Sebastian Sdorra
da3a8b7cd3
[maven-release-plugin] prepare release 1.51
2017-02-09 13:32:59 +01:00
Sebastian Sdorra
dcf62ae991
added resolver to simplify parsing and validating of access tokens
2017-01-17 17:22:55 +01:00
Sebastian Sdorra
5738fa2d66
redesign bearer tokens
2017-01-17 15:54:32 +01:00
Sebastian Sdorra
70d5942250
token enricher should use new access token api
2017-01-17 15:33:19 +01:00
Sebastian Sdorra
2388cfd35d
create a more flexible interface for the creation of access tokens
...
Provide a AccessTokenBuilderFactory to simplify the creation of access tokens and a default implementation which is based on JWT. Added also an AccessTokenCookieIssuer to unify the creation of access token cookies. Removed old BearerTokenGenerator.
2017-01-17 14:40:50 +01:00
Sebastian Sdorra
e7d6f50fd9
implement token scopes, scopes can be used to issue a token which is only suitable for a single or set explicit actions
2017-01-16 15:04:44 +01:00
Sebastian Sdorra
df6d9dacf8
implement LoginAttemptHandler for scm-manager 2
2017-01-15 20:27:06 +01:00
Sebastian Sdorra
cbc6dad0fe
fixed duplicate filter bindings
2017-01-15 19:33:22 +01:00
Sebastian Sdorra
1591ab43b3
improve DeepCopy util class
2017-01-15 13:13:59 +01:00
Sebastian Sdorra
3536c29908
added DAORealmHelperFactory to simplify the creation of dao based realms
2017-01-15 12:50:29 +01:00
Sebastian Sdorra
76384de26f
enabled xsrf be default and remove claim prefix to reduce size
2017-01-14 18:26:11 +01:00
Sebastian Sdorra
46d8b58810
introduce TokenClaimsEnricher and TokenClaimsValidator api
2017-01-12 22:04:19 +01:00
Sebastian Sdorra
fc6287fd40
remove deprecations and fixed some compiler warnings
2017-01-12 20:02:06 +01:00
Sebastian Sdorra
bad99919f4
merge with branch 1.x
2017-01-12 19:50:39 +01:00
Sebastian Sdorra
5332ac2466
refactor store api
2016-12-11 21:31:05 +01:00
Sebastian Sdorra
62ca20f6b1
fix typo
2016-12-11 19:30:18 +01:00
Sebastian Sdorra
009fea3ad4
use lambdas and added javadoc to unit test
2016-12-11 19:24:41 +01:00
Sebastian Sdorra
4f124691d0
use shiro-unit for manager permission tests
2016-12-08 22:08:11 +01:00
Sebastian Sdorra
c673b0fb10
replace admin role check from SecurityUtil with permission checks
2016-12-08 07:56:40 +01:00
Sebastian Sdorra
64581e1f75
use already exists exceptions always with an appropriate message
2016-12-07 22:40:24 +01:00
Sebastian Sdorra
3709ce7602
fix typo
2016-12-07 22:28:06 +01:00
Sebastian Sdorra
2a6f51fa6d
added message to GroupAlreadyExistsException
2016-12-07 22:24:59 +01:00
Sebastian Sdorra
26ece65363
use ssp for user and repository permission checks
2016-12-06 22:04:13 +01:00
Sebastian Sdorra
0a47d5946a
added unit test for storing and loading of default cipher key
2016-11-29 20:46:30 +01:00
Sebastian Sdorra
634061a91d
refactoring DefaultCipherHandler and added javadoc to CipherHandler
2016-11-29 20:36:11 +01:00
Sebastian Sdorra
a546246fc1
fix wrong key usage during encoding in DefaultCipherHandler, see issue #887
2016-11-29 20:11:03 +01:00
Sebastian Sdorra
526d79b96d
[maven-release-plugin] prepare for next development iteration
2016-11-24 14:11:36 +01:00
Sebastian Sdorra
0bbea7a47a
[maven-release-plugin] prepare release 1.50
2016-11-24 14:11:36 +01:00
Sebastian Sdorra
8628fd9e11
refactor CacheClearHook of RepositoryServiceFactory
2016-11-10 22:05:24 +01:00
Sebastian Sdorra
5cb32b268f
#873 clear repository caches, if the git default branch has changed
2016-11-10 21:56:27 +01:00
Sebastian Sdorra
a5d2cfc7b1
unit test and javadoc for RepositoryPermissions
2016-09-30 19:42:54 +02:00
Sebastian Sdorra
11c81a4994
added new hook context api for tags
2016-09-28 13:33:44 +02:00
Sebastian Sdorra
c4111ec73f
[maven-release-plugin] prepare for next development iteration
2016-07-26 12:43:15 +02:00
Sebastian Sdorra
d2743ce5b0
[maven-release-plugin] prepare release 1.49
2016-07-26 12:43:15 +02:00
Sebastian Sdorra
3cd6a819b5
fix guice javadoc link
2016-07-26 12:08:45 +02:00
Sebastian Sdorra
73c566d9bf
escape url parameters ub UrlBuilder in order to fix issue #847
2016-07-08 14:50:20 +02:00
Sebastian Sdorra
df1c0358e3
[maven-release-plugin] prepare for next development iteration
2016-06-28 13:11:14 +02:00
Sebastian Sdorra
850b846293
[maven-release-plugin] prepare release 1.48
2016-06-28 13:11:13 +02:00
Sebastian Sdorra
f52b27b58d
fixed bug in equals method of Permission object
2016-06-28 11:24:33 +02:00
Sebastian Sdorra
8e3c3e4b63
improve modification events to pass the item before it was modified to the subscriber
2016-06-25 21:48:53 +02:00
Sebastian Sdorra
db6ef804dc
[maven-release-plugin] prepare for next development iteration
2016-05-31 11:12:38 +02:00
Sebastian Sdorra
e049de11b0
[maven-release-plugin] prepare release 1.47
2016-05-31 11:12:37 +02:00
Sebastian Sdorra
13bea6e502
implemented small scheduler engine
2016-05-25 16:32:25 +02:00
Sebastian Sdorra
71b742388c
do not swallow the ScmSecurityException in PermissionFilter
2016-05-25 10:03:04 +02:00
Sebastian Sdorra
652b98f53c
#793 added configuration parameter to enable/disable xsrf protection. The protection is disabled by default until it is battle tested.
2016-05-24 21:12:09 +02:00
Sebastian Sdorra
bba9109d05
getCompleteUrl of HttpUtil should now respect forwarding headers, see issue #748
2015-07-09 21:18:23 +02:00
Sebastian Sdorra
6dd765e3be
start implementation of repository permissions
2015-07-09 20:29:07 +02:00
Sebastian Sdorra
9ba2fa8975
[maven-release-plugin] prepare for next development iteration
2015-06-14 19:53:33 +02:00
Sebastian Sdorra
b24df8d9f1
[maven-release-plugin] prepare release 1.46
2015-06-14 19:53:33 +02:00
Sebastian Sdorra
0f1ac3f952
expose latest changeset id of branch
2015-06-13 19:56:16 +02:00