aboutsummaryrefslogtreecommitdiffstats
path: root/apps
Commit message (Collapse)AuthorAgeFilesLines
* [tx-robot] updated from transifexJenkins for ownCloud2016-02-1172-50/+66
|
* Revert back to non-webdav download link for public URLsVincent Petry2016-02-102-7/+4
| | | | | Fixes issues with browsers not happy with the token. Fixes activities which were not sent.
* Merge pull request #22276 from owncloud/harden-updater-authThomas Müller2016-02-103-5/+6
|\ | | | | Harden updater authentication
| * Harden updater authenticationLukas Reschke2016-02-103-5/+6
| | | | | | | | | | - Reset tokens after 2 hours as discussed at https://github.com/owncloud/updater/issues/220#issuecomment-182033453 - Used BCrypt for storing the password in the config.php. This makes it substantially harder in case of a leakage of the token to bruteforce it. In the future we can evaluate also an HMAC including the IP. That's a bit tricker though at the moment considering that we support reverse proxies. Didn't feel brave enough to touch that dragon now as well ;)
* | Merge pull request #22269 from ↵Thomas Müller2016-02-102-16/+55
|\ \ | | | | | | | | | | | | owncloud/issue-22243-avoid-deadlock-with-lots-of-entries-to-cleanup Chunk the cleanup queries to make sure they don't time out
| * | Chunk the queries to make sure they don't time outJoas Schilling2016-02-102-16/+55
| | |
* | | Merge pull request #22273 from owncloud/versions-fixpathasrecipientThomas Müller2016-02-102-1/+7
|\ \ \ | |_|/ |/| | Fix versions path as share recipient when different than owner path
| * | Use full path of known file when handling versionsVincent Petry2016-02-101-1/+2
| | | | | | | | | | | | | | | Instead of relying on the versions API response, use the known file path when populating version models.
| * | Remove path from versions responseVincent Petry2016-02-101-0/+5
| |/ | | | | | | | | | | | | | | | | The path attribute contains the path relative to the owner's home folder, not the one from the recipient, which is useless for the client and needlessly discloses the owner's original path. The requested already has access to the full path of the file, so no need to add it to the response.
* | Merge pull request #22267 from owncloud/fix_encryption2Thomas Müller2016-02-102-25/+68
|\ \ | | | | | | calculate and update the version of the encryption signature correctly
| * | remember signature version and only set it on update to make sure that otherBjoern Schiessle2016-02-102-12/+40
| | | | | | | | | | | | apps like files_versions still get the old signature version
| * | use the version of the original file if we write the part file to have a ↵Bjoern Schiessle2016-02-101-15/+30
| | | | | | | | | | | | proper version if we move the file over to the original location
* | | Merge pull request #20073 from owncloud/files-should-add-download-dispositionThomas Müller2016-02-101-0/+17
|\ \ \ | | | | | | | | Serve files with an attachment disposition for new DAV endpoint
| * | | Only set the header if the node exists and in case the request is a GETThomas Müller2016-02-081-3/+8
| | | |
| * | | Serve files with an attachment disposition for new DAV endpointLukas Reschke2016-02-081-0/+12
| | | | | | | | | | | | | | | | This adds a `Content-Disposition: attachment` header to all files served via the DAV endpoint.
* | | | Merge pull request #22270 from owncloud/use-cache-directlyThomas Müller2016-02-101-5/+2
|\ \ \ \ | | | | | | | | | | Use cache directly instead of QueryBuilder
| * | | | Use cache directly instead of QBLukas Reschke2016-02-101-5/+2
| | |_|/ | |/| | | | | | | | | | In case somebody does not use oc_filecache
* | | | Merge pull request #22263 from owncloud/fix-group-principalsThomas Müller2016-02-102-8/+24
|\ \ \ \ | |/ / / |/| | | Fix group principal
| * | | Fix group principalThomas Müller2016-02-102-8/+24
| | | |
* | | | Fix oracle by using less quotesJoas Schilling2016-02-101-1/+1
| | | |
* | | | Listen to the notification event to reload the file listJoas Schilling2016-02-101-1/+13
| | | |
* | | | Mark the accept button as primaryJoas Schilling2016-02-101-1/+2
| | | |
* | | | Create the actions with the correct IDJoas Schilling2016-02-102-5/+6
| | | |
* | | | Make sure the share ID is an integerJoas Schilling2016-02-101-2/+2
| | | |
* | | | Fix action pathsJoas Schilling2016-02-101-2/+2
| | | |
* | | | Bring the messages inlineJoas Schilling2016-02-101-1/+1
| | | |
* | | | Fix the notification API usageJoas Schilling2016-02-102-1/+6
| | | |
* | | | Revert "Disable the remote sharing notifications until they work properly"Joas Schilling2016-02-103-8/+2
| |_|/ |/| | | | | | | | | | | | | | | | | This reverts commit 6bc93c740194d245bb9a7d1f230ed33461f842a7. Conflicts: apps/files_sharing/lib/external/manager.php
* | | [tx-robot] updated from transifexJenkins for ownCloud2016-02-1010-2/+46
| | |
* | | Add tests for setVersionLukas Reschke2016-02-091-0/+40
| | |
* | | Use cache update instead of put for encryption versionVincent Petry2016-02-091-1/+1
| | | | | | | | | | | | | | | | | | Saves a call to fetch the file id which didn't even work for a reason. This fix properly sets the version in the database.
* | | Use cache and add testsLukas Reschke2016-02-093-15/+39
| | |
* | | don't decrease ->version for part files but only a local variable, otherwise ↵Bjoern Schiessle2016-02-091-4/+8
| | | | | | | | | | | | it can happen that we decrease it twice and end up with the wrong value
* | | realPath should contain the path to the file we want to read, e.g. the ↵Bjoern Schiessle2016-02-091-1/+1
| | | | | | | | | | | | version and not the original file
* | | Use database for keeping track of the versionLukas Reschke2016-02-093-6/+40
| | |
* | | Use number of chunk for HMAC as wellLukas Reschke2016-02-092-14/+16
| | | | | | | | | | | | Prevents switching single blocks within the encrypted file.
* | | Keep track of file versionLukas Reschke2016-02-093-13/+53
| | | | | | | | | | | | This way it is not possible anymore for an external storage admin to put up old versions of the file.
* | | Clarify documentationLukas Reschke2016-02-091-0/+2
| | |
* | | Use hash with appended "a" of the original password for the authenticationLukas Reschke2016-02-091-3/+4
| | |
* | | fixing unit testsBjörn Schießle2016-02-093-11/+56
| | |
* | | Use random_bytes instead OpenSSLLukas Reschke2016-02-091-8/+1
| | |
* | | meta data are at the end of the fileBjörn Schießle2016-02-091-1/+1
| | |
* | | always use default cipher for write operations, no matter how the file was ↵Björn Schießle2016-02-091-3/+3
| | | | | | | | | | | | encrypted before
* | | make it backward compatible to work with signed and un-signed filesBjörn Schießle2016-02-092-10/+19
| | |
* | | sign all encrypted blocks and check signature on decryptBjörn Schießle2016-02-097-32/+131
| | |
* | | Add note about the addPadding functionLukas Reschke2016-02-091-0/+4
| | |
* | | Use an actual 16 byte long IVLukas Reschke2016-02-091-17/+2
| | | | | | | | | | | | The previous IV was actually 12 byte extended to 16 byte using base64. As the encrypted file should be fine with containing binary data as well we can simply remove the encoding like that here.
* | | Use AES-256-CTR as defaultLukas Reschke2016-02-092-26/+68
| | | | | | | | | | | | CTR is recommended over CFB mode.
* | | Merge pull request #22255 from owncloud/add-sso-for-updatecheckerThomas Müller2016-02-0911-1/+490
|\ \ \ | | | | | | | | Add SSO for updater application
| * | | Add SSO for updater applicationLukas Reschke2016-02-0911-1/+490
| | | | | | | | | | | | | | | | Allows logging-in into the updater application by visiting the admin panel and pressing "Open updater".