MDW
58ba3e31fa
Qual: Fix spelling for crypted and referer ( #27408 )
...
# Qual: Fix spelling for crypted and referer.
The proper spelling is encrypted and referrer, but the code has
some occurences where referer and crypted need to be maintained.
To make verification easier, this spelling correction is limited to
mostly these corrections and some minor translations and a only a
few other corrections.
crypted and referer are added as exceptions for spelling after this fix.
Co-authored-by: Laurent Destailleur <eldy@destailleur.fr >
2024-01-11 10:07:06 +01:00
Laurent Destailleur
4501872f17
Clean code with rector 2
2024-01-05 04:33:58 +01:00
Laurent Destailleur
53dab922fd
Fix php8.2 warnings
2023-11-27 11:39:32 +01:00
Lucas Marcouiller
679edeab09
NEW #25512 applicative anti bruteforce - security on too many login attempts ( #25520 )
...
* Close #25512 New security on too many login attempts
* Update security_other.php
* Update functions_dolibarr.php
---------
Co-authored-by: Hystepik <lucas.marcouiller@gmail.com >
Co-authored-by: Laurent Destailleur <eldy@destailleur.fr >
2023-08-01 17:16:50 +02:00
Laurent Destailleur
ad0ce8163d
Clean code
2023-05-13 18:00:33 +02:00
Laurent Destailleur
dfcba30577
FIX Check of date of validity
2023-01-27 14:06:31 +01:00
Laurent Destailleur
f2f4cdbe6a
NEW Invalidate all sessions of a user when password is modified.
2023-01-16 11:48:34 +01:00
Laurent Destailleur
982ee6259f
NEW Session invalidation after a password change
2023-01-14 21:21:48 +01:00
Laurent Destailleur
5d32f0f6ac
Code comment
2022-09-20 10:25:21 +02:00
Laurent Destailleur
1cbac265f4
Merge branch '16.0' of git@github.com:Dolibarr/dolibarr.git into develop
2022-09-19 12:14:32 +02:00
Laurent Destailleur
0269d3dbed
Reduc delay
2022-09-17 13:34:29 +02:00
Philippe GRAND
352382bced
FIX php8 compatibility
2022-08-28 14:02:16 +02:00
Laurent Destailleur
3a2815a9c0
Debug and clean v16
2022-04-07 23:44:57 +02:00
Harry Winner KF
67ab70f37d
FIX Solving non-blocking bug in user login
...
When using the function check_user_password_dolibarr to authenticate a user, a call is made to the function dol_verifyHash which requires a pre-calculated hash. This hash is not available with programmatically-created never-used accounts. Hence, in suce cases we have the following warning:
Notice: Trying to access array offset on value of type null in .../htdocs/core/lib/security.lib.php on line 156
This fix solves that bug by avoiding that unnecessary call
2022-01-12 15:05:11 -05:00
Laurent Destailleur
29abbbe2fb
Clean code
2021-08-28 01:45:53 +02:00
Laurent Destailleur
10ddd621ca
Fix escape error message
2021-08-20 12:40:49 +02:00
Laurent Destailleur
f4d56c710b
Fix log levels
2021-04-07 12:43:28 +02:00
Frédéric FRANCE
554e449e40
code syntax core directory
2021-02-23 22:03:23 +01:00
Scrutinizer Auto-Fixer
7f52920716
Scrutinizer Auto-Fixes
...
This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com
2020-10-31 13:32:18 +00:00
Laurent Destailleur
d21ee07afc
NEW Can define date range of validity of a login during creation
2020-09-22 14:45:19 +02:00
Frédéric FRANCE
b41ac00b98
add new rule
2020-05-21 15:05:19 +02:00
Frédéric FRANCE
ee6fadd0d5
add new rule
2020-05-21 01:41:27 +02:00
Scrutinizer Auto-Fixer
444c293c01
Scrutinizer Auto-Fixes
...
This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com
2020-04-10 08:59:32 +00:00
Laurent Destailleur
075b1ea744
FIX Log of authentication ko or ko + CVE-2020-7996
2020-02-02 19:05:38 +01:00
Alexandre SPANGARO
02dbc11f98
Move Gnu.org to https
2019-09-23 21:55:30 +02:00
Laurent Destailleur
1cfbf5f551
Merge branch '9.0' of git@github.com:Dolibarr/dolibarr.git into develop
...
Conflicts:
htdocs/admin/security.php
2019-03-04 20:18:23 +01:00
Laurent Destailleur
c95c8b4dcb
Merge branch '8.0' of git@github.com:Dolibarr/dolibarr.git into 9.0
...
Conflicts:
htdocs/core/login/functions_dolibarr.php
2019-03-04 20:17:16 +01:00
Laurent Destailleur
54b9681257
More log to help debug
2019-03-04 20:15:31 +01:00
Frédéric FRANCE
b10558bacd
Merge remote-tracking branch 'upstream/develop' into nospaceaftercomma
2019-01-27 23:23:38 +01:00
Frédéric FRANCE
f0cdf300d1
Squiz.Functions.FunctionDeclarationArgumentSpacing
2019-01-27 15:20:16 +01:00
Frédéric FRANCE
7ee086b402
PSR2 space after comma in function call
2019-01-27 11:55:16 +01:00
Regis Houssin
569d59d251
FIX change my deprecated email
2018-10-27 14:43:12 +02:00
Philippe GRAND
33d9e24bd6
Standardize and update code
2018-09-14 11:58:49 +02:00
Aurélien Labate
8088d92bbb
NEW Add password_hash as hash algorithm
2018-01-15 00:33:25 +01:00
Laurent Destailleur
acfaec684d
FIX CVE-2017-7888
2017-06-10 22:31:22 +02:00
Regis Houssin
b66da3d148
New: big refactorization of multicompany transverse mode
2017-06-06 10:23:33 +02:00
Laurent Destailleur
135358780c
FIX #6445
2017-03-10 14:49:17 +01:00
Laurent Destailleur
b076ea2985
Code comment
2016-09-19 00:49:29 +02:00
Laurent Destailleur
fd3ba13130
FIX #3541 Bypass authentication when user was created using LDAP
2015-10-18 21:33:47 +02:00
Regis Houssin
131c3fcef8
Fix: check the user status during authentication
2015-05-29 10:07:48 +02:00
Laurent Destailleur
b8bd27009e
Simplify code
2015-03-28 18:32:53 +01:00
Ion Agorria
043d11d785
check if $mc is a valid global
2015-03-28 18:22:01 +01:00
Laurent Destailleur
8be08c692f
Fix some secuity tests were not done.
2015-03-25 18:10:45 +01:00
Laurent Destailleur
e269aa83b5
More comments
2015-03-23 04:16:58 +01:00
Laurent Destailleur
425a853e07
- New: Match other auth system: Login can be done entering login or
...
user email (this open the road for SSO).
2014-11-14 11:56:05 +01:00
Marcos García de La Fuente
9fbd7806f0
More substitutions
2014-06-12 11:31:53 +02:00
Raphaël Doursenaud
f8f502d013
Removed closing php tag
...
http://php.net/manual/en/language.basic-syntax.phptags.php
2014-05-03 18:18:44 +02:00
Laurent Destailleur
8d206fdfb0
Prepare move to other licence. For the moment all answers for licence
...
upgrade were not yet received. So we prepare for GPL by uniformizing
licence text keys to GPL-3+. Will move later to AGPL if all answers are
positive.
2013-01-16 15:36:08 +01:00
Regis Houssin
b838895db9
Fix: change for a neutral email
2012-12-30 15:13:49 +01:00
Regis Houssin
7e2469618e
Change-Id: I5f8bcf59cf2fc0d902edb4d61f8c20a2880765a2
2012-07-07 12:21:09 +02:00