: fix email search, add variant that includes the full emails 2026-06-11 15:01:35 +02:00
Pascal Bleser
46f46e1f73 groupware: fix email search, add variant that includes the full emails 2026-06-11 15:01:35 +02:00
Pascal Bleser
3e7c4a023b Groupware: refactor jmap package, implement Email/set, EmailSubmission
* refactor the jmap package to split it into several files as the
   jmap.api.go file was becoming too unwieldy

 * refactor the Groupware handler function response to be a Response
   object, to be more future-proof and avoid adding more and more
   return parameters while handling "no content" response as well

 * more godoc for the JMAP model

 * add Email creation, updating, deleting (Email/set,
   EmailSubmission/set)

 * add endpoints
   - POST /accounts/{accountid}/messages
   - PATCH|PUT /accounts/{accountid}/messages/{messageid}
   - DELETE /accounts/{accountid}/messages/{messageid}
2026-06-11 15:01:35 +02:00
Pascal Bleser
e364f73caa groupware: implement message search with snippets 2026-06-11 15:01:35 +02:00
Pascal Bleser
8533a693b2 groupware: blob streaming (upload and download) 2026-06-11 15:01:35 +02:00
Pascal Bleser
f290fe18e8 groupware: more JMAP operations implementation 2026-06-11 15:01:35 +02:00
Pascal Bleser
7acb223e4e groupware: further implementation and improvements 2026-06-11 15:01:35 +02:00
Pascal Bleser
dcc0634f0b upgrade Stalwart to 0.13.2 2026-06-11 15:01:35 +02:00
Pascal Bleser
5074f1b99b refactored the Session object, refactored the services/groupware directory, and started Swagger documentation implementation 2026-06-11 15:01:35 +02:00
Pascal Bleser
17ba168593 groupware: refactoring the API mechanisms 2026-06-11 15:01:35 +02:00
Pascal Bleser
de5fe452af groupware: implement JSON:API's error response format, with a revamped error handling in jmap and services/groupware 2026-06-11 15:01:35 +02:00
Pascal Bleser
e1683ae74b Refactor groupware service after ADR decision on the Groupware API
* after having decided that the Groupware API should be a standalone
   independent custom REST API that is using JMAP data models as much as
   possible,
 * removed Groupware APIs from the Graph service
 * moved Groupware implementation to the Groupware service, and
   refactored a few things accordingly
2026-06-11 15:01:30 +02:00
Pascal Bleser
294e326d72 Groupware and jmap: cleanup and API documentation 2026-06-11 15:00:43 +02:00
Pascal Bleser
2fd70615ee groupware: remove unneeded messages.go that was a remainder from an earlier implementation attempt, which also fixes compilation issues due to changes in main 2026-06-11 15:00:43 +02:00
Pascal Bleser
e33217161d opencloud_full: upgrade Stalwart to 0.12.5, and use the ghcr.io container repository to avoid Hub limits 2026-06-11 15:00:43 +02:00
Pascal Bleser
a5789912b9 Groupware improvements: refactoring, k6 tests
* refactored the models to be strongly typed with structs and mapstruct
   to decompose the dynamic parts of the JMAP payloads

 * externalized large JSON strings for tests into .json files under
   testdata/

 * added a couple of fantasy Graph groupware APIs to explore further
   options

 * added k6 scripts to test those graph/me/messages APIs, with a setup
   program to set up users in LDAP, fill their IMAP inbox, activate them
   in Stalwart, cleaning things up, etc...
2026-06-11 15:00:43 +02:00
Pascal Bleser
a06b4fdff8 fix Stalwart LDAP configuration 2026-06-11 15:00:43 +02:00
Pascal Bleser
e2215fc28a Use password policy overlay in LDAP and configure Stalwart to use it 2026-06-11 15:00:43 +02:00
Pascal Bleser
8469f44482 upgrade Stalwart to 0.12.4 2026-06-11 15:00:43 +02:00
Pascal Bleser
e31ad16b1f groupware: removed debugging logs 2026-06-11 15:00:43 +02:00
Pascal Bleser
99e984b8f9 jwkset: remove debugging printlns 2026-06-11 15:00:43 +02:00
Pascal Bleser
7027ea62c1 auth-api: fix: was missing newly introduced metrics 2026-06-11 15:00:43 +02:00
Pascal Bleser
8f340c96bf groupware and jmap improvements and refactoring 2026-06-11 15:00:43 +02:00
Pascal Bleser
8f64f2aa27 upgrade Stalwart to 0.12 2026-06-11 15:00:43 +02:00
Pascal Bleser
ba3c9bb398 minor corrections to the Stalwart configuration 2026-06-11 15:00:43 +02:00
Pascal Bleser
a233cc2ae5 Introduce a the auth-api service
* primitive implementation to demonstrate how it could work, still to
   be considered WIP at best

 * add new dependency: MicahParks/jwkset and MicahParks/keyfunc to
   retrieve the JWK set from KeyCloak to verify the signature of the
   JWTs sent as part of Bearer authentication in the /auth API

 * (minor) opencloud/.../service.go: clean up a logging statement that
   was introduced earlier to hunt down why the auth-api service was not
   being started
2026-06-11 15:00:43 +02:00
Pascal Bleser
4f2782930a add an auth-api service to make an exemplary implementation of an external authentication API for third party services such as Stalwart 2026-06-11 15:00:41 +02:00
Pascal Bleser
e0b845aa62 move services/groupware/pkg/jmap to pkg/jmap 2026-06-11 15:00:07 +02:00
Pascal Bleser
3d5329e08e WIP: restructure the Jmap client, and implement the /me/messages Graph API endpoint with it 2026-06-11 15:00:07 +02:00
Pascal Bleser
48a5387f6f add an OIDC Directory to Stalwart, requires exposing Keycloak port 8080 directly to access the userinfo endpoint using HTTP since the certificates in traefik are self-signed and end up being rejected by Stalwart with no option to bypass the certificate check 2026-06-11 15:00:07 +02:00
Pascal Bleser
d26edbb243 rename Stalwart fallback admin username from 'admin' to 'mailadmin' since 'admin' exists as a regular user in LDAP and thus won't have access to the administration 2026-06-11 15:00:06 +02:00
Pascal Bleser
53ca9f40f8 add missing routing for /groupware (currently unprotected for testing) 2026-06-11 15:00:05 +02:00
Pascal Bleser
a3f1ee1ab9 WIP: initial implementation of the groupware service 2026-06-11 14:59:09 +02:00
Pascal Bleser
e12a738b7d Add Stalwart container to the opencloud_full deployment, using the OpenLDAP container as a directory for user authentication 2026-06-11 14:59:08 +02:00
opencloudeu
3c0d70987d [tx] updated from transifex 2026-06-11 10:00:56 +00:00
opencloudeu
6e0045bd87 [tx] updated from transifex 2026-06-11 09:51:16 +00:00