phab/src/applications/authstable
phab/src/applications/auth
stable
History Graph
History Graph
Commit | Author | Details | Committed | |||
---|---|---|---|---|---|---|
49bd5721c5a7 | epriestley | Use standard infrastructure for Feed in Audit | Aug 2 2014 | |||
97a8700e4589 | Joshua Spence | Rename `PHIDType` classes | Jul 24 2014 | |||
0c8f487b0fa7 | Joshua Spence | Implement the `getName` method in `PhabricatorApplication` subclasses | Jul 23 2014 | |||
86c399b65783 | Joshua Spence | Rename `PhabricatorApplication` subclasses | Jul 23 2014 | |||
f4b05312cdf5 | Joshua Spence | Fix broken references to auth adapters | Jul 22 2014 | |||
701bb2ac6ec9 | Joshua Spence | Rename auth classes for consistency | Jul 22 2014 | |||
8999a1c1ea55 | Joshua Spence | Utilize `PhutilMethodNotImplementedException` | Jul 21 2014 | |||
254542237a66 | Joshua Spence | Simplify the implementation of `PhabricatorPHIDType` subclasses | Jul 21 2014 | |||
7ac5abb97934 | Evan Priestley | Recover from a broken external OAuth2 account | Jul 15 2014 | |||
e46826ad364d | epriestley | Introduce CAN_EDIT for ExternalAccount, and make CAN_VIEW more liberal | Jul 10 2014 | |||
0398559c8e25 | epriestley | Support Bitbucket as an auth provider in Phabricator | Jun 28 2014 | |||
2d36afeaab7c | epriestley | Manage OAuth1 request token secrets in core OAuth1 workflow | Jun 28 2014 | |||
46d9bebc8430 | epriestley | Remove all `device = true` from page construction | Jun 24 2014 | |||
d0128afa2908 | Joshua Spence/epriestley | Applied various linter fixes. | Jun 10 2014 | |||
0a62f13464b8 | Joshua Spence/epriestley | Change double quotes to single quotes. | Jun 9 2014 | |||
99c72a32d041 | epriestley | Allow installs to require multi-factor authentication for all users | Jun 4 2014 | |||
83112cc2e8c7 | epriestley | Move email verification into PhabricatorUserEditor | Jun 4 2014 | |||
6df1a024137c | epriestley | (Redesign) Clean up older "Tile" code | Jun 4 2014 | |||
81d95cf682a5 | epriestley | Make default view of "Applications" app a full-page launcher | May 29 2014 | |||
f1534e6feb6a | epriestley | Make password reset emails use one-time tokens | May 22 2014 | |||
cac61980f904 | epriestley | Add "temporary tokens" to auth, for SMS codes, TOTP codes, reset codes, etc | May 20 2014 | |||
43d45c49568a | Tal Shiri/epriestley | can now tell phabricator you trust an auth provider's emails (useful for Google… | May 16 2014 | |||
0120388a7516 | Chad Little | Found some missing icons | May 13 2014 | |||
b2f3001ec4be | Chad Little | Replace Sprite-Icons with FontAwesome | May 12 2014 | |||
dfcccd4cb882 | lkassianik/epriestley | Add config to require real name, respect config when creating new users, drop… | May 12 2014 | |||
0da22abdb5f8 | Ashish SHUKLA/epriestley | WordPress.com OAuth2 plugin | May 8 2014 | |||
a04e138ae247 | epriestley | Minor cleanup of some session code | May 1 2014 | |||
e14695821758 | epriestley | Generate QR codes for TOTP tokens | May 1 2014 | |||
50376aad04d2 | epriestley | Require multiple auth factors to establish web sessions | May 1 2014 | |||
e8cebb7da5a4 | epriestley | Add support for aural-only and visual-only elements | May 1 2014 | |||
3fde02004968 | epriestley | Make many actions require high security | May 1 2014 | |||
23e654ec2bc8 | epriestley | Rate limit multi-factor actions | Apr 30 2014 | |||
535cfa3ebebe | epriestley | Add `bin/auth list-factors` and `bin/auth strip` to remove multi-factor auth | Apr 30 2014 | |||
a017a8e02b51 | epriestley | Make two-factor auth actually work | Apr 28 2014 | |||
17709bc1674e | epriestley | Add multi-factor auth and TOTP support | Apr 28 2014 | |||
3f5a55fa6e5a | epriestley | Let users review their own account activity logs | Apr 28 2014 | |||
f42ec84d0c6b | epriestley | Add "High Security" mode to support multi-factor auth | Apr 28 2014 | |||
11fd6afeb10e | Chad Little | Move Timeline icons to Fonts | Apr 22 2014 | |||
499f66963d2b | epriestley | Minor, fix the scoping of a static variable | Apr 11 2014 | |||
2d43cf12964d | Bob Trahan | OAuth - add a little notes section for admins to remember details about… | Apr 9 2014 | |||
582ec5446532 | epriestley | Add a checkbox to the LDAP auth configuration UI to "Always Search" | Apr 8 2014 | |||
750c872839e7 | epriestley | Update Google auth documentation to discuss "Google+ API" and new console URI | Mar 25 2014 | |||
d8713f6f0b8c | epriestley | Make dialogs a little easier to use | Mar 21 2014 | |||
ba8925a531c7 | epriestley | Support multiple LDAP filters in the Phabricator UI | Mar 17 2014 | |||
aea624118b70 | epriestley | Allow users to terminate login sessions | Mar 17 2014 | |||
559c0fe88663 | epriestley | Tune cookie behaviors for 'phcid', 'phreg', etc | Mar 14 2014 | |||
f7b1ed722164 | epriestley | Fix two registration errors for unusual provider emails | Mar 14 2014 | |||
a9f38e55e5e4 | epriestley | Modernize Facebook OAuth instructions | Mar 13 2014 | |||
969d0c3e8de2 | epriestley | Use "\z" instead of "$" to anchor validating regular expressions | Mar 13 2014 | |||
7176240717f2 | epriestley | Whitelist controllers which can receive a 'code' parameter | Mar 12 2014 | |||
e62c7321c28b | epriestley | Automatically verify the setup account's email address | Feb 28 2014 | |||
627011476733 | Joshua Spence/epriestley | Various linter fixes. | Feb 26 2014 | |||
bcf255e9c96b | epriestley | Require CSRF submission to verify email addresses | Feb 26 2014 | |||
14627ad65b89 | epriestley | Fix an incorrectly spelled call on the registration error pathway | Feb 24 2014 | |||
a566ae373015 | epriestley | Require a CSRF code for Twitter and JIRA (OAuth 1) logins | Feb 24 2014 | |||
7cf0358dda11 | epriestley | Disallow email addresses which will overflow MySQL storage | Feb 23 2014 | |||
580bcd0d2be4 | epriestley | Implement bcrypt hasher, transparent login upgrade, and explicit upgrade for… | Feb 18 2014 | |||
3c9153079f13 | epriestley | Make password hashing modular | Feb 18 2014 | |||
4743ad96497b | Chad Little | Miniturize the nav buttons | Jan 31 2014 | |||
049fb2018bde | epriestley | Add very basic "quick create" menu | Jan 29 2014 | |||
152f05aebed0 | epriestley | Fix some security issues with email password resets | Jan 28 2014 | |||
febc494737be | epriestley | Actually check CSRF on Password and LDAP forms | Jan 23 2014 | |||
5b1d9c935a90 | epriestley | After writing "next_uri", don't write it again for a while | Jan 23 2014 | |||
f9ac534f255d | epriestley | Support CSRF for logged-out users | Jan 23 2014 | |||
24544b1a2f24 | epriestley | Straighten out absolute/relative URIs in login providers | Jan 23 2014 | |||
69ddb0ced631 | epriestley | Issue "anonymous" sessions for logged-out users | Jan 23 2014 | |||
072741802350 | epriestley | Consolidate use of magical cookie name strings | Jan 23 2014 | |||
02aa193cb05e | epriestley | Add a common password blacklist | Jan 23 2014 | |||
2ec45d42a689 | epriestley | Remove session limits and sequencing | Jan 16 2014 | |||
acb141cf52c1 | epriestley | Expire and garbage collect unused sessions | Jan 15 2014 | |||
a64228b03fbc | epriestley | Give the session table a normal `id` column as a primary key | Jan 15 2014 | |||
41d2a0953604 | Bob Trahan | Legalpad - make it work for not logged in users | Jan 15 2014 | |||
31a2bebf633b | Chad Little | Move PhabricatorTagView to PHUITagView | Jan 14 2014 | |||
d392a8f15700 | epriestley | Replace "web" and "conduit" magic session strings with constants | Jan 14 2014 | |||
eef314b70149 | epriestley | Separate session management from PhabricatorUser | Jan 14 2014 | |||
3d9e328fb388 | epriestley | Add an "active login sessions" table to Settings | Jan 14 2014 | |||
220d680f3769 | epriestley | Allow PhabricatorUserLog to store non-user PHIDs | Jan 14 2014 | |||
b74c7a3d371a | Chad Little | Simplify PHUIObjectBoxViews handling of Save and Error states | Jan 10 2014 | |||
324ee4e4d539 | epriestley | Fix rendering issue for LDAP configuration provider transactions | Jan 8 2014 | |||
3524ba3fb56a | epriestley | Add warnings to JIRA auth provider that we only support JIRA 6 | Jan 8 2014 | |||
e397103bf211 | epriestley | Extend all "ManagementWorkflow" classes from a base class | Dec 27 2013 | |||
a5dc9067af0c | epriestley | Provide convenience method addTextCrumb() to PhabricatorCrumbsView | Dec 19 2013 | |||
e4920cdf8668 | epriestley | Provide an LDAPS example in LDAP auth | Nov 25 2013 | |||
3a035c02e7b9 | epriestley | Recover more flexibly from an already-verified email | Nov 21 2013 | |||
a518626a8574 | epriestley | Slightly improve behavior for unverified + unapproved users | Nov 21 2013 | |||
6eb02af314a4 | epriestley | Allow "bin/auth recover" to succeed before phabricator.base-uri is set | Nov 20 2013 | |||
dcf909ba56bf | Aviv Eyal/epriestley | Land to GitHub + support stuff | Nov 14 2013 | |||
87a655e8c53c | epriestley | Fix new logged-out "Login" button URI and workflowiness | Nov 13 2013 | |||
fb6e38548b0c | epriestley | Respect "can edit username" in registration UI | Nov 13 2013 | |||
c0e1a63a63ae | epriestley | Implement an approval queue | Nov 13 2013 | |||
0fa411083f72 | epriestley | Show an "approval queue" item on the home page for admins, and sort out menu… | Nov 13 2013 | |||
c8320923c405 | epriestley | Implement most of the administrative UI for approval queues | Nov 13 2013 | |||
7f11e8d7401e | epriestley | Improve handling of email verification and "activated" accounts | Nov 12 2013 | |||
cd73fe78db36 | epriestley | Roadblock users trying to register with external accounts that have invalid… | Nov 12 2013 | |||
30a51dac3686 | epriestley | Clarify registration rules more aggressively when configuring auth | Nov 12 2013 | |||
a29b5b070f5a | Jakub Vrana | Replace some hsprintf() by phutil_tag() | Nov 11 2013 | |||
2250ee6aa6b8 | Aviv Eyal/epriestley | Allow null for token expiration date | Oct 31 2013 | |||
2a5c987c714d | epriestley | Lock policy queries to their applications | Oct 22 2013 | |||
d2895249ee5e | Chad Little | Add Persona login icon | Oct 15 2013 | |||
0ce4f6d17687 | epriestley | Add Persona auth provider | Oct 14 2013 |
c4science · Help