Sebastian Sdorra
|
df6d9dacf8
|
implement LoginAttemptHandler for scm-manager 2
|
2017-01-15 20:27:06 +01:00 |
|
Sebastian Sdorra
|
cbc6dad0fe
|
fixed duplicate filter bindings
|
2017-01-15 19:33:22 +01:00 |
|
Sebastian Sdorra
|
3536c29908
|
added DAORealmHelperFactory to simplify the creation of dao based realms
|
2017-01-15 12:50:29 +01:00 |
|
Sebastian Sdorra
|
76384de26f
|
enabled xsrf be default and remove claim prefix to reduce size
|
2017-01-14 18:26:11 +01:00 |
|
Sebastian Sdorra
|
ba11ed1a0f
|
added missing unit tests for xsrf related classes
|
2017-01-13 06:59:44 +01:00 |
|
Sebastian Sdorra
|
7429a90424
|
fix broken build
|
2017-01-13 06:43:59 +01:00 |
|
Sebastian Sdorra
|
4e62f9552a
|
re implement xsrf protection for scm-manager 2.0.0
|
2017-01-12 22:16:14 +01:00 |
|
Sebastian Sdorra
|
46d8b58810
|
introduce TokenClaimsEnricher and TokenClaimsValidator api
|
2017-01-12 22:04:19 +01:00 |
|
Sebastian Sdorra
|
0a22bc9919
|
remove merge comments
|
2017-01-12 20:51:55 +01:00 |
|
Sebastian Sdorra
|
fc6287fd40
|
remove deprecations and fixed some compiler warnings
|
2017-01-12 20:02:06 +01:00 |
|
Sebastian Sdorra
|
bad99919f4
|
merge with branch 1.x
|
2017-01-12 19:50:39 +01:00 |
|
Sebastian Sdorra
|
5332ac2466
|
refactor store api
|
2016-12-11 21:31:05 +01:00 |
|
Sebastian Sdorra
|
837df4b87c
|
fix injection with java 8
|
2016-12-11 21:30:33 +01:00 |
|
Sebastian Sdorra
|
c673b0fb10
|
replace admin role check from SecurityUtil with permission checks
|
2016-12-08 07:56:40 +01:00 |
|
Sebastian Sdorra
|
64581e1f75
|
use already exists exceptions always with an appropriate message
|
2016-12-07 22:40:24 +01:00 |
|
Sebastian Sdorra
|
3709ce7602
|
fix typo
|
2016-12-07 22:28:06 +01:00 |
|
Sebastian Sdorra
|
2a6f51fa6d
|
added message to GroupAlreadyExistsException
|
2016-12-07 22:24:59 +01:00 |
|
Sebastian Sdorra
|
d3adf8a893
|
use GroupPermissions for DefaultGroupManager
|
2016-12-07 22:22:53 +01:00 |
|
Sebastian Sdorra
|
26ece65363
|
use ssp for user and repository permission checks
|
2016-12-06 22:04:13 +01:00 |
|
Sebastian Sdorra
|
807eccf459
|
added unit tests for security filters
|
2016-11-05 19:46:32 +01:00 |
|
Sebastian Sdorra
|
da8c997f59
|
added primary principal as request attribute, see issue #877
|
2016-10-31 22:16:21 +01:00 |
|
Sebastian Sdorra
|
2b97f285ac
|
reduce event bus logging
|
2016-07-25 18:59:59 +02:00 |
|
Sebastian Sdorra
|
a729f0f207
|
fix debug service hook for non admin users
|
2016-07-25 18:59:33 +02:00 |
|
Sebastian Sdorra
|
37228c329c
|
improve javadoc
|
2016-07-25 18:28:58 +02:00 |
|
Sebastian Sdorra
|
8a19193799
|
added RepositoryHookITCase to test repository post receive hooks
|
2016-07-25 18:27:47 +02:00 |
|
Sebastian Sdorra
|
7d8613b6bb
|
added request method to mdc filter
|
2016-06-28 12:06:28 +02:00 |
|
Sebastian Sdorra
|
7ef8e1ebd5
|
removed unnecessary log level check
|
2016-06-28 12:06:02 +02:00 |
|
Sebastian Sdorra
|
f8133f4c6b
|
improve logging
|
2016-06-28 11:32:30 +02:00 |
|
Sebastian Sdorra
|
1529ef99d7
|
log authorization summary to trace level
|
2016-06-28 10:54:14 +02:00 |
|
Sebastian Sdorra
|
5433317692
|
improve logging of AuthorizationCollector
|
2016-06-28 10:26:01 +02:00 |
|
Sebastian Sdorra
|
353e4c4f7b
|
removed duplicate clear cache log message
|
2016-06-28 10:15:59 +02:00 |
|
Sebastian Sdorra
|
8e38d95dcf
|
added name of the repository to access denied exceptions
|
2016-06-28 09:32:25 +02:00 |
|
Sebastian Sdorra
|
9dc1c6fd8e
|
improve cache invalidation on group events
|
2016-06-26 15:03:28 +02:00 |
|
Sebastian Sdorra
|
89660e8ac3
|
improve cache invalidation on permission change events
|
2016-06-26 12:53:41 +02:00 |
|
Sebastian Sdorra
|
7bc793ecd5
|
improve javadoc
|
2016-06-26 12:44:13 +02:00 |
|
Sebastian Sdorra
|
a592484f0f
|
improve cache invalidation on repository events
|
2016-06-26 12:41:00 +02:00 |
|
Sebastian Sdorra
|
6428245506
|
improve cache invalidation on user events
|
2016-06-26 12:20:32 +02:00 |
|
Sebastian Sdorra
|
8e3c3e4b63
|
improve modification events to pass the item before it was modified to the subscriber
|
2016-06-25 21:48:53 +02:00 |
|
Sebastian Sdorra
|
7873cd556d
|
improve trace logging of AuthorizationCollector
|
2016-06-24 19:32:45 +02:00 |
|
Sebastian Sdorra
|
f5e4f4ae71
|
fix typo in log message
|
2016-06-23 14:07:12 +02:00 |
|
Sebastian Sdorra
|
981d203723
|
added request uri to mdc logging context
|
2016-06-23 14:06:03 +02:00 |
|
Sebastian Sdorra
|
13bea6e502
|
implemented small scheduler engine
|
2016-05-25 16:32:25 +02:00 |
|
Sebastian Sdorra
|
8475acbba0
|
#809 fix order of script resources in production stage
|
2016-05-25 08:41:47 +02:00 |
|
Sebastian Sdorra
|
9497d88ee3
|
merge with branch issue-793
|
2016-05-24 21:27:44 +02:00 |
|
Sebastian Sdorra
|
652b98f53c
|
#793 added configuration parameter to enable/disable xsrf protection. The protection is disabled by default until it is battle tested.
|
2016-05-24 21:12:09 +02:00 |
|
Sebastian Sdorra
|
920b2eca39
|
added option for plugins to change ssl context
|
2016-03-17 09:42:34 +01:00 |
|
Sebastian Sdorra
|
488d4e3323
|
implemented xsrf protection, see issue #793
|
2016-01-23 22:02:25 +01:00 |
|
Sebastian Sdorra
|
e949d5ae87
|
JsonContentTransformer should not fail on unknown json properties
|
2015-10-21 21:00:04 +02:00 |
|
Sebastian Sdorra
|
6dd765e3be
|
start implementation of repository permissions
|
2015-07-09 20:29:07 +02:00 |
|
Sebastian Sdorra
|
d0032b09d8
|
use cached thread pool to process mercurial process error streams
|
2015-06-11 22:11:51 +02:00 |
|