Johannes Zellner
|
207e81345f
|
Log event for external login
|
2016-06-07 11:59:54 +02:00 |
|
Johannes Zellner
|
226537de04
|
Move client TYPE_* to clients.js
|
2016-06-03 15:05:00 +02:00 |
|
Johannes Zellner
|
201efa70b7
|
use clients instead of clientdb in oauth2.js
|
2016-06-03 14:38:58 +02:00 |
|
Johannes Zellner
|
3a9a667890
|
Make all token grants without PREFIX_USER
|
2016-06-03 13:01:05 +02:00 |
|
Johannes Zellner
|
9d8a803185
|
Handle scope roles in scope checks
|
2016-06-03 11:09:48 +02:00 |
|
Johannes Zellner
|
e335aa5dee
|
Check for sdk token instead of token type DEV
|
2016-06-03 10:17:52 +02:00 |
|
Johannes Zellner
|
10163733db
|
Separate the scope checking
|
2016-06-03 10:10:58 +02:00 |
|
Girish Ramakrishnan
|
80ca69a128
|
user.update does not need the user object
|
2016-06-02 23:53:06 -07:00 |
|
Johannes Zellner
|
7326ea27ca
|
Only set username and displayName after successful update
|
2016-06-02 21:12:02 +02:00 |
|
Girish Ramakrishnan
|
82cd215ffa
|
merge bad fields and pass error.message correctly in REST responses
|
2016-06-02 00:12:21 -07:00 |
|
Girish Ramakrishnan
|
efa3ccaffe
|
fix crash because of missing error handling
|
2016-05-18 10:00:32 -07:00 |
|
Girish Ramakrishnan
|
ffedbdfa13
|
various minor fixes to eventlog
|
2016-05-02 10:01:23 -07:00 |
|
Girish Ramakrishnan
|
b322f6805f
|
move authType into source
|
2016-05-01 21:53:44 -07:00 |
|
Girish Ramakrishnan
|
ccc119ddec
|
add appLocation to user login
|
2016-05-01 21:47:35 -07:00 |
|
Girish Ramakrishnan
|
1f31fe6f8f
|
make user.remove and user.update add eventlog
|
2016-05-01 20:11:11 -07:00 |
|
Girish Ramakrishnan
|
7967610f3f
|
add user login to event log
|
2016-04-30 23:18:14 -07:00 |
|
Girish Ramakrishnan
|
c511019d79
|
remove jslint hint
|
2016-04-30 11:53:46 -07:00 |
|
Johannes Zellner
|
40bee79e3d
|
Fix oversight to store userId as user.username for auth codes
|
2016-04-13 10:45:11 +02:00 |
|
Johannes Zellner
|
435ec2365b
|
fix sendError() args
|
2016-04-05 09:28:41 +02:00 |
|
Johannes Zellner
|
ff3562b0e8
|
Show error page for invalid reset tokens
|
2016-04-05 09:28:41 +02:00 |
|
Johannes Zellner
|
3be5511e33
|
Ensure we pass the resetToken on error
|
2016-04-05 09:28:41 +02:00 |
|
Johannes Zellner
|
c8604e95ab
|
Prevent password reset for not activated user
|
2016-04-05 09:28:41 +02:00 |
|
Johannes Zellner
|
bbaf4c77fd
|
This is ejs not angular
|
2016-04-05 09:28:41 +02:00 |
|
Johannes Zellner
|
8af01f2955
|
Give basic form feedback for account creation
|
2016-04-05 09:28:41 +02:00 |
|
Johannes Zellner
|
c73213b2f2
|
Handle username conflict in account setup
|
2016-04-05 09:28:41 +02:00 |
|
Johannes Zellner
|
951934f275
|
Remove unused require
|
2016-04-05 09:27:32 +02:00 |
|
Johannes Zellner
|
b8d0c01187
|
fix typo
|
2016-04-05 09:27:32 +02:00 |
|
Johannes Zellner
|
7a5ac1a2f5
|
Add POST account/setup to distinguish between setup and password reset
|
2016-04-05 09:27:32 +02:00 |
|
Johannes Zellner
|
c90a8041e2
|
Move password/setup.html -> account/setup.html
|
2016-04-05 09:27:32 +02:00 |
|
Johannes Zellner
|
18b91b5fa0
|
Rename password setup to account setup
|
2016-04-05 09:27:32 +02:00 |
|
Johannes Zellner
|
e0114c87ac
|
Also update the user record when username and email is sent
|
2016-04-05 09:27:32 +02:00 |
|
Johannes Zellner
|
c98275000b
|
Optionally support username and email in password setter route
|
2016-04-05 09:27:32 +02:00 |
|
girish@cloudron.io
|
c1cd7ac129
|
fix typo
|
2016-02-09 18:53:14 -08:00 |
|
girish@cloudron.io
|
60988ff7f3
|
make hasAccessTo take a callback
|
2016-02-09 12:48:21 -08:00 |
|
Johannes Zellner
|
9b4c385a64
|
Ensure we send proper password requirements on password reset
|
2016-01-26 15:21:03 +01:00 |
|
Johannes Zellner
|
6b8d5f92de
|
Set meaningful page title for oauth rendered pages
|
2016-01-21 16:19:38 +01:00 |
|
Johannes Zellner
|
9595b63939
|
Correctly encode the redirectURI in oauth callback
|
2015-11-25 17:45:18 +01:00 |
|
Johannes Zellner
|
5fbcebf80b
|
Stop using the cloudron name in the oauth views
|
2015-10-20 12:31:16 +02:00 |
|
Johannes Zellner
|
cc64c6c9f7
|
Test using simple auth credentials in oauth
|
2015-10-16 11:48:12 +02:00 |
|
Johannes Zellner
|
0c0782ccd7
|
Fixup oauth to not allow simple auth clients
|
2015-10-16 11:27:42 +02:00 |
|
Johannes Zellner
|
5bc9f9e995
|
use clientdb types in authorization endpoint
|
2015-10-16 11:22:16 +02:00 |
|
Johannes Zellner
|
22402d1741
|
Remove legacy test auth client type
|
2015-10-16 10:05:58 +02:00 |
|
Johannes Zellner
|
8f203b07a1
|
Fix indentation
|
2015-10-16 09:19:05 +02:00 |
|
Girish Ramakrishnan
|
9c157246b7
|
add type field to clients table
|
2015-10-15 17:35:47 -07:00 |
|
Johannes Zellner
|
5a0bf8071e
|
Handle the various appId types we have by now
|
2015-10-15 17:57:07 +02:00 |
|
Johannes Zellner
|
09dfc6a34b
|
Get the oauth2 debug()s in shape
|
2015-10-15 16:55:48 +02:00 |
|
Johannes Zellner
|
2ba1092809
|
Adhere to accessRestriction for oauth authorization endpoint
|
2015-10-15 16:49:13 +02:00 |
|
Johannes Zellner
|
7c97ab5408
|
Revert "Since we got fully rid of the decision dialog, no need to serialze the client anymore"
This is now again required, due to the accesRestriction check
This reverts commit 2c9ff1ee3b.
|
2015-10-15 16:33:05 +02:00 |
|
Johannes Zellner
|
8f1666dcca
|
Consolidate the oauth comments
|
2015-10-14 16:31:55 +02:00 |
|
Johannes Zellner
|
9aa4750f55
|
Since we got fully rid of the decision dialog, no need to serialze the client anymore
|
2015-10-14 16:22:50 +02:00 |
|