Commit Graph

124 Commits (1f42657bb9ea76353fbc02ee100cff5755b6384d)

Author SHA1 Message Date
Christoph Wurst dfb4d426c2
Add two factor auth to core 10 years ago
Christoph Wurst c20cdc2213
invalidate user session if the user is disabled 10 years ago
Christoph Wurst 11dc97da43
try token login first 10 years ago
Christoph Wurst f824f3e5f3
don't allow token login for disabled users 10 years ago
Christoph Wurst 98b465a8b9
a single token provider suffices 10 years ago
Christoph Wurst 0486d750aa
use the UID for creating the session token, not the login name 10 years ago
Christoph Wurst 69dafd727d
delete the token in case an exception is thrown when decrypting the password 10 years ago
Christoph Wurst 46bdf6ea2b
fix PHPDoc and other minor issues 10 years ago
Christoph Wurst a9b500c03b
catch possible SessionNotAvailableExceptions 10 years ago
Christoph Wurst f0f8bdd495
PHPDoc and other minor fixes 10 years ago
Christoph Wurst 699289cd26
pass in $request on OCS api 10 years ago
Christoph Wurst 168ccf90a6
try apache auth too 10 years ago
Christoph Wurst 8cc5f6036f
Fix existing tests 10 years ago
Christoph Wurst 7aa16e1559
fix setup 10 years ago
Christoph Wurst 7e7d5a2ef2
Add fallback to allow user:token basic auth 10 years ago
Christoph Wurst fdc2cd7554
Add token auth for OCS APIs 10 years ago
Christoph Wurst 8d48502187
Add index on 'last_activity' 10 years ago
Christoph Wurst 53636c73d6
Add controller to generate client tokens 10 years ago
Christoph Wurst 3ab922601a
Check if session token is valid and log user out if the check fails 10 years ago
Christoph Wurst 2fa5e0a24e
invalidate (delete) session token on logout 10 years ago
Christoph Wurst d8cde414bd
token based auth 10 years ago
Roeland Jago Douma 9504500e5f
Move \OC\User to PSR-4 10 years ago
Thomas Müller 9c9fec36dd
Add occ commands to enable and disable a user + a disabled user can no longer login - fixes #23838 10 years ago
Thomas Müller 682821c71e Happy new year! 10 years ago
Roeland Jago Douma 876fb83ddc getMediumStrengthGenerator is deprecated and does not do anything anymore 10 years ago
Lukas Reschke fec41e7539 Move regeneration of session ID into session classes 10 years ago
Morris Jobke c60c793cf2 More cleanups of OC_Config usage 10 years ago
Lukas Reschke 3d2ee95f1e Remove last occurence of `forcessl` 11 years ago
Robin Appelman 0497534a6e more type hints 11 years ago
Jenkins for ownCloud b585d87d9d Update license headers 11 years ago
Lukas Reschke bbd5f28415 Let users configure security headers in their Webserver 11 years ago
Morris Jobke 06aef4e8b1 Revert "Updating license headers" 11 years ago
Jenkins for ownCloud 6a1a4880f0 Updating license headers 11 years ago
Robin Appelman 8eda661761 Throw an exception when login is canceled by an app 11 years ago
Lukas Reschke a2e355a7fe Use "HTTPOnly" for cookies when logging out 11 years ago
Robin Appelman 857695ec87 Return false if the login is canceled in a hook 11 years ago
Lukas Reschke dbbf568192 Fix typo 11 years ago
Lukas Reschke a022e65285 Clarify return values 11 years ago
Lukas Reschke e3230b5bc2 Add ultra-slim hack for incognito mode 11 years ago
Bernhard Posselt 236632702c add a isLoggedIn method to the usersession and deprecate the isLoggedIn method on the api 11 years ago
Bernhard Posselt 9ae48e184b add a isLoggedIn method to the usersession and deprecate the isLoggedIn method on the api 11 years ago
Morris Jobke 0d4f0ab871 reduce OC_Preferences, OC_Config and \OCP\Config usage 11 years ago
Thomas Müller 5097d4dc05 remove deprecated \OC:$session 11 years ago
Lukas Reschke 770c62c5d8 Clear session after logout 11 years ago
Robin Appelman 912fbfab01 Unset the cached active user when using a different session object 11 years ago
Lukas Reschke 63a90a129b Use proper RNG generator 12 years ago
Jörn Friedrich Dreyer f551917a3c kill OC::$session 12 years ago
Joas Schilling 4865c52aa6 Fix isLoggedIn() check for user '0' 12 years ago
Robin Appelman 20c1ce7f47 Add public interfaces for User, UserManager and UserSession 12 years ago
Arthur Schiwon 748a219243 add preRememberedLogin hook and document this and postRememberedLogin in class descripttion. Also fixes documentation of postLogin hook 12 years ago