hivectl, hive-c0re: remove dead matrix create-user/promote-user/reset-password
Human matrix accounts come from SSO, not hivectl. Matrix homeserver admin will come from authelia's admins group (sync tracked in #4585); password reset moves to swarm level (#4798). promote-user and reset-password were already broken from the hive: the hive's sender account has no admin sender to call the admin room with, only the swarm's does. Removes the three hivectl matrix verbs, their HostRequest variants, their hive-c0re handlers, and the admin-room helpers (discover room id, send-and-poll, event-id extraction, password/success parsing) that only they used. sync-admin and invite are unchanged. Refs #4585
This commit is contained in:
parent
69ae23f801
commit
93bbec015f
12 changed files with 37 additions and 748 deletions
|
|
@ -284,29 +284,9 @@ pub enum HostRequest {
|
|||
#[serde(default)]
|
||||
scope: LifecycleScope,
|
||||
},
|
||||
/// Create or refresh a matrix account + access token for `name`.
|
||||
/// The daemon runs the provisioning (it holds the register + admin
|
||||
/// tokens and the matrix creds dir) and returns the operator-facing
|
||||
/// results (persisted-token path for agents, or the freshly-minted
|
||||
/// token + password for non-agent accounts) in
|
||||
/// [`HostResponse::messages`]. `password` is resolved by the client
|
||||
/// (inline flag or stdin) and `None` requests a random throwaway.
|
||||
MatrixCreateUser {
|
||||
name: Ident,
|
||||
#[serde(default)]
|
||||
password: Option<String>,
|
||||
},
|
||||
/// Provision (or re-provision) the hive system admin matrix account.
|
||||
/// Daemon-side equivalent of `hivectl matrix sync-admin`.
|
||||
MatrixSyncAdmin,
|
||||
/// Promote a matrix user to homeserver admin via the admin API.
|
||||
/// Uses the daemon's system admin token; `server_name` is discovered
|
||||
/// from the running homeserver.
|
||||
MatrixPromoteUser { name: Ident },
|
||||
/// Reset a matrix user's password via the admin API and persist the
|
||||
/// new password to the matrix creds dir so a later token mint can
|
||||
/// re-login. Returns the outcome in [`HostResponse::messages`].
|
||||
MatrixResetPassword { name: Ident },
|
||||
/// Invite a matrix user to the hive Space (default) or a specific
|
||||
/// `room`. Uses the daemon's admin token; idempotent
|
||||
/// (already-member / already-invited is a no-op).
|
||||
|
|
@ -573,8 +553,8 @@ pub struct HostResponse {
|
|||
pub nodes: Option<Vec<hive_jobq_wire::GraphNode>>,
|
||||
/// Free-form operator-facing output lines the client prints verbatim
|
||||
/// (one per line). Carries results a request produced daemon-side that
|
||||
/// have no structured home — e.g. a freshly-minted matrix token, a
|
||||
/// reset password, or an invited room id from the `Matrix*` requests.
|
||||
/// have no structured home — e.g. the sender token path from
|
||||
/// `MatrixSyncAdmin`, or the invited room id from `MatrixInvite`.
|
||||
/// Empty for requests that produce no such output.
|
||||
#[serde(default, skip_serializing_if = "Vec::is_empty")]
|
||||
pub messages: Vec<String>,
|
||||
|
|
|
|||
Loading…
Reference in a new issue