summaryrefslogtreecommitdiff
AgeCommit message (Collapse)Author
2013-10-03Merge branch 'bug/login_dialog_should_require_username' into developdevelopSean Leonard
2013-10-03Login dialog requires username.Parménides GV
I've also changed the way we notify that the password should have 8 characters at least, to make it consistent to the way we notify username is required.
2013-10-03Merge branch 'feature/move-confighelper-constants' into developSean Leonard
2013-10-03Fixed M2 and M1 constants values.Parménides GV
Logging in, it was returning a "Bad response from server" due to the malinterpretation of the received JSON. It was looking for a field named "m2", but it was "M2".
2013-09-30Fixed typo in EIP.certificateParménides GV
2013-09-30Erroneous CA cert download correctly handled.Parménides GV
If there is an error while downloading CA cert on downloadJsonFiles, false is returned and progress dialog is dismissed.
2013-09-30Moved all constants from ConfigHelper.Parménides GV
They have been relocated to the corresponding classes.
2013-09-30Moved result constants to ProviderAPI.Parménides GV
2013-09-26Merge branch 'bug/inconsistent-cookie-management' into developSean Leonard
2013-09-26Replaced Apache HTTP client with HttpURLConnectionParménides GV
I do not manually manage cookies anymore, letting HttpURLConnection manage them via default CookieHandler (using CookiePolicy.ACCEPT_ORIGINAL_SERVER).
2013-09-26Apache HTTP to Android HttpsURLConnection started.Parménides GV
SRP parameter A tries to be sent via HttpsURLConnection. Right now, we have a problem with certificates because I'm not using provider CA cert to get the response. I'm going to merge the branch with better method names to download response using already existing code.
2013-09-26Commented all manual cookie management.Parménides GV
I send session_id cookie in the request for 1/cert, getting it from LeapHttpClient directly.
2013-09-25Removed cookie to logout chain.Parménides GV
2013-09-25Renamed certificate handling methods.Parménides GV
I still let one method to bypass hostname verifier, otherwise dev.bm will not work. I've reduced downloading functions to 3: download without CA, download with commercial CA and download with provider CA. I only download CA cert once, when the user selects the corresponding provider. Each time a user switch provider, the cert is downloaded (along with other json files).
2013-08-15Merge branch 'hotfix/danger_on-is-true-for-assets-provider' into developSean Leonard
2013-08-14Merge branch 'bug/lack-of-input-validation-on-user-certificates' into developParménides GV
2013-08-14Merge branch 'bug/eip-service-exported-with-no-access-control' into developParménides GV
2013-08-14Assets providers have danger_on "false".Parménides GV
2013-08-13Use java.security classes to validate string certificates and keys from providerSean Leonard
2013-08-13Disallow export of EIP service IntentsSean Leonard
2013-08-13Merge branch 'bug/eip-fragment-is-not-showed-after-switching-provider' into ↵Sean Leonard
develop
2013-08-13Merge branch 'bug/provider-down-not-differentiated-from-certificate-error' ↵Sean Leonard
into develop
2013-08-13Merge branch 'feature/retry-login-retain-username' into developSean Leonard
2013-08-13Merge branch 'feature/providerApi-actions-instead-of-bundleExtras' into developSean Leonard
2013-08-03EIP fragment is replaced if provider is switched.Parménides GV
We were checking if eip existed before adding it again, but that check can be removed if we make a replace instead of an add.
2013-08-03FileNotFoundException catched in all downloads.Parménides GV
Added a new catch block in all downloads methods.
2013-08-01Merge branch 'bug/backstack-screwed-up-by-notification-tap' into developSean Leonard
2013-08-01Merge branch 'hotfix/disabled-hostname-verifier' into developSean Leonard
2013-08-01ProviderAPI intent receives actions and parameters.Parménides GV
We no longer use BundleExtras named as the action ProviderAPI is intended to perform, but we standardise this name (ProviderAPI.PARAMETERS), and use setAction to pass that action string.
2013-07-30Retains username if login process failed.Parménides GV
New login dialog shows the original username, so that if the user failed writing his/her password, s/he does not have to write again the username.
2013-07-29Backstack OK from notification bar.Parménides GV
Pressing back after entering Dashboard from notification bar, the user goes back to home.
2013-07-29LeapHttpClient verifies hostname.Parménides GV
This fixes #3287
2013-07-26Merge branch 'release-0.2.0' into developSean Leonard
2013-07-26Add a rather lonely changelog saying only "initial release"Sean Leonard
2013-07-26Bump build to 60 and version to 0.2.0Sean Leonard
2013-07-26Merge branch 'feature/licensing' into developSean Leonard
2013-07-26Include GPLv3+ file and header for files in se.leap.leapclient packageSean Leonard
2013-07-26Include ics-openvpn license file in se.leap.openvpn packageSean Leonard
Clean erroneous copyright text (Consulted Arne) ics-openvpn uses GPLv2+
2013-07-26Merge branch 'hotfix/dismiss-login-progress-dialog' into developSean Leonard
2013-07-25Login progressdialog get dismissed when finished.Parménides GV
If login is successful, dialog is dismissed and toast is showed. If login is not successful and the user cancels the new login dialog presented to him/her, then Dashboard is showed.
2013-07-25Updated compile.sh to target api-17Parménides GV
2013-07-24Merge branch 'hotfix/api-targets' into developParménides GV
2013-07-24Proper API level targeting: min 14, target 17Sean Leonard
2013-07-22Merge branch 'bug/incorrect-leap-untrusted-message' into developSean Leonard
2013-07-20If IOException, use current provider CA cert.Parménides GV
If the CA cert was correctly downloaded, we assume it can be used to validate the string download. If CA cert cannot validate that connection, then if the trust completely checkbox was checked it will try with the other methods. If it was not checked, a certificate error is shown (telling the user the provider is not trusted).
2013-07-20Certificate message shown when appropiate.Parménides GV
Only if all downloading methods fail and the last one throws an IOException, the certificate error message toast is shown.
2013-07-20Erroneous untrusted provider toast with LEAP fixedParménides GV
I've also rearranged how we handle SSL errors. In first place, if the user checked the "Trust completely" checkbox, leap_android tries to use the CA cert pointed out by provider.json. If that does not succeed, it uses an always-returning-true hostname verifier (this was previously done before using CA cert).
2013-07-20Merge branch 'feature/dashboard-ux' into developParménides GV
2013-07-19Fix config error dialog missing call to show()Sean Leonard
2013-07-19Change EIP switch label to "Encrypted Internet"Sean Leonard