Commit Graph

  • bdfd68c3b6
    Added Bcrypt support (#116) Gurvinder Dadyala 2020-08-30 17:28:50 +05:30
  • fb437b037e
    Decode plainpassword before check (#115) Armin Leuprecht 2020-08-30 13:57:40 +02:00
  • 34d4f20222
    Fixes usage of deprecated array/string access syntax. (#97) Bennet Bleßmann 2020-08-30 13:56:25 +02:00
  • 0b65747110
    Changes required so the sudoRole objectClass will present a link so members can be modified by default. (#101) JamesCordell 2020-02-19 22:17:37 +00:00
  • 4661aa2114
    Hooks fixes (#99) Jakub Filak 2020-02-19 23:17:01 +01:00
  • 0a57b2f80e
    Added appearance option show_authz (#94) sshambar 2020-02-19 14:14:18 -08:00
  • 0fe1758572
    Add SASL PLAIN authentication support (#92) sshambar 2020-02-19 14:12:39 -08:00
  • 4eb3737d31
    Added option to use template string for bind DN (#90) Noone404 2020-02-19 23:11:17 +01:00
  • cbdc0dacd6
    Auth Form wiht Google reCAPTCHA (#87) Genaro Contreras Gutierrez 2020-02-19 14:04:20 -08:00
  • 8f4ced96f9 Release 1.2.5 1.2.5 Deon George 2019-08-20 22:24:40 +10:00
  • 722fefad1c
    Merge pull request #84 from nayo/patch-2 Deon George 2019-08-07 16:34:53 +10:00
  • c87571f6b7
    Fix error and set by default to preventXSS Genaro Contreras Gutierrez 2019-07-31 08:21:14 -07:00
  • cb9c0cce3e
    Merge pull request #82 from nayo/patch-1 Deon George 2019-07-31 07:38:06 +08:00
  • 0b10c30c79
    other usage of function preventXSS Genaro Contreras Gutierrez 2019-07-30 08:49:41 -07:00
  • c22c98c463
    update get_request when an error occurs Genaro Contreras Gutierrez 2019-07-30 08:44:10 -07:00
  • 25cbb26e1d
    update function get_request to preventXSS Genaro Contreras Gutierrez 2019-07-30 08:38:14 -07:00
  • 08c21fe7ca
    Prevent XSS attack since function get_request Genaro Contreras Gutierrez 2019-07-30 08:29:17 -07:00
  • 1bd14ddf68 Removed reference to missing function - closes #65 Deon George 2019-07-15 14:49:52 +10:00
  • 95411c05e1 Release 1.2.4 1.2.4 Deon George 2019-05-14 15:01:32 +10:00
  • 7b1f6b5132 Fix for PHP 7.3 - deprecated continue in switch Deon George 2019-05-14 15:00:28 +10:00
  • 3c0ca27477 Remove SF branding Deon George 2019-04-21 23:37:10 +10:00
  • 511ead3ec6 Revert #63 - Add attribute not rendering correctly Deon George 2019-04-20 15:39:48 +10:00
  • e37b498de1 PHP 7.2 compatibility fixes - closes #64 Deon George 2019-04-19 22:48:22 +10:00
  • 29d7d4b2f7 Fixes #31 - Glue entries are not browsable through phpldapadmin Deon George 2019-04-19 21:01:02 +10:00
  • c494078550 Closes pull request #22 and fixes #18 - preg_replace_callback changes Deon George 2019-04-19 20:08:53 +10:00
  • 73b7795bc0 Fixes #21 - Undefined variable: _SESSION Deon George 2019-04-18 23:17:24 +10:00
  • c1af05f403
    Merge pull request #63 from dago/renderfix Deon George 2019-04-18 12:34:00 +10:00
  • 49ef60f26b
    Merge pull request #62 from spagu/patch-1 Deon George 2019-04-18 12:31:49 +10:00
  • aa11e318ec
    Merge pull request #60 from NHellFire/php7.1 Deon George 2019-04-18 12:16:08 +10:00
  • f3aad72b57
    Merge pull request #66 from MichaelIT/master Deon George 2019-04-18 11:58:12 +10:00
  • 6a55d808a2
    Merge pull request #69 from RoyChaudhuri/master Deon George 2019-04-18 11:56:25 +10:00
  • aec5053f55
    Merge pull request #71 from anarcat/CVE-2017-11107 Deon George 2019-04-18 11:54:45 +10:00
  • 4484129a41
    Fix multiple XSS in file htdocs/entry_chooser.php (CVE-2017-11107) Antoine Beaupré 2018-10-31 14:03:34 -04:00
  • 2e43cf95b9 Fix for bug #68, exit after redirect response when URI parameter is received by index.php Roy Chaudhuri 2018-09-17 15:45:42 +01:00
  • 7569423f11
    Update functions.php Michael 2018-07-17 19:59:11 +08:00
  • 5c0f787fbf Add URL for translation Dagobert Michelsen 2018-04-20 13:10:20 +02:00
  • 6c85d61525 Fix invocation of layout in TemplateRenderer Dagobert Michelsen 2018-04-20 12:33:58 +02:00
  • 884cce1475
    Update functions.php spagu 2018-04-19 11:10:12 +01:00
  • 53e005c1f4 Use OpenSSL for blowfish when available (fixes #58) NHellFire 2018-02-11 07:22:36 +00:00
  • 733a10a1c5 Merge pull request #40 from PatrickBaus/master Deon George 2016-10-30 16:53:36 +08:00
  • 708bc5ed83 Merge pull request #37 from mr-GreyWolf/patch-1 Deon George 2016-10-30 16:53:05 +08:00
  • e46579b34e Merge pull request #34 from gulikoza/master Deon George 2016-10-30 16:52:22 +08:00
  • 4fefe2aa8c Merge pull request #42 from ptomulik/crypt-sha Deon George 2016-10-30 16:47:44 +08:00
  • ee9034f24c add support for SHA-256 and SHA-512 via crypt(3) Paweł Tomulik 2016-10-08 21:24:33 +02:00
  • 61af45e872 Enabled HTTP_X_FORWARDED_PROTO header detection. It was disabled for testing. Patrick Baus 2016-08-11 02:45:18 +02:00
  • dd6e9583a2 Fixed request smuggling vulnerability. See: https://www.owasp.org/index.php/OWASP_Periodic_Table_of_Vulnerabilities_-_HTTP_Request/Response_Smuggling According to https://www.w3.org/TR/XMLHttpRequest/#the-setrequestheader%28%29-method, the header should be ignored anyway if those properties were set. Patrick Baus 2016-08-11 01:48:12 +02:00
  • 665dbc2690 Fixed detection of SSL encryption, when a reverse proxy is used, that does the encryption. If the server sets the HTTP_X_FORWARDED_PROTO header to 'https' or the HTTP_X_FORWARDED_SSL header to 'on' SSL encryption is assumed Patrick Baus 2016-08-11 01:32:41 +02:00
  • 599d55700d Update functions.php mr-GreyWolf 2016-03-30 23:07:02 +04:00
  • 726190e5b8 Fix moving entries when confirm['copy'] is set. gulikoza 2016-01-24 11:56:44 +01:00
  • 0b8375fd2a Add additional check that full dn has been entered on login. gulikoza 2016-01-24 11:37:43 +01:00
  • fa88250f0e Merge pull request #32 from jsdevel/fixing-sflogo-protocol-for-reverse-proxies Deon George 2015-12-07 16:56:41 +11:00
  • 0491916d90 Changing the sourceforge logo to be protocol relative. jsdevel 2015-12-04 00:52:12 -07:00
  • 0941331781 Updated for new Gitlab SANDPIT.new Deon George 2015-09-29 16:27:04 +10:00
  • c004a291d7 Merge pull request #19 from scollin/master Deon George 2015-02-23 12:40:32 -08:00
  • 54191d7ffb Fix some monitor information problems Sébastien Collin 2015-01-30 13:56:29 +01:00
  • 9e283f369f Merge pull request #13 from DevoKun/master Deon George 2014-10-08 12:30:58 +11:00
  • 19114385fc Changed password_hash to pla_password_hash in a few places where it was still password_hash. Devon Hubner 2014-10-07 14:25:32 -04:00
  • 7701e98bcc Merge pull request #11 from robgloess/patch-1 Deon George 2014-10-07 12:54:51 +11:00
  • d4c2fb52ab Update TemplateRender.php robgloess 2014-09-30 22:28:09 +01:00
  • 7cbdd0c8db Merge pull request #9 from uda/master Deon George 2014-09-23 15:59:42 +10:00
  • afec12d163 Rename INSTALL to INSTALL.md Yehuda Deutsch 2014-09-21 11:11:07 +03:00
  • a4a602b6ec Created README.md Yehuda Deutsch 2014-09-21 11:10:30 +03:00
  • e1952cddb6 Merge pull request #6 from marclaporte/patch-2 Deon George 2014-09-18 12:32:56 +10:00
  • ee415fe8c6 Merge pull request #5 from marclaporte/patch-1 Deon George 2014-09-18 12:32:08 +10:00
  • eca5c4ea9f Merge pull request #8 from pteague/master Deon George 2014-09-18 12:31:19 +10:00
  • a01752a68c * Fixed posixAccount Shell so that 'Bash' is actually bash and not shell. Also added Shell, Dash, False, and No Login Patrick Teague 2014-09-16 14:53:52 -05:00
  • ba90f86e7b typos Marc Laporte 2014-07-25 23:04:40 -04:00
  • 6135f94a51 typo Marc Laporte 2014-07-25 20:36:21 -04:00
  • f7c4bd311a Merge pull request #4 from ivdmeer/master Deon George 2014-06-05 13:00:27 +10:00
  • c736ecd8c2 Bugfix: fixed call to renamed function pla_password_hash. Ivo van der Meer 2014-06-04 10:48:06 +02:00
  • d2a800878f Merge pull request #3 from bchavet/master Deon George 2014-06-04 13:43:52 +10:00
  • 5a7edc892f Use preg_replace_callback instead of /e in preg_replace to fix E_DEPRECATED warnings Ben Chavet 2014-05-29 18:57:44 +00:00
  • d258398b68 Merge pull request #2 from archayl/php55fix Deon George 2014-05-14 09:05:39 +10:00
  • b082cf1742 Changed preg_replace to preg_replace callback Mohamad Elrashidin Bin Sajeli 2014-05-08 20:40:57 +08:00
  • e673df3ba8 Changed password_hash to pla_password_hash Mohamad Elrashidin Bin Sajeli 2014-05-08 20:22:30 +08:00
  • 7cd2251af3 Moved KH LDAP functions into KH module Deon George 2013-07-12 13:48:14 +10:00
  • 6fcc09f437 Local config Deon George 2013-06-25 16:47:42 +10:00
  • 15bd1fbb6e Basic layout and login functioning Deon George 2013-06-25 13:46:39 +10:00
  • 7e2cdac7e9 Basic layout and login functioning Deon George 2012-06-05 13:50:21 +10:00
  • 808766bb87 Initial application work Deon George 2012-06-05 13:50:21 +10:00
  • cfd7b5db83 Added KH 3.3.0 Deon George 2013-06-24 21:36:06 +10:00
  • caf89ff4e5 Basic layout and login functioning SANDPIT Deon George 2012-06-19 12:50:42 +10:00
  • e084621082 Initial application work Deon George 2012-06-05 13:50:21 +10:00
  • 181cc4ca20 Customisations to KH Deon George 2012-01-19 22:40:53 +11:00
  • a8f534b463 Added KH 3.3.0 - extra modules Deon George 2013-03-19 14:46:14 +11:00
  • b140dbb1b6 Added Dojo 1.7.2 Deon George 2012-06-19 12:07:43 +10:00
  • 2e134ea609 Added KH 3.3.0 Deon George 2013-03-19 14:39:17 +11:00
  • 715f7efe9b Version Change Deon George 2013-03-19 15:28:07 +11:00
  • 5ba2cf67e9 SF Bug #1008 getContainerPath doesn't properly traverse to baseDN and back & #1009 - return_ldap_hash should not return container object in result set Nic Bernstein 2013-03-19 13:37:57 +11:00
  • cfbee19721 Release 1.2.3 RELEASE-1.2.3 1.2.3 Deon George 2012-10-01 16:48:34 +10:00
  • 092db24f99 Update template to show multiselect values Deon George 2012-10-01 16:47:53 +10:00
  • 927e515df3 Language update from launchpad for 1.2.3 (also see #30) Deon George 2012-09-06 13:00:06 +10:00
  • bbedf18b7e SF Bug #3531956 - Search / Show Attributes must be lowercase Deon George 2012-09-05 22:44:46 +10:00
  • f1ed59a35e SF Bug #3518548 - Missing attributes on some custom forms Deon George 2012-09-05 22:18:31 +10:00
  • 55fa21af26 SF Bug #3513210 - Export to VCARD only exports the last entry in the list Deon George 2012-09-05 21:57:17 +10:00
  • f28d535948 SF Bug #3510648 - Cannot copy between servers Deon George 2012-09-05 21:54:42 +10:00
  • 2f70eb41b3 SF Bug #3510114 - Unable to check passwords when samba hashes are in lowercase Deon George 2012-09-05 21:25:50 +10:00
  • 6b9834a054 SF Bug #3452416 - templates <order> non-functional Deon George 2012-09-05 20:23:17 +10:00
  • caf24e3662 SF Bug #3427748 - value id is ignored in select attribute Deon George 2012-09-05 20:02:14 +10:00
  • c4b6695beb SF Bug #3448530 - Treat krbExtraData and krbPrincipalKey as binary Roland Gruber 2012-09-04 15:09:24 +10:00