mkanat%bugzilla.org
36dafcc096
Bug 211006: Make Bugzilla use SHA-256 instead of crypt() to store hashed passwords in the database
...
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=LpSolit
git-svn-id: svn://10.0.0.236/trunk@255694 18797224-902f-48f8-a5cc-f745e15eee43
2009-01-02 09:11:51 +00:00
dkl%redhat.com
d2cc34e014
Bug 455584 - Use bz_crypt everywhere instead of the crypt() function
...
Patch by David Lawrence <dkl@redhat.com> = r/a=LpSolit
git-svn-id: svn://10.0.0.236/trunk@254732 18797224-902f-48f8-a5cc-f745e15eee43
2008-10-22 21:54:59 +00:00
lpsolit%gmail.com
eec25e0428
Bug 460770: Incorrect regexp when parsing the list of LDAP servers - Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat
...
git-svn-id: svn://10.0.0.236/trunk@254682 18797224-902f-48f8-a5cc-f745e15eee43
2008-10-20 18:37:38 +00:00
lpsolit%gmail.com
79e1610288
Partial backout of bug 183665. It's responsible for bug 457719
...
git-svn-id: svn://10.0.0.236/trunk@254530 18797224-902f-48f8-a5cc-f745e15eee43
2008-10-04 20:04:50 +00:00
dkl%redhat.com
36109e6138
Bug 453767 - Passwords containing wide characters causes system error
...
Patch by David Lawrence <dkl@redhat.com> - a/r=mkanat
git-svn-id: svn://10.0.0.236/trunk@254181 18797224-902f-48f8-a5cc-f745e15eee43
2008-09-12 15:10:14 +00:00
lpsolit%gmail.com
e62e028333
Bug 449984: Login cookies should be created as SSL-only on installations that require SSL - Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat
...
git-svn-id: svn://10.0.0.236/trunk@253851 18797224-902f-48f8-a5cc-f745e15eee43
2008-08-27 01:10:33 +00:00
reed%reedloden.com
d379f34dfc
Bug 368502 - "Bugzilla_logincookie should not be accessible via javascript" [p=reed r+a=mkanat]
...
git-svn-id: svn://10.0.0.236/trunk@253792 18797224-902f-48f8-a5cc-f745e15eee43
2008-08-22 23:39:41 +00:00
dkl%redhat.com
f51ff717a8
Bug 428659 â Setting SSL param to 'authenticated sessions' only protects logins and param
...
doesn't protect WebService calls at all
Patch by David Lawrence <dkl@redhat.com> - r/a=LpSolit/mkanat
git-svn-id: svn://10.0.0.236/trunk@253665 18797224-902f-48f8-a5cc-f745e15eee43
2008-08-18 04:16:14 +00:00
mkanat%bugzilla.org
fd276d6f66
Bug 438435: Need code hooks for authentication
...
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=mkanat
git-svn-id: svn://10.0.0.236/trunk@253408 18797224-902f-48f8-a5cc-f745e15eee43
2008-08-06 23:38:31 +00:00
dkl%redhat.com
223ced6261
Backing out these patches as they cause a regression. More information
...
in the respective bug reports.
Bug 428659 â Setting SSL param to 'authenticated sessions' only
protects logins and param doesn't protect WebService calls at all
Patch by Dave Lawrence <dkl@redhat.com> - r/a=mkanat
Bug 445104: ssl redirects come with a 200 OK HTTP code on mod_perl
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=dkl, a=mkanat
git-svn-id: svn://10.0.0.236/trunk@253320 18797224-902f-48f8-a5cc-f745e15eee43
2008-07-28 20:58:01 +00:00
dkl%redhat.com
fe2838832f
Bug 428659 â Setting SSL param to 'authenticated sessions' only protects logins and param doesn't protect WebService calls at all
...
Patch by Dave Lawrence <dkl@redhat.com> - r/a=mkanat
git-svn-id: svn://10.0.0.236/trunk@252948 18797224-902f-48f8-a5cc-f745e15eee43
2008-07-10 04:56:22 +00:00
mkanat%bugzilla.org
210431c009
Bug 408384: Set extern_id when using LDAP auth
...
Patch By Emmanuel Seyman <eseyman@linagora.com> r=mkanat, a=mkanat
git-svn-id: svn://10.0.0.236/trunk@241264 18797224-902f-48f8-a5cc-f745e15eee43
2007-12-14 18:17:29 +00:00
mkanat%bugzilla.org
622bfbeb7e
Bug 229049: Make LDAP authentication work when there are multiple mail= attributes for an account.
...
Patch By Emmanuel Seyman <eseyman@linagora.com> r=mkanat, a=mkanat
git-svn-id: svn://10.0.0.236/trunk@241262 18797224-902f-48f8-a5cc-f745e15eee43
2007-12-14 17:40:57 +00:00
lpsolit%gmail.com
702b8f6c80
Bug 183665: Accessing post_bug.cgi directly gives a weird error message and should redirect to enter_bug.cgi instead - Patch by Matt Tasker <mtasker@gmail.com> (based on the original patch from victory <spam@bmo2007.rsz.jp>) r/a=LpSolit
...
git-svn-id: svn://10.0.0.236/trunk@239399 18797224-902f-48f8-a5cc-f745e15eee43
2007-11-14 22:50:25 +00:00
wurblzap%gmail.com
2ae6da445f
Bug 380187 â Bugzilla should support RADIUS authentication.
...
Patch by Marc Schumann <wurblzap@gmail.com>;
r=mkanat, a=mkanat
git-svn-id: svn://10.0.0.236/trunk@231372 18797224-902f-48f8-a5cc-f745e15eee43
2007-08-02 22:38:53 +00:00
ghendricks%novell.com
31139ea5a0
Bug 380928 â Bugzilla::Auth::Verify::create_or_update_user can return stale Bugzilla::User object
...
patch by vrb@novell.com r=mkanat a=mkanat
git-svn-id: svn://10.0.0.236/trunk@226890 18797224-902f-48f8-a5cc-f745e15eee43
2007-05-23 18:05:49 +00:00
mkanat%bugzilla.org
048f8af926
Bug 367480: [LDAP] Try a list of servers in order until we connect successfully
...
Patch By Tony Bajan <firefox@tonyb.me.uk> r=mkanat, a=mkanat
git-svn-id: svn://10.0.0.236/trunk@221469 18797224-902f-48f8-a5cc-f745e15eee43
2007-03-07 20:43:43 +00:00
wurblzap%gmail.com
534cc8b074
Bug 340538: Insecure dependency in exec while running with -T switch at /usr/lib/perl5/site_perl/5.8.6/Mail/Mailer/sendmail.pm line 16.
...
Patch by Marc Schumann <wurblzap@gmail.com>,
r=LpSolit, a=myk
git-svn-id: svn://10.0.0.236/trunk@213922 18797224-902f-48f8-a5cc-f745e15eee43
2006-10-20 18:52:24 +00:00
mkanat%bugzilla.org
8aa56fc69e
Bug 349349: Use ->create from Bugzilla::Object instead of insert_new_user for Bugzilla::User
...
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=myk
git-svn-id: svn://10.0.0.236/trunk@208468 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-25 22:10:39 +00:00
wurblzap%gmail.com
a8bd7c9398
Bug 224577: Bugzilla could use a web services interface.
...
Patch by Marc Schumann <wurblzap@gmail.com>;
r=mkanat; a=myk
git-svn-id: svn://10.0.0.236/trunk@207931 18797224-902f-48f8-a5cc-f745e15eee43
2006-08-19 17:20:25 +00:00
mkanat%bugzilla.org
906f961cc4
Bug 346245: attribute parameter 'johndoe@company.tld' is not a hash ref at Bugzilla/Auth/Verify.pm line 112
...
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=wurblzap, a=myk
git-svn-id: svn://10.0.0.236/trunk@205081 18797224-902f-48f8-a5cc-f745e15eee43
2006-07-28 20:35:10 +00:00
lpsolit%gmail.com
c0028bf425
Bug 339731: [LDAP] URI-parsing code duplicated with Net::LDAP - Patch by guillomovitch@zarb.org r=mkanat a=justdave
...
git-svn-id: svn://10.0.0.236/trunk@201857 18797224-902f-48f8-a5cc-f745e15eee43
2006-07-11 00:42:58 +00:00
lpsolit%gmail.com
0c350b72a5
Bug 340967: The login form appears twice when trying to add an attachment (due to two consecutive calls to Bugzilla->login) - Patch by Frédéric Buclin <LpSolit@gmail.com> r=mkanat a=myk
...
git-svn-id: svn://10.0.0.236/trunk@201628 18797224-902f-48f8-a5cc-f745e15eee43
2006-07-05 23:42:47 +00:00
mkanat%bugzilla.org
520fe42625
Bug 338375: Use Bugzilla->params everywhere instead of Param().
...
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=justdave
git-svn-id: svn://10.0.0.236/trunk@201503 18797224-902f-48f8-a5cc-f745e15eee43
2006-07-03 21:42:47 +00:00
mkanat%bugzilla.org
8323e09c40
Bug 342869: Use Bugzilla->params everywhere except templates
...
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=justdave
git-svn-id: svn://10.0.0.236/trunk@201499 18797224-902f-48f8-a5cc-f745e15eee43
2006-07-03 21:26:22 +00:00
vladd%bugzilla.org
7c5ec076c2
Spelling in code comments patch: 'cokie' -> 'cookie'; patch by Vlad Dascalu <vladd@bugzilla.org>.
...
git-svn-id: svn://10.0.0.236/trunk@200286 18797224-902f-48f8-a5cc-f745e15eee43
2006-06-19 14:40:38 +00:00
lpsolit%gmail.com
d2d8d03d4d
Bug 340104: Move Bugzilla::Auth::get_netaddr() in Util.pm - Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=justdave
...
git-svn-id: svn://10.0.0.236/trunk@198934 18797224-902f-48f8-a5cc-f745e15eee43
2006-06-03 12:23:13 +00:00
lpsolit%gmail.com
757ecbfffe
Bug 282687: LDAP: TLS Support - Patch by guillomovitch@zarb.org r=mkanat a=justdave
...
git-svn-id: svn://10.0.0.236/trunk@198866 18797224-902f-48f8-a5cc-f745e15eee43
2006-06-02 11:52:49 +00:00
lpsolit%gmail.com
a86e18ff63
Bug 339858: Remove useless module dependencies in Bugzilla::Auth::* - Patch by Frédéric Buclin <LpSolit@gmail.com> r=mkanat a=justdave
...
git-svn-id: svn://10.0.0.236/trunk@198782 18797224-902f-48f8-a5cc-f745e15eee43
2006-06-01 00:19:36 +00:00
mkanat%bugzilla.org
cc5b211d4e
Bug 338573: Auth could throw an insecure dependency error if username is tainted
...
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=justdave
git-svn-id: svn://10.0.0.236/trunk@198684 18797224-902f-48f8-a5cc-f745e15eee43
2006-05-30 21:19:09 +00:00
mkanat%bugzilla.org
7da2224511
Bug 320751: LDAP: Ability to have Bugzilla use the LDAP username directly as the Bugzilla username
...
Patch By guillomovitch@zarb.org r=mkanat, a=myk
git-svn-id: svn://10.0.0.236/trunk@198683 18797224-902f-48f8-a5cc-f745e15eee43
2006-05-30 21:17:34 +00:00
lpsolit%gmail.com
6ebf297b90
Bug 337661: LDAP user login failure: Can't locate object method "realname" via package "Bugzilla::User" - Patch by Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit a=justdave
...
git-svn-id: svn://10.0.0.236/trunk@196529 18797224-902f-48f8-a5cc-f745e15eee43
2006-05-15 16:13:02 +00:00
mkanat%bugzilla.org
caee2e9858
Bug 300410: Bugzilla::Auth needs to be restructured to not require a BEGIN block
...
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=myk
git-svn-id: svn://10.0.0.236/trunk@196368 18797224-902f-48f8-a5cc-f745e15eee43
2006-05-12 02:41:22 +00:00
jocuri%softhome.net
eeffbbf891
Patch for bug 216902: support LDAPS connections; patch by Christian Krause <chkr@plauener.de>, r=vladd, a=justdave.
...
git-svn-id: svn://10.0.0.236/trunk@191769 18797224-902f-48f8-a5cc-f745e15eee43
2006-03-04 12:08:31 +00:00
jocuri%softhome.net
ee5d7dbef6
Patch for bug 161369: Strip trailing whitespace from login usernames; patch by Paul <pdemarco@zoominternet.net>, r=vladd, a=justdave.
...
git-svn-id: svn://10.0.0.236/trunk@191689 18797224-902f-48f8-a5cc-f745e15eee43
2006-03-03 12:29:07 +00:00
jocuri%softhome.net
3ce2403dba
Fix invalid POD formatting (patch for fixing broken tree - runtests.pl, test 11).
...
git-svn-id: svn://10.0.0.236/trunk@191397 18797224-902f-48f8-a5cc-f745e15eee43
2006-02-28 15:23:32 +00:00
lpsolit%gmail.com
32a389539f
Bug 327355: Email preferences are not set correctly when the user account is created by Env.pm - Patch by Frédéric Buclin <LpSolit@gmail.com> r=joel a=justdave
...
git-svn-id: svn://10.0.0.236/trunk@190693 18797224-902f-48f8-a5cc-f745e15eee43
2006-02-21 16:19:57 +00:00
lpsolit%gmail.com
aef27fd4d2
Bug 322620: Logging in with 'Remember my Login' deselected gives: Use of uninitialized value in string eq at Bugzilla/Auth/Login/WWW/CGI.pm line 83 - Patch by Olav Vitters <bugzilla-mozilla@bkor.dhs.org> r=LpSolit a=justdave
...
git-svn-id: svn://10.0.0.236/trunk@187180 18797224-902f-48f8-a5cc-f745e15eee43
2006-01-09 19:09:46 +00:00
lpsolit%gmail.com
ce5afec6fe
Bug 322244: Cookies are incorrectly detainted when logging out - Patch by Olav Vitters <bugzilla-mozilla@bkor.dhs.org> r=LpSolit a=justdave
...
git-svn-id: svn://10.0.0.236/trunk@186983 18797224-902f-48f8-a5cc-f745e15eee43
2006-01-05 15:14:06 +00:00
lpsolit%gmail.com
6248e4f445
Bug 119524: SECURITY: predictable sessionid (Use a token instead of logincookie) - Patch by Olav Vitters <bugzilla-mozilla@bkor.dhs.org> r=mkanat a=justdave
...
git-svn-id: svn://10.0.0.236/trunk@186852 18797224-902f-48f8-a5cc-f745e15eee43
2006-01-03 14:45:22 +00:00
lpsolit%gmail.com
6ebfd36516
Bug 279716: Users have to relogin when changing their own password - Patch by Marc Schumann <wurblzap@gmail.com> r=wicked a=justdave
...
git-svn-id: svn://10.0.0.236/trunk@185073 18797224-902f-48f8-a5cc-f745e15eee43
2005-11-21 19:39:09 +00:00
lpsolit%gmail.com
64f1a95f02
Bug 304075: Eliminate use of $::userid from Bugzilla - Patch by Frédéric Buclin <LpSolit@gmail.com> r=wicked a=justdave
...
git-svn-id: svn://10.0.0.236/trunk@183259 18797224-902f-48f8-a5cc-f745e15eee43
2005-10-30 21:31:29 +00:00
bugreport%peshkin.net
205c3f3402
Bug 304583: Remove all remaining need to rederive inherited groups
...
Patch by Joel Peshkin <bugreport@peshkin.net>
r=mkanat, a=justdave
git-svn-id: svn://10.0.0.236/trunk@178200 18797224-902f-48f8-a5cc-f745e15eee43
2005-08-18 20:09:37 +00:00
lpsolit%gmail.com
1483ae9789
Bug 300403: New Charts errors out, creates new 'add' user, when Env auth method is used - Patch by A. Karl Kornel <karl@kornel.name> r=wurblzap a=justdave
...
git-svn-id: svn://10.0.0.236/trunk@176615 18797224-902f-48f8-a5cc-f745e15eee43
2005-07-26 14:57:04 +00:00
lpsolit%gmail.com
4fe5766722
Bug 301967: Some .pm files have invalid POD syntax - Patch by Frédéric Buclin <LpSolit@gmail.com> r=wurblzap a=justdave
...
git-svn-id: svn://10.0.0.236/trunk@176610 18797224-902f-48f8-a5cc-f745e15eee43
2005-07-26 14:09:48 +00:00
mkanat%kerio.com
7e57a969dd
Bug 300336: Bugzilla::Auth should not contain any exported subroutines
...
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=justdave
git-svn-id: svn://10.0.0.236/trunk@175984 18797224-902f-48f8-a5cc-f745e15eee43
2005-07-13 03:57:02 +00:00
mkanat%kerio.com
9f4486aacc
Bug 298659: setting authentication to LDAP,DB fails
...
Patch By A. Karl Kornel <karl@kornel.name> r=glob, a=justdave
git-svn-id: svn://10.0.0.236/trunk@175821 18797224-902f-48f8-a5cc-f745e15eee43
2005-07-08 04:48:47 +00:00
mkanat%kerio.com
595f9c7816
Bug 285695: [PostgreSQL] Username checks for login, etc. need to be case insensitive
...
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=justdave
git-svn-id: svn://10.0.0.236/trunk@175810 18797224-902f-48f8-a5cc-f745e15eee43
2005-07-08 02:31:43 +00:00
lpsolit%gmail.com
6ff756b877
Bug 268146: mod_security complain: Invalid cookie format: Cookie value is missing #2 - Patch by Marc Schumann <wurblzap@gmail.com> r=kiko a=justdave
...
git-svn-id: svn://10.0.0.236/trunk@175739 18797224-902f-48f8-a5cc-f745e15eee43
2005-07-07 11:58:22 +00:00
mkanat%kerio.com
4ffb7300db
Bug 287436: [SECURITY] After having logged in, links to change the report type contain username and password
...
Patch By Marc Schumann <wurblzap@gmail.com> r=gerv, a=justdave
git-svn-id: svn://10.0.0.236/trunk@173308 18797224-902f-48f8-a5cc-f745e15eee43
2005-05-12 01:54:08 +00:00