Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | fix setscope | Robin Appelman | 2016-11-16 | 1 | -2/+2 | |
| | | | | Signed-off-by: Robin Appelman <icewind@owncloud.com> | |||||
* | allow configuring filesystem access | Robin Appelman | 2016-11-16 | 5 | -7/+71 | |
| | | | | Signed-off-by: Robin Appelman <icewind@owncloud.com> | |||||
* | app password scope wip | Robin Appelman | 2016-11-16 | 3 | -2/+19 | |
| | | | | Signed-off-by: Robin Appelman <icewind@owncloud.com> | |||||
* | read lockdown scope from token | Robin Appelman | 2016-11-16 | 3 | -2/+19 | |
| | | | | Signed-off-by: Robin Appelman <icewind@owncloud.com> | |||||
* | document what the method does | Christoph Wurst | 2016-11-02 | 1 | -0/+2 | |
| | | | | Signed-off-by: Christoph Wurst <christoph@winzerhof-wurst.at> | |||||
* | Add missing tests and fix PHPDoc | Lukas Reschke | 2016-11-02 | 2 | -1/+9 | |
| | | | | Signed-off-by: Lukas Reschke <lukas@statuscode.ch> | |||||
* | bring back remember-me | Christoph Wurst | 2016-11-02 | 5 | -12/+56 | |
| | | | | | | | | | | * try to reuse the old session token for remember me login * decrypt/encrypt token password and set the session id accordingly * create remember-me cookies only if checkbox is checked and 2fa solved * adjust db token cleanup to store remembered tokens longer * adjust unit tests Signed-off-by: Christoph Wurst <christoph@winzerhof-wurst.at> | |||||
* | add invalidateOldTokens to IProvider interface | Christoph Wurst | 2016-08-02 | 2 | -3/+7 | |
| | ||||||
* | Fix others | Joas Schilling | 2016-07-21 | 6 | -6/+12 | |
| | ||||||
* | Merge pull request #25172 from owncloud/token-login-validation | Vincent Petry | 2016-06-22 | 5 | -29/+66 | |
|\ | | | | | Token login validation | |||||
| * | store last check timestamp in token instead of session | Christoph Wurst | 2016-06-17 | 5 | -24/+58 | |
| | | ||||||
| * | use token last_activity instead of session value | Christoph Wurst | 2016-06-17 | 2 | -5/+8 | |
| | | ||||||
* | | update session token password on user password change | Christoph Wurst | 2016-06-21 | 2 | -0/+27 | |
| | | ||||||
* | | close cursor after loading a token | Christoph Wurst | 2016-06-17 | 1 | -0/+1 | |
|/ | ||||||
* | do not generate device token if 2FA is enable for user | Christoph Wurst | 2016-06-07 | 1 | -0/+1 | |
| | ||||||
* | Create session tokens for apache auth users | Christoph Wurst | 2016-05-31 | 3 | -5/+14 | |
| | ||||||
* | Update license headers | Lukas Reschke | 2016-05-26 | 6 | -6/+0 | |
| | ||||||
* | when generating browser/device token, save the login name for later password ↵ | Christoph Wurst | 2016-05-24 | 5 | -6/+32 | |
| | | | | checks | |||||
* | add button to invalidate browser sessions/device tokens | Christoph Wurst | 2016-05-23 | 5 | -6/+37 | |
| | ||||||
* | add button to add new device tokens | Christoph Wurst | 2016-05-23 | 2 | -1/+4 | |
| | ||||||
* | list user's auth tokens on the personal settings page | Christoph Wurst | 2016-05-23 | 1 | -1/+11 | |
| | ||||||
* | add method to query all user auth tokens | Christoph Wurst | 2016-05-18 | 3 | -0/+54 | |
| | ||||||
* | a single token provider suffices | Christoph Wurst | 2016-05-18 | 4 | -10/+62 | |
| | ||||||
* | don't spam the log file with failed token validation entries | Christoph Wurst | 2016-05-13 | 1 | -3/+1 | |
| | ||||||
* | delete the token in case an exception is thrown when decrypting the password | Christoph Wurst | 2016-05-11 | 1 | -1/+8 | |
| | ||||||
* | use the query builder instead of raw sql statements | Christoph Wurst | 2016-05-11 | 1 | -18/+27 | |
| | ||||||
* | fix PHPDoc and other minor issues | Christoph Wurst | 2016-05-11 | 4 | -6/+11 | |
| | ||||||
* | PHPDoc and other minor fixes | Christoph Wurst | 2016-05-11 | 2 | -6/+26 | |
| | ||||||
* | Add token auth for OCS APIs | Christoph Wurst | 2016-05-11 | 4 | -4/+26 | |
| | ||||||
* | Add index on 'last_activity' | Christoph Wurst | 2016-05-11 | 4 | -3/+15 | |
| | | | | | | add token type column and delete only temporary tokens in the background job debounce token updates; fix wrong class import | |||||
* | Check if session token is valid and log user out if the check fails | Christoph Wurst | 2016-05-11 | 3 | -14/+66 | |
| | | | | | * Update last_activity timestamp of the session token * Check user backend credentials once in 5 minutes | |||||
* | invalidate (delete) session token on logout | Christoph Wurst | 2016-05-11 | 4 | -3/+109 | |
| | | | | add 'last_activity' column to session tokens and delete old ones via a background job | |||||
* | token based auth | Christoph Wurst | 2016-05-11 | 5 | -0/+263 | |
* Add InvalidTokenException * add DefaultTokenMapper and use it to check if a auth token exists * create new token for the browser session if none exists hash stored token; save user agent * encrypt login password when creating the token |