aboutsummaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAge
...
* (no commit message)https://social.hi.ato.br/desci2015-05-28
|
* rename icon instead of changing the JavascriptSimon McVittie2015-05-27
| | | | | That can take effect on Branchable without rebuilding ikiwiki.deb, and the shorter name is perhaps nicer anyway.
* correct name of emailauth iconSimon McVittie2015-05-27
|
* Do not directly enable emailauth by default, only indirectly via openidSimon McVittie2015-05-27
| | | | | | | This avoids nasty surprises on upgrade if a site is using httpauth, or passwordauth with an account_creation_password, and relying on only a select group of users being able to edit the site. We can revisit this for ikiwiki 4.
* stop ./gitremotes from processing some broken linksSimon McVittie2015-05-27
|
* (no commit message)usgv@7608a70b09743e47fbf6b7bcd937121e03e4e2442015-05-26
|
* openid spam happens, as it turns outhttps://id.koumbit.net/anarcat2015-05-25
|
* identified (partly) last spammerAntoine Beaupré2015-05-25
|
* Revert "WU trf, train tickets, ship shop, cvv, complete fullz, dumps"Antoine Beaupré2015-05-25
| | | | This reverts commit 1d05cf33fb5f4fc9e1a3d6e76b4973282f3a724c.
* WU trf, train tickets, ship shop, cvv, complete fullz, dumpshttps://me.yahoo.com/a/NyYLSvhuu9XQ3TQ79dx8Peg5GY1VfiNezVI-#df77b2015-05-25
|
* typospalax2015-05-21
|
* Question about python path for external plugins.spalax2015-05-21
|
* http://i.imgur.com/0yo0VjC.png?1Jake12015-05-19
|
* sohrten url in subjectJoey Hess2015-05-19
|
* nicer layout of subjectJoey Hess2015-05-19
|
* add url to subject of emailJoey Hess2015-05-19
| | | | | The wikiname can be pretty un-helpful, the user will probably regognise the url since they were just at it.
* allow emailuser to be called when there is no %config setJoey Hess2015-05-19
| | | | ikiwiki-hosting needs to do this
* changelogJoey Hess2015-05-19
|
* make cgiurl output deterministicDaniel Kahn Gillmor2015-05-19
| | | | | | | | IkiWiki::cgiurl() currently produces non-deterministic output, because the params hash can be sorted different ways. Sorting keys to params before crafting the string should make the output deterministic.
* Idea: embedded podcast A/V player.Amitai Schlair2015-05-17
|
* cloak user PII when making commits etc, and let cloaked PII be used in ↵Joey Hess2015-05-14
| | | | | | | | | | | | | | banned_users This was needed due to emailauth, but I've also wrapped all IP address exposure in cloak(), although the function doesn't yet cloak IP addresses. (One IP address I didn't cloak is the one that appears on the password reset email template. That is expected to be the user's own IP address, so ok to show it to them.) Thanks to smcv for the pointer to http://xmlns.com/foaf/spec/#term_mbox_sha1sum
* commentsJoey Hess2015-05-14
|
* passwordauth: Don't allow registering accounts that look like openids.Joey Hess2015-05-14
| | | | | Also prohibit @ in account names, in case the file regexp was relaxed to allow it.
* Merge branch 'master' of ssh://git.ikiwiki.infoJoey Hess2015-05-14
|\
| * acls and expectationshttps://id.koumbit.net/anarcat2015-05-14
| |
| * Critical of automatic merging of stylesheetskjs2015-05-14
| |
| * (no commit message)kjs2015-05-14
| |
| * please do cloak email addresses, the principle of least astonishment appliessmcv2015-05-14
| |
| * proposal for making emailauth not force username == email addresssmcv2015-05-14
| |
* | crufty po updatesJoey Hess2015-05-14
| |
* | update re passwordauth @Joey Hess2015-05-14
| |
* | sanitize nickname derived from email addressJoey Hess2015-05-14
|/
* note about email visibility in git commitsJoey Hess2015-05-13
|
* fix page extensionJoey Hess2015-05-13
|
* closeJoey Hess2015-05-13
|
* Merge branch 'emailauth'Joey Hess2015-05-13
|\
| * changelogJoey Hess2015-05-13
| |
| * don't let emailauth user's email address be changed on preferences pageJoey Hess2015-05-13
| | | | | | | | | | | | There's no real problem if they do change it, except they may get confused and expect to be able to log in with the changed email and get the same user account.
| * when an emailauth user posts a comment, use the username only, not the full ↵Joey Hess2015-05-13
| | | | | | | | | | | | | | | | | | | | | | email address This makes the email not be displayed on the wiki, so spammers won't find it there. Note that the full email address is still put into the comment template. The email is also used as the username of the git commit message (when posting comments or page edits). May want to revisit this later.
| * avoid showing password prefs for emailauth userJoey Hess2015-05-13
| |
| * allow adminuser to be an email addressJoey Hess2015-05-13
| |
| * tweak wordingJoey Hess2015-05-13
| |
| * fix up session cookieJoey Hess2015-05-13
| |
| * emailauth link sent and verified; user login worksJoey Hess2015-05-13
| | | | | | | | | | Still some work to do since the user name is an email address and should not be leaked.
| * add emailauth.tmplJoey Hess2015-05-13
| |
| * move stub auth hook to loginselectorJoey Hess2015-05-13
| |
| * email auth plugin now works through email address entryJoey Hess2015-05-13
| |
| * Converted openid-selector into a more generic loginselector helper plugin.Joey Hess2015-05-13
| |
| * rename openid selector files to login-selectorJoey Hess2015-05-13
| |
| * further generalization of openid selectorJoey Hess2015-05-13
| | | | | | | | Now template variables can be set to control which login methods are shown