summaryrefslogtreecommitdiffstats
path: root/lib/private/Authentication/Token
Commit message (Collapse)AuthorAgeFilesLines
...
* fix setscopeRobin Appelman2016-11-161-2/+2
| | | | Signed-off-by: Robin Appelman <icewind@owncloud.com>
* allow configuring filesystem accessRobin Appelman2016-11-165-7/+71
| | | | Signed-off-by: Robin Appelman <icewind@owncloud.com>
* app password scope wipRobin Appelman2016-11-163-2/+19
| | | | Signed-off-by: Robin Appelman <icewind@owncloud.com>
* read lockdown scope from tokenRobin Appelman2016-11-163-2/+19
| | | | Signed-off-by: Robin Appelman <icewind@owncloud.com>
* document what the method doesChristoph Wurst2016-11-021-0/+2
| | | | Signed-off-by: Christoph Wurst <christoph@winzerhof-wurst.at>
* Add missing tests and fix PHPDocLukas Reschke2016-11-022-1/+9
| | | | Signed-off-by: Lukas Reschke <lukas@statuscode.ch>
* bring back remember-meChristoph Wurst2016-11-025-12/+56
| | | | | | | | | | * try to reuse the old session token for remember me login * decrypt/encrypt token password and set the session id accordingly * create remember-me cookies only if checkbox is checked and 2fa solved * adjust db token cleanup to store remembered tokens longer * adjust unit tests Signed-off-by: Christoph Wurst <christoph@winzerhof-wurst.at>
* add invalidateOldTokens to IProvider interfaceChristoph Wurst2016-08-022-3/+7
|
* Fix othersJoas Schilling2016-07-216-6/+12
|
* Merge pull request #25172 from owncloud/token-login-validationVincent Petry2016-06-225-29/+66
|\ | | | | Token login validation
| * store last check timestamp in token instead of sessionChristoph Wurst2016-06-175-24/+58
| |
| * use token last_activity instead of session valueChristoph Wurst2016-06-172-5/+8
| |
* | update session token password on user password changeChristoph Wurst2016-06-212-0/+27
| |
* | close cursor after loading a tokenChristoph Wurst2016-06-171-0/+1
|/
* do not generate device token if 2FA is enable for userChristoph Wurst2016-06-071-0/+1
|
* Create session tokens for apache auth usersChristoph Wurst2016-05-313-5/+14
|
* Update license headersLukas Reschke2016-05-266-6/+0
|
* when generating browser/device token, save the login name for later password ↵Christoph Wurst2016-05-245-6/+32
| | | | checks
* add button to invalidate browser sessions/device tokensChristoph Wurst2016-05-235-6/+37
|
* add button to add new device tokensChristoph Wurst2016-05-232-1/+4
|
* list user's auth tokens on the personal settings pageChristoph Wurst2016-05-231-1/+11
|
* add method to query all user auth tokensChristoph Wurst2016-05-183-0/+54
|
* a single token provider sufficesChristoph Wurst2016-05-184-10/+62
|
* don't spam the log file with failed token validation entriesChristoph Wurst2016-05-131-3/+1
|
* delete the token in case an exception is thrown when decrypting the passwordChristoph Wurst2016-05-111-1/+8
|
* use the query builder instead of raw sql statementsChristoph Wurst2016-05-111-18/+27
|
* fix PHPDoc and other minor issuesChristoph Wurst2016-05-114-6/+11
|
* PHPDoc and other minor fixesChristoph Wurst2016-05-112-6/+26
|
* Add token auth for OCS APIsChristoph Wurst2016-05-114-4/+26
|
* Add index on 'last_activity'Christoph Wurst2016-05-114-3/+15
| | | | | | add token type column and delete only temporary tokens in the background job debounce token updates; fix wrong class import
* Check if session token is valid and log user out if the check failsChristoph Wurst2016-05-113-14/+66
| | | | | * Update last_activity timestamp of the session token * Check user backend credentials once in 5 minutes
* invalidate (delete) session token on logoutChristoph Wurst2016-05-114-3/+109
| | | | add 'last_activity' column to session tokens and delete old ones via a background job
* token based authChristoph Wurst2016-05-115-0/+263
* Add InvalidTokenException * add DefaultTokenMapper and use it to check if a auth token exists * create new token for the browser session if none exists hash stored token; save user agent * encrypt login password when creating the token