Commit graph

  • dbfc8ce39d Update changelog for 11.1.3 debian/11.1.3 Alexandre Aubin 2023-01-30 16:33:53 +01:00
  • ebe37f3e4a
    Merge pull request #210 from yunohost-bot/weblate-yunohost-ssowat Alexandre Aubin 2023-01-30 16:06:36 +01:00
  • c2d020cbc0 Added translation using Weblate (Lithuanian) Weblate 2023-01-14 15:41:08 +01:00
  • beed8a5c7f debian: have a proper postinst script that reload (not restart, omg) nginx... Alexandre Aubin 2023-01-24 14:44:50 +01:00
  • efc88ec3a5 Update changelog for 11.0.11.1 debian/11.0.11.1 11.0.11.1 Alexandre Aubin 2023-01-19 17:25:06 +01:00
  • e2114c0df5 Fix auth_header ewilly 2023-01-12 20:24:42 +01:00
  • 37bdfbae4d Update changelog for 11.1.2.5 debian/11.1.2.5 Alexandre Aubin 2023-01-19 17:22:14 +01:00
  • a3a4543850
    Merge pull request #204 from ewilly/dev Alexandre Aubin 2023-01-19 16:54:12 +01:00
  • ba5ffba490 Fix auth_header ewilly 2023-01-12 20:24:42 +01:00
  • 43cfb9684f Update changelog for 4.4.2 debian/4.4.2 4.4.2 Alexandre Aubin 2023-01-10 14:11:39 +01:00
  • 8bd2a53ee7 security: rework previous fixes to use the new use_remote_user_var_in_nginx_conf in ssowat conf introduced in yunohost 11.1.2 Alexandre Aubin 2023-01-10 00:03:25 +01:00
  • b6aba201cd Stupid typo Alexandre Aubin 2023-01-09 20:51:00 +01:00
  • ca7cf2c2cc Iterate on previous security fixes: ignore Auth header on PROPFIND routes, and don't drop Auth header which are not Basic auth Alexandre Aubin 2023-01-09 19:46:51 +01:00
  • 1f56a08621 security: Also check client-provided auth headers to prevent impersonation Alexandre Aubin 2023-01-09 18:32:32 +01:00
  • 7fc0350788 Authentication headers are ONLY set when user is logged in and has access to app Prevents impersonating users on public applications where the auth headers were not cleared selfhoster1312 2023-01-09 15:47:45 +01:00
  • 226e3bdf4c Update changelog for 11.0.11 debian/11.0.11 11.0.11 Alexandre Aubin 2023-01-10 14:04:43 +01:00
  • 56c2726237 security: rework previous fixes to use the new use_remote_user_var_in_nginx_conf in ssowat conf introduced in yunohost 11.1.2 Alexandre Aubin 2023-01-10 00:03:25 +01:00
  • f939b63241 Stupid typo Alexandre Aubin 2023-01-09 20:51:00 +01:00
  • f59accd10e Iterate on previous security fixes: ignore Auth header on PROPFIND routes, and don't drop Auth header which are not Basic auth Alexandre Aubin 2023-01-09 19:46:51 +01:00
  • 7e8b0e037f security: Also check client-provided auth headers to prevent impersonation Alexandre Aubin 2023-01-09 18:32:32 +01:00
  • 676f157194 Authentication headers are ONLY set when user is logged in and has access to app Prevents impersonating users on public applications where the auth headers were not cleared selfhoster1312 2023-01-09 15:47:45 +01:00
  • 46b58d3695 Update changelog for 11.1.2.4 debian/11.1.2.4 Alexandre Aubin 2023-01-10 00:03:57 +01:00
  • 8faa8057f0 security: rework previous fixes to use the new use_remote_user_var_in_nginx_conf in ssowat conf introduced in yunohost 11.1.2 Alexandre Aubin 2023-01-10 00:03:25 +01:00
  • 6cb7327688 Update changelog for 11.1.2.3 debian/11.1.2.3 Alexandre Aubin 2023-01-09 20:51:39 +01:00
  • 4e92965eda Stupid typo Alexandre Aubin 2023-01-09 20:51:00 +01:00
  • d85dc4f999 Update changelog for 11.1.2.2 debian/11.1.2.2 Alexandre Aubin 2023-01-09 19:47:32 +01:00
  • 92f1e0505a Iterate on previous security fixes: ignore Auth header on PROPFIND routes, and don't drop Auth header which are not Basic auth Alexandre Aubin 2023-01-09 19:46:51 +01:00
  • 8621a1e1a3 Update changelog for 11.1.2.1 debian/11.1.2.1 Alexandre Aubin 2023-01-09 18:33:46 +01:00
  • 7a2d0ed27a security: Also check client-provided auth headers to prevent impersonation Alexandre Aubin 2023-01-09 18:32:32 +01:00
  • e60e95f5b4
    Merge pull request #209 from selfhoster1312/misleading-auth-headers Alexandre Aubin 2023-01-09 18:15:57 +01:00
  • 5e378e5c2b Authentication headers are ONLY set when user is logged in and has access to app Prevents impersonating users on public applications where the auth headers were not cleared selfhoster1312 2023-01-09 15:47:45 +01:00
  • 2af882a69d Update changelog for 11.1.2 debian/11.1.2 Alexandre Aubin 2023-01-06 00:41:09 +01:00
  • 66062d75f3
    Merge pull request #207 from yunohost-bot/weblate-yunohost-ssowat Alexandre Aubin 2023-01-06 00:40:24 +01:00
  • 5d0d58fab2 Translated using Weblate (Basque) xabirequejo 2022-12-03 23:35:08 +00:00
  • 08f89e9f1f Translated using Weblate (Polish) Grzegorz Cichocki 2022-12-03 00:02:45 +00:00
  • 336ce90510 Translated using Weblate (Ukrainian) Tymofii-Lytvynenko 2022-11-27 17:19:16 +00:00
  • 1f367e523f Translated using Weblate (Spanish) quiwy 2022-11-22 14:42:56 +00:00
  • 20eebde86e Translated using Weblate (German) Christian Wehrli 2022-11-17 12:06:18 +00:00
  • f0bcde67d6 Translated using Weblate (Basque) xabirequejo 2022-11-09 14:34:48 +00:00
  • 439ccf6547 Added translation using Weblate (Portuguese (Brazil)) Weblate 2022-11-06 23:30:16 +01:00
  • b95a0e82de Added translation using Weblate (Hebrew) Weblate 2022-10-31 16:49:11 +01:00
  • c4aa499a52 Translated using Weblate (Slovak) Jose Riha 2022-10-05 10:20:54 +00:00
  • 71f68b0d4b
    Fix password check, path to yunohost lib changed in 11.x Alexandre Aubin 2022-12-06 15:59:32 +01:00
  • 8c44475d39
    Merge pull request #208 from cyrilRomain/bookworm Alexandre Aubin 2022-11-06 19:48:00 +01:00
  • 7cd4965f6c [fix] helpers.lua: openssl v3 support for hmac_sha512 Cyril Romain 2022-11-06 19:37:45 +01:00
  • 81160e5d95 Update changelog for 11.1 debian/11.1.0 debian/11.1 Alexandre Aubin 2022-10-25 23:23:59 +02:00
  • e2996f1451 User info self-edit would not update displayName (which is supposed to be the same as cn) resulting in inconsistencies Alexandre Aubin 2022-10-09 17:27:04 +02:00
  • a3507203a9
    Merge pull request #206 from yunohost-bot/weblate-yunohost-ssowat Alexandre Aubin 2022-09-30 15:26:17 +02:00
  • 138466d059 Translated using Weblate (Slovak) Jose Riha 2022-09-18 06:10:26 +00:00
  • 65a1b0a1b7 Translated using Weblate (Turkish) Sedat Albayrak 2022-09-11 15:35:30 +00:00
  • 22296cf122 Translated using Weblate (Basque) xabirequejo 2022-09-01 14:06:47 +00:00
  • 69db86caa7 Translated using Weblate (Basque) xabirequejo 2022-09-01 12:12:27 +00:00
  • 7719d46240 Update changelog for 4.4.1 debian/4.4.1 buster Alexandre Aubin 2022-08-09 23:34:47 +02:00
  • a9e15256d3 Translated using Weblate (Galician) José M 2022-08-05 04:44:47 +00:00
  • ce7127bcfa Update changelog for 11.0.9 debian/11.0.9 Alexandre Aubin 2022-08-07 23:32:47 +02:00
  • 394a56350b Update changelog for 11.0.8 debian/11.0.8 Alexandre Aubin 2022-08-07 12:20:06 +02:00
  • f092162404
    Merge pull request #205 from yunohost-bot/weblate-yunohost-ssowat Alexandre Aubin 2022-08-03 22:19:47 +02:00
  • 1fd701b8a4 Translated using Weblate (Polish) Radek Raczkowski 2022-07-10 10:16:56 +00:00
  • aa40c7cabf Translated using Weblate (Slovak) Jose Riha 2022-06-21 10:33:42 +00:00
  • a2d04e11bb Translated using Weblate (Telugu) Alice Kile 2022-06-06 21:59:10 +00:00
  • 758eebed29 Added translation using Weblate (Telugu) Weblate 2022-06-06 21:19:08 +00:00
  • f681dc7d1f Translated using Weblate (Slovak) Jose Riha 2022-05-24 20:07:31 +00:00
  • e892357f70 Added translation using Weblate (Slovak) Weblate 2022-05-23 20:11:39 +00:00
  • b9557ae1db
    Update changelog for 11.0.7 debian/11.0.7 tituspijean 2022-05-17 23:59:38 +02:00
  • 1d0216bd30
    Merge pull request #203 from yunohost-bot/weblate-yunohost-ssowat Alexandre Aubin 2022-04-27 21:55:18 +02:00
  • 15371c81b2 Translated using Weblate (Spanish) Jimmy Angel Pérez Díaz 2022-04-05 03:27:02 +00:00
  • 372b48e372
    Update changelog for 11.0.6 debian/11.0.6 Kay0u 2022-03-29 14:28:59 +02:00
  • 31f17e2242
    Merge pull request #202 from yunohost-bot/weblate-yunohost-ssowat Kayou 2022-03-29 14:26:15 +02:00
  • 7ed96de114 Translated using Weblate (German) 3ole 2022-03-27 11:19:51 +00:00
  • 159568cb03 Translated using Weblate (Kabyle) Selyan Slimane Amiri 2022-03-24 08:20:42 +00:00
  • 57746e68cc Added translation using Weblate (Kabyle) Weblate 2022-03-14 07:43:20 +00:00
  • e824a4bcac
    Merge pull request #201 from yunohost-bot/weblate-yunohost-ssowat Alexandre Aubin 2022-03-08 13:20:46 +01:00
  • db9171dc7e Translated using Weblate (Galician) José M 2022-03-05 13:44:56 +00:00
  • dc8884be6b Translated using Weblate (Turkish) Eylul Dogruel 2022-02-24 10:16:52 +00:00
  • 670a5d4285 Translated using Weblate (Galician) José M 2022-02-18 14:11:41 +00:00
  • ddbb5199aa Translated using Weblate (French) Tagada 2022-02-10 19:14:11 +00:00
  • dbea4126d5 Translated using Weblate (Finnish) Mico Hauataluoma 2022-02-05 19:50:06 +00:00
  • 808a511356 Added translation using Weblate (Danish) Weblate 2022-01-26 13:42:02 +00:00
  • 6ad55374d5 Update changelog for 11.0.2 debian/11.0.2 Alexandre Aubin 2022-01-19 21:26:44 +01:00
  • 2229b71f09 Merge branch 'dev' into bullseye Alexandre Aubin 2022-01-19 21:24:35 +01:00
  • 1d1a3a4e49 Update changelog for 4.4.0 debian/4.4.0 Alexandre Aubin 2022-01-19 21:22:08 +01:00
  • 6a15594c24 Update changelog for 4.3.3.1 debian/4.3.3.1 Alexandre Aubin 2022-01-19 21:21:07 +01:00
  • 8e0485154b
    Merge pull request #200 from yunohost-bot/weblate-yunohost-ssowat Alexandre Aubin 2022-01-19 20:03:48 +01:00
  • 3695336802 Translated using Weblate (Finnish) Mico Hauataluoma 2022-01-15 00:10:46 +00:00
  • 3586b23365 Translated using Weblate (Dutch) Boudewijn 2022-01-09 11:02:20 +00:00
  • fc976cab54 Translated using Weblate (Dutch) Boudewijn 2022-01-09 10:56:42 +00:00
  • 03a7e5b0ee
    Merge remote-tracking branch 'origin/dev' into bullseye Kay0u 2021-12-30 15:52:54 +01:00
  • beedb9b20f Update changelog for 4.3.3 debian/4.3.3 Alexandre Aubin 2021-12-29 01:12:12 +01:00
  • 914cb0bce6
    Merge pull request #198 from yunohost-bot/weblate-yunohost-ssowat Alexandre Aubin 2021-12-27 15:28:09 +01:00
  • d0dba1fd2e Epic refactoring for new portal API etc Alexandre Aubin 2021-12-26 17:01:56 +01:00
  • 7c6a95b249 Translated using Weblate (German) Valentin von Guttenberg 2021-11-29 15:16:09 +00:00
  • 008632e0fb Translated using Weblate (Dutch) Boudewijn 2021-11-22 22:15:51 +00:00
  • 737d686623 Update changelog for 4.3.2.2 debian/4.3.2.2 Alexandre Aubin 2021-11-18 01:10:49 +01:00
  • 981960fb50
    Another fix for redirect function Kay0u 2021-11-16 21:40:04 +01:00
  • 08be399a49 Update changelog for 4.3.2.1 debian/4.3.2.1 Alexandre Aubin 2021-11-15 19:55:20 +01:00
  • 0ce337e17f
    Merge pull request #197 from YunoHost/fix-not-only-alphanumeric-characters-domain-name Alexandre Aubin 2021-11-15 19:25:32 +01:00
  • 325964742d
    Improve check for unauthorized redirect url Alexandre Aubin 2021-11-15 19:02:13 +01:00
  • 0141723db0 Merge branch 'dev' into bullseye Alexandre Aubin 2021-11-15 03:14:11 +01:00
  • 0e6369bb38
    fix not only alphanumeric characters domain name Kayou 2021-11-15 00:49:51 +01:00
  • 6e4c1facaf Update changelog for 4.3.2 debian/4.3.2 Alexandre Aubin 2021-11-05 02:39:57 +01:00