Commit Graph

1720 Commits

Author SHA1 Message Date
ritt 4936b76915 Do not exit if problem with PID file 2020-02-17 12:12:02 +01:00
ritt e955bde7eb Fixed bug in conditional attribute processing in find form 2020-02-11 12:53:04 +01:00
ritt e38e91da5f Fixed bug in return buffer memory allocation which caused crash for large message (>200000 chars) 2020-02-11 12:11:57 +01:00
ritt 033e292301 Fixed NULL pointer deference in show_uploader_json 2020-02-11 11:15:35 +01:00
ritt c1fd3ee3c3 Use different TLS methods for OpenSSL 1.0 and 1.1 2020-02-11 10:49:34 +01:00
ritt 8e6cb6a697 Replaced deprecated TLSv1_2_method() by TLS_method() 2020-02-11 10:03:40 +01:00
ritt 283534d97d Prevent attachment files from being overwritten 2019-12-10 12:32:11 +01:00
ritt d9d1f5b54b Fixed memory leak with ssl_con 2019-12-09 17:01:19 +01:00
ritt 993bed4923 Serve SVG files as attachments only to avoid XSS vulnerabilities 2019-12-09 16:48:20 +01:00
ritt eefdabb714 Apply HTML escaping to "loc" command 2019-12-09 16:28:16 +01:00
ritt 15787c1ede Check access to logbook before executing retrieve_url() 2019-12-09 15:21:04 +01:00
ritt 32ba07e192 Removed keepalive from retrieve_url, added password check for uploading attachments 2019-12-09 15:17:46 +01:00
ritt 38c08aceda Changed retrieve_url to send cookies only during logbook synchronization 2019-12-09 14:22:15 +01:00
ritt 7367647d40 Implemented "Allow clone" configuration setting 2019-12-09 13:13:43 +01:00
ritt 18b0d54cf4 Replaced non-portable strcasestr by stristr 2019-11-27 15:40:06 +01:00
ritt 24f03be308 Fixed typo 2019-11-27 13:49:09 +01:00
ritt 04dbd76616 Fixed Windows 10 issues 2019-11-27 13:46:45 +01:00
ritt ccd2bee54f Changed UNUSED to make it Windows compatible 2019-11-27 13:24:53 +01:00
ritt d9c47af710 Check for "Admin restrict edit time" also for multiple entries delete operation (via select) 2019-11-20 15:43:32 +01:00
ritt 807666943a Obey "Admin restrict edit time" also in delete operation 2019-11-20 15:33:04 +01:00
ritt f6ba2191eb Apply "restrict edit time" also to multi-edits 2019-11-19 17:13:02 +01:00
ritt ab8b98c790 Implemented "Admin restrict edit time" 2019-11-19 14:03:37 +01:00
ritt b7ee024ffb Use ltime for XML export/import of date and datetime attributes 2019-11-19 11:44:01 +01:00
ritt 8feac9079a Merge branch 'master' of bitbucket.org:ritt/elog 2019-05-22 13:54:41 +02:00
ritt 4a01c2aab5 Fixed potential string overflows and removed further compiler warnings 2019-05-22 13:26:45 +02:00
ritt 465d738c96 Removed further compiler warnings 2019-05-22 09:30:20 +02:00
ritt e950e2cac3 Removed further compiler warnings 2019-05-22 09:29:21 +02:00
ritt 2dc8a7797f Fixed clang warnings 2019-05-21 17:45:38 +02:00
ritt 13bd96e50e Fixed compiler warnings 2019-05-21 12:24:34 +02:00
ritt e5f4fe980d Fixed compiler warning 2019-05-16 11:34:32 +02:00
ritt 6aa2df9d30 Fixed overlapping strlcpy(), seems to segfault under some MacOSX 2019-05-01 10:59:30 +02:00
ritt 2fab4a31d7 Obey "Restrict edit time" also for submissions via elog tool 2019-04-26 17:21:58 +02:00
ritt ead6bbc6c4 Re-arranged layout of subscribed logbooks to better fit the screen 2019-04-11 12:54:20 +02:00
ritt ae0c989b0e Fixed unitialized show_self_register 2019-04-04 13:15:58 +02:00
ritt 3c57d7838a Merge branch 'master' into pam 2019-04-04 13:10:59 +02:00
ritt f016765441 Fixed wrong sizeof's 2019-04-04 13:10:36 +02:00
Jan Christoph Terasa 7c166839c8 Disable new user registration in case of PAM authentication. 2019-03-16 13:22:38 +01:00
Jan Christoph Terasa 55798d4fa2 Fix PAM overriding self registration settings. 2019-03-16 13:20:21 +01:00
Jan Christoph Terasa e9d3b82ddb Use strdup instead of manual calloc/memcpy. This fixes issue #1. 2019-03-16 13:20:21 +01:00
Jan Christoph Terasa 93e092db13 Log PAM authentication procedure in logfile. 2019-03-16 13:20:21 +01:00
Jan Christoph Terasa cb161f4911 Do not store password in password file if using PAM. 2019-03-16 13:20:21 +01:00
Jan Christoph Terasa 5974fa0439 Fix PAM #endif. 2019-03-16 13:20:21 +01:00
Jan Christoph Terasa d0ddbab545 Change empty password file logic in case of PAM authentication. 2019-03-16 13:20:21 +01:00
Jan Christoph Terasa 2dedd2addc Conditionally compile new PAM user registration logic. 2019-03-16 13:20:21 +01:00
Jan Christoph Terasa 7e7d810ea0 In case of PAM, change user save logic. 2019-03-16 13:20:21 +01:00
Jan Christoph Terasa e20fd652ef Show new user page if user is not in password file. 2019-03-16 13:20:21 +01:00
Jan Christoph Terasa c2133ddffd Treat PAM login like Kerberos or Webserver login. 2019-03-16 13:20:21 +01:00
luedeke 4080be05a1 fix "Subscribe to logbooks" table for hidden logbooks 2019-03-07 16:13:55 +01:00
ritt cdb78a10bd Disable submit button after first click to avoid double submits 2019-02-20 15:05:35 +01:00
Jan Christoph Terasa c21421dbec Implement PAM authentication in auth.c and adapt Makefile to link against libpam. 2019-02-18 19:38:34 +01:00