Age | Commit message (Collapse) | Author |
|
|
|
separate controller, make users_controller html only and v1/users_controller json only.
|
|
validation.
|
|
can't get it working.
|
|
|
|
functionality.
|
|
|
|
login makes little sense. This change was applied already... just updated the test
|
|
|
|
For removing account, redirect to root path, and ask confirmation messag...
|
|
|
|
https://leap.se/code/issues/2923
|
|
* will only display cookies warning if javascript is enabled.
* remove redundant code
* tweak noscript html to display better div
|
|
Will want to tweak so the code isn't redundant, and ideally so check for cookies doesn't rely on javascript.
And we'll want to expand the texts.
|
|
Token auth with a database of it's own
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Couch uses partly random partly sequential ids by default. We could
change that in couch config to be all random. But this is probably more
safe.
|
|
|
|
* The APP_CONFIG needs to be initialized in core so that is required from other engines
* paths for load_views need to be relative to the model - not to rails root.
|
|
|
|
|
|
|
|
Conflicts:
users/lib/warden/strategies/secure_remote_password.rb
|
|
|
|
incorrect username or password on login attempt.
|
|
|
|
Feature: API version 1 fixes
|
|
about whether a username is valid.
This also means the error message is more appropriate if somebody tries to login with somebody else's username and their password.
|
|
Signed-off-by: jessib <jessib@leap.se>
|
|
|
|
|
|
|
|
* now we return the user id on login
* allow a destroy request for logging out
* added test for api sessions controller
|
|
update some user fields.
|
|
|
|
|
|
password (they can leave either the same if they just want to change one, but we should make this clearer.)
|
|
|
|
warden srp strategy in lib has it all.
|
|
|
|
There was a weird case with reloading the user in the test if the public key had been unset.
|
|
|
|
|
|
Conflicts:
users/app/views/users/edit.html.haml
|
|
want to leak ID information.
|