Commit Graph

78 Commits (4f31b7b9cc2dac060194de2c769b149a2ac861ba)

Author SHA1 Message Date
Roeland Jago Douma 7927aebdeb
Fix report of phpstan in Limiter 6 years ago
Roeland Jago Douma b8c5008acf
Add feature policy header 6 years ago
Roeland Jago Douma f94ee72507
Add form-action CSP element 7 years ago
Roeland Jago Douma 417fbb5d60
setting unsafe-eval is deprecated 7 years ago
Sam Bull ea935f65fd
Add support for CSP_NONCE server variable 7 years ago
Roeland Jago Douma 5ac857bcdc
Add an event to edit the CSP 7 years ago
Roeland Jago Douma f1ea56b502
Fix the thorrtler whitelist bitmask 7 years ago
Thomas Citharel c9b588774b
Allow bracket IPv6 address format inside IPAdress Normalizer 7 years ago
Roeland Jago Douma 372f3d2a60
Remove deprecated functions from SecureRandom 7 years ago
Roeland Jago Douma be5c050acc
Throw exception if decryption fails 7 years ago
Roeland Jago Douma 0fdc65a15c
Add nonce for Safari 12+ 7 years ago
Roeland Jago Douma 579822b6a5
Add report-uri to CSP 7 years ago
Roeland Jago Douma 8354c50911
Deprecate the childSrc functions 7 years ago
Roeland Jago Douma c8fe4b4fc8
Add workerSrc to CSP 7 years ago
Mark Berezovsky ad66c6bf08 Fix #9864: Decrease $maxDelay in Throttler.php 8 years ago
Roeland Jago Douma 84316aec66
Add ARGON2I support to the hasher 8 years ago
Roeland Jago Douma d8332d43f8
Make \OC\Security\IdentityProof strict 8 years ago
Roeland Jago Douma 4ed9b74a6b
Make OC\Security\CSP strict 8 years ago
Roeland Jago Douma 2c8402aa17
Make \OC\Security\CSRF strict 8 years ago
Morris Jobke 0a56d2185e
Return value immediately instead of assigning to a one-time variable 8 years ago
Roeland Jago Douma 0e0db37658
Make OCP\Security stricter 8 years ago
Roeland Jago Douma bb2938a47d
Make IPAddress typed and strict 8 years ago
Roeland Jago Douma cf0a339997
Make OC\Security\RateLimiting strict 8 years ago
Roeland Jago Douma 6e1ee1e7a7
Fix tests 8 years ago
Roeland Jago Douma de5d7aa331
Strict ISecure random 8 years ago
Morris Jobke ca28df6fcc
Adds type hinting for scalar types in ICrypto->decrypt 8 years ago
Morris Jobke d2d73f1ce8
Also replace all other occurences 8 years ago
Morris Jobke 5a270c2715
Reset bruteforce attempt table on successful login 8 years ago
Morris Jobke 0eebff152a
Update license headers 8 years ago
Thomas Citharel ecf347bd1a Add CSP frame-ancestors support 8 years ago
Bjoern Schiessle bae5be3dc1
add prefix to user and system keys to avoid name collisions 9 years ago
Bjoern Schiessle 9524badccc
extend the identity proof manager to allow system wide key pairs 9 years ago
Lukas Reschke 6fb84ebb71
null is a valid parameter 9 years ago
Lukas Reschke dfd8125aeb
Replace wrong PHPDocs 9 years ago
Roeland Jago Douma 5f227bd93b
More phpstorm inspection fixes 9 years ago
Lukas Reschke 3d2600b039
Add Phan plugin to check for SQL injections 9 years ago
Roeland Jago Douma 6a1f2ac076
Add bruteforce capabilities 9 years ago
Roeland Jago Douma 04f2090698
Write cert bundle to tmp file first 9 years ago
Joas Schilling ca39940614
Automatic creation of Identity manager 9 years ago
Roeland Jago Douma 5a61a794d4
Do not write and read rootcerts.crt at the same time 9 years ago
Lukas Reschke a5ccb31e85
Mark IP as whitelisted if brute force protection is disabled 9 years ago
Morris Jobke c54a59d51e
Remove unused use statements 9 years ago
Lukas Reschke e39e6d0605
Remove expired attempts 9 years ago
Lukas Reschke 66835476b5
Add support for ratelimiting via annotations 9 years ago
Roeland Jago Douma be674c19a5
Respect bruteforce settings in the Throttler 9 years ago
Bjoern Schiessle df296249d6
introduce brute force protection for api calls 9 years ago
Robin Appelman 817e974c5f
dont write a certificate bundle if the shipped ca bundle is empty 9 years ago
Lukas Reschke 7d221ff8f4
Safari CSPv3 support is sub-par 9 years ago
Roeland Jago Douma 72f9920a58
Add Identityproof tests 9 years ago
Lukas Reschke fb91bf6a5b
Add a signer class for signing 9 years ago