107 Commits (e57bca31adc9a2591357825fa7042596fcb51f7d)

Author SHA1 Message Date
Morris Jobke bd997a105c
Fix code style 6 years ago
Roeland Jago Douma 35ff4aa1c6
Use random_bytes 6 years ago
MichaIng 229570badf
Apply Argon2 options for Argon2id hashing as well 6 years ago
MichaIng ad60619655
Fix Argon2 options checks 6 years ago
Christoph Wurst cb057829f7
Update license headers for 19 6 years ago
Arthur Schiwon 5437844b7e
fix credentialsManager documentation and ensure userId to be used as string 6 years ago
Christoph Wurst 28f8eb5dba
Add visibility to all constants 6 years ago
Christoph Wurst caff1023ea
Format control structures, classes, methods and function 6 years ago
Christoph Wurst 14c996d982
Use elseif instead of else if 6 years ago
Christoph Wurst afbd9c4e6e
Unify function spacing to PSR2 recommendation 6 years ago
Christoph Wurst 41b5e5923a
Use exactly one empty line after the namespace declaration 6 years ago
Christoph Wurst 2fbad1ed72
Fix (array) indent style to always use one tab 6 years ago
Christoph Wurst 1a9330cd69
Update the license headers for Nextcloud 19 6 years ago
Christoph Wurst b80ebc9674
Use the short array syntax, everywhere 6 years ago
Johannes Riedel 0c38569c83 Implement occ command security:bruteforceattemps:reset-for-ip 6 years ago
Pavel Krasikov f11dee9bc4 fix safari useragent for versions with 3 digits 6 years ago
Roeland Jago Douma 12e1c469cf
Add Argon2id support 6 years ago
Roeland Jago Douma 0d651f106c
Allow selecting the hashing algorithm 6 years ago
Arthur Schiwon f92ba2cebe
ignore values that undershoot the minimum, go with default 6 years ago
blizzz 56c3ba6ac7
use getSystemValueInt 6 years ago
Arthur Schiwon 171bb98229
expose Argon2 options (as we did for bcrypt) 6 years ago
Christoph Wurst 1b46621cd3
Update license headers for 18 6 years ago
Konrad Bucheli f2d3e34c96 handle IPv6 addresses with an explict incoming interface at the end (e.g fe80::ae2d:d1e7:fe1e:9a8d%enp2s0) 6 years ago
Julius Härtl d05f131929
Move overwritehost check to isTrustedDomain 6 years ago
Christoph Wurst 5bf3d1bb38
Update license headers 6 years ago
Roeland Jago Douma 68748d4f85
Some php-cs fixes 6 years ago
Johannes Koenig 2df8d646c1 make TrustedDomainHelper case insensitive 6 years ago
Roeland Jago Douma 2b98eea129
Harden identifyproof openssl code 6 years ago
Roeland Jago Douma 7927aebdeb
Fix report of phpstan in Limiter 6 years ago
Roeland Jago Douma b8c5008acf
Add feature policy header 6 years ago
Roeland Jago Douma f94ee72507
Add form-action CSP element 6 years ago
Roeland Jago Douma 417fbb5d60
setting unsafe-eval is deprecated 6 years ago
Sam Bull ea935f65fd
Add support for CSP_NONCE server variable 7 years ago
Roeland Jago Douma 5ac857bcdc
Add an event to edit the CSP 7 years ago
Roeland Jago Douma f1ea56b502
Fix the thorrtler whitelist bitmask 7 years ago
Thomas Citharel c9b588774b
Allow bracket IPv6 address format inside IPAdress Normalizer 7 years ago
Roeland Jago Douma 372f3d2a60
Remove deprecated functions from SecureRandom 7 years ago
Roeland Jago Douma be5c050acc
Throw exception if decryption fails 7 years ago
Roeland Jago Douma 0fdc65a15c
Add nonce for Safari 12+ 7 years ago
Roeland Jago Douma 579822b6a5
Add report-uri to CSP 7 years ago
Roeland Jago Douma 8354c50911
Deprecate the childSrc functions 7 years ago
Roeland Jago Douma c8fe4b4fc8
Add workerSrc to CSP 7 years ago
Mark Berezovsky ad66c6bf08 Fix #9864: Decrease $maxDelay in Throttler.php 8 years ago
Roeland Jago Douma 84316aec66
Add ARGON2I support to the hasher 8 years ago
Roeland Jago Douma d8332d43f8
Make \OC\Security\IdentityProof strict 8 years ago
Roeland Jago Douma 4ed9b74a6b
Make OC\Security\CSP strict 8 years ago
Roeland Jago Douma 2c8402aa17
Make \OC\Security\CSRF strict 8 years ago
Morris Jobke 0a56d2185e
Return value immediately instead of assigning to a one-time variable 8 years ago
Roeland Jago Douma 0e0db37658
Make OCP\Security stricter 8 years ago
Roeland Jago Douma bb2938a47d
Make IPAddress typed and strict 8 years ago