]> source.dussan.org Git - gitblit.git/commit
issue-361: Reset user cookie after administrative password change
authorJames Moger <james.moger@gitblit.com>
Tue, 28 Jan 2014 18:16:37 +0000 (13:16 -0500)
committerJames Moger <james.moger@gitblit.com>
Tue, 28 Jan 2014 18:16:37 +0000 (13:16 -0500)
commit7ab32b65fcb20ca68d7afc357befb3a34de662bf
treedf393fe15adcc63a8adf0330219e6bec981ba761
parent158242228266af84aa14b7e13b43d2825626c446
issue-361: Reset user cookie after administrative password change

Cookies were not reset on administrative password change of a user
account. This allowed accounts with changed passwords to continue
authenticating.  Cookies are now reset on password changes, they are
validated on each page request, AND they will now expire 7 days after
generation.
releases.moxie
src/main/java/com/gitblit/ConfigUserService.java
src/main/java/com/gitblit/client/EditUserDialog.java
src/main/java/com/gitblit/manager/AuthenticationManager.java
src/main/java/com/gitblit/manager/GitblitManager.java
src/main/java/com/gitblit/manager/IAuthenticationManager.java
src/main/java/com/gitblit/wicket/pages/EditUserPage.java
src/main/java/com/gitblit/wicket/pages/SessionPage.java