summaryrefslogtreecommitdiffstats
path: root/lib/private/Authentication/Token
Commit message (Expand)AuthorAgeFilesLines
* Merge branch 'master' into enh/type-iconfig-getter-callsCôme Chilliet2023-04-201-51/+55
|\
| * fix(auth): Run token statements in atomic transactionChristoph Wurst2023-04-121-51/+55
* | Use typed version of IConfig::getSystemValue as much as possibleCôme Chilliet2023-04-051-5/+5
|/
* Merge pull request #36033 from nextcloud/invalidateTokensWhenDeletingOAuthCli...Côme Chilliet2023-03-151-1/+11
|\
| * public interface to invalidate tokens of userArtur Neumann2023-03-141-1/+11
* | Don't try to hash a nonexisting passwordEmber 'n0emis' Keske2023-03-131-1/+1
|/
* fix(authentication): Handle null or empty string password hashJoas Schilling2023-02-101-1/+1
* Merge pull request #36621 from nextcloud/perf/noid/only-check-for-token-when-...Joas Schilling2023-02-101-1/+30
|\
| * fix(authentication): Check minimum length when creating app tokensJoas Schilling2023-02-091-2/+10
| * fix(performance): Only search for auth tokens when the provided login is long...Joas Schilling2023-02-081-1/+22
* | fix(authtoken): Store only one hash for authtokens with the current password ...Julius Härtl2023-02-092-1/+50
|/
* composer run cs:fixCôme Chilliet2023-01-204-5/+0
* fix(authentication): Update the token when the hash is null or can not be ver...Joas Schilling2023-01-091-4/+21
* fix(authentication): Only hash the new password when neededJoas Schilling2023-01-091-2/+6
* fix(authentication): Invert the logic to the original intentionJoas Schilling2023-01-091-2/+3
* fix(authentication): Only verify each hash onceJoas Schilling2023-01-091-2/+4
* Merge pull request #33898 from nextcloud/fix/authtoken-password-updateJulius Härtl2023-01-052-4/+22
|\
| * PublickKeyTokenProvider: Fix password update routine with password hashMarcel Klehr2023-01-042-4/+22
* | Add a const for the max user password lengthJoas Schilling2023-01-041-1/+2
|/
* Run session token renewals in a database transactionChristoph Wurst2022-10-181-23/+32
* Merge pull request #31499 from nextcloud/bugfix/empty-secretCarl Schwan2022-10-171-5/+24
|\
| * Mark method as deprecatedCarl Schwan2022-09-131-1/+1
| * Rotate token after fallbackJulius Härtl2022-03-101-2/+8
| * Add fallback routines for empty secret casesJulius Härtl2022-03-101-3/+16
* | Add back TokenCleanupJob to invalidate old temporary tokensThomas Citharel2022-08-251-0/+41
* | Do not update passwords if nothing changedJulius Härtl2022-08-091-3/+6
* | Merge pull request #33225 from nextcloud/fix/handle-one-time-passwordsCarl Schwan2022-07-291-1/+1
|\ \
| * | Handle one time password betterCarl Schwan2022-07-281-1/+1
* | | Fix typos in lib/private subdirectoryluz paz2022-07-271-1/+1
* | | Move CappedMemoryCache to OCPCarl Schwan2022-07-141-1/+1
|/ /
* | Handler large passwordsCarl Schwan2022-07-051-1/+4
* | Handle one time passwordsCarl Schwan2022-07-051-1/+1
* | Fix user agent trimming on installationJoas Schilling2022-05-091-1/+1
* | Automatically cut the token name on the first levelJoas Schilling2022-03-232-3/+3
* | Limit the length of app password namesJoas Schilling2022-03-232-0/+8
|/
* Also cache non-existing to reuse itJoas Schilling2022-02-161-0/+5
* Remove default token which is deprecated since Nextcloud 13Joas Schilling2021-12-017-831/+14
* Fix ArrayAccess and JsonSerializable return typesCôme Chilliet2021-11-232-2/+2
* Prevent duplicate auth token activity updatesChristoph Wurst2021-10-222-2/+40
* Type the autentication provider passwords as nullable stringsChristoph Wurst2021-10-133-13/+4
* Tokens without password should not trigger changed password invalidationJulius Härtl2021-10-071-1/+1
* prevent the invalidation of pw based authn tokens on a pw less loginTobias Assmann2021-07-161-0/+5
* Update php licensesJohn Molakvoæ (skjnldsv)2021-06-0413-21/+8
* Always renew apppasswords on loginRoeland Jago Douma2021-02-101-5/+0
* Update all license headers for Nextcloud 21Christoph Wurst2020-12-161-0/+1
* Use PSR logger in authenticationJoas Schilling2020-10-123-10/+10
* Type some of the core mappersChristoph Wurst2020-10-123-1/+7
* Format code to a single space around binary operatorsChristoph Wurst2020-10-052-2/+2
* Allow configuring the activity update interval of tokenRoeland Jago Douma2020-10-041-1/+5
* Fix app password updating out of boundsRoeland Jago Douma2020-09-031-0/+1