summaryrefslogtreecommitdiffstats
path: root/lib/private/Security
Commit message (Expand)AuthorAgeFilesLines
* Merge pull request #26626 from J0WI/strict-securityRoeland Jago Douma2021-05-185-29/+45
|\
| * Make Security module strictJ0WI2021-04-195-29/+45
* | Merge pull request #25714 from nextcloud/fix/23197/explicitly_check_hex2bin_i...Morris Jobke2021-04-221-3/+19
|\ \ | |/ |/|
| * Explicitly check hex2bin inputRoeland Jago Douma2021-02-181-3/+19
* | Increase subnet matcherLukas Reschke2021-04-071-2/+2
|/
* Bump nextcloud/coding-standard from 0.3.0 to 0.5.0dependabot-preview[bot]2021-02-181-1/+1
* Remove unneeded casts that were found by PsalmMorris Jobke2021-01-111-2/+2
* Update all license headers for Nextcloud 21Christoph Wurst2020-12-165-3/+6
* Avoid checking for brute force protection capabilities when upgradingJulius Härtl2020-12-091-0/+4
* Replace the credentials table with one that can have empty userJoas Schilling2020-11-101-1/+1
* Fix comparing the empty string for global credentialsJoas Schilling2020-11-101-6/+15
* Don't leave cursors open when tests failJoas Schilling2020-11-091-1/+4
* Always return the default path if we canRoeland Jago Douma2020-11-031-0/+28
* Improve CertificateManager to not be user context dependentMorris Jobke2020-11-031-51/+15
* Derive encryption key & MAC key from a single key.lynn-stephenson2020-10-151-7/+15
* Limit throttler to 48 hoursRoeland Jago Douma2020-10-081-0/+5
* Add cleanup job for old brutefoce attemptsRoeland Jago Douma2020-10-081-0/+55
* Format code to a single space around binary operatorsChristoph Wurst2020-10-052-4/+4
* Remove @suppress SqlInjectionCheckerMorris Jobke2020-09-161-1/+0
* Don't break when the IP is emptyJoas Schilling2020-09-101-0/+4
* Update the license headers for Nextcloud 20Christoph Wurst2020-08-244-1/+6
* Fix CSJoas Schilling2020-08-191-0/+1
* Correctly return ms delay when at maxJoas Schilling2020-08-191-3/+4
* Add missing defaultJoas Schilling2020-08-191-1/+1
* Simplify array filterJoas Schilling2020-08-191-2/+1
* Fix wrong doc + type hintJoas Schilling2020-08-191-2/+2
* Only throw when also the last 30 mins were attackingJoas Schilling2020-08-191-8/+9
* Make the throttling O(2^n) instead of O(n^n)Joas Schilling2020-08-191-9/+9
* Make Throttler strictJoas Schilling2020-08-191-9/+10
* Split delay calculation from getting the attemptsJoas Schilling2020-08-191-5/+17
* Let the database count the entriesJoas Schilling2020-08-191-2/+6
* Send "429 Too Many Requests" in case of brute force protectionJoas Schilling2020-08-191-1/+21
* Prefer typed event over string based onesMorris Jobke2020-08-102-2/+2
* Merge pull request #20005 from joeried/occ-remove-bruteforce-attempts-by-ipMorris Jobke2020-05-251-6/+29
|\
| * Fix code styleMorris Jobke2020-05-251-1/+1
| * Implement occ command security:bruteforceattemps:reset-for-ipJohannes Riedel2020-03-191-6/+29
* | Use random_bytesRoeland Jago Douma2020-05-111-7/+13
* | Apply Argon2 options for Argon2id hashing as wellMichaIng2020-05-011-1/+1
* | Fix Argon2 options checksMichaIng2020-04-301-10/+5
* | Update license headers for 19Christoph Wurst2020-04-2915-1/+16
* | fix credentialsManager documentation and ensure userId to be used as stringArthur Schiwon2020-04-151-6/+6
* | Add visibility to all constantsChristoph Wurst2020-04-102-2/+2
* | Format control structures, classes, methods and functionChristoph Wurst2020-04-1018-46/+37
* | Use elseif instead of else ifChristoph Wurst2020-04-101-1/+1
* | Unify function spacing to PSR2 recommendationChristoph Wurst2020-04-092-2/+2
* | Use exactly one empty line after the namespace declarationChristoph Wurst2020-04-091-0/+1
* | Fix (array) indent style to always use one tabChristoph Wurst2020-04-091-4/+4
* | Update the license headers for Nextcloud 19Christoph Wurst2020-03-315-2/+5
* | Use the short array syntax, everywhereChristoph Wurst2020-03-261-4/+4
|/
* fix safari useragent for versions with 3 digitsPavel Krasikov2020-03-141-1/+1