Carlos Antonio da Silva
|
cf3e5c5d85
|
Fix deprecation warning in Rails 2.3.10
|
2010-11-26 08:42:01 -02:00 |
|
José Valim
|
ef5cb5c34b
|
Work around a bug in Rails 2.3.10 where reset session cause Rack::Lint tests to fail.
|
2010-11-26 11:31:38 +01:00 |
|
José Valim
|
f72d7d85c7
|
Avoid session fixation attacks
|
2010-11-21 00:23:44 +01:00 |
|
Eike Bernhardt
|
a3a142eb04
|
Save confirmation token to the database, if one does not exist but was requested, closes #377
|
2010-09-09 19:47:14 +08:00 |
|
Martin Rehfeld
|
0638a68704
|
use :sign_out_via to control the method(s) for the destroy_*_session_path route
|
2010-08-14 11:06:31 +08:00 |
|
Martin Rehfeld
|
a49f03e2f9
|
provide :sign_out_via option for Devise::Mapping
|
2010-08-14 11:06:31 +08:00 |
|
Carlos Antonio da Silva
|
cb990f2d28
|
Get rid of some deprecation warnings and update Changelog
|
2010-07-07 00:10:28 -03:00 |
|
SSDany
|
55a47128bf
|
anybody_signed_in? helper
|
2010-06-12 19:22:58 +08:00 |
|
Paul Rosania
|
201cfa9824
|
Automatically create the confirmation_token when email is sent for optionally confirmable models
Signed-off-by: José Valim <jose.valim@gmail.com>
|
2010-05-16 14:55:50 +02:00 |
|
Paul Rosania
|
d853c376d4
|
Mark confirmable roles as active when confirmation_required? is false
Signed-off-by: José Valim <jose.valim@gmail.com>
|
2010-05-16 14:55:49 +02:00 |
|
José Valim
|
c38b2f69d0
|
Release devise 1.0.7 with small fixes.
|
2010-05-03 13:56:25 +02:00 |
|
José Valim
|
1a9092c61b
|
Ensure password confirmation is always required, closes #228
|
2010-04-25 09:55:11 +02:00 |
|
José Valim
|
681f816074
|
Backport small updates done in master.
|
2010-04-11 08:05:21 +02:00 |
|
Nat Budin
|
0bc15286b4
|
Pass back the custom response, if the winning strategy uses the custom\! method
Signed-off-by: José Valim <jose.valim@gmail.com>
|
2010-04-02 20:28:26 +02:00 |
|
José Valim
|
c18d8e50d3
|
Backport database_authenticatable change,.
|
2010-04-01 12:16:43 +02:00 |
|
José Valim
|
52f729e74f
|
Bug fixes on unlockable.
|
2010-03-28 23:14:36 +02:00 |
|
José Valim
|
e2793fc69e
|
sign_in_count shoud default to zero.
|
2010-03-26 12:57:36 +01:00 |
|
Carlos Antonio da Silva
|
a73fead23e
|
Merge branch 'v1.0' of github.com:plataformatec/devise into v1.0
|
2010-03-26 08:19:10 -03:00 |
|
Carlos Antonio da Silva
|
42eb89b909
|
Use prepend_before_filter in require_no_authentication.
We need to be sure require_no_authentication runs before other user filters that may call some Devise helper (ie current_xxx).
|
2010-03-26 08:14:58 -03:00 |
|
José Valim
|
913444059c
|
Allow devise to work with association proxies.
|
2010-03-26 10:26:38 +01:00 |
|
Josh Kalderimis
|
b305b7f357
|
changed add_module to add modules to the bottom of ALL, also added test to confirm order in ALL is being adhered to
Signed-off-by: José Valim <jose.valim@gmail.com>
|
2010-03-26 09:32:25 +01:00 |
|
Josh Kalderimis
|
6d08646ddc
|
added routes option to add_module so route view helpers are created
Signed-off-by: José Valim <jose.valim@gmail.com>
|
2010-03-25 09:05:13 +01:00 |
|
José Valim
|
1bee9fbef9
|
Clean up lockable and class methods API.
|
2010-03-10 16:18:28 +01:00 |
|
Cyril Mougel
|
a0220243c3
|
fix spec failed with mongo_mapper DEVISE_ORM
Signed-off-by: José Valim <jose.valim@gmail.com>
|
2010-02-25 08:44:08 +01:00 |
|
José Valim
|
fbe485f3df
|
Update warden which fixes a security issue.
|
2010-02-23 19:52:53 +01:00 |
|
José Valim
|
c36cd84c31
|
Returns the proper response body based on the rquest for 401.
|
2010-02-18 19:52:37 +01:00 |
|
José Valim
|
ee7f5270fc
|
Uses the same content type as request on http authenticatable 401 responses
|
2010-02-17 21:25:31 +01:00 |
|
José Valim
|
f294700723
|
Update test files.
|
2010-02-17 21:15:11 +01:00 |
|
Glenn Roberts
|
c86ce298dc
|
add content type test, update config doc
Signed-off-by: José Valim <jose.valim@gmail.com>
|
2010-02-17 21:13:27 +01:00 |
|
José Valim
|
bdacffab58
|
Make HttpAuthenticatable opt-in.
|
2010-02-15 14:11:33 +01:00 |
|
José Valim
|
1b6f1b9752
|
Add registerable integration tests.
|
2010-02-09 00:08:57 +01:00 |
|
José Valim
|
732e31528e
|
More changes in update_with_password.
|
2010-02-08 23:14:03 +01:00 |
|
José Valim
|
d7db5b1eea
|
More work on edit.
|
2010-02-08 20:38:47 +01:00 |
|
José Valim
|
2761a75437
|
Refactor on routes.
|
2010-02-08 20:25:20 +01:00 |
|
José Valim
|
9798ad7455
|
Allow scoped views to be customized per controller/mailer class.
|
2010-02-08 17:33:22 +01:00 |
|
José Valim
|
54cd2cc0e8
|
Use _ instead of .
|
2010-02-08 17:15:12 +01:00 |
|
Carlos Antonio da Silva
|
445070f6ec
|
Use sign_up instead of registration in routes. Fix issue with users being signed in while attempting to sign up with info from already existing user. Also fix signed up flash.
|
2010-02-08 11:03:15 -02:00 |
|
Carlos Antonio da Silva
|
9856646fac
|
Merge with master
|
2010-02-06 09:24:00 -02:00 |
|
José Valim
|
1cf4dc798d
|
Add Http Basic Authentication support.
|
2010-02-06 01:33:32 +01:00 |
|
José Valim
|
c146cad448
|
Ensure inactive user cannot sign in.
|
2010-02-05 21:36:19 +01:00 |
|
Carlos Antonio da Silva
|
21359fb433
|
Refactoring a bit models and lockable. Also remove devise :all deprecation.
|
2010-02-04 20:09:53 -02:00 |
|
Carlos Antonio da Silva
|
6b837cb285
|
Introducing Registerable module, allowing users to sign up.
|
2010-02-04 20:08:38 -02:00 |
|
Carlos Antonio da Silva
|
4de1e43b7a
|
Fix "return_to" to always save the request_uri, overwriting the return to url when the user types another forbidden url before sign in.
This way the user will be redirected to the last attempted url and not the first one.
|
2010-02-04 08:46:22 -02:00 |
|
José Valim
|
3781a0f47b
|
Tidy up token authentication implementation.
|
2010-02-02 13:21:00 +01:00 |
|
Jonas Grimfelt
|
4878bdb60b
|
Second version of token_authenticatable reflecting feedback: Nuked all hook-stuff. Should be easy to custom-reset authentication tokens by inheritance.
Signed-off-by: José Valim <jose.valim@gmail.com>
|
2010-02-02 12:37:06 +01:00 |
|
Jonas Grimfelt
|
e1440fb430
|
Initial support for authorization using "authentication token" (a.k.a. "single access token") - new module. Corresponding changes to Devise core to hook events like "after_changed_password" (only one added now - only one that makes much sense for latest module) easily. Unit and integration tests included. NOTE: One failing test for hooking Warden::Manager.after_authentication - gets ignored for some reason.
Signed-off-by: José Valim <jose.valim@gmail.com>
|
2010-02-02 12:36:44 +01:00 |
|
David Palm
|
bc05d28d3f
|
Devise::Mapping#raw_path does not consider relative_url_root so that route helpers work (no more session_path(:user) => '/abc/abc/users/sign_in')
Devise::Mapping#parsed_path considers relative_url_root so that initial redirects still work with non empty relative_url_roots
|
2010-01-22 23:03:48 +08:00 |
|
Jonas Grimfelt
|
0c7c762c16
|
Fixed some Ruby 1.9 issues/bugs.
|
2010-01-21 16:06:19 +08:00 |
|
Jonas Grimfelt
|
f50ec773b2
|
New convenient helper method for extending Devise with additional modules: Devise::add_module.
|
2010-01-21 16:06:17 +08:00 |
|
José Valim
|
04ce9d1e6f
|
Should accept path prefixes not starting with slash.
|
2010-01-16 14:39:57 +01:00 |
|