summaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAge
* AD auth: password changing works via TLS as wellAndreas Gohr2011-01-26
|
* AD auth: allow users to modify their profile dataAndreas Gohr2011-01-26
|
* correctly catch password policy problems in adLDAPAndreas Gohr2011-01-24
| | | | | | | | | | | This patch supresses a warning in the adLDAP library when a password change is attempted but fails due to the configured Active Directory Password Policy. Instead of the error an Exception is thrown. This change probably needs to be replicated in the user modification function. Patch sent to upstream.
* Merge branch 'master' of https://github.com/danny0838/dokuwiki into ↵Andreas Gohr2011-01-23
|\ | | | | | | danny0838-master
| * Traditional Chinese updateDanny Lin2011-01-23
| |
| * Traditional Chinese updateDanny Lin2011-01-23
| |
| * Add CJK characters to IDX_ASIAN2 - FS#2143Danny Lin2011-01-23
| |
| * InlineWordLevelDiff regex should be /xsu - FS#2142Danny Lin2011-01-23
| |
* | French language updateCédric Schmitz2011-01-23
| |
* | use a bigger range of characters for password saltsAndreas Gohr2011-01-23
| |
* | django pass hashes have no leading $Andreas Gohr2011-01-23
|/
* Italian language updateJacopo Corbetta2011-01-22
|
* refactored passowrd hashing functions to a classAndreas Gohr2011-01-22
| | | | | | | | | | | | this splits the long auth_cryptPassword() function into many member functions of a new class PassHash which should make it more maintainable and reusable for other projects. This also adds two new methods djangomd5 and djangosha1 as used by the popular python framework Django. Maybe the auth_cryptPassword() and auth_verifyPassword() functions should be deprecated in favor of using the class directly?
* Slovenian language updateMatej Urbančič2011-01-22
|
* Traditional Chinese updatedanny08382011-01-22
|
* Russian language updateLadyko Andrey2011-01-22
|
* use • as breadcrumb separatorAndreas Gohr2011-01-22
|
* Revert "tmp" for inc/html.php as it breaks the diff outputMichael Hamann2011-01-18
| | | | This reverts commit fa7c70ff4d7f9999466436e7d559eb0c81571779.
* Fix getBaseURL for literal IPv6 addresses in URLs (RFC 2732) + test caseMichael Hamann2011-01-16
|
* increase indexer version to reforce rebuild for the new title indexAndreas Gohr2011-01-16
|
* increased msg countAndreas Gohr2011-01-16
|
* Fix several security issues in the XML-RPC interfaceMichael Hamann2011-01-16
| | | | | | | | | | | | | | | For locks and getRevisions there hasn't been any acl check. In many other cases the id hadn't been cleaned before the acl check was done which means that many acl rules that should be applied weren't applied. So e.g. when you have read permissions for the root namespace but not for a subnamespace you could add a leading ":" and the permissions for the root namespace will be used instead of the permissions for the subnamespace. This did not apply to writing pages and reading media files, but writing and deleting media files have been concerned as well as reading both plain and html versions of pages. This only concerns installations where XML-RPC is enabled (default is disabled) and XML-RPC is allowed for all or untrusted users.
* Revert "tmp: disable notices in doku.php"Andreas Gohr2011-01-16
| | | | | | This reverts commit 58a22bd0570451af9e62b659343dd47a26bacb3f. It was accidentally pushed to the repo.
* Remove superfluous headers, fix XML-RPC with gzip enabledMichael Hamann2011-01-15
| | | | | | | | | | This removes headers that are sent by PHP/the webserver anyway as they are possibly wrong as e.g. when gzip compression is enabled in inc/init.php (which does happen when the client supports gzip) the content size is smaller than the one that was specified by the content-length header and thus e.g. the Python XML-RPC client fails with an error message because of the size mismatch. Additionally the content encoding is now set to utf-8 in the http headers.
* Handle renamed authorization variablesMichael Hamann2011-01-15
| | | | | | | | Sometimes (when using rewriting with the workaround for CGI mode described at http://www.besthostratings.com/articles/http-auth-php-cgi.html) the HTTP_AUTHORIZATION variable is renamed, this change detects this renaming and uses the renamed variable.
* Added hmd5 and pmd5 as passcrypt choices in config managerAndreas Gohr2011-01-15
|
* Added support for Wordpress' password hashing FS#2134Andreas Gohr2011-01-15
|
* added unit test for kmd5 password hashingAndreas Gohr2011-01-15
|
* don't use » for non hierarchical breadcrumbs FS#2135Andreas Gohr2011-01-15
| | | | | | | Not sure if this sympol is the best to use. I'm open for different suggestions. Template auhtors still can overwrite the symbol of course.
* made ajax quicksearch its own objectAndreas Gohr2011-01-15
| | | | | This makes it possible for plugin and template authors to overwrite or extend the quicksearch JavaScript logic.
* added missing change for path length shortener in ajax backendAndreas Gohr2011-01-15
|
* Deprecate $NS in doku.phpAdrian Lang2011-01-14
| | | | | | | | | $NS is only used in lib/exe/{ajax,mediamanager}.php when no $ID context is present. The two functions which use $NS in inc/template.php are only called through those both endpoints, not through doku.php. In doku.php, $ID is the only correct value, $NS is not kept synchronous with $ID. Use getNS($ID) in functions which are called through doku.php.
* Merge branch 'master' of github.com:splitbrain/dokuwikiAdrian Lang2011-01-14
|\
| * correctly(?) shorten namespaces for RTL langunages in quicksearchAndreas Gohr2011-01-14
| |
| * shorten quicksearch namespaces in JavaScriptAndreas Gohr2011-01-14
| | | | | | | | | | | | | | | | | | | | | | This patch moves the shortening of namespaces in the quicksearch results to JavaScript. This makes it independend from used template and will always try to fill the width of the result pane correctly. Things missing: * Make it work with RTL-languages * Check Browser compatibility (only tested in Chrome so far)
| * German (informal) language updateChristian Wichmann2011-01-14
| |
| * German language updateChristian Wichmann2011-01-14
| |
| * coding style fixAndreas Gohr2011-01-14
| |
| * updated adLDAP library to 3.3.2Andreas Gohr2011-01-14
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | [+] New feature: Move the user to a new OU using user_move() function [-] Bug fix: Prevent an 'undefined index' error in recursive_groups() when full PHP E_ALL logging is enabled [-] Bug fix: user_groups() does not return primary group when objectsid is not given (Tracker ID:2931213) [-] Bug fix: Undefined index in function user_info for non-existent users (Tracker ID:2922729) [-] Bug fix: Force user_info to find objectCategory of person as if a sAMAccountName also exists in a group it will return that group. (Tracker ID:3006096) [-] Bug fix: Return false for user_info if the user does not exist [-] Bug fix: user_info, checks for for a "count" value that not exist in $entries array if "memberof" isn't passed in $fields array. (Tracker ID:2993172) [-] Bug fix: In authenticate() if user authentication fails function returns and does not rebind with admin credentials - so the other funcions don't work anymore as $this->_bind === false. (Tracker ID:2987887) [-] Bug fix: When calling $ldap->user_modify('user', array("expires"=>0)) the function fails due to the value being 0. Changed to isset (Tracker ID:3036726)
| * Hebrew language updateYaron Shahrabani2011-01-12
| |
| * fixed bracketsAndreas Gohr2011-01-12
| |
| * removed setter/getter to match coding styleAndreas Gohr2011-01-12
| | | | | | | | | | since we don't use setter/getters for the other options it doesn't make sense to have them for the keep-alive function
| * do not reuse errornous http connectionsTobias Sarnowski2011-01-12
| | | | | | | | | | | | | | As soon as something goes wrong while querying a http server do not reuse the same connection again, its state is undefined. In addition, check the connection for feof() before reusing it.
| * keep http connections application wide aliveTobias Sarnowski2011-01-12
| | | | | | | | | | | | Using a static context for the connection pool allows connection reuse throughout the whole application without additional changes in other places.
| * added keep-alive capabilities to the http clientTobias Sarnowski2011-01-12
| | | | | | | | | | | | | | | | The DokuHTTPClient is now able to keep connections alive. This feature is enabled by default. It can be disabled with $client->setKeepAlive(false); and asked with $client->isKeepAlive();.
| * Fix metaFiles for ids that require utf-8 escapingMichael Hamann2011-01-12
| | | | | | | | | | Before this change metaFiles didn't return anything for ids where the part without the namespace needs (utf-8) filename escaping.
| * Fix FS#2131 - metaFiles returning unrelated filesMichael Hamann2011-01-12
| |
| * Arabic language updateUsama Akkad2011-01-12
| |
| * Remove trailing whitespace in buildAttributes outputAdrian Lang2011-01-12
| |
| * Add define for metadata usage limit in p_get_first_headingMichael Hamann2011-01-10
| | | | | | | | | | | | | | | | | | This commit introduces a new define P_GET_FIRST_HEADING_METADATA_LIMIT that can be set in preload.php in order to change the limit for how many pages the first heading shall be loaded from metadata in p_get_first_heading. Changing this is probably most interesting for Wikis with a lot of pages where loading the title index costs a significant amount of time and memory.